2021 CVE Vulnerabilities
23,452 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-30633 | CRITICAL | 9.6 | 32.7% | Oct 8, 2021 | Use after free in Indexed DB API in Google Chrome prior to 93.0.4577.82 allowed a remote attacker who had compromised th... |
| CVE-2021-30632 | HIGH | 8.8 | 64.5% | Oct 8, 2021 | Out of bounds write in V8 in Google Chrome prior to 93.0.4577.82 allowed a remote attacker to potentially exploit heap c... |
| CVE-2021-30630 | MEDIUM | 4.3 | 0.7% | Oct 8, 2021 | Inappropriate implementation in Blink in Google Chrome prior to 93.0.4577.82 allowed a remote attacker who had compromis... |
| CVE-2021-30629 | HIGH | 8.8 | 0.9% | Oct 8, 2021 | Use after free in Permissions in Google Chrome prior to 93.0.4577.82 allowed a remote attacker who had compromised the r... |
| CVE-2021-30628 | HIGH | 8.8 | 0.9% | Oct 8, 2021 | Stack buffer overflow in ANGLE in Google Chrome prior to 93.0.4577.82 allowed a remote attacker to potentially exploit s... |
| CVE-2021-30627 | HIGH | 8.8 | 0.9% | Oct 8, 2021 | Type confusion in Blink layout in Google Chrome prior to 93.0.4577.82 allowed a remote attacker to potentially exploit h... |
| CVE-2021-30626 | HIGH | 8.8 | 1.0% | Oct 8, 2021 | Out of bounds memory access in ANGLE in Google Chrome prior to 93.0.4577.82 allowed a remote attacker to potentially exp... |
| CVE-2021-30625 | HIGH | 8.8 | 10.1% | Oct 8, 2021 | Use after free in Selection API in Google Chrome prior to 93.0.4577.82 allowed a remote attacker who convinced the user ... |
| CVE-2021-42109 | CRITICAL | 9.8 | 1.6% | Oct 8, 2021 | VITEC Exterity IPTV products through 2021-04-30 allow privilege escalation to root. |
| CVE-2021-29906 | MEDIUM | 5.5 | 0.2% | Oct 8, 2021 | IBM App Connect Enterprise Certified Container 1.0, 1.1, 1.2, 1.3, 1.4 and 1.5 could disclose sensitive information to a... |
| CVE-2021-41802 | MEDIUM | 5.4 | 0.6% | Oct 8, 2021 | HashiCorp Vault and Vault Enterprise through 1.7.4 and 1.8.3 allowed a user with write permission to an entity alias ID ... |
| CVE-2021-32029 | MEDIUM | 6.5 | 1.4% | Oct 8, 2021 | A flaw was found in postgresql. Using an UPDATE ... RETURNING command on a purpose-crafted table, an authenticated datab... |
| CVE-2021-20600 | MEDIUM | 5.9 | 2.2% | Oct 8, 2021 | Uncontrolled resource consumption in Mitsubishi Electric MELSEC iQ-R series C Controller Module R12CCPU-V Firmware Versi... |
| CVE-2021-41976 | MEDIUM | 5.3 | 1.0% | Oct 8, 2021 | Tad Uploader edit book list function is vulnerable to authorization bypass, thus remote attackers can use the function t... |
| CVE-2021-41975 | CRITICAL | 9.1 | 1.3% | Oct 8, 2021 | TadTools special page is vulnerable to authorization bypass, thus remote attackers can use the specific parameter to del... |
| CVE-2021-41974 | CRITICAL | 9.1 | 1.2% | Oct 8, 2021 | Tad Book3 editing book page does not perform identity verification. Remote attackers can use the vulnerability to view a... |
| CVE-2021-41920 | HIGH | 7.5 | 1.7% | Oct 8, 2021 | webTareas version 2.4 and earlier allows an unauthenticated user to perform Time and Boolean-based blind SQL Injection o... |
| CVE-2021-41919 | HIGH | 8.8 | 2.3% | Oct 8, 2021 | webTareas version 2.4 and earlier allows an authenticated user to arbitrarily upload potentially dangerous files without... |
| CVE-2021-41918 | MEDIUM | 5.4 | 0.5% | Oct 8, 2021 | webTareas version 2.4 and earlier allows an authenticated user to inject arbitrary web script or HTML due to incorrect s... |
| CVE-2021-41917 | MEDIUM | 5.4 | 0.5% | Oct 8, 2021 | webTareas version 2.4 and earlier allows an authenticated user to store arbitrary web script or HTML by creating or edit... |
| CVE-2021-41916 | HIGH | 8.8 | 0.8% | Oct 8, 2021 | A Cross-Site Request Forgery (CSRF) vulnerability in webTareas version 2.4 and earlier allows a remote attacker to creat... |
| CVE-2021-41825 | MEDIUM | 5.3 | 1.1% | Oct 8, 2021 | Verint Workforce Optimization (WFO) 15.2.5.1033 allows HTML injection via the /wfo/control/signin username parameter. |
| CVE-2021-41568 | MEDIUM | 6.5 | 1.0% | Oct 8, 2021 | Tad Web is vulnerable to authorization bypass, thus remote attackers can exploit the vulnerability to use the original f... |
| CVE-2021-41567 | MEDIUM | 6.1 | 0.6% | Oct 8, 2021 | The new add subject parameter of Tad Uploader view book list function fails to filter special characters. Unauthenticate... |
| CVE-2021-41566 | CRITICAL | 9.8 | 1.9% | Oct 8, 2021 | The file extension of the TadTools file upload function fails to filter, thus remote attackers can upload any types of f... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now