2021 CVE Vulnerabilities

23,451 CVEs published in 2021.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2021-26564HIGH8.7Cleartext transmission of sensitive information vulnerability in synorelayd in Synology DiskStation Manager (DSM) before...
CVE-2021-26562HIGH8.1Out-of-bounds write vulnerability in synoagentregisterd in Synology DiskStation Manager (DSM) before 6.2.3-25426-3 allow...
CVE-2021-26561HIGH8.1Stack-based buffer overflow vulnerability in synoagentregisterd in Synology DiskStation Manager (DSM) before 6.2.3-25426...
CVE-2021-26560HIGH7.4Cleartext transmission of sensitive information vulnerability in synoagentregisterd in Synology DiskStation Manager (DSM...
CVE-2021-21309HIGH8.8Redis is an open-source, in-memory database that persists on disk. In affected versions of Redis an integer overflow bug...
CVE-2021-21302HIGH7.2PrestaShop is a fully scalable open source e-commerce solution. In PrestaShop before version 1.7.2 there is a CSV Inject...
CVE-2021-23979HIGH8.8Mozilla developers reported memory safety bugs present in Firefox 85. Some of these bugs showed evidence of memory corru...
CVE-2021-23978HIGH8.8Mozilla developers reported memory safety bugs present in Firefox 85 and Firefox ESR 78.7. Some of these bugs showed evi...
CVE-2021-23965HIGH8.8Mozilla developers reported memory safety bugs present in Firefox 84. Some of these bugs showed evidence of memory corru...
CVE-2021-23964HIGH8.8Mozilla developers reported memory safety bugs present in Firefox 84 and Firefox ESR 78.6. Some of these bugs showed evi...
CVE-2021-22661HIGH7.5Changing the password on the module webpage does not require the user to type in the current password first. Thus, the p...
CVE-2021-23962HIGH8.8Incorrect use of the '<RowCountChanged>' method could have led to a user-after-poison and a potentially exploitable cras...
CVE-2021-23961HIGH7.4Further techniques that built on the slipstream research combined with a malicious webpage could have exposed both an in...
CVE-2021-23960HIGH8.8Performing garbage collection on re-declared JavaScript variables resulted in a user-after-poison, and a potentially exp...
CVE-2021-23957HIGH7.4Navigations through the Android-specific `intent` URL scheme could have been misused to escape iframe sandbox. Note: Thi...
CVE-2021-23954HIGH8.8Using the new logical assignment operators in a JavaScript switch statement could have caused a type confusion, leading ...
CVE-2021-23976HIGH8.1When accepting a malicious intent from other installed apps, Firefox for Android accepted manifests from arbitrary file ...
CVE-2021-23972HIGH8.8One phishing tactic on the web is to provide a link with HTTP Auth. For example 'https://www.phishingtarget.com@evil.com...
CVE-2021-26701HIGH8.1.NET Core Remote Code Execution Vulnerability
CVE-2021-26700HIGH7.8Visual Studio Code npm-script Extension Remote Code Execution Vulnerability
CVE-2021-25195HIGH7.8Windows PKU2U Elevation of Privilege Vulnerability
CVE-2021-24112HIGH8.1.NET Core Remote Code Execution Vulnerability
CVE-2021-24111HIGH7.5.NET Framework Denial of Service Vulnerability
CVE-2021-24105HIGH8.4<p>Depending on configuration of various package managers it is possible for an attacker to insert a malicious package i...
CVE-2021-24103HIGH7.8Windows Event Tracing Elevation of Privilege Vulnerability

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now