2021 CVE Vulnerabilities
23,445 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-41312 | HIGH | 7.5 | 1.2% | Nov 3, 2021 | Affected versions of Atlassian Jira Server and Data Center allow a remote attacker who has had their access revoked from... |
| CVE-2021-38501 | HIGH | 8.8 | 1.0% | Nov 3, 2021 | Mozilla developers reported memory safety bugs present in Firefox 92 and Firefox ESR 91.1. Some of these bugs showed evi... |
| CVE-2021-38500 | HIGH | 8.8 | 1.2% | Nov 3, 2021 | Mozilla developers reported memory safety bugs present in Firefox 92 and Firefox ESR 91.1. Some of these bugs showed evi... |
| CVE-2021-38499 | HIGH | 8.8 | 0.8% | Nov 3, 2021 | Mozilla developers reported memory safety bugs present in Firefox 92. Some of these bugs showed evidence of memory corru... |
| CVE-2021-38498 | HIGH | 7.5 | 1.4% | Nov 3, 2021 | During process shutdown, a document could have caused a use-after-free of a languages service object, leading to memory ... |
| CVE-2021-38496 | HIGH | 8.8 | 1.6% | Nov 3, 2021 | During operations on MessageTasks, a task may have been removed while it was still scheduled, resulting in memory corrup... |
| CVE-2021-38495 | HIGH | 8.8 | 1.1% | Nov 3, 2021 | Mozilla developers reported memory safety bugs present in Thunderbird 78.13.0. Some of these bugs showed evidence of mem... |
| CVE-2021-38494 | HIGH | 8.8 | 0.8% | Nov 3, 2021 | Mozilla developers reported memory safety bugs present in Firefox 91. Some of these bugs showed evidence of memory corru... |
| CVE-2021-38493 | HIGH | 8.8 | 1.2% | Nov 3, 2021 | Mozilla developers reported memory safety bugs present in Firefox 91 and Firefox ESR 78.13. Some of these bugs showed ev... |
| CVE-2021-29993 | HIGH | 8.1 | 0.7% | Nov 3, 2021 | Firefox for Android allowed navigations through the `intent://` protocol, which could be used to cause crashes and UI sp... |
| CVE-2021-29991 | HIGH | 8.1 | 0.9% | Nov 3, 2021 | Firefox incorrectly accepted a newline in a HTTP/3 header, interpretting it as two separate headers. This allowed for a ... |
| CVE-2021-20707 | HIGH | 7.5 | 1.0% | Nov 3, 2021 | Improper input validation vulnerability in the Transaction Server CLUSTERPRO X 4.3 for Windows and earlier, EXPRESSCLUST... |
| CVE-2021-20706 | HIGH | 7.5 | 1.1% | Nov 3, 2021 | Improper input validation vulnerability in the WebManager CLUSTERPRO X 4.3 for Windows and earlier, EXPRESSCLUSTER X 4.3... |
| CVE-2021-20705 | HIGH | 7.5 | 1.1% | Nov 3, 2021 | Improper input validation vulnerability in the WebManager CLUSTERPRO X 4.3 for Windows and earlier, EXPRESSCLUSTER X 4.3... |
| CVE-2021-43270 | HIGH | 7.5 | 0.4% | Nov 2, 2021 | Datalust Seq.App.EmailPlus (aka seq-app-htmlemail) 3.1.0-dev-00148, 3.1.0-dev-00170, and 3.1.0-dev-00176 can use clearte... |
| CVE-2021-43266 | HIGH | 7.3 | 1.3% | Nov 2, 2021 | In Mahara before 20.04.5, 20.10.3, 21.04.2, and 21.10.0, exporting collections via PDF export could lead to code executi... |
| CVE-2021-42697 | HIGH | 7.5 | 36.1% | Nov 2, 2021 | Akka HTTP 10.1.x before 10.1.15 and 10.2.x before 10.2.7 can encounter stack exhaustion while parsing HTTP headers, whic... |
| CVE-2021-37993 | HIGH | 8.8 | 0.8% | Nov 2, 2021 | Use after free in PDF Accessibility in Google Chrome prior to 95.0.4638.54 allowed a remote attacker to potentially expl... |
| CVE-2021-37992 | HIGH | 8.8 | 0.9% | Nov 2, 2021 | Out of bounds read in WebAudio in Google Chrome prior to 95.0.4638.54 allowed a remote attacker to potentially exploit h... |
| CVE-2021-37991 | HIGH | 7.5 | 0.8% | Nov 2, 2021 | Race in V8 in Google Chrome prior to 95.0.4638.54 allowed a remote attacker to potentially exploit heap corruption via a... |
| CVE-2021-37988 | HIGH | 8.8 | 0.8% | Nov 2, 2021 | Use after free in Profiles in Google Chrome prior to 95.0.4638.54 allowed a remote attacker who convinced a user to enga... |
| CVE-2021-37987 | HIGH | 8.8 | 0.8% | Nov 2, 2021 | Use after free in Network APIs in Google Chrome prior to 95.0.4638.54 allowed a remote attacker to potentially exploit h... |
| CVE-2021-37986 | HIGH | 8.8 | 0.9% | Nov 2, 2021 | Heap buffer overflow in Settings in Google Chrome prior to 95.0.4638.54 allowed a remote attacker to engage with Dev Too... |
| CVE-2021-37985 | HIGH | 8.8 | 0.9% | Nov 2, 2021 | Use after free in V8 in Google Chrome prior to 95.0.4638.54 allowed a remote attacker who had convinced a user to allow ... |
| CVE-2021-37984 | HIGH | 8.8 | 1.0% | Nov 2, 2021 | Heap buffer overflow in PDFium in Google Chrome prior to 95.0.4638.54 allowed a remote attacker to potentially exploit h... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now