2021 CVE Vulnerabilities

23,451 CVEs published in 2021.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2021-29955MEDIUM5.3A transient execution vulnerability, named Floating Point Value Injection (FPVI) allowed an attacker to leak arbitrary m...
CVE-2021-29953MEDIUM6.1A malicious webpage could have forced a Firefox for Android user into executing attacker-controlled JavaScript in the co...
CVE-2021-29951MEDIUM6.5The Mozilla Maintenance Service granted SERVICE_START access to BUILTIN|Users which, in a domain network, grants normal ...
CVE-2021-29945MEDIUM6.5The WebAssembly JIT could miscalculate the size of a return type, which could lead to a null read and result in a crash....
CVE-2021-29944MEDIUM6.1Lack of escaping allowed HTML injection when a webpage was viewed in Reader View. While a Content Security Policy preven...
CVE-2021-27659MEDIUM6.1exacqVision Web Service 21.03 does not sufficiently validate, filter, escape, and/or encode user-controllable input befo...
CVE-2021-27658MEDIUM5.4exacqVision Enterprise Manager 20.12 does not sufficiently validate, filter, escape, and/or encode user-controllable inp...
CVE-2021-24001MEDIUM4.3A compromised content process could have performed session history manipulations it should not have been able to due to ...
CVE-2021-23998MEDIUM6.5Through complicated navigations with new windows, an HTTP page could have inherited a secure lock icon from an HTTPS pag...
CVE-2021-23996MEDIUM6.5By utilizing 3D CSS in conjunction with Javascript, content could have been rendered outside the webpage's viewport, res...
CVE-2021-23993MEDIUM6.5An attacker may perform a DoS attack to prevent a user from sending encrypted email to a correspondent. If an attacker c...
CVE-2021-23992MEDIUM4.3Thunderbird did not check if the user ID associated with an OpenPGP key has a valid self signature. An attacker may crea...
CVE-2021-23991MEDIUM6.8If a Thunderbird user has previously imported Alice's OpenPGP key, and Alice has extended the validity period of her key...
CVE-2021-31412MEDIUM5.3Improper sanitization of path in default RouteNotFoundError view in com.vaadin:flow-server versions 1.0.0 through 1.0.14...
CVE-2021-26585MEDIUM5.5A potential vulnerability has been identified in HPE OneView Global Dashboard release 2.31 which could lead to a local d...
CVE-2021-25656MEDIUM5.4Stored XSS injection vulnerabilities were discovered in the Avaya Aura Experience Portal Web management which could allo...
CVE-2021-25655MEDIUM6.1A vulnerability in the system Service Menu component of Avaya Aura Experience Portal may allow URL Redirection to any un...
CVE-2021-25652MEDIUM5.5An information disclosure vulnerability was discovered in the directory and file management of Avaya Aura Appliance Virt...
CVE-2021-25649MEDIUM5.5An information disclosure vulnerability was discovered in the directory and file management of Avaya Aura Utility Servic...
CVE-2021-34071MEDIUM5.5Heap based buffer overflow in tsMuxer 2.6.16 allows attackers to cause a Denial of Service (DoS) by running the applicat...
CVE-2021-34070MEDIUM5.5Out-of-bounds Read in tsMuxer 2.6.16 allows attackers to cause a Denial of Service (DoS) by running the application with...
CVE-2021-34069MEDIUM5.5Divide-by-zero bug in tsMuxer 2.6.16 allows attackers to cause a Denial of Service (DoS) by running the application with...
CVE-2021-34068MEDIUM5.5Heap based buffer overflow in tsMuxer 2.6.16 allows attackers to cause a Denial of Service (DoS) by running the applicat...
CVE-2021-34067MEDIUM5.5Heap based buffer overflow in tsMuxer 2.6.16 allows attackers to cause a Denial of Service (DoS) by running the applicat...
CVE-2021-33624MEDIUM4.7In kernel/bpf/verifier.c in the Linux kernel before 5.12.13, a branch can be mispredicted (e.g., because of type confusi...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now