2021 CVE Vulnerabilities
23,445 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-29990 | HIGH | 8.8 | 1.0% | Aug 17, 2021 | Mozilla developers and community members reported memory safety bugs present in Firefox 90. Some of these bugs showed ev... |
| CVE-2021-29989 | HIGH | 8.8 | 1.3% | Aug 17, 2021 | Mozilla developers reported memory safety bugs present in Firefox 90 and Firefox ESR 78.12. Some of these bugs showed ev... |
| CVE-2021-29988 | HIGH | 8.8 | 1.4% | Aug 17, 2021 | Firefox incorrectly treated an inline list-item element as a block element, resulting in an out of bounds read or memory... |
| CVE-2021-29986 | HIGH | 8.1 | 1.3% | Aug 17, 2021 | A suspected race condition when calling getaddrinfo led to memory corruption and a potentially exploitable crash. *Note:... |
| CVE-2021-29985 | HIGH | 8.8 | 1.5% | Aug 17, 2021 | A use-after-free vulnerability in media channels could have led to memory corruption and a potentially exploitable crash... |
| CVE-2021-29984 | HIGH | 8.8 | 1.4% | Aug 17, 2021 | Instruction reordering resulted in a sequence of instructions that would cause an object to be incorrectly considered du... |
| CVE-2021-29981 | HIGH | 8.8 | 1.0% | Aug 17, 2021 | An issue present in lowering/register allocation could have led to obscure but deterministic register confusion failures... |
| CVE-2021-29980 | HIGH | 8.8 | 1.4% | Aug 17, 2021 | Uninitialized memory in a canvas object could have caused an incorrect free() leading to memory corruption and a potenti... |
| CVE-2021-39242 | HIGH | 7.5 | 2.3% | Aug 17, 2021 | An issue was discovered in HAProxy 2.2 before 2.2.16, 2.3 before 2.3.13, and 2.4 before 2.4.3. It can lead to a situatio... |
| CVE-2021-39240 | HIGH | 7.5 | 2.3% | Aug 17, 2021 | An issue was discovered in HAProxy 2.2 before 2.2.16, 2.3 before 2.3.13, and 2.4 before 2.4.3. It does not ensure that t... |
| CVE-2021-25263 | HIGH | 7.8 | 0.3% | Aug 17, 2021 | Local privilege vulnerability in Yandex Browser for Windows prior to 21.9.0.390 allows a local, low privileged, attacker... |
| CVE-2021-0646 | HIGH | 7.8 | 0.1% | Aug 17, 2021 | In sqlite3_str_vappendf of sqlite3.c, there is a possible out of bounds write due to improper input validation. This cou... |
| CVE-2021-0645 | HIGH | 7.8 | 0.3% | Aug 17, 2021 | In shouldBlockFromTree of ExternalStorageProvider.java, there is a possible permissions bypass. This could lead to local... |
| CVE-2021-0640 | HIGH | 7.8 | 0.2% | Aug 17, 2021 | In noteAtomLogged of StatsdStats.cpp, there is a possible out of bounds write due to a missing bounds check. This could ... |
| CVE-2021-0593 | HIGH | 7.8 | 0.1% | Aug 17, 2021 | In sendDevicePickedIntent of DevicePickerFragment.java, there is a possible way to invoke a privileged broadcast receive... |
| CVE-2021-0591 | HIGH | 7.3 | 0.4% | Aug 17, 2021 | In sendReplyIntentToReceiver of BluetoothPermissionActivity.java, there is a possible way to invoke privileged broadcast... |
| CVE-2021-0576 | HIGH | 7.8 | 0.1% | Aug 17, 2021 | In flv extractor, there is a possible out of bounds write due to a missing bounds check. This could lead to local escala... |
| CVE-2021-0574 | HIGH | 7.8 | 0.1% | Aug 17, 2021 | In asf extractor, there is a possible out of bounds write due to a missing bounds check. This could lead to local escala... |
| CVE-2021-0573 | HIGH | 7.8 | 0.1% | Aug 17, 2021 | In asf extractor, there is a possible out of bounds write due to a missing bounds check. This could lead to local escala... |
| CVE-2021-0519 | HIGH | 7.8 | 0.2% | Aug 17, 2021 | In BITSTREAM_FLUSH of ih264e_bitstream.h, there is a possible out of bounds write due to a heap buffer overflow. This co... |
| CVE-2021-32830 | HIGH | 7 | 1.9% | Aug 17, 2021 | The @diez/generation npm package is a client for Diez. The locateFont method of @diez/generation has a command injection... |
| CVE-2021-3633 | HIGH | 7.8 | 0.3% | Aug 17, 2021 | A DLL preloading vulnerability was reported in Lenovo Driver Management prior to version 2.9.0719.1104 that could allow ... |
| CVE-2021-3617 | HIGH | 7.2 | 1.7% | Aug 17, 2021 | A vulnerability was reported in Lenovo Smart Camera X3, X5, and C2E that could allow command injection by setting a spec... |
| CVE-2021-25957 | HIGH | 8.8 | 1.1% | Aug 17, 2021 | In “Dolibarr” application, v2.8.1 to v13.0.2 are vulnerable to account takeover via password reset functionality. A low ... |
| CVE-2021-25956 | HIGH | 7.2 | 0.9% | Aug 17, 2021 | In “Dolibarr” application, v3.3.beta1_20121221 to v13.0.2 have “Modify” access for admin level users to change other use... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now