2021 CVE Vulnerabilities

23,468 CVEs published in 2021.

CVE IDSeverityCVSSDescription
CVE-2021-25762MEDIUM5.3In JetBrains Ktor before 1.4.3, HTTP Request Smuggling was possible.
CVE-2021-25761MEDIUM5.3In JetBrains Ktor before 1.5.0, a birthday attack on SessionStorage key was possible.
CVE-2021-25760MEDIUM5.3In JetBrains Hub before 2020.1.12669, information disclosure via the public API was possible.
CVE-2021-25759MEDIUM6.5In JetBrains Hub before 2020.1.12629, an authenticated user can delete 2FA settings of any other user.
CVE-2021-25758HIGH7.8In JetBrains IntelliJ IDEA before 2020.3, potentially insecure deserialization of the workspace model could lead to loca...
CVE-2021-25757MEDIUM6.1In JetBrains Hub before 2020.1.12629, an open redirect was possible.
CVE-2021-25756MEDIUM5.3In JetBrains IntelliJ IDEA before 2020.2, HTTP links were used for several remote repositories instead of HTTPS.
CVE-2021-25755LOW2.5In JetBrains Code With Me before 2020.3, an attacker on the local network, knowing a session ID, could get access to the...
CVE-2021-0365MEDIUM6.7In display driver, there is a possible memory corruption due to a use after free. This could lead to local escalation of...
CVE-2021-0364MEDIUM6.7In mobile_log_d, there is a possible command injection due to improper input validation. This could lead to local escala...
CVE-2021-0363MEDIUM6.7In mobile_log_d, there is a possible command injection due to a missing bounds check. This could lead to local escalatio...
CVE-2021-0362MEDIUM6.7In aee, there is a possible memory corruption due to a stack buffer overflow. This could lead to local escalation of pri...
CVE-2021-0361MEDIUM6.7In kisd, there is a possible out of bounds read due to improper input validation. This could lead to local escalation of...
CVE-2021-0360MEDIUM6.7In netdiag, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalatio...
CVE-2021-0359MEDIUM6.7In netdiag, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation o...
CVE-2021-0358MEDIUM6.7In netdiag, there is a possible command injection due to improper input validation. This could lead to local escalation ...
CVE-2021-0357MEDIUM6.7In netdiag, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation o...
CVE-2021-0356MEDIUM6.7In netdiag, there is a possible command injection due to improper input validation. This could lead to local escalation ...
CVE-2021-0355MEDIUM6.7In kisd, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of priv...
CVE-2021-0354MEDIUM6.7In ged, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privi...
CVE-2021-0353MEDIUM6.7In kisd, there is a possible memory corruption due to a heap buffer overflow. This could lead to local escalation of pri...
CVE-2021-0352MEDIUM4.4In RT regmap driver, there is a possible memory corruption due to type confusion. This could lead to local denial of ser...
CVE-2021-21043MEDIUM6.1ACS Commons version 4.9.2 (and earlier) suffers from a Reflected Cross-site Scripting (XSS) vulnerability in version-com...
CVE-2021-21294HIGH7.5Http4s (http4s-blaze-server) is a minimal, idiomatic Scala interface for HTTP services. Http4s before versions 0.21.17, ...
CVE-2021-21293HIGH7.5blaze is a Scala library for building asynchronous pipelines, with a focus on network IO. All servers running blaze-core...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now