2021 CVE Vulnerabilities
23,452 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-42135 | HIGH | 8.1 | 0.8% | Oct 11, 2021 | HashiCorp Vault and Vault Enterprise 1.8.x through 1.8.4 may have an unexpected interaction between glob-related policie... |
| CVE-2021-41055 | HIGH | 7.5 | 1.5% | Oct 11, 2021 | Gajim 1.2.x and 1.3.x before 1.3.3 allows remote attackers to cause a denial of service (crash) via a crafted XMPP Last ... |
| CVE-2021-42134 | MEDIUM | 6.1 | 0.7% | Oct 11, 2021 | The Unicorn framework before 0.36.1 for Django allows XSS via a component. NOTE: this issue exists because of an incompl... |
| CVE-2021-25966 | HIGH | 8.8 | 1.0% | Oct 10, 2021 | In “Orchard core CMS” application, versions 1.0.0-beta1-3383 to 1.0.0 are vulnerable to an improper session termination ... |
| CVE-2021-37976 | MEDIUM | 6.5 | 19.9% | Oct 8, 2021 | Inappropriate implementation in Memory in Google Chrome prior to 94.0.4606.71 allowed a remote attacker to obtain potent... |
| CVE-2021-37975 | HIGH | 8.8 | 34.9% | Oct 8, 2021 | Use after free in V8 in Google Chrome prior to 94.0.4606.71 allowed a remote attacker to potentially exploit heap corrup... |
| CVE-2021-37974 | HIGH | 8.8 | 1.3% | Oct 8, 2021 | Use after free in Safebrowsing in Google Chrome prior to 94.0.4606.71 allowed a remote attacker who had compromised the ... |
| CVE-2021-37973 | CRITICAL | 9.6 | 11.7% | Oct 8, 2021 | Use after free in Portals in Google Chrome prior to 94.0.4606.61 allowed a remote attacker who had compromised the rende... |
| CVE-2021-37972 | HIGH | 8.8 | 1.7% | Oct 8, 2021 | Out of bounds read in libjpeg-turbo in Google Chrome prior to 94.0.4606.54 allowed a remote attacker to potentially expl... |
| CVE-2021-37971 | MEDIUM | 4.3 | 1.2% | Oct 8, 2021 | Incorrect security UI in Web Browser UI in Google Chrome prior to 94.0.4606.54 allowed a remote attacker to spoof the co... |
| CVE-2021-37970 | HIGH | 8.8 | 1.3% | Oct 8, 2021 | Use after free in File System API in Google Chrome prior to 94.0.4606.54 allowed a remote attacker to potentially exploi... |
| CVE-2021-37969 | HIGH | 7.8 | 0.9% | Oct 8, 2021 | Inappropriate implementation in Google Updater in Google Chrome on Windows prior to 94.0.4606.54 allowed a remote attack... |
| CVE-2021-37968 | MEDIUM | 4.3 | 1.2% | Oct 8, 2021 | Inappropriate implementation in Background Fetch API in Google Chrome prior to 94.0.4606.54 allowed a remote attacker to... |
| CVE-2021-37967 | MEDIUM | 4.3 | 0.8% | Oct 8, 2021 | Inappropriate implementation in Background Fetch API in Google Chrome prior to 94.0.4606.54 allowed a remote attacker wh... |
| CVE-2021-37966 | MEDIUM | 4.3 | 0.7% | Oct 8, 2021 | Inappropriate implementation in Compositing in Google Chrome on Android prior to 94.0.4606.54 allowed a remote attacker ... |
| CVE-2021-37965 | MEDIUM | 4.3 | 1.1% | Oct 8, 2021 | Inappropriate implementation in Background Fetch API in Google Chrome prior to 94.0.4606.54 allowed a remote attacker to... |
| CVE-2021-37964 | LOW | 3.3 | 0.5% | Oct 8, 2021 | Inappropriate implementation in ChromeOS Networking in Google Chrome on ChromeOS prior to 94.0.4606.54 allowed an attack... |
| CVE-2021-37963 | MEDIUM | 4.3 | 1.1% | Oct 8, 2021 | Side-channel information leakage in DevTools in Google Chrome prior to 94.0.4606.54 allowed a remote attacker to bypass ... |
| CVE-2021-37962 | HIGH | 8.8 | 1.2% | Oct 8, 2021 | Use after free in Performance Manager in Google Chrome prior to 94.0.4606.54 allowed a remote attacker who had compromis... |
| CVE-2021-37961 | HIGH | 8.8 | 1.2% | Oct 8, 2021 | Use after free in Tab Strip in Google Chrome prior to 94.0.4606.54 allowed a remote attacker to potentially exploit heap... |
| CVE-2021-37959 | HIGH | 8.8 | 0.9% | Oct 8, 2021 | Use after free in Task Manager in Google Chrome prior to 94.0.4606.54 allowed an attacker who convinced a user to enage ... |
| CVE-2021-37958 | MEDIUM | 5.4 | 0.9% | Oct 8, 2021 | Inappropriate implementation in Navigation in Google Chrome on Windows prior to 94.0.4606.54 allowed a remote attacker t... |
| CVE-2021-37957 | HIGH | 8.8 | 1.2% | Oct 8, 2021 | Use after free in WebGPU in Google Chrome prior to 94.0.4606.54 allowed a remote attacker to potentially exploit heap co... |
| CVE-2021-37956 | HIGH | 8.8 | 1.2% | Oct 8, 2021 | Use after free in Offline use in Google Chrome on Android prior to 94.0.4606.54 allowed a remote attacker who had compro... |
| CVE-2021-42112 | MEDIUM | 6.1 | 1.5% | Oct 8, 2021 | The "File upload question" functionality in LimeSurvey 3.x-LTS through 3.27.18 allows XSS in assets/scripts/modaldialog.... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now