2021 CVE Vulnerabilities
23,445 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-33451 | MEDIUM | 5.5 | 0.3% | Jul 26, 2022 | An issue was discovered in lrzip version 0.641. There are memory leaks in fill_buffer() in stream.c. |
| CVE-2021-33450 | MEDIUM | 5.5 | 0.3% | Jul 26, 2022 | An issue was discovered in NASM version 2.16rc0. There are memory leaks in nasm_calloc() in nasmlib/alloc.c. |
| CVE-2021-33449 | MEDIUM | 5.5 | 0.3% | Jul 26, 2022 | An issue was discovered in mjs (mJS: Restricted JavaScript engine), ES6 (JavaScript version 6). There is NULL pointer de... |
| CVE-2021-33448 | MEDIUM | 5.5 | 0.3% | Jul 26, 2022 | An issue was discovered in mjs(mJS: Restricted JavaScript engine), ES6 (JavaScript version 6). There is stack buffer ove... |
| CVE-2021-33447 | MEDIUM | 5.5 | 0.3% | Jul 26, 2022 | An issue was discovered in mjs (mJS: Restricted JavaScript engine), ES6 (JavaScript version 6). There is NULL pointer de... |
| CVE-2021-33446 | MEDIUM | 5.5 | 0.3% | Jul 26, 2022 | An issue was discovered in mjs (mJS: Restricted JavaScript engine), ES6 (JavaScript version 6). There is NULL pointer de... |
| CVE-2021-33445 | MEDIUM | 5.5 | 0.3% | Jul 26, 2022 | An issue was discovered in mjs (mJS: Restricted JavaScript engine), ES6 (JavaScript version 6). There is NULL pointer de... |
| CVE-2021-33444 | MEDIUM | 5.5 | 0.3% | Jul 26, 2022 | An issue was discovered in mjs (mJS: Restricted JavaScript engine), ES6 (JavaScript version 6). There is NULL pointer de... |
| CVE-2021-33443 | MEDIUM | 5.5 | 0.3% | Jul 26, 2022 | An issue was discovered in mjs (mJS: Restricted JavaScript engine), ES6 (JavaScript version 6). There is stack buffer ov... |
| CVE-2021-33442 | MEDIUM | 5.5 | 0.3% | Jul 26, 2022 | An issue was discovered in mjs (mJS: Restricted JavaScript engine), ES6 (JavaScript version 6). There is NULL pointer de... |
| CVE-2021-33441 | MEDIUM | 5.5 | 0.3% | Jul 26, 2022 | An issue was discovered in mjs (mJS: Restricted JavaScript engine), ES6 (JavaScript version 6). There is NULL pointer de... |
| CVE-2021-33440 | MEDIUM | 5.5 | 0.3% | Jul 26, 2022 | An issue was discovered in mjs (mJS: Restricted JavaScript engine), ES6 (JavaScript version 6). There is NULL pointer de... |
| CVE-2021-33439 | MEDIUM | 5.5 | 0.3% | Jul 26, 2022 | An issue was discovered in mjs (mJS: Restricted JavaScript engine), ES6 (JavaScript version 6). There is Integer overflo... |
| CVE-2021-33438 | MEDIUM | 5.5 | 0.3% | Jul 26, 2022 | An issue was discovered in mjs (mJS: Restricted JavaScript engine), ES6 (JavaScript version 6). There is stack buffer ov... |
| CVE-2021-33437 | MEDIUM | 5.5 | 0.3% | Jul 26, 2022 | An issue was discovered in mjs (mJS: Restricted JavaScript engine), ES6 (JavaScript version 6). There are memory leaks i... |
| CVE-2021-43959 | MEDIUM | 5.7 | 0.6% | Jul 26, 2022 | Affected versions of Atlassian Jira Service Management Server and Data Center allow authenticated remote attackers to ac... |
| CVE-2021-40336 | HIGH | 8.8 | 0.4% | Jul 25, 2022 | A vulnerability exists in the http web interface where the web interface does not validate data in an HTTP header. This ... |
| CVE-2021-40335 | HIGH | 8.8 | 0.2% | Jul 25, 2022 | A vulnerability exists in the HTTP web interface where the web interface does not sufficiently verify if a well-formed, ... |
| CVE-2021-23451 | CRITICAL | 9.8 | 0.7% | Jul 25, 2022 | The package otp-generator before 3.0.0 are vulnerable to Insecure Randomness due to insecure generation of random one-ti... |
| CVE-2021-23397 | CRITICAL | 9.8 | 0.7% | Jul 25, 2022 | All versions of package @ianwalter/merge are vulnerable to Prototype Pollution via the main (merge) function. Maintainer... |
| CVE-2021-23373 | CRITICAL | 9.8 | 1.0% | Jul 25, 2022 | All versions of package set-deep-prop are vulnerable to Prototype Pollution via the main functionality. |
| CVE-2021-46829 | HIGH | 7.8 | 0.7% | Jul 24, 2022 | GNOME GdkPixbuf (aka GDK-PixBuf) before 2.42.8 allows a heap-based buffer overflow when compositing or clearing frames i... |
| CVE-2021-36200 | MEDIUM | 5.3 | 0.5% | Jul 22, 2022 | Under certain circumstances an unauthenticated user could access the the web API for Metasys ADS/ADX/OAS 10 versions pri... |
| CVE-2021-36849 | MEDIUM | 4.8 | 0.4% | Jul 20, 2022 | Authenticated (admin+) Stored Cross-Site Scripting (XSS) vulnerability in René Hermenau's Social Media Share Buttons plu... |
| CVE-2021-38936 | MEDIUM | 4.9 | 0.7% | Jul 20, 2022 | IBM QRadar SIEM 7.3, 7.4, and 7.5 could disclose highly sensitive information to a privileged user. IBM X-Force ID: 2108... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now