2021 CVE Vulnerabilities
23,445 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-39929 | HIGH | 7.5 | 3.6% | Nov 19, 2021 | Uncontrolled Recursion in the Bluetooth DHT dissector in Wireshark 3.4.0 to 3.4.9 and 3.2.0 to 3.2.17 allows denial of s... |
| CVE-2021-39926 | HIGH | 7.5 | 7.5% | Nov 19, 2021 | Buffer overflow in the Bluetooth HCI_ISO dissector in Wireshark 3.4.0 to 3.4.9 allows denial of service via packet injec... |
| CVE-2021-39925 | HIGH | 7.5 | 7.9% | Nov 19, 2021 | Buffer overflow in the Bluetooth SDP dissector in Wireshark 3.4.0 to 3.4.9 and 3.2.0 to 3.2.17 allows denial of service ... |
| CVE-2021-39924 | HIGH | 7.5 | 4.9% | Nov 19, 2021 | Large loop in the Bluetooth DHT dissector in Wireshark 3.4.0 to 3.4.9 and 3.2.0 to 3.2.17 allows denial of service via p... |
| CVE-2021-39923 | HIGH | 7.5 | 1.5% | Nov 19, 2021 | Large loop in the PNRP dissector in Wireshark 3.4.0 to 3.4.9 and 3.2.0 to 3.2.17 allows denial of service via packet inj... |
| CVE-2021-39922 | HIGH | 7.5 | 5.2% | Nov 19, 2021 | Buffer overflow in the C12.22 dissector in Wireshark 3.4.0 to 3.4.9 and 3.2.0 to 3.2.17 allows denial of service via pac... |
| CVE-2021-39921 | HIGH | 7.5 | 3.2% | Nov 19, 2021 | NULL pointer exception in the Modbus dissector in Wireshark 3.4.0 to 3.4.9 and 3.2.0 to 3.2.17 allows denial of service ... |
| CVE-2021-29329 | HIGH | 7.8 | 0.7% | Nov 19, 2021 | OpenSource Moddable v10.5.0 was discovered to contain a stack overflow in the fxBinaryExpressionNodeDistribute function ... |
| CVE-2021-29328 | HIGH | 7.1 | 0.7% | Nov 19, 2021 | OpenSource Moddable v10.5.0 was discovered to contain buffer over-read in the fxDebugThrow function at /moddable/xs/sour... |
| CVE-2021-29327 | HIGH | 7.8 | 0.7% | Nov 19, 2021 | OpenSource Moddable v10.5.0 was discovered to contain a heap buffer overflow in the fx_ArrayBuffer function at /moddable... |
| CVE-2021-29326 | HIGH | 7.8 | 0.7% | Nov 19, 2021 | OpenSource Moddable v10.5.0 was discovered to contain a heap buffer overflow in the fxIDToString function at /moddable/x... |
| CVE-2021-29325 | HIGH | 7.8 | 0.7% | Nov 19, 2021 | OpenSource Moddable v10.5.0 was discovered to contain a heap buffer overflow in the fx_String_prototype_repeat function ... |
| CVE-2021-29324 | HIGH | 7.8 | 0.7% | Nov 19, 2021 | OpenSource Moddable v10.5.0 was discovered to contain a stack overflow via the component /moddable/xs/sources/xsScript.c... |
| CVE-2021-43408 | HIGH | 8.8 | 9.8% | Nov 19, 2021 | The "Duplicate Post" WordPress plugin up to and including version 1.1.9 is vulnerable to SQL Injection. SQL injection vu... |
| CVE-2021-39353 | HIGH | 8.8 | 0.7% | Nov 19, 2021 | The Easy Registration Forms WordPress plugin is vulnerable to Cross-Site Request Forgery due to missing nonce validation... |
| CVE-2021-22053 | HIGH | 8.8 | 12.7% | Nov 19, 2021 | Applications using both `spring-cloud-netflix-hystrix-dashboard` and `spring-boot-starter-thymeleaf` expose a way to exe... |
| CVE-2021-41436 | HIGH | 7.5 | 4.6% | Nov 19, 2021 | An HTTP request smuggling in web application in ASUS ROG Rapture GT-AX11000, RT-AX3000, RT-AX55, RT-AX56U, RT-AX56U_V2, ... |
| CVE-2021-3973 | HIGH | 7.8 | 1.7% | Nov 19, 2021 | vim is vulnerable to Heap-based Buffer Overflow |
| CVE-2021-3968 | HIGH | 8 | 2.1% | Nov 19, 2021 | vim is vulnerable to Heap-based Buffer Overflow |
| CVE-2021-3974 | HIGH | 7.8 | 1.3% | Nov 19, 2021 | vim is vulnerable to Use After Free |
| CVE-2021-39236 | HIGH | 8.8 | 2.5% | Nov 19, 2021 | In Apache Ozone before 1.2.0, Authenticated users with valid Ozone S3 credentials can create specific OM requests, imper... |
| CVE-2021-39232 | HIGH | 8.8 | 1.6% | Nov 19, 2021 | In Apache Ozone versions prior to 1.2.0, certain admin related SCM commands can be executed by any authenticated users, ... |
| CVE-2021-37322 | HIGH | 7.8 | 0.9% | Nov 18, 2021 | GCC c++filt v2.26 was discovered to contain a use-after-free vulnerability via the component cplus-dem.c. |
| CVE-2021-39928 | HIGH | 7.5 | 5.5% | Nov 18, 2021 | NULL pointer exception in the IEEE 802.11 dissector in Wireshark 3.4.0 to 3.4.9 and 3.2.0 to 3.2.17 allows denial of ser... |
| CVE-2021-39920 | HIGH | 7.5 | 3.2% | Nov 18, 2021 | NULL pointer exception in the IPPUSB dissector in Wireshark 3.4.0 to 3.4.9 allows denial of service via packet injection... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now