2021 CVE Vulnerabilities

23,448 CVEs published in 2021.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2021-33004HIGH7.8The affected product is vulnerable to memory corruption condition due to lack of proper validation of user supplied file...
CVE-2021-33002HIGH7.8Opening a maliciously crafted project file may cause an out-of-bounds write, which may allow an attacker to execute arbi...
CVE-2021-33000HIGH7.8Parsing a maliciously crafted project file may cause a heap-based buffer overflow, which may allow an attacker to perfor...
CVE-2021-32708HIGH8.1Flysystem is an open source file storage library for PHP. The whitespace normalisation using in 1.x and 2.x removes any ...
CVE-2021-21574HIGH7.5Dell BIOSConnect feature contains a buffer overflow vulnerability. An authenticated malicious admin user with local acce...
CVE-2021-21573HIGH7.5Dell BIOSConnect feature contains a buffer overflow vulnerability. An authenticated malicious admin user with local acce...
CVE-2021-21572HIGH7.5Dell BIOSConnect feature contains a buffer overflow vulnerability. An authenticated malicious admin user with local acce...
CVE-2021-32704HIGH8.8DHIS 2 is an information system for data capture, management, validation, analytics and visualization. A SQL injection s...
CVE-2021-29968HIGH8.1When drawing text onto a canvas with WebRender disabled, an out of bounds read could occur. *This bug only affects Firef...
CVE-2021-29967HIGH8.8Mozilla developers reported memory safety bugs present in Firefox 88 and Firefox ESR 78.11. Some of these bugs showed ev...
CVE-2021-29966HIGH8.8Mozilla developers reported memory safety bugs present in Firefox 88. Some of these bugs showed evidence of memory corru...
CVE-2021-29964HIGH7.1A locally-installed hostile program could send `WM_COPYDATA` messages that Firefox would process incorrectly, leading to...
CVE-2021-29952HIGH7.5When Web Render components were destructed, a race condition could have caused undefined behavior, and we presume that w...
CVE-2021-29950HIGH7.5Thunderbird unprotects a secret OpenPGP key prior to using it for a decryption, signing or key import task. If the task ...
CVE-2021-29949HIGH7.8When loading the shared library that provides the OTR protocol implementation, Thunderbird will initially attempt to ope...
CVE-2021-29947HIGH8.8Mozilla developers and community members reported memory safety bugs present in Firefox 87. Some of these bugs showed ev...
CVE-2021-29946HIGH8.8Ports that were written as an integer overflow above the bounds of a 16-bit integer could have bypassed port blocking re...
CVE-2021-24002HIGH8.8When a user clicked on an FTP URL containing encoded newline characters (%0A and %0D), the newlines would have been inte...
CVE-2021-23999HIGH8.8If a Blob URL was loaded through some unusual user interaction, it could have been loaded by the System Principal and gr...
CVE-2021-23997HIGH8.8Due to unexpected data type conversions, a use-after-free could have occurred when interacting with the font cache. We p...
CVE-2021-23995HIGH8.8When Responsive Design Mode was enabled, it used references to objects that were previously freed. We presume that with ...
CVE-2021-23994HIGH8.8A WebGL framebuffer was not initialized early enough, resulting in memory corruption and an out of bound write. This vul...
CVE-2021-25923HIGH8.1In OpenEMR, versions 5.0.0 to 6.0.0.1 are vulnerable to weak password requirements as it does not enforce a maximum pass...
CVE-2021-21737HIGH7.5A smart STB product of ZTE is impacted by a permission and access control vulnerability. Due to insufficient protection ...
CVE-2021-25653HIGH7.8A privilege escalation vulnerability was discovered in Avaya Aura Appliance Virtualization Platform Utilities (AVPU) tha...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now