2021 CVE Vulnerabilities
23,461 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-23425 | MEDIUM | 5.3 | 1.9% | Aug 18, 2021 | All versions of package trim-off-newlines are vulnerable to Regular Expression Denial of Service (ReDoS) via string proc... |
| CVE-2021-23424 | HIGH | 7.5 | 2.0% | Aug 18, 2021 | This affects all versions of package ansi-html. If an attacker provides a malicious string, it will get stuck processing... |
| CVE-2021-32728 | MEDIUM | 6.5 | 0.9% | Aug 18, 2021 | The Nextcloud Desktop Client is a tool to synchronize files from Nextcloud Server with a computer. Clients using the Nex... |
| CVE-2021-38710 | MEDIUM | 6.1 | 0.6% | Aug 18, 2021 | Static (Persistent) XSS Vulnerability exists in version 4.3.0 of Yclas when using the install/view/form.php script. An a... |
| CVE-2021-37714 | HIGH | 7.5 | 6.9% | Aug 18, 2021 | jsoup is a Java library for working with HTML. Those using jsoup versions prior to 1.14.2 to parse untrusted HTML or XML... |
| CVE-2021-37702 | HIGH | 8.8 | 1.1% | Aug 18, 2021 | Pimcore is an open source data & experience management platform. Prior to version 10.1.1, Data Object CSV import allows ... |
| CVE-2021-37358 | CRITICAL | 9.8 | 2.3% | Aug 18, 2021 | SQL Injection in SEACMS v210530 (2021-05-30) allows remote attackers to execute arbitrary code via the component "admin_... |
| CVE-2021-21868 | HIGH | 7.8 | 1.6% | Aug 18, 2021 | An unsafe deserialization vulnerability exists in the ObjectManager.plugin Project.get_MissingTypes() functionality of C... |
| CVE-2021-21867 | HIGH | 7.8 | 1.6% | Aug 18, 2021 | An unsafe deserialization vulnerability exists in the ObjectManager.plugin ObjectStream.ProfileByteArray functionality o... |
| CVE-2021-21862 | HIGH | 8.8 | 1.4% | Aug 18, 2021 | Multiple exploitable integer truncation vulnerabilities exist within the MPEG-4 decoding functionality of the GPAC Proje... |
| CVE-2021-21781 | LOW | 3.3 | 0.5% | Aug 18, 2021 | An information disclosure vulnerability exists in the ARM SIGPAGE functionality of Linux Kernel v5.4.66 and v5.4.54. The... |
| CVE-2021-0628 | MEDIUM | 6.7 | 0.1% | Aug 18, 2021 | In OMA DRM, there is a possible memory corruption due to improper input validation. This could lead to local escalation ... |
| CVE-2021-0627 | MEDIUM | 6.7 | 0.1% | Aug 18, 2021 | In OMA DRM, there is a possible memory corruption due to an integer overflow. This could lead to local escalation of pri... |
| CVE-2021-0626 | MEDIUM | 6.7 | 0.1% | Aug 18, 2021 | In ged, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of pr... |
| CVE-2021-0420 | MEDIUM | 5.5 | 0.1% | Aug 18, 2021 | In memory management driver, there is a possible system crash due to a missing bounds check. This could lead to local de... |
| CVE-2021-0419 | MEDIUM | 5.5 | 0.1% | Aug 18, 2021 | In memory management driver, there is a possible system crash due to improper input validation. This could lead to local... |
| CVE-2021-0418 | MEDIUM | 5.5 | 0.1% | Aug 18, 2021 | In memory management driver, there is a possible system crash due to improper input validation. This could lead to local... |
| CVE-2021-0417 | MEDIUM | 5.5 | 0.1% | Aug 18, 2021 | In memory management driver, there is a possible system crash due to improper input validation. This could lead to local... |
| CVE-2021-0416 | MEDIUM | 5.5 | 0.1% | Aug 18, 2021 | In memory management driver, there is a possible system crash due to improper input validation. This could lead to local... |
| CVE-2021-0415 | MEDIUM | 5.5 | 0.1% | Aug 18, 2021 | In memory management driver, there is a possible information disclosure due to a missing permission check. This could le... |
| CVE-2021-0408 | MEDIUM | 5.5 | 0.1% | Aug 18, 2021 | In asf extractor, there is a possible out of bounds read due to an incorrect bounds check. This could lead to local info... |
| CVE-2021-0407 | MEDIUM | 6.7 | 0.1% | Aug 18, 2021 | In clk driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escala... |
| CVE-2021-21858 | HIGH | 8.8 | 1.7% | Aug 18, 2021 | Multiple exploitable integer overflow vulnerabilities exist within the MPEG-4 decoding functionality of the GPAC Project... |
| CVE-2021-21857 | HIGH | 8.8 | 1.7% | Aug 18, 2021 | Multiple exploitable integer overflow vulnerabilities exist within the MPEG-4 decoding functionality of the GPAC Project... |
| CVE-2021-21856 | HIGH | 8.8 | 1.4% | Aug 18, 2021 | Multiple exploitable integer overflow vulnerabilities exist within the MPEG-4 decoding functionality of the GPAC Project... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now