2021 CVE Vulnerabilities

23,461 CVEs published in 2021.

CVE IDSeverityCVSSDescription
CVE-2021-39247MEDIUM6.5Zint Barcode Generator before 2.10.0 has a one-byte buffer over-read, related to is_last_single_ascii in code1.c, and rs...
CVE-2021-38702MEDIUM6.1Cyberoam NetGenie C0101B1-20141120-NG11VO devices through 2021-08-14 allow tweb/ft.php?u=[XSS] attacks.
CVE-2021-29990HIGH8.8Mozilla developers and community members reported memory safety bugs present in Firefox 90. Some of these bugs showed ev...
CVE-2021-29989HIGH8.8Mozilla developers reported memory safety bugs present in Firefox 90 and Firefox ESR 78.12. Some of these bugs showed ev...
CVE-2021-29988HIGH8.8Firefox incorrectly treated an inline list-item element as a block element, resulting in an out of bounds read or memory...
CVE-2021-29987MEDIUM6.5After requesting multiple permissions, and closing the first permission panel, subsequent permission panels will be disp...
CVE-2021-29986HIGH8.1A suspected race condition when calling getaddrinfo led to memory corruption and a potentially exploitable crash. *Note:...
CVE-2021-29985HIGH8.8A use-after-free vulnerability in media channels could have led to memory corruption and a potentially exploitable crash...
CVE-2021-29984HIGH8.8Instruction reordering resulted in a sequence of instructions that would cause an object to be incorrectly considered du...
CVE-2021-29983MEDIUM6.5Firefox for Android could get stuck in fullscreen mode and not exit it even after normal interactions that should cause ...
CVE-2021-29982MEDIUM6.5Due to incorrect JIT optimization, we incorrectly interpreted data from the wrong type of object, resulting in the poten...
CVE-2021-29981HIGH8.8An issue present in lowering/register allocation could have led to obscure but deterministic register confusion failures...
CVE-2021-29980HIGH8.8Uninitialized memory in a canvas object could have caused an incorrect free() leading to memory corruption and a potenti...
CVE-2021-21832CRITICAL9.8A memory corruption vulnerability exists in the ISO Parsing functionality of Disc Soft Ltd Deamon Tools Pro 8.3.0.0767. ...
CVE-2021-21810CRITICAL9.8A memory corruption vulnerability exists in the XML-parsing ParseAttribs functionality of AT&T Labs’ Xmill 0.7. A specia...
CVE-2021-39242HIGH7.5An issue was discovered in HAProxy 2.2 before 2.2.16, 2.3 before 2.3.13, and 2.4 before 2.4.3. It can lead to a situatio...
CVE-2021-39241MEDIUM5.3An issue was discovered in HAProxy 2.0 before 2.0.24, 2.2 before 2.2.16, 2.3 before 2.3.13, and 2.4 before 2.4.3. An HTT...
CVE-2021-39240HIGH7.5An issue was discovered in HAProxy 2.2 before 2.2.16, 2.3 before 2.3.13, and 2.4 before 2.4.3. It does not ensure that t...
CVE-2021-29313MEDIUM6.1Cross Site Scripting (XSS) vulnerability exists in SeaCMS 12.6 via the (1) v_company and (2) v_tvs parameters in /admin_...
CVE-2021-25263HIGH7.8Local privilege vulnerability in Yandex Browser for Windows prior to 21.9.0.390 allows a local, low privileged, attacker...
CVE-2021-22156CRITICAL9.8An integer overflow vulnerability in the calloc() function of the C runtime library of affected versions of BlackBerry® ...
CVE-2021-0646HIGH7.8In sqlite3_str_vappendf of sqlite3.c, there is a possible out of bounds write due to improper input validation. This cou...
CVE-2021-0645HIGH7.8In shouldBlockFromTree of ExternalStorageProvider.java, there is a possible permissions bypass. This could lead to local...
CVE-2021-0642MEDIUM5.5In onResume of VoicemailSettingsFragment.java, there is a possible way to retrieve a trackable identifier without permis...
CVE-2021-0641MEDIUM5.5In getAvailableSubscriptionInfoList of SubscriptionController.java, there is a possible disclosure of unique identifiers...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now