2021 CVE Vulnerabilities
23,445 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-36085 | LOW | 3.3 | 0.5% | Jul 1, 2021 | The CIL compiler in SELinux 3.2 has a use-after-free in __cil_verify_classperms (called from __verify_map_perm_classperm... |
| CVE-2021-36084 | LOW | 3.3 | 0.5% | Jul 1, 2021 | The CIL compiler in SELinux 3.2 has a use-after-free in __cil_verify_classperms (called from __cil_verify_classpermissio... |
| CVE-2021-29480 | LOW | 3.1 | 0.3% | Jun 29, 2021 | Ratpack is a toolkit for creating web applications. In versions prior to 1.9.0, the client side session module uses the ... |
| CVE-2021-31506 | LOW | 3.3 | 1.4% | Jun 29, 2021 | This vulnerability allows remote attackers to disclose sensitive information on affected installations of OpenText Brava... |
| CVE-2021-28587 | LOW | 3.3 | 1.7% | Jun 28, 2021 | After Effects versions 18.0 (and earlier) are affected by an out-of-bounds read vulnerability that could lead to disclos... |
| CVE-2021-27040 | LOW | 3.3 | 2.7% | Jun 25, 2021 | A maliciously crafted DWG file can be forced to read beyond allocated boundaries when parsing the DWG file. This vulnera... |
| CVE-2021-29948 | LOW | 2.5 | 0.3% | Jun 24, 2021 | Signatures are written to disk before and read during verification, which might be subject to a race condition when a ma... |
| CVE-2021-24000 | LOW | 3.1 | 0.6% | Jun 24, 2021 | A race condition with requestPointerLock() and setTimeout() could have resulted in a user interacting with one tab when ... |
| CVE-2021-33604 | LOW | 2.5 | 0.3% | Jun 24, 2021 | URL encoding error in development mode handler in com.vaadin:flow-server versions 2.0.0 through 2.6.1 (Vaadin 14.0.0 thr... |
| CVE-2021-32823 | LOW | 3.7 | 1.9% | Jun 24, 2021 | In the bindata RubyGem before version 2.4.10 there is a potential denial-of-service vulnerability. In affected versions ... |
| CVE-2021-34397 | LOW | 2.3 | 0.2% | Jun 22, 2021 | Bootloader contains a vulnerability in NVIDIA MB2, which may cause free-the-wrong-heap, which may lead to limited denial... |
| CVE-2021-34396 | LOW | 2.3 | 0.2% | Jun 22, 2021 | Bootloader contains a vulnerability in access permission settings where unauthorized software may be able to overwrite N... |
| CVE-2021-22365 | LOW | 3.3 | 0.1% | Jun 22, 2021 | There is an out of bounds read vulnerability in eSE620X vESS V100R001C10SPC200, V100R001C20SPC200, V200R001C00SPC300. A ... |
| CVE-2021-34428 | LOW | 3.5 | 1.0% | Jun 22, 2021 | For Eclipse Jetty versions <= 9.4.40, <= 10.0.2, <= 11.0.2, if an exception is thrown from the SessionListener#sessionDe... |
| CVE-2021-32695 | LOW | 3.3 | 0.9% | Jun 17, 2021 | Nextcloud Android app is the Android client for Nextcloud. In versions prior to 3.16.1, a malicious app on the same devi... |
| CVE-2021-3595 | LOW | 3.8 | 0.3% | Jun 15, 2021 | An invalid pointer initialization issue was found in the SLiRP networking implementation of QEMU. The flaw exists in the... |
| CVE-2021-3594 | LOW | 3.8 | 0.3% | Jun 15, 2021 | An invalid pointer initialization issue was found in the SLiRP networking implementation of QEMU. The flaw exists in the... |
| CVE-2021-3593 | LOW | 3.8 | 0.3% | Jun 15, 2021 | An invalid pointer initialization issue was found in the SLiRP networking implementation of QEMU. The flaw exists in the... |
| CVE-2021-3592 | LOW | 3.8 | 0.3% | Jun 15, 2021 | An invalid pointer initialization issue was found in the SLiRP networking implementation of QEMU. The flaw exists in the... |
| CVE-2021-31501 | LOW | 3.3 | 1.1% | Jun 15, 2021 | This vulnerability allows remote attackers to disclose sensitive information on affected installations of OpenText Brava... |
| CVE-2021-31498 | LOW | 3.3 | 1.1% | Jun 15, 2021 | This vulnerability allows remote attackers to disclose sensitive information on affected installations of OpenText Brava... |
| CVE-2021-34682 | LOW | 3.7 | 0.7% | Jun 12, 2021 | Receita Federal IRPF 2021 1.7 allows a man-in-the-middle attack against the update feature. |
| CVE-2021-32556 | LOW | 3.3 | 0.3% | Jun 12, 2021 | It was discovered that the get_modified_conffiles() function in backends/packaging-apt-dpkg.py allowed injecting modifie... |
| CVE-2021-22898 | LOW | 3.1 | 4.4% | Jun 11, 2021 | curl 7.7 through 7.76.1 suffers from an information disclosure when the `-t` command line option, known as `CURLOPT_TELN... |
| CVE-2021-25409 | LOW | 2.4 | 0.1% | Jun 11, 2021 | Improper access in Notification setting prior to SMR JUN-2021 Release 1 allows physically proximate attackers to set arb... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now