2021 CVE Vulnerabilities
23,451 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-29955 | MEDIUM | 5.3 | 1.5% | Jun 24, 2021 | A transient execution vulnerability, named Floating Point Value Injection (FPVI) allowed an attacker to leak arbitrary m... |
| CVE-2021-29953 | MEDIUM | 6.1 | 0.6% | Jun 24, 2021 | A malicious webpage could have forced a Firefox for Android user into executing attacker-controlled JavaScript in the co... |
| CVE-2021-29951 | MEDIUM | 6.5 | 1.9% | Jun 24, 2021 | The Mozilla Maintenance Service granted SERVICE_START access to BUILTIN|Users which, in a domain network, grants normal ... |
| CVE-2021-29945 | MEDIUM | 6.5 | 1.2% | Jun 24, 2021 | The WebAssembly JIT could miscalculate the size of a return type, which could lead to a null read and result in a crash.... |
| CVE-2021-29944 | MEDIUM | 6.1 | 0.7% | Jun 24, 2021 | Lack of escaping allowed HTML injection when a webpage was viewed in Reader View. While a Content Security Policy preven... |
| CVE-2021-27659 | MEDIUM | 6.1 | 1.2% | Jun 24, 2021 | exacqVision Web Service 21.03 does not sufficiently validate, filter, escape, and/or encode user-controllable input befo... |
| CVE-2021-27658 | MEDIUM | 5.4 | 0.9% | Jun 24, 2021 | exacqVision Enterprise Manager 20.12 does not sufficiently validate, filter, escape, and/or encode user-controllable inp... |
| CVE-2021-24001 | MEDIUM | 4.3 | 0.6% | Jun 24, 2021 | A compromised content process could have performed session history manipulations it should not have been able to due to ... |
| CVE-2021-23998 | MEDIUM | 6.5 | 0.6% | Jun 24, 2021 | Through complicated navigations with new windows, an HTTP page could have inherited a secure lock icon from an HTTPS pag... |
| CVE-2021-23996 | MEDIUM | 6.5 | 0.7% | Jun 24, 2021 | By utilizing 3D CSS in conjunction with Javascript, content could have been rendered outside the webpage's viewport, res... |
| CVE-2021-23993 | MEDIUM | 6.5 | 0.4% | Jun 24, 2021 | An attacker may perform a DoS attack to prevent a user from sending encrypted email to a correspondent. If an attacker c... |
| CVE-2021-23992 | MEDIUM | 4.3 | 0.5% | Jun 24, 2021 | Thunderbird did not check if the user ID associated with an OpenPGP key has a valid self signature. An attacker may crea... |
| CVE-2021-23991 | MEDIUM | 6.8 | 1.0% | Jun 24, 2021 | If a Thunderbird user has previously imported Alice's OpenPGP key, and Alice has extended the validity period of her key... |
| CVE-2021-31412 | MEDIUM | 5.3 | 1.3% | Jun 24, 2021 | Improper sanitization of path in default RouteNotFoundError view in com.vaadin:flow-server versions 1.0.0 through 1.0.14... |
| CVE-2021-26585 | MEDIUM | 5.5 | 0.2% | Jun 24, 2021 | A potential vulnerability has been identified in HPE OneView Global Dashboard release 2.31 which could lead to a local d... |
| CVE-2021-25656 | MEDIUM | 5.4 | 0.3% | Jun 24, 2021 | Stored XSS injection vulnerabilities were discovered in the Avaya Aura Experience Portal Web management which could allo... |
| CVE-2021-25655 | MEDIUM | 6.1 | 0.4% | Jun 24, 2021 | A vulnerability in the system Service Menu component of Avaya Aura Experience Portal may allow URL Redirection to any un... |
| CVE-2021-25652 | MEDIUM | 5.5 | 0.7% | Jun 24, 2021 | An information disclosure vulnerability was discovered in the directory and file management of Avaya Aura Appliance Virt... |
| CVE-2021-25649 | MEDIUM | 5.5 | 0.6% | Jun 24, 2021 | An information disclosure vulnerability was discovered in the directory and file management of Avaya Aura Utility Servic... |
| CVE-2021-34071 | MEDIUM | 5.5 | 0.7% | Jun 23, 2021 | Heap based buffer overflow in tsMuxer 2.6.16 allows attackers to cause a Denial of Service (DoS) by running the applicat... |
| CVE-2021-34070 | MEDIUM | 5.5 | 0.8% | Jun 23, 2021 | Out-of-bounds Read in tsMuxer 2.6.16 allows attackers to cause a Denial of Service (DoS) by running the application with... |
| CVE-2021-34069 | MEDIUM | 5.5 | 0.8% | Jun 23, 2021 | Divide-by-zero bug in tsMuxer 2.6.16 allows attackers to cause a Denial of Service (DoS) by running the application with... |
| CVE-2021-34068 | MEDIUM | 5.5 | 0.8% | Jun 23, 2021 | Heap based buffer overflow in tsMuxer 2.6.16 allows attackers to cause a Denial of Service (DoS) by running the applicat... |
| CVE-2021-34067 | MEDIUM | 5.5 | 0.8% | Jun 23, 2021 | Heap based buffer overflow in tsMuxer 2.6.16 allows attackers to cause a Denial of Service (DoS) by running the applicat... |
| CVE-2021-33624 | MEDIUM | 4.7 | 0.9% | Jun 23, 2021 | In kernel/bpf/verifier.c in the Linux kernel before 5.12.13, a branch can be mispredicted (e.g., because of type confusi... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now