2021 CVE Vulnerabilities

23,445 CVEs published in 2021.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2021-29990HIGH8.8Mozilla developers and community members reported memory safety bugs present in Firefox 90. Some of these bugs showed ev...
CVE-2021-29989HIGH8.8Mozilla developers reported memory safety bugs present in Firefox 90 and Firefox ESR 78.12. Some of these bugs showed ev...
CVE-2021-29988HIGH8.8Firefox incorrectly treated an inline list-item element as a block element, resulting in an out of bounds read or memory...
CVE-2021-29986HIGH8.1A suspected race condition when calling getaddrinfo led to memory corruption and a potentially exploitable crash. *Note:...
CVE-2021-29985HIGH8.8A use-after-free vulnerability in media channels could have led to memory corruption and a potentially exploitable crash...
CVE-2021-29984HIGH8.8Instruction reordering resulted in a sequence of instructions that would cause an object to be incorrectly considered du...
CVE-2021-29981HIGH8.8An issue present in lowering/register allocation could have led to obscure but deterministic register confusion failures...
CVE-2021-29980HIGH8.8Uninitialized memory in a canvas object could have caused an incorrect free() leading to memory corruption and a potenti...
CVE-2021-39242HIGH7.5An issue was discovered in HAProxy 2.2 before 2.2.16, 2.3 before 2.3.13, and 2.4 before 2.4.3. It can lead to a situatio...
CVE-2021-39240HIGH7.5An issue was discovered in HAProxy 2.2 before 2.2.16, 2.3 before 2.3.13, and 2.4 before 2.4.3. It does not ensure that t...
CVE-2021-25263HIGH7.8Local privilege vulnerability in Yandex Browser for Windows prior to 21.9.0.390 allows a local, low privileged, attacker...
CVE-2021-0646HIGH7.8In sqlite3_str_vappendf of sqlite3.c, there is a possible out of bounds write due to improper input validation. This cou...
CVE-2021-0645HIGH7.8In shouldBlockFromTree of ExternalStorageProvider.java, there is a possible permissions bypass. This could lead to local...
CVE-2021-0640HIGH7.8In noteAtomLogged of StatsdStats.cpp, there is a possible out of bounds write due to a missing bounds check. This could ...
CVE-2021-0593HIGH7.8In sendDevicePickedIntent of DevicePickerFragment.java, there is a possible way to invoke a privileged broadcast receive...
CVE-2021-0591HIGH7.3In sendReplyIntentToReceiver of BluetoothPermissionActivity.java, there is a possible way to invoke privileged broadcast...
CVE-2021-0576HIGH7.8In flv extractor, there is a possible out of bounds write due to a missing bounds check. This could lead to local escala...
CVE-2021-0574HIGH7.8In asf extractor, there is a possible out of bounds write due to a missing bounds check. This could lead to local escala...
CVE-2021-0573HIGH7.8In asf extractor, there is a possible out of bounds write due to a missing bounds check. This could lead to local escala...
CVE-2021-0519HIGH7.8In BITSTREAM_FLUSH of ih264e_bitstream.h, there is a possible out of bounds write due to a heap buffer overflow. This co...
CVE-2021-32830HIGH7The @diez/generation npm package is a client for Diez. The locateFont method of @diez/generation has a command injection...
CVE-2021-3633HIGH7.8A DLL preloading vulnerability was reported in Lenovo Driver Management prior to version 2.9.0719.1104 that could allow ...
CVE-2021-3617HIGH7.2A vulnerability was reported in Lenovo Smart Camera X3, X5, and C2E that could allow command injection by setting a spec...
CVE-2021-25957HIGH8.8In “Dolibarr” application, v2.8.1 to v13.0.2 are vulnerable to account takeover via password reset functionality. A low ...
CVE-2021-25956HIGH7.2In “Dolibarr” application, v3.3.beta1_20121221 to v13.0.2 have “Modify” access for admin level users to change other use...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now