2021 CVE Vulnerabilities
23,451 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-38003 | HIGH | 8.8 | 36.2% | Nov 23, 2021 | Inappropriate implementation in V8 in Google Chrome prior to 95.0.4638.69 allowed a remote attacker to potentially explo... |
| CVE-2021-38002 | CRITICAL | 9.6 | 0.9% | Nov 23, 2021 | Use after free in Web Transport in Google Chrome prior to 95.0.4638.69 allowed a remote attacker to potentially perform ... |
| CVE-2021-38001 | HIGH | 8.8 | 26.7% | Nov 23, 2021 | Type confusion in V8 in Google Chrome prior to 95.0.4638.69 allowed a remote attacker to potentially exploit heap corrup... |
| CVE-2021-38000 | MEDIUM | 6.1 | 4.5% | Nov 23, 2021 | Insufficient validation of untrusted input in Intents in Google Chrome on Android prior to 95.0.4638.69 allowed a remote... |
| CVE-2021-37999 | MEDIUM | 6.1 | 0.9% | Nov 23, 2021 | Insufficient data validation in New Tab Page in Google Chrome prior to 95.0.4638.69 allowed a remote attacker to inject ... |
| CVE-2021-37998 | HIGH | 8.8 | 0.9% | Nov 23, 2021 | Use after free in Garbage Collection in Google Chrome prior to 95.0.4638.69 allowed a remote attacker to potentially exp... |
| CVE-2021-37997 | HIGH | 8.8 | 0.9% | Nov 23, 2021 | Use after free in Sign-In in Google Chrome prior to 95.0.4638.69 allowed a remote attacker who convinced a user to sign ... |
| CVE-2021-35033 | HIGH | 7.8 | 0.4% | Nov 23, 2021 | A vulnerability in specific versions of Zyxel NBG6818, NBG7815, WSQ20, WSQ50, WSQ60, and WSR30 firmware with pre-configu... |
| CVE-2021-43775 | HIGH | 8.6 | 1.8% | Nov 23, 2021 | Aim is an open-source, self-hosted machine learning experiment tracking tool. Versions of Aim prior to 3.1.0 are vulnera... |
| CVE-2021-41281 | HIGH | 7.5 | 1.5% | Nov 23, 2021 | Synapse is a package for Matrix homeservers written in Python 3/Twisted. Prior to version 1.47.1, Synapse instances with... |
| CVE-2021-38980 | MEDIUM | 5.3 | 1.2% | Nov 23, 2021 | IBM Tivoli Key Lifecycle Manager (IBM Security Guardium Key Lifecycle Manager) 3.0, 3.0.1, 4.0, and 4.1 could allow a re... |
| CVE-2021-38891 | HIGH | 7.5 | 0.7% | Nov 23, 2021 | IBM Sterling Connect:Direct Web Services 1.0 and 6.0 uses weaker than expected cryptographic algorithms that could allow... |
| CVE-2021-38890 | HIGH | 7.5 | 1.5% | Nov 23, 2021 | IBM Sterling Connect:Direct Web Services 1.0 and 6.0 uses an inadequate account lockout setting that could allow a remot... |
| CVE-2021-38875 | MEDIUM | 6.5 | 1.0% | Nov 23, 2021 | IBM MQ 8.0, 9.0 LTS, 9.1 LTS, 9.2 LTS, 9.1 CD, and 9.2 CD is vulnerable to a denial of service attack caused by an error... |
| CVE-2021-36335 | HIGH | 8.8 | 1.1% | Nov 23, 2021 | Dell EMC CloudLink 7.1 and all prior versions contain an Improper Input Validation Vulnerability. A remote low privilege... |
| CVE-2021-36334 | MEDIUM | 6.8 | 0.7% | Nov 23, 2021 | Dell EMC CloudLink 7.1 and all prior versions contain a CSV formula Injection Vulnerability. A remote high privileged at... |
| CVE-2021-36333 | MEDIUM | 5.5 | 0.2% | Nov 23, 2021 | Dell EMC CloudLink 7.1 and all prior versions contain a Buffer Overflow Vulnerability. A local low privileged attacker, ... |
| CVE-2021-36332 | MEDIUM | 5.4 | 0.6% | Nov 23, 2021 | Dell EMC CloudLink 7.1 and all prior versions contain a HTML and Javascript Injection Vulnerability. A remote low privil... |
| CVE-2021-36314 | CRITICAL | 9.8 | 1.2% | Nov 23, 2021 | Dell EMC CloudLink 7.1 and all prior versions contain an Arbitrary File Creation Vulnerability. A remote unauthenticated... |
| CVE-2021-36313 | HIGH | 7.2 | 2.1% | Nov 23, 2021 | Dell EMC CloudLink 7.1 and all prior versions contain an OS command injection Vulnerability. A remote high privileged at... |
| CVE-2021-36312 | CRITICAL | 9.1 | 1.0% | Nov 23, 2021 | Dell EMC CloudLink 7.1 and all prior versions contain a Hard-coded Password Vulnerability. A remote high privileged atta... |
| CVE-2021-36311 | HIGH | 7.8 | 0.2% | Nov 23, 2021 | Dell EMC Networker versions prior to 19.5 contain an Improper Authorization vulnerability. Any local malicious user with... |
| CVE-2021-36301 | HIGH | 7.2 | 27.7% | Nov 23, 2021 | Dell iDRAC 9 prior to version 4.40.40.00 and iDRAC 8 prior to version 2.80.80.80 contain a Stack Buffer Overflow in Raca... |
| CVE-2021-36300 | HIGH | 8.2 | 33.3% | Nov 23, 2021 | iDRAC9 versions prior to 5.00.00.00 contain an improper input validation vulnerability. An unauthenticated remote attack... |
| CVE-2021-36299 | HIGH | 8.1 | 29.6% | Nov 23, 2021 | Dell iDRAC9 versions 4.40.00.00 and later, but prior to 4.40.29.00 and 5.00.00.00 contain an SQL injection vulnerability... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now