2021 CVE Vulnerabilities
23,445 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-25262 | MEDIUM | 5.4 | 0.4% | May 21, 2025 | Yandex Browser for Android prior to version 21.3.0 allows remote attackers to perform IDN homograph attack. |
| CVE-2021-25255 | HIGH | 7.5 | 0.7% | May 21, 2025 | Yandex Browser Lite for Android prior to version 21.1.0 allows remote attackers to cause a denial of service. |
| CVE-2021-25254 | MEDIUM | 5.3 | 0.5% | May 21, 2025 | Yandex Browser Lite for Android before 21.1.0 allows remote attackers to spoof the address bar. |
| CVE-2021-43069 | — | — | — | May 6, 2025 | Rejected reason: Not used |
| CVE-2021-32601 | — | — | — | Apr 25, 2025 | Rejected reason: Not used |
| CVE-2021-47664 | MEDIUM | 5.3 | 0.3% | Apr 24, 2025 | Due to improper authentication mechanism an unauthenticated remote attacker can enumerate valid usernames. |
| CVE-2021-47663 | HIGH | 8.1 | 0.4% | Apr 24, 2025 | Due to improper JSON Web Tokens implementation an unauthenticated remote attacker can guess a valid session ID and there... |
| CVE-2021-47662 | HIGH | 7.5 | 0.4% | Apr 24, 2025 | Due to missing authorization an unauthenticated remote attacker can cause a DoS attack by connecting via HTTPS and trigg... |
| CVE-2021-4455 | CRITICAL | 9.8 | 0.6% | Apr 19, 2025 | The Wordpress Plugin Smart Product Review plugin for WordPress is vulnerable to arbitrary file uploads due to missing fi... |
| CVE-2021-47671 | LOW | 3.3 | 0.1% | Apr 17, 2025 | In the Linux kernel, the following vulnerability has been resolved: can: etas_es58x: es58x_rx_err_msg(): fix memory lea... |
| CVE-2021-47670 | HIGH | 8.8 | 0.2% | Apr 17, 2025 | In the Linux kernel, the following vulnerability has been resolved: can: peak_usb: fix use after free bugs After calli... |
| CVE-2021-47669 | HIGH | 7.8 | 0.2% | Apr 17, 2025 | In the Linux kernel, the following vulnerability has been resolved: can: vxcan: vxcan_xmit: fix use after free bug Aft... |
| CVE-2021-47668 | HIGH | 8.8 | 0.2% | Apr 17, 2025 | In the Linux kernel, the following vulnerability has been resolved: can: dev: can_restart: fix use after free bug Afte... |
| CVE-2021-27289 | CRITICAL | 9.1 | 0.7% | Apr 15, 2025 | A replay attack vulnerability was discovered in a Zigbee smart home kit manufactured by Ksix (Zigbee Gateway Module = v1... |
| CVE-2021-47667 | CRITICAL | 10 | 26.3% | Apr 5, 2025 | An OS command injection vulnerability in lib/NSSDropoff.php in ZendTo 5.24-3 through 6.x before 6.10-7 allows unauthenti... |
| CVE-2021-24008 | MEDIUM | 5.3 | 0.4% | Mar 28, 2025 | An exposure of sensitive system information to an unauthorized control sphere vulnerability [CWE-497] in FortiDDoS versi... |
| CVE-2021-4454 | MEDIUM | 5.5 | 0.2% | Mar 27, 2025 | In the Linux kernel, the following vulnerability has been resolved: can: j1939: fix errant WARN_ON_ONCE in j1939_sessio... |
| CVE-2021-26105 | HIGH | 8.8 | 0.5% | Mar 24, 2025 | A stack-based buffer overflow vulnerability (CWE-121) in the profile parser of FortiSandbox version 3.2.2 and below, ver... |
| CVE-2021-26091 | HIGH | 7.5 | 0.3% | Mar 24, 2025 | A use of a cryptographically weak pseudo-random number generator vulnerability in the authenticator of the Identity Base... |
| CVE-2021-25635 | MEDIUM | 5.5 | 0.1% | Mar 21, 2025 | An Improper Certificate Validation vulnerability in LibreOffice allowed an attacker to self sign an ODF document, with ... |
| CVE-2021-44789 | — | — | — | Mar 17, 2025 | Rejected reason: Not used |
| CVE-2021-44788 | — | — | — | Mar 17, 2025 | Rejected reason: Not used |
| CVE-2021-44787 | — | — | — | Mar 17, 2025 | Rejected reason: Not used |
| CVE-2021-44786 | — | — | — | Mar 17, 2025 | Rejected reason: Not used |
| CVE-2021-44785 | — | — | — | Mar 17, 2025 | Rejected reason: Not used |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now