2021 CVE Vulnerabilities
23,445 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-30300 | HIGH | 7.5 | 0.6% | Jan 13, 2022 | Possible denial of service due to incorrectly decoding hex data for the SIB2 OTA message and assigning a garbage value t... |
| CVE-2021-30287 | HIGH | 7.5 | 0.6% | Jan 13, 2022 | Possible assertion due to improper validation of symbols configured for PDCCH monitoring in Snapdragon Auto, Snapdragon ... |
| CVE-2021-30285 | HIGH | 8.8 | 0.1% | Jan 13, 2022 | Improper validation of memory region in Hypervisor can lead to incorrect region mapping in Snapdragon Auto, Snapdragon C... |
| CVE-2021-43860 | HIGH | 8.6 | 1.3% | Jan 12, 2022 | Flatpak is a Linux application sandboxing and distribution framework. Prior to versions 1.12.3 and 1.10.6, Flatpak doesn... |
| CVE-2021-42559 | HIGH | 8.8 | 2.0% | Jan 12, 2022 | An issue was discovered in CALDERA 2.8.1. It contains multiple startup "requirements" that execute commands when startin... |
| CVE-2021-41597 | HIGH | 8.8 | 1.0% | Jan 12, 2022 | SuiteCRM through 7.11.21 is vulnerable to CSRF, with resultant remote code execution, via the UpgradeWizard functionalit... |
| CVE-2021-42562 | HIGH | 8.1 | 1.2% | Jan 12, 2022 | An issue was discovered in CALDERA 2.8.1. It does not properly segregate user privileges, resulting in non-admin users h... |
| CVE-2021-42561 | HIGH | 8.8 | 19.6% | Jan 12, 2022 | An issue was discovered in CALDERA 2.8.1. When activated, the Human plugin passes the unsanitized name parameter to a py... |
| CVE-2021-42560 | HIGH | 8.8 | 2.1% | Jan 12, 2022 | An issue was discovered in CALDERA 2.9.0. The Debrief plugin receives base64 encoded "SVG" parameters when generating a ... |
| CVE-2021-36417 | HIGH | 7.8 | 1.1% | Jan 12, 2022 | A heap-based buffer overflow vulnerability exists in GPAC v1.0.1 in the gf_isom_dovi_config_get function in MP4Box, whic... |
| CVE-2021-45445 | HIGH | 7.5 | 1.0% | Jan 12, 2022 | Unisys ClearPath MCP TCP/IP Networking Services 59.1, 60.0, and 62.0 has an Infinite Loop. |
| CVE-2021-44652 | HIGH | 7.8 | 2.6% | Jan 12, 2022 | Zoho ManageEngine O365 Manager Plus before Build 4416 allows remote code execution via BCP file overwrite through the Ch... |
| CVE-2021-44651 | HIGH | 8.8 | 5.3% | Jan 12, 2022 | Zoho ManageEngine CloudSecurityPlus before Build 4117 allows remote code execution through the updatePersonalizeSettings... |
| CVE-2021-4080 | HIGH | 8.8 | 1.5% | Jan 12, 2022 | crater is vulnerable to Unrestricted Upload of File with Dangerous Type |
| CVE-2021-44650 | HIGH | 7.2 | 4.8% | Jan 12, 2022 | Zoho ManageEngine M365 Manager Plus before Build 4419 allows remote command execution when updating proxy settings throu... |
| CVE-2021-44648 | HIGH | 8.8 | 1.9% | Jan 12, 2022 | GNOME gdk-pixbuf 2.42.6 is vulnerable to a heap-buffer overflow vulnerability when decoding the lzw compressed stream of... |
| CVE-2021-3852 | HIGH | 7.5 | 0.8% | Jan 12, 2022 | growi is vulnerable to Authorization Bypass Through User-Controlled Key |
| CVE-2021-43999 | HIGH | 8.8 | 1.8% | Jan 11, 2022 | Apache Guacamole 1.2.0 and 1.3.0 do not properly validate responses received from a SAML identity provider. If SAML supp... |
| CVE-2021-43973 | HIGH | 8.8 | 1.7% | Jan 11, 2022 | An unrestricted file upload vulnerability in /UploadPsIcon.jsp in SysAid ITIL 20.4.74 b10 allows a remote authenticated ... |
| CVE-2021-43971 | HIGH | 8.8 | 1.7% | Jan 11, 2022 | A SQL injection vulnerability in /mobile/SelectUsers.jsp in SysAid ITIL 20.4.74 b10 allows a remote authenticated attack... |
| CVE-2021-43055 | HIGH | 8.8 | 0.7% | Jan 11, 2022 | The eFTL Server component of TIBCO Software Inc.'s TIBCO eFTL - Community Edition, TIBCO eFTL - Developer Edition, and T... |
| CVE-2021-43054 | HIGH | 8.8 | 0.7% | Jan 11, 2022 | The eFTL Server component of TIBCO Software Inc.'s TIBCO eFTL - Community Edition, TIBCO eFTL - Developer Edition, and T... |
| CVE-2021-43053 | HIGH | 7.5 | 0.8% | Jan 11, 2022 | The Realm Server component of TIBCO Software Inc.'s TIBCO FTL - Community Edition, TIBCO FTL - Developer Edition, and TI... |
| CVE-2021-43052 | HIGH | 7.5 | 0.9% | Jan 11, 2022 | The Realm Server component of TIBCO Software Inc.'s TIBCO FTL - Community Edition, TIBCO FTL - Developer Edition, and TI... |
| CVE-2021-34704 | HIGH | 7.5 | 1.3% | Jan 11, 2022 | A vulnerability in the web services interface of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Th... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now