2021 CVE Vulnerabilities

23,466 CVEs published in 2021.

CVE IDSeverityCVSSDescription
CVE-2021-33346CRITICAL9.8There is an arbitrary password modification vulnerability in a D-LINK DSL-2888A router product. An attacker can use this...
CVE-2021-32704HIGH8.8DHIS 2 is an information system for data capture, management, validation, analytics and visualization. A SQL injection s...
CVE-2021-31649CRITICAL9.8In applications using jfinal 4.9.08 and below, there is a deserialization vulnerability when using redis,may be vulnerab...
CVE-2021-33348MEDIUM6.1An issue was discovered in JFinal framework v4.9.10 and below. The "set" method of the "Controller" class of jfinal fram...
CVE-2021-23398MEDIUM6.1All versions of package react-bootstrap-table are vulnerable to Cross-site Scripting (XSS) via the dataFormat parameter....
CVE-2021-29968HIGH8.1When drawing text onto a canvas with WebRender disabled, an out of bounds read could occur. *This bug only affects Firef...
CVE-2021-29967HIGH8.8Mozilla developers reported memory safety bugs present in Firefox 88 and Firefox ESR 78.11. Some of these bugs showed ev...
CVE-2021-29966HIGH8.8Mozilla developers reported memory safety bugs present in Firefox 88. Some of these bugs showed evidence of memory corru...
CVE-2021-29965MEDIUM5.3A malicious website that causes an HTTP Authentication dialog to be spawned could trick the built-in password manager to...
CVE-2021-29964HIGH7.1A locally-installed hostile program could send `WM_COPYDATA` messages that Firefox would process incorrectly, leading to...
CVE-2021-29963MEDIUM4.3Address bar search suggestions in private browsing mode were re-using session data from normal mode. *This bug only affe...
CVE-2021-29962MEDIUM4.3Firefox for Android would become unstable and hard-to-recover when a website opened too many popups. *This bug only affe...
CVE-2021-29961MEDIUM4.3When styling and rendering an oversized `<select>` element, Firefox did not apply correct clipping which allowed an atta...
CVE-2021-29960MEDIUM4.3Firefox used to cache the last filename used for printing a file. When generating a filename for printing, Firefox usual...
CVE-2021-29959MEDIUM4.3When a user has already allowed a website to access microphone and camera, disabling camera sharing would not fully prev...
CVE-2021-29958MEDIUM4.3When a download was initiated, the client did not check whether it was in normal or private browsing mode, which led to ...
CVE-2021-29957MEDIUM4.3If a MIME encoded email contains an OpenPGP inline signed or encrypted message part, but also contains an additional unp...
CVE-2021-29956MEDIUM4.3OpenPGP secret keys that were imported using Thunderbird version 78.8.1 up to version 78.10.1 were stored unencrypted on...
CVE-2021-29955MEDIUM5.3A transient execution vulnerability, named Floating Point Value Injection (FPVI) allowed an attacker to leak arbitrary m...
CVE-2021-29954CRITICAL9.8Proxy functionality built into Hubs Cloud’s Reticulum software allowed access to internal URLs, including the metadata s...
CVE-2021-29953MEDIUM6.1A malicious webpage could have forced a Firefox for Android user into executing attacker-controlled JavaScript in the co...
CVE-2021-29952HIGH7.5When Web Render components were destructed, a race condition could have caused undefined behavior, and we presume that w...
CVE-2021-29951MEDIUM6.5The Mozilla Maintenance Service granted SERVICE_START access to BUILTIN|Users which, in a domain network, grants normal ...
CVE-2021-29950HIGH7.5Thunderbird unprotects a secret OpenPGP key prior to using it for a decryption, signing or key import task. If the task ...
CVE-2021-29949HIGH7.8When loading the shared library that provides the OTR protocol implementation, Thunderbird will initially attempt to ope...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now