2021 CVE Vulnerabilities

23,445 CVEs published in 2021.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2021-36204HIGH7.5Under some circumstances an Insufficiently Protected Credentials vulnerability in Johnson Controls Metasys ADS/ADX/OAS 1...
CVE-2021-46779HIGH7.1Insufficient input validation in SVC_ECC_PRIMITIVE system call in a compromised user application or ABL may allow an att...
CVE-2021-26409HIGH7.8Insufficient bounds checking in SEV-ES may allow an attacker to corrupt Reverse Map table (RMP) memory, potentially resu...
CVE-2021-26402HIGH7.1Insufficient bounds checking in ASP (AMD Secure Processor) firmware while handling BIOS mailbox commands, may allow an a...
CVE-2021-26398HIGH7.8Insufficient input validation in SYS_KEY_DERIVE system call in a compromised user application or ABL may allow an attack...
CVE-2021-26316HIGH7.8Failure to validate the communication buffer and communication service in the BIOS may allow an attacker to tamper with ...
CVE-2021-3966HIGH8.8usb device bluetooth class includes a buffer overflow related to implementation of net_buf_add_mem.
CVE-2021-4306HIGH7.5A vulnerability classified as problematic has been found in cronvel terminal-kit up to 2.1.7. Affected is an unknown fun...
CVE-2021-46868HIGH7.5The HW_KEYMASTER module has a problem in releasing memory.Successful exploitation of this vulnerability may result in ou...
CVE-2021-46867HIGH7.5The HW_KEYMASTER module has a problem in releasing memory.Successful exploitation of this vulnerability may result in ou...
CVE-2021-4305HIGH7.5A vulnerability was found in Woorank robots-txt-guard. It has been rated as problematic. Affected by this issue is the f...
CVE-2021-32821HIGH7.5MooTools is a collection of JavaScript utilities for JavaScript developers. All known versions include a CSS selector pa...
CVE-2021-30558HIGH8.8Insufficient policy enforcement in content security policy in Google Chrome prior to 91.0.4472.77 allowed a remote attac...
CVE-2021-4299HIGH7.5A vulnerability classified as problematic was found in cronvel string-kit up to 0.12.7. This vulnerability affects the f...
CVE-2021-4239HIGH7.5The Noise protocol implementation suffers from weakened cryptographic security after encrypting 2^64 messages, and a pot...
CVE-2021-4286HIGH7.5A vulnerability, which was classified as problematic, has been found in cocagne pysrp up to 1.0.16. This issue affects t...
CVE-2021-24942HIGH7.2The Menu Item Visibility Control WordPress plugin through 0.5 doesn't sanitize and validate the "Visibility logic" optio...
CVE-2021-35065HIGH7.5The glob-parent package before 6.0.1 for Node.js allows ReDoS (regular expression denial of service) attacks against the...
CVE-2021-38561HIGH7.5golang.org/x/text/language in golang.org/x/text before 0.3.7 can panic with an out-of-bounds read during BCP 47 language...
CVE-2021-35954HIGH8.1fastrack Reflex 2.0 W307S_REFLEX_v90.89 Activity Tracker allows physically proximate attackers to dump the firmware, fla...
CVE-2021-35953HIGH7.5fastrack Reflex 2.0 W307S_REFLEX_v90.89 Activity Tracker allows a Remote attacker to cause a Denial of Service (device o...
CVE-2021-35951HIGH7.5fastrack Reflex 2.0 W307S_REFLEX_v90.89 Activity Tracker allows an Unauthenticated Remote attacker to send a malicious f...
CVE-2021-44758HIGH7.5Heimdal before 7.7.1 allows attackers to cause a NULL pointer dereference in a SPNEGO acceptor via a preferred_mech_type...
CVE-2021-4278HIGH7.8A vulnerability classified as problematic has been found in cronvel tree-kit up to 0.6.x. This affects an unknown part. ...
CVE-2021-4276HIGH8.8** UNSUPPORTED WHEN ASSIGNED ** A vulnerability was found in dns-stats hedgehog. It has been rated as problematic. Affec...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now