2021 CVE Vulnerabilities
23,448 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-33004 | HIGH | 7.8 | 0.9% | Jun 24, 2021 | The affected product is vulnerable to memory corruption condition due to lack of proper validation of user supplied file... |
| CVE-2021-33002 | HIGH | 7.8 | 1.0% | Jun 24, 2021 | Opening a maliciously crafted project file may cause an out-of-bounds write, which may allow an attacker to execute arbi... |
| CVE-2021-33000 | HIGH | 7.8 | 1.0% | Jun 24, 2021 | Parsing a maliciously crafted project file may cause a heap-based buffer overflow, which may allow an attacker to perfor... |
| CVE-2021-32708 | HIGH | 8.1 | 3.5% | Jun 24, 2021 | Flysystem is an open source file storage library for PHP. The whitespace normalisation using in 1.x and 2.x removes any ... |
| CVE-2021-21574 | HIGH | 7.5 | 0.3% | Jun 24, 2021 | Dell BIOSConnect feature contains a buffer overflow vulnerability. An authenticated malicious admin user with local acce... |
| CVE-2021-21573 | HIGH | 7.5 | 0.3% | Jun 24, 2021 | Dell BIOSConnect feature contains a buffer overflow vulnerability. An authenticated malicious admin user with local acce... |
| CVE-2021-21572 | HIGH | 7.5 | 0.3% | Jun 24, 2021 | Dell BIOSConnect feature contains a buffer overflow vulnerability. An authenticated malicious admin user with local acce... |
| CVE-2021-32704 | HIGH | 8.8 | 0.8% | Jun 24, 2021 | DHIS 2 is an information system for data capture, management, validation, analytics and visualization. A SQL injection s... |
| CVE-2021-29968 | HIGH | 8.1 | 0.8% | Jun 24, 2021 | When drawing text onto a canvas with WebRender disabled, an out of bounds read could occur. *This bug only affects Firef... |
| CVE-2021-29967 | HIGH | 8.8 | 1.4% | Jun 24, 2021 | Mozilla developers reported memory safety bugs present in Firefox 88 and Firefox ESR 78.11. Some of these bugs showed ev... |
| CVE-2021-29966 | HIGH | 8.8 | 1.0% | Jun 24, 2021 | Mozilla developers reported memory safety bugs present in Firefox 88. Some of these bugs showed evidence of memory corru... |
| CVE-2021-29964 | HIGH | 7.1 | 0.8% | Jun 24, 2021 | A locally-installed hostile program could send `WM_COPYDATA` messages that Firefox would process incorrectly, leading to... |
| CVE-2021-29952 | HIGH | 7.5 | 0.7% | Jun 24, 2021 | When Web Render components were destructed, a race condition could have caused undefined behavior, and we presume that w... |
| CVE-2021-29950 | HIGH | 7.5 | 0.9% | Jun 24, 2021 | Thunderbird unprotects a secret OpenPGP key prior to using it for a decryption, signing or key import task. If the task ... |
| CVE-2021-29949 | HIGH | 7.8 | 0.3% | Jun 24, 2021 | When loading the shared library that provides the OTR protocol implementation, Thunderbird will initially attempt to ope... |
| CVE-2021-29947 | HIGH | 8.8 | 0.9% | Jun 24, 2021 | Mozilla developers and community members reported memory safety bugs present in Firefox 87. Some of these bugs showed ev... |
| CVE-2021-29946 | HIGH | 8.8 | 1.2% | Jun 24, 2021 | Ports that were written as an integer overflow above the bounds of a 16-bit integer could have bypassed port blocking re... |
| CVE-2021-24002 | HIGH | 8.8 | 1.2% | Jun 24, 2021 | When a user clicked on an FTP URL containing encoded newline characters (%0A and %0D), the newlines would have been inte... |
| CVE-2021-23999 | HIGH | 8.8 | 1.3% | Jun 24, 2021 | If a Blob URL was loaded through some unusual user interaction, it could have been loaded by the System Principal and gr... |
| CVE-2021-23997 | HIGH | 8.8 | 0.8% | Jun 24, 2021 | Due to unexpected data type conversions, a use-after-free could have occurred when interacting with the font cache. We p... |
| CVE-2021-23995 | HIGH | 8.8 | 1.2% | Jun 24, 2021 | When Responsive Design Mode was enabled, it used references to objects that were previously freed. We presume that with ... |
| CVE-2021-23994 | HIGH | 8.8 | 1.8% | Jun 24, 2021 | A WebGL framebuffer was not initialized early enough, resulting in memory corruption and an out of bound write. This vul... |
| CVE-2021-25923 | HIGH | 8.1 | 1.3% | Jun 24, 2021 | In OpenEMR, versions 5.0.0 to 6.0.0.1 are vulnerable to weak password requirements as it does not enforce a maximum pass... |
| CVE-2021-21737 | HIGH | 7.5 | 0.8% | Jun 24, 2021 | A smart STB product of ZTE is impacted by a permission and access control vulnerability. Due to insufficient protection ... |
| CVE-2021-25653 | HIGH | 7.8 | 0.6% | Jun 24, 2021 | A privilege escalation vulnerability was discovered in Avaya Aura Appliance Virtualization Platform Utilities (AVPU) tha... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now