2021 CVE Vulnerabilities
23,466 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-33346 | CRITICAL | 9.8 | 1.2% | Jun 24, 2021 | There is an arbitrary password modification vulnerability in a D-LINK DSL-2888A router product. An attacker can use this... |
| CVE-2021-32704 | HIGH | 8.8 | 0.8% | Jun 24, 2021 | DHIS 2 is an information system for data capture, management, validation, analytics and visualization. A SQL injection s... |
| CVE-2021-31649 | CRITICAL | 9.8 | 1.8% | Jun 24, 2021 | In applications using jfinal 4.9.08 and below, there is a deserialization vulnerability when using redis,may be vulnerab... |
| CVE-2021-33348 | MEDIUM | 6.1 | 0.6% | Jun 24, 2021 | An issue was discovered in JFinal framework v4.9.10 and below. The "set" method of the "Controller" class of jfinal fram... |
| CVE-2021-23398 | MEDIUM | 6.1 | 1.3% | Jun 24, 2021 | All versions of package react-bootstrap-table are vulnerable to Cross-site Scripting (XSS) via the dataFormat parameter.... |
| CVE-2021-29968 | HIGH | 8.1 | 0.8% | Jun 24, 2021 | When drawing text onto a canvas with WebRender disabled, an out of bounds read could occur. *This bug only affects Firef... |
| CVE-2021-29967 | HIGH | 8.8 | 1.4% | Jun 24, 2021 | Mozilla developers reported memory safety bugs present in Firefox 88 and Firefox ESR 78.11. Some of these bugs showed ev... |
| CVE-2021-29966 | HIGH | 8.8 | 1.0% | Jun 24, 2021 | Mozilla developers reported memory safety bugs present in Firefox 88. Some of these bugs showed evidence of memory corru... |
| CVE-2021-29965 | MEDIUM | 5.3 | 0.7% | Jun 24, 2021 | A malicious website that causes an HTTP Authentication dialog to be spawned could trick the built-in password manager to... |
| CVE-2021-29964 | HIGH | 7.1 | 0.8% | Jun 24, 2021 | A locally-installed hostile program could send `WM_COPYDATA` messages that Firefox would process incorrectly, leading to... |
| CVE-2021-29963 | MEDIUM | 4.3 | 0.3% | Jun 24, 2021 | Address bar search suggestions in private browsing mode were re-using session data from normal mode. *This bug only affe... |
| CVE-2021-29962 | MEDIUM | 4.3 | 0.7% | Jun 24, 2021 | Firefox for Android would become unstable and hard-to-recover when a website opened too many popups. *This bug only affe... |
| CVE-2021-29961 | MEDIUM | 4.3 | 0.8% | Jun 24, 2021 | When styling and rendering an oversized `<select>` element, Firefox did not apply correct clipping which allowed an atta... |
| CVE-2021-29960 | MEDIUM | 4.3 | 0.8% | Jun 24, 2021 | Firefox used to cache the last filename used for printing a file. When generating a filename for printing, Firefox usual... |
| CVE-2021-29959 | MEDIUM | 4.3 | 0.8% | Jun 24, 2021 | When a user has already allowed a website to access microphone and camera, disabling camera sharing would not fully prev... |
| CVE-2021-29958 | MEDIUM | 4.3 | 0.7% | Jun 24, 2021 | When a download was initiated, the client did not check whether it was in normal or private browsing mode, which led to ... |
| CVE-2021-29957 | MEDIUM | 4.3 | 0.9% | Jun 24, 2021 | If a MIME encoded email contains an OpenPGP inline signed or encrypted message part, but also contains an additional unp... |
| CVE-2021-29956 | MEDIUM | 4.3 | 0.8% | Jun 24, 2021 | OpenPGP secret keys that were imported using Thunderbird version 78.8.1 up to version 78.10.1 were stored unencrypted on... |
| CVE-2021-29955 | MEDIUM | 5.3 | 1.5% | Jun 24, 2021 | A transient execution vulnerability, named Floating Point Value Injection (FPVI) allowed an attacker to leak arbitrary m... |
| CVE-2021-29954 | CRITICAL | 9.8 | 0.6% | Jun 24, 2021 | Proxy functionality built into Hubs Cloud’s Reticulum software allowed access to internal URLs, including the metadata s... |
| CVE-2021-29953 | MEDIUM | 6.1 | 0.6% | Jun 24, 2021 | A malicious webpage could have forced a Firefox for Android user into executing attacker-controlled JavaScript in the co... |
| CVE-2021-29952 | HIGH | 7.5 | 0.7% | Jun 24, 2021 | When Web Render components were destructed, a race condition could have caused undefined behavior, and we presume that w... |
| CVE-2021-29951 | MEDIUM | 6.5 | 1.9% | Jun 24, 2021 | The Mozilla Maintenance Service granted SERVICE_START access to BUILTIN|Users which, in a domain network, grants normal ... |
| CVE-2021-29950 | HIGH | 7.5 | 0.9% | Jun 24, 2021 | Thunderbird unprotects a secret OpenPGP key prior to using it for a decryption, signing or key import task. If the task ... |
| CVE-2021-29949 | HIGH | 7.8 | 0.3% | Jun 24, 2021 | When loading the shared library that provides the OTR protocol implementation, Thunderbird will initially attempt to ope... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now