2021 CVE Vulnerabilities
23,445 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-37983 | HIGH | 8.8 | 0.9% | Nov 2, 2021 | Use after free in Dev Tools in Google Chrome prior to 95.0.4638.54 allowed a remote attacker to potentially exploit heap... |
| CVE-2021-37982 | HIGH | 8.8 | 0.9% | Nov 2, 2021 | Use after free in Incognito in Google Chrome prior to 95.0.4638.54 allowed a remote attacker to potentially exploit heap... |
| CVE-2021-37980 | HIGH | 7.4 | 1.4% | Nov 2, 2021 | Inappropriate implementation in Sandbox in Google Chrome prior to 94.0.4606.81 allowed a remote attacker to potentially ... |
| CVE-2021-37979 | HIGH | 8.8 | 1.7% | Nov 2, 2021 | heap buffer overflow in WebRTC in Google Chrome prior to 94.0.4606.81 allowed a remote attacker who convinced a user to ... |
| CVE-2021-37978 | HIGH | 8.8 | 1.0% | Nov 2, 2021 | Heap buffer overflow in Blink in Google Chrome prior to 94.0.4606.81 allowed a remote attacker to potentially exploit he... |
| CVE-2021-37977 | HIGH | 8.8 | 0.9% | Nov 2, 2021 | Use after free in Garbage Collection in Google Chrome prior to 94.0.4606.81 allowed a remote attacker to potentially exp... |
| CVE-2021-41022 | HIGH | 7.8 | 0.2% | Nov 2, 2021 | A improper privilege management in Fortinet FortiSIEM Windows Agent version 4.1.4 and below allows attacker to execute p... |
| CVE-2021-36187 | HIGH | 7.5 | 1.4% | Nov 2, 2021 | A uncontrolled resource consumption in Fortinet FortiWeb version 6.4.0, version 6.3.15 and below, 6.2.5 and below allows... |
| CVE-2021-36185 | HIGH | 8.8 | 1.9% | Nov 2, 2021 | A improper neutralization of special elements used in an OS command ('OS Command Injection') in Fortinet FortiWLM versio... |
| CVE-2021-36183 | HIGH | 7.8 | 0.3% | Nov 2, 2021 | An improper authorization vulnerability [CWE-285] in FortiClient for Windows versions 7.0.1 and below and 6.4.2 and belo... |
| CVE-2021-36174 | HIGH | 7.5 | 0.8% | Nov 2, 2021 | A memory allocation with excessive size value vulnerability in the license verification function of FortiPortal before 6... |
| CVE-2021-41238 | HIGH | 7.5 | 0.9% | Nov 2, 2021 | Hangfire is an open source system to perform background job processing in a .NET or .NET Core applications. No Windows S... |
| CVE-2021-36172 | HIGH | 8.1 | 0.8% | Nov 2, 2021 | An improper restriction of XML external entity reference vulnerability in the parser of XML responses of FortiPortal bef... |
| CVE-2021-29888 | HIGH | 8.8 | 0.5% | Nov 2, 2021 | IBM InfoSphere Information Server 11.7 is vulnerable to cross-site request forgery which could allow an attacker to exec... |
| CVE-2021-29875 | HIGH | 7.5 | 1.1% | Nov 2, 2021 | IBM InfoSphere Information Server 11.7 could allow an attacker to obtain sensitive information due to a insecure third p... |
| CVE-2021-29737 | HIGH | 7.5 | 0.7% | Nov 2, 2021 | IBM InfoSphere Data Flow Designer Engine (IBM InfoSphere Information Server 11.7 ) component has improper validation of ... |
| CVE-2021-36925 | HIGH | 7.8 | 0.3% | Nov 2, 2021 | RtsUpx.sys in Realtek RtsUpx USB Utility Driver for Camera/Hub/Audio through 1.14.0.0 allows local low-privileged users ... |
| CVE-2021-36924 | HIGH | 7.8 | 0.2% | Nov 2, 2021 | RtsUpx.sys in Realtek RtsUpx USB Utility Driver for Camera/Hub/Audio through 1.14.0.0 allows local low-privileged users ... |
| CVE-2021-36923 | HIGH | 7.8 | 0.3% | Nov 2, 2021 | RtsUpx.sys in Realtek RtsUpx USB Utility Driver for Camera/Hub/Audio through 1.14.0.0 allows local low-privileged users ... |
| CVE-2021-36922 | HIGH | 7.8 | 0.3% | Nov 2, 2021 | RtsUpx.sys in Realtek RtsUpx USB Utility Driver for Camera/Hub/Audio through 1.14.0.0 allows local low-privileged users ... |
| CVE-2021-42763 | HIGH | 7.5 | 0.6% | Nov 2, 2021 | Couchbase Server before 6.6.3 and 7.x before 7.0.2 stores Sensitive Information in Cleartext. The issue occurs when the ... |
| CVE-2021-37842 | HIGH | 7.5 | 0.6% | Nov 2, 2021 | metakv in Couchbase Server 7.0.0 uses Cleartext for Storage of Sensitive Information. Remote Cluster XDCR credentials ca... |
| CVE-2021-3765 | HIGH | 7.5 | 1.7% | Nov 2, 2021 | validator.js is vulnerable to Inefficient Regular Expression Complexity |
| CVE-2021-41187 | HIGH | 8.8 | 0.8% | Nov 1, 2021 | DHIS 2 is an information system for data capture, management, validation, analytics and visualization. A SQL injection s... |
| CVE-2021-39341 | HIGH | 8.2 | 23.3% | Nov 1, 2021 | The OptinMonster WordPress plugin is vulnerable to sensitive information disclosure and unauthorized setting updates due... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now