2021 CVE Vulnerabilities
23,445 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-44704 | HIGH | 7.8 | 10.8% | Jan 14, 2022 | Acrobat Reader DC version 21.007.20099 (and earlier), 20.004.30017 (and earlier) and 17.011.30204 (and earlier) are affe... |
| CVE-2021-44703 | HIGH | 7.8 | 57.3% | Jan 14, 2022 | Acrobat Reader DC version 21.007.20099 (and earlier), 20.004.30017 (and earlier) and 17.011.30204 (and earlier) are affe... |
| CVE-2021-44701 | HIGH | 7.8 | 20.9% | Jan 14, 2022 | Acrobat Reader DC version 21.007.20099 (and earlier), 20.004.30017 (and earlier) and 17.011.30204 (and earlier) are affe... |
| CVE-2021-3965 | HIGH | 7.5 | 5.2% | Jan 14, 2022 | Certain HP DesignJet products may be vulnerable to unauthenticated HTTP requests which allow viewing and downloading of ... |
| CVE-2021-39684 | HIGH | 7.8 | 0.1% | Jan 14, 2022 | In target_init of gs101/abl/target/slider/target.c, there is a possible allocation of RWX memory due to a logic error in... |
| CVE-2021-39682 | HIGH | 7.8 | 0.1% | Jan 14, 2022 | In mgm_alloc_page of memory_group_manager.c, there is a possible out of bounds write due to an incorrect bounds check. T... |
| CVE-2021-39681 | HIGH | 7.8 | 0.1% | Jan 14, 2022 | In delete_protocol of main.c, there is a possible arbitrary code execution due to a use after free. This could lead to l... |
| CVE-2021-39679 | HIGH | 7 | 0.1% | Jan 14, 2022 | In init of vendor_graphicbuffer_meta.cpp, there is a possible use after free due to a race condition. This could lead to... |
| CVE-2021-39678 | HIGH | 7.8 | 0.1% | Jan 14, 2022 | In <TBD> of <TBD>, there is a possible bypass of Factory Reset Protection due to <TBD>. This could lead to local escalat... |
| CVE-2021-39634 | HIGH | 7.8 | 0.2% | Jan 14, 2022 | In fs/eventpoll.c, there is a possible use after free. This could lead to local escalation of privilege with no addition... |
| CVE-2021-39632 | HIGH | 7.8 | 0.1% | Jan 14, 2022 | In inotify_cb of events.cpp, there is a possible out of bounds write due to an incorrect bounds check. This could lead t... |
| CVE-2021-39630 | HIGH | 7.8 | 0.1% | Jan 14, 2022 | In executeRequest of OverlayManagerService.java, there is a possible way to control fabricated overlays from adb shell d... |
| CVE-2021-39629 | HIGH | 7 | 0.1% | Jan 14, 2022 | In phTmlNfc_Init and phTmlNfc_CleanUp of phTmlNfc.cc, there is a possible use after free due to a race condition. This c... |
| CVE-2021-39627 | HIGH | 7.8 | 0.1% | Jan 14, 2022 | In sendLegacyVoicemailNotification of LegacyModeSmsHandler.java, there is a possible permissions bypass due to an unsafe... |
| CVE-2021-39626 | HIGH | 7.8 | 0.2% | Jan 14, 2022 | In onAttach of ConnectedDeviceDashboardFragment.java, there is a possible permission bypass due to a confused deputy. Th... |
| CVE-2021-39625 | HIGH | 7.3 | 0.1% | Jan 14, 2022 | In showCarrierAppInstallationNotification of EuiccNotificationManager.java, there is a possible way to gain an access to... |
| CVE-2021-39622 | HIGH | 7.8 | 0.1% | Jan 14, 2022 | In GBoard, there is a possible way to bypass Factory Reset Protection due to a missing permission check. This could lead... |
| CVE-2021-39621 | HIGH | 7.8 | 0.1% | Jan 14, 2022 | In sendLegacyVoicemailNotification of LegacyModeSmsHandler.java, there is a possible permissions bypass due to an unsafe... |
| CVE-2021-39620 | HIGH | 7.8 | 0.1% | Jan 14, 2022 | In ipcSetDataReference of Parcel.cpp, there is a possible way to corrupt memory due to a use after free. This could lead... |
| CVE-2021-39618 | HIGH | 7.8 | 0.1% | Jan 14, 2022 | In multiple methods of EuiccNotificationManager.java, there is a possible way to install existing packages without user ... |
| CVE-2021-28507 | HIGH | 7.1 | 0.7% | Jan 14, 2022 | An issue has recently been discovered in Arista EOS where, under certain conditions, the service ACL configured for Open... |
| CVE-2021-28501 | HIGH | 7.8 | 0.8% | Jan 14, 2022 | An issue has recently been discovered in Arista EOS where the incorrect use of EOS's AAA API’s by the OpenConfig and Ter... |
| CVE-2021-28500 | HIGH | 7.8 | 0.9% | Jan 14, 2022 | An issue has recently been discovered in Arista EOS where the incorrect use of EOS's AAA API’s by the OpenConfig and Ter... |
| CVE-2021-23567 | HIGH | 7.5 | 1.7% | Jan 14, 2022 | The package colors after 1.4.0 are vulnerable to Denial of Service (DoS) that was introduced through an infinite loop in... |
| CVE-2021-23157 | HIGH | 7.8 | 8.2% | Jan 14, 2022 | WECON LeviStudioU Versions 2019-09-21 and prior are vulnerable to a heap-based buffer overflow, which may allow an attac... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now