2021 CVE Vulnerabilities
23,468 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-20230 | HIGH | 7.5 | 1.2% | Feb 23, 2021 | A flaw was found in stunnel before 5.57, where it improperly validates client certificates when it is configured to use ... |
| CVE-2021-20226 | HIGH | 7.8 | 0.4% | Feb 23, 2021 | A use-after-free flaw was found in the io_uring in Linux kernel, where a local attacker with a user privilege could caus... |
| CVE-2021-25630 | HIGH | 7.8 | 0.3% | Feb 23, 2021 | "loolforkit" is a privileged program that is supposed to be run by a special, non-privileged "lool" user. Before doing a... |
| CVE-2021-3252 | HIGH | 7.5 | 2.6% | Feb 23, 2021 | KACO New Energy XP100U Up to XP-JAVA 2.0 is affected by incorrect access control. Credentials will always be returned in... |
| CVE-2021-27550 | MEDIUM | 5.5 | 1.7% | Feb 23, 2021 | Polaris Office v9.102.66 is affected by a divide-by-zero error in PolarisOffice.exe and EngineDLL.dll that may cause a l... |
| CVE-2021-20242 | — | — | — | Feb 23, 2021 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2021-20176. Reason: This candidate is a reservation d... |
| CVE-2021-22649 | HIGH | 7.8 | 2.2% | Feb 23, 2021 | Luxion KeyShot versions prior to 10.1, Luxion KeyShot Viewer versions prior to 10.1, Luxion KeyShot Network Rendering ve... |
| CVE-2021-22647 | HIGH | 7.8 | 2.1% | Feb 23, 2021 | Luxion KeyShot versions prior to 10.1, Luxion KeyShot Viewer versions prior to 10.1, Luxion KeyShot Network Rendering ve... |
| CVE-2021-22645 | HIGH | 7.8 | 1.5% | Feb 23, 2021 | Luxion KeyShot versions prior to 10.1, Luxion KeyShot Viewer versions prior to 10.1, Luxion KeyShot Network Rendering ve... |
| CVE-2021-22643 | HIGH | 7.8 | 2.1% | Feb 23, 2021 | Luxion KeyShot versions prior to 10.1, Luxion KeyShot Viewer versions prior to 10.1, Luxion KeyShot Network Rendering ve... |
| CVE-2021-27568 | MEDIUM | 5.9 | 2.9% | Feb 23, 2021 | An issue was discovered in netplex json-smart-v1 through 2015-10-23 and json-smart-v2 through 2.4. An exception is throw... |
| CVE-2021-27189 | MEDIUM | 5.9 | 1.0% | Feb 23, 2021 | The CIRA Canadian Shield app before 4.0.13 for iOS lacks SSL Certificate Validation. |
| CVE-2021-23827 | MEDIUM | 5.5 | 0.3% | Feb 23, 2021 | Keybase Desktop Client before 5.6.0 on Windows and macOS, and before 5.6.1 on Linux, allows an attacker to obtain potent... |
| CVE-2021-21157 | HIGH | 8.8 | 9.5% | Feb 22, 2021 | Use after free in Web Sockets in Google Chrome on Linux prior to 88.0.4324.182 allowed a remote attacker to potentially ... |
| CVE-2021-21156 | HIGH | 8.8 | 2.7% | Feb 22, 2021 | Heap buffer overflow in V8 in Google Chrome prior to 88.0.4324.182 allowed a remote attacker to potentially exploit heap... |
| CVE-2021-21155 | CRITICAL | 9.6 | 1.3% | Feb 22, 2021 | Heap buffer overflow in Tab Strip in Google Chrome on Windows prior to 88.0.4324.182 allowed a remote attacker who had c... |
| CVE-2021-21154 | CRITICAL | 9.6 | 1.4% | Feb 22, 2021 | Heap buffer overflow in Tab Strip in Google Chrome prior to 88.0.4324.182 allowed a remote attacker who had compromised ... |
| CVE-2021-21153 | HIGH | 8.8 | 1.3% | Feb 22, 2021 | Stack buffer overflow in GPU Process in Google Chrome on Linux prior to 88.0.4324.182 allowed a remote attacker to poten... |
| CVE-2021-21152 | HIGH | 8.8 | 1.3% | Feb 22, 2021 | Heap buffer overflow in Media in Google Chrome on Linux prior to 88.0.4324.182 allowed a remote attacker to potentially ... |
| CVE-2021-21151 | CRITICAL | 9.6 | 1.1% | Feb 22, 2021 | Use after free in Payments in Google Chrome prior to 88.0.4324.182 allowed a remote attacker to potentially perform a sa... |
| CVE-2021-21150 | CRITICAL | 9.6 | 1.2% | Feb 22, 2021 | Use after free in Downloads in Google Chrome on Windows prior to 88.0.4324.182 allowed a remote attacker who had comprom... |
| CVE-2021-21149 | HIGH | 8.8 | 1.5% | Feb 22, 2021 | Stack buffer overflow in Data Transfer in Google Chrome on Linux prior to 88.0.4324.182 allowed a remote attacker to per... |
| CVE-2021-26725 | MEDIUM | 4.9 | 1.1% | Feb 22, 2021 | Path Traversal vulnerability when changing timezone using web GUI of Nozomi Networks Guardian, CMC allows an authenticat... |
| CVE-2021-26724 | HIGH | 7.2 | 3.1% | Feb 22, 2021 | OS Command Injection vulnerability when changing date settings or hostname using web GUI of Nozomi Networks Guardian and... |
| CVE-2021-26068 | HIGH | 8.8 | 2.7% | Feb 22, 2021 | An endpoint in Atlassian Jira Server for Slack plugin from version 0.0.3 before version 2.0.15 allows remote attackers t... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now