2021 CVE Vulnerabilities

23,452 CVEs published in 2021.

CVE IDSeverityCVSSDescription
CVE-2021-42135HIGH8.1HashiCorp Vault and Vault Enterprise 1.8.x through 1.8.4 may have an unexpected interaction between glob-related policie...
CVE-2021-41055HIGH7.5Gajim 1.2.x and 1.3.x before 1.3.3 allows remote attackers to cause a denial of service (crash) via a crafted XMPP Last ...
CVE-2021-42134MEDIUM6.1The Unicorn framework before 0.36.1 for Django allows XSS via a component. NOTE: this issue exists because of an incompl...
CVE-2021-25966HIGH8.8In “Orchard core CMS” application, versions 1.0.0-beta1-3383 to 1.0.0 are vulnerable to an improper session termination ...
CVE-2021-37976MEDIUM6.5Inappropriate implementation in Memory in Google Chrome prior to 94.0.4606.71 allowed a remote attacker to obtain potent...
CVE-2021-37975HIGH8.8Use after free in V8 in Google Chrome prior to 94.0.4606.71 allowed a remote attacker to potentially exploit heap corrup...
CVE-2021-37974HIGH8.8Use after free in Safebrowsing in Google Chrome prior to 94.0.4606.71 allowed a remote attacker who had compromised the ...
CVE-2021-37973CRITICAL9.6Use after free in Portals in Google Chrome prior to 94.0.4606.61 allowed a remote attacker who had compromised the rende...
CVE-2021-37972HIGH8.8Out of bounds read in libjpeg-turbo in Google Chrome prior to 94.0.4606.54 allowed a remote attacker to potentially expl...
CVE-2021-37971MEDIUM4.3Incorrect security UI in Web Browser UI in Google Chrome prior to 94.0.4606.54 allowed a remote attacker to spoof the co...
CVE-2021-37970HIGH8.8Use after free in File System API in Google Chrome prior to 94.0.4606.54 allowed a remote attacker to potentially exploi...
CVE-2021-37969HIGH7.8Inappropriate implementation in Google Updater in Google Chrome on Windows prior to 94.0.4606.54 allowed a remote attack...
CVE-2021-37968MEDIUM4.3Inappropriate implementation in Background Fetch API in Google Chrome prior to 94.0.4606.54 allowed a remote attacker to...
CVE-2021-37967MEDIUM4.3Inappropriate implementation in Background Fetch API in Google Chrome prior to 94.0.4606.54 allowed a remote attacker wh...
CVE-2021-37966MEDIUM4.3Inappropriate implementation in Compositing in Google Chrome on Android prior to 94.0.4606.54 allowed a remote attacker ...
CVE-2021-37965MEDIUM4.3Inappropriate implementation in Background Fetch API in Google Chrome prior to 94.0.4606.54 allowed a remote attacker to...
CVE-2021-37964LOW3.3Inappropriate implementation in ChromeOS Networking in Google Chrome on ChromeOS prior to 94.0.4606.54 allowed an attack...
CVE-2021-37963MEDIUM4.3Side-channel information leakage in DevTools in Google Chrome prior to 94.0.4606.54 allowed a remote attacker to bypass ...
CVE-2021-37962HIGH8.8Use after free in Performance Manager in Google Chrome prior to 94.0.4606.54 allowed a remote attacker who had compromis...
CVE-2021-37961HIGH8.8Use after free in Tab Strip in Google Chrome prior to 94.0.4606.54 allowed a remote attacker to potentially exploit heap...
CVE-2021-37959HIGH8.8Use after free in Task Manager in Google Chrome prior to 94.0.4606.54 allowed an attacker who convinced a user to enage ...
CVE-2021-37958MEDIUM5.4Inappropriate implementation in Navigation in Google Chrome on Windows prior to 94.0.4606.54 allowed a remote attacker t...
CVE-2021-37957HIGH8.8Use after free in WebGPU in Google Chrome prior to 94.0.4606.54 allowed a remote attacker to potentially exploit heap co...
CVE-2021-37956HIGH8.8Use after free in Offline use in Google Chrome on Android prior to 94.0.4606.54 allowed a remote attacker who had compro...
CVE-2021-42112MEDIUM6.1The "File upload question" functionality in LimeSurvey 3.x-LTS through 3.27.18 allows XSS in assets/scripts/modaldialog....

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now