2021 CVE Vulnerabilities

23,451 CVEs published in 2021.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2021-23977MEDIUM5.3Firefox for Android suffered from a time-of-check-time-of-use vulnerability that allowed a malicious application to read...
CVE-2021-23963MEDIUM4.3When sharing geolocation during an active WebRTC share, Firefox could have reset the webRTC sharing state in the user in...
CVE-2021-23959MEDIUM6.1An XSS bug in internal error pages could have led to various spoofing attacks, including other error pages and the addre...
CVE-2021-23958MEDIUM6.5The browser could have been confused into transferring a screen sharing state into another tab, which would leak uninten...
CVE-2021-23956MEDIUM6.5An ambiguous file picker design could have confused users who intended to select and upload a single file into uploading...
CVE-2021-23955MEDIUM6.1The browser could have been confused into transferring a pointer lock state into another tab, which could have lead to c...
CVE-2021-23953MEDIUM4.3If a user clicked into a specifically crafted PDF, the PDF reader could be confused into leaking cross-origin informatio...
CVE-2021-21724MEDIUM4.4A ZTE product has a memory leak vulnerability. Due to the product's improper handling of memory release in certain scena...
CVE-2021-21330MEDIUM6.1aiohttp is an asynchronous HTTP client/server framework for asyncio and Python. In aiohttp before version 3.7.4 there is...
CVE-2021-23975MEDIUM6.5The developer page about:memory has a Measure function for exploring what object types the browser has allocated and the...
CVE-2021-23974MEDIUM6.1The DOMParser API did not properly process '<noscript>' elements for escaping. This could be used as an mXSS vector to b...
CVE-2021-23973MEDIUM6.5When trying to load a cross-origin resource in an audio/video context a decoding error may have resulted, and the conten...
CVE-2021-23971MEDIUM6.5When processing a redirect with a conflicting Referrer-Policy, Firefox would have adopted the redirect's Referrer-Policy...
CVE-2021-23970MEDIUM6.5Context-specific code was included in a shared jump table; resulting in assertions being triggered in multithreaded wasm...
CVE-2021-23969MEDIUM4.3As specified in the W3C Content Security Policy draft, when creating a violation report, "User agents need to ensure tha...
CVE-2021-23968MEDIUM4.3If Content Security Policy blocked frame navigation, the full destination of a redirect served in the frame was reported...
CVE-2021-21328MEDIUM5.3Vapor is a web framework for Swift. In Vapor before version 4.40.1, there is a DoS attack against anyone who Bootstraps ...
CVE-2021-24114MEDIUM5.7Microsoft Teams iOS Information Disclosure Vulnerability
CVE-2021-24113MEDIUM5.4Microsoft Edge (Chromium-based) Security Feature Bypass Vulnerability
CVE-2021-24109MEDIUM6.8Microsoft Azure Kubernetes Service Elevation of Privilege Vulnerability
CVE-2021-24106MEDIUM5.5Windows DirectX Information Disclosure Vulnerability
CVE-2021-24101MEDIUM6.5Microsoft Dataverse Information Disclosure Vulnerability
CVE-2021-24100MEDIUM5Microsoft Edge for Android Information Disclosure Vulnerability
CVE-2021-24099MEDIUM6.5Skype for Business and Lync Denial of Service Vulnerability
CVE-2021-24098MEDIUM5.5Windows Console Driver Denial of Service Vulnerability

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now