2021 CVE Vulnerabilities
23,445 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-36204 | HIGH | 7.5 | 0.4% | Jan 13, 2023 | Under some circumstances an Insufficiently Protected Credentials vulnerability in Johnson Controls Metasys ADS/ADX/OAS 1... |
| CVE-2021-46779 | HIGH | 7.1 | 0.2% | Jan 11, 2023 | Insufficient input validation in SVC_ECC_PRIMITIVE system call in a compromised user application or ABL may allow an att... |
| CVE-2021-26409 | HIGH | 7.8 | 0.2% | Jan 11, 2023 | Insufficient bounds checking in SEV-ES may allow an attacker to corrupt Reverse Map table (RMP) memory, potentially resu... |
| CVE-2021-26402 | HIGH | 7.1 | 0.2% | Jan 11, 2023 | Insufficient bounds checking in ASP (AMD Secure Processor) firmware while handling BIOS mailbox commands, may allow an a... |
| CVE-2021-26398 | HIGH | 7.8 | 0.2% | Jan 11, 2023 | Insufficient input validation in SYS_KEY_DERIVE system call in a compromised user application or ABL may allow an attack... |
| CVE-2021-26316 | HIGH | 7.8 | 0.3% | Jan 11, 2023 | Failure to validate the communication buffer and communication service in the BIOS may allow an attacker to tamper with ... |
| CVE-2021-3966 | HIGH | 8.8 | 0.5% | Jan 11, 2023 | usb device bluetooth class includes a buffer overflow related to implementation of net_buf_add_mem. |
| CVE-2021-4306 | HIGH | 7.5 | 0.9% | Jan 7, 2023 | A vulnerability classified as problematic has been found in cronvel terminal-kit up to 2.1.7. Affected is an unknown fun... |
| CVE-2021-46868 | HIGH | 7.5 | 0.4% | Jan 6, 2023 | The HW_KEYMASTER module has a problem in releasing memory.Successful exploitation of this vulnerability may result in ou... |
| CVE-2021-46867 | HIGH | 7.5 | 0.4% | Jan 6, 2023 | The HW_KEYMASTER module has a problem in releasing memory.Successful exploitation of this vulnerability may result in ou... |
| CVE-2021-4305 | HIGH | 7.5 | 0.9% | Jan 5, 2023 | A vulnerability was found in Woorank robots-txt-guard. It has been rated as problematic. Affected by this issue is the f... |
| CVE-2021-32821 | HIGH | 7.5 | 0.6% | Jan 3, 2023 | MooTools is a collection of JavaScript utilities for JavaScript developers. All known versions include a CSS selector pa... |
| CVE-2021-30558 | HIGH | 8.8 | 11.5% | Jan 2, 2023 | Insufficient policy enforcement in content security policy in Google Chrome prior to 91.0.4472.77 allowed a remote attac... |
| CVE-2021-4299 | HIGH | 7.5 | 0.9% | Jan 2, 2023 | A vulnerability classified as problematic was found in cronvel string-kit up to 0.12.7. This vulnerability affects the f... |
| CVE-2021-4239 | HIGH | 7.5 | 0.4% | Dec 27, 2022 | The Noise protocol implementation suffers from weakened cryptographic security after encrypting 2^64 messages, and a pot... |
| CVE-2021-4286 | HIGH | 7.5 | 0.7% | Dec 27, 2022 | A vulnerability, which was classified as problematic, has been found in cocagne pysrp up to 1.0.16. This issue affects t... |
| CVE-2021-24942 | HIGH | 7.2 | 1.2% | Dec 26, 2022 | The Menu Item Visibility Control WordPress plugin through 0.5 doesn't sanitize and validate the "Visibility logic" optio... |
| CVE-2021-35065 | HIGH | 7.5 | 1.6% | Dec 26, 2022 | The glob-parent package before 6.0.1 for Node.js allows ReDoS (regular expression denial of service) attacks against the... |
| CVE-2021-38561 | HIGH | 7.5 | 1.4% | Dec 26, 2022 | golang.org/x/text/language in golang.org/x/text before 0.3.7 can panic with an out-of-bounds read during BCP 47 language... |
| CVE-2021-35954 | HIGH | 8.1 | 0.3% | Dec 26, 2022 | fastrack Reflex 2.0 W307S_REFLEX_v90.89 Activity Tracker allows physically proximate attackers to dump the firmware, fla... |
| CVE-2021-35953 | HIGH | 7.5 | 0.8% | Dec 26, 2022 | fastrack Reflex 2.0 W307S_REFLEX_v90.89 Activity Tracker allows a Remote attacker to cause a Denial of Service (device o... |
| CVE-2021-35951 | HIGH | 7.5 | 0.9% | Dec 26, 2022 | fastrack Reflex 2.0 W307S_REFLEX_v90.89 Activity Tracker allows an Unauthenticated Remote attacker to send a malicious f... |
| CVE-2021-44758 | HIGH | 7.5 | 1.2% | Dec 26, 2022 | Heimdal before 7.7.1 allows attackers to cause a NULL pointer dereference in a SPNEGO acceptor via a preferred_mech_type... |
| CVE-2021-4278 | HIGH | 7.8 | 0.4% | Dec 25, 2022 | A vulnerability classified as problematic has been found in cronvel tree-kit up to 0.6.x. This affects an unknown part. ... |
| CVE-2021-4276 | HIGH | 8.8 | 0.6% | Dec 25, 2022 | ** UNSUPPORTED WHEN ASSIGNED ** A vulnerability was found in dns-stats hedgehog. It has been rated as problematic. Affec... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now