2021 CVE Vulnerabilities
23,461 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-39307 | MEDIUM | 6.1 | 1.1% | Sep 15, 2021 | PDFTron's WebViewer UI 8.0 or below renders dangerous URLs as hyperlinks in supported documents, including JavaScript UR... |
| CVE-2021-30137 | HIGH | 8.2 | 0.8% | Sep 15, 2021 | Assyst 10 SP7.5 has authenticated XXE leading to SSRF via XML unmarshalling. The application allows users to send JSON o... |
| CVE-2021-27662 | HIGH | 8.1 | 0.8% | Sep 15, 2021 | The KT-1 door controller is susceptible to replay or man-in-the-middle attacks where an attacker can record and replay T... |
| CVE-2021-41061 | MEDIUM | 5.5 | 0.2% | Sep 15, 2021 | In RIOT-OS 2021.01, nonce reuse in 802.15.4 encryption in the ieee820154_security component allows attackers to break en... |
| CVE-2021-40448 | MEDIUM | 6.3 | 2.9% | Sep 15, 2021 | Microsoft Accessibility Insights for Android Information Disclosure Vulnerability |
| CVE-2021-40447 | HIGH | 7.8 | 0.6% | Sep 15, 2021 | Windows Print Spooler Elevation of Privilege Vulnerability |
| CVE-2021-40444 | HIGH | 8.8 | 97.2% | Sep 15, 2021 | Microsoft is investigating reports of a remote code execution vulnerability in MSHTML that affects Microsoft Windows. Mi... |
| CVE-2021-40440 | MEDIUM | 5.4 | 1.0% | Sep 15, 2021 | Microsoft Dynamics Business Central Cross-site Scripting Vulnerability |
| CVE-2021-3785 | MEDIUM | 5.4 | 0.7% | Sep 15, 2021 | yourls is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') |
| CVE-2021-3783 | MEDIUM | 6.1 | 0.7% | Sep 15, 2021 | yourls is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') |
| CVE-2021-3780 | MEDIUM | 6.1 | 0.9% | Sep 15, 2021 | peertube is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') |
| CVE-2021-38671 | HIGH | 7.8 | 0.5% | Sep 15, 2021 | Windows Print Spooler Elevation of Privilege Vulnerability |
| CVE-2021-38669 | MEDIUM | 6.4 | 2.6% | Sep 15, 2021 | Microsoft Edge (Chromium-based) Tampering Vulnerability |
| CVE-2021-38667 | HIGH | 7.8 | 0.5% | Sep 15, 2021 | Windows Print Spooler Elevation of Privilege Vulnerability |
| CVE-2021-38661 | HIGH | 7.8 | 2.1% | Sep 15, 2021 | HEVC Video Extensions Remote Code Execution Vulnerability |
| CVE-2021-38660 | HIGH | 7.8 | 2.1% | Sep 15, 2021 | Microsoft Office Graphics Remote Code Execution Vulnerability |
| CVE-2021-38659 | HIGH | 7.8 | 4.9% | Sep 15, 2021 | Microsoft Office Graphics Remote Code Execution Vulnerability |
| CVE-2021-38658 | HIGH | 7.8 | 4.9% | Sep 15, 2021 | Microsoft Office Graphics Remote Code Execution Vulnerability |
| CVE-2021-38657 | MEDIUM | 6.1 | 0.8% | Sep 15, 2021 | Microsoft Office Graphics Component Information Disclosure Vulnerability |
| CVE-2021-38656 | HIGH | 7.8 | 5.1% | Sep 15, 2021 | Microsoft Word Remote Code Execution Vulnerability |
| CVE-2021-38655 | HIGH | 7.8 | 4.9% | Sep 15, 2021 | Microsoft Excel Remote Code Execution Vulnerability |
| CVE-2021-38654 | HIGH | 7.8 | 4.9% | Sep 15, 2021 | Microsoft Office Visio Remote Code Execution Vulnerability |
| CVE-2021-38653 | HIGH | 7.8 | 4.9% | Sep 15, 2021 | Microsoft Office Visio Remote Code Execution Vulnerability |
| CVE-2021-38652 | HIGH | 7.6 | 1.2% | Sep 15, 2021 | Microsoft SharePoint Server Spoofing Vulnerability |
| CVE-2021-38651 | HIGH | 7.6 | 1.2% | Sep 15, 2021 | Microsoft SharePoint Server Spoofing Vulnerability |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now