2021 CVE Vulnerabilities

23,468 CVEs published in 2021.

CVE IDSeverityCVSSDescription
CVE-2021-26937CRITICAL9.8encoding.c in GNU Screen through 4.8.0 allows remote attackers to cause a denial of service (invalid write access and ap...
CVE-2021-26551HIGH8.8An issue was discovered in SmartFoxServer 2.17.0. An attacker can execute arbitrary Python code, and bypass the javashel...
CVE-2021-26550MEDIUM5.5An issue was discovered in SmartFoxServer 2.17.0. Cleartext password disclosure can occur via /config/server.xml.
CVE-2021-26549MEDIUM5.4An XSS issue was discovered in SmartFoxServer 2.17.0. Input passed to the AdminTool console is not properly sanitized be...
CVE-2021-3191HIGH8.8Idelji Web ViewPoint Suite, as used in conjunction with HPE NonStop, allows Remote Unauthorized Access for T0320L01^ABY ...
CVE-2021-22267MEDIUM5.9Idelji Web ViewPoint Suite, as used in conjunction with HPE NonStop, allows a remote replay attack for T0320L01^ABP thro...
CVE-2021-25666MEDIUM4.3A vulnerability has been identified in SCALANCE W780 and W740 (IEEE 802.11n) family (All versions < V6.3). Sending speci...
CVE-2021-25141MEDIUM4.4A security vulnerability has been identified in in certain HPE and Aruba L2/L3 switch firmware. A data processing error ...
CVE-2021-25140CRITICAL9.8A potential security vulnerability has been identified in the HPE Moonshot Provisioning Manager v1.20. The HPE Moonshot ...
CVE-2021-25139CRITICAL9.8A potential security vulnerability has been identified in the HPE Moonshot Provisioning Manager v1.20. The HPE Moonshot ...
CVE-2021-22663HIGH7.8Cscape (All versions prior to 9.90 SP3.5) lacks proper validation of user-supplied data when parsing project files. This...
CVE-2021-26676MEDIUM6.5gdhcp in ConnMan before 1.39 could be used by network-adjacent attackers to leak sensitive stack information, allowing f...
CVE-2021-26675HIGH8.8A stack-based buffer overflow in dnsproxy in ConnMan before 1.39 could be used by network adjacent attackers to execute ...
CVE-2021-21148HIGH8.8Heap buffer overflow in V8 in Google Chrome prior to 88.0.4324.150 allowed a remote attacker to potentially exploit heap...
CVE-2021-3394HIGH8.8Millennium Millewin (also known as "Cartella clinica") 13.39.028, 13.39.28.3342, and 13.39.146.1 has insecure folder per...
CVE-2021-26921MEDIUM6.5In util/session/sessionmanager.go in Argo CD before 1.8.4, tokens continue to work even when the user account is disable...
CVE-2021-21147MEDIUM4.3Inappropriate implementation in Skia in Google Chrome prior to 88.0.4324.146 allowed a local attacker to spoof the conte...
CVE-2021-21146CRITICAL9.6Use after free in Navigation in Google Chrome prior to 88.0.4324.146 allowed a remote attacker who had compromised the r...
CVE-2021-21145HIGH8.8Use after free in Fonts in Google Chrome prior to 88.0.4324.146 allowed a remote attacker to potentially exploit heap co...
CVE-2021-21144HIGH8.8Heap buffer overflow in Tab Groups in Google Chrome prior to 88.0.4324.146 allowed an attacker who convinced a user to i...
CVE-2021-21143HIGH8.8Heap buffer overflow in Extensions in Google Chrome prior to 88.0.4324.146 allowed an attacker who convinced a user to i...
CVE-2021-21142CRITICAL9.6Use after free in Payments in Google Chrome on Mac prior to 88.0.4324.146 allowed a remote attacker to potentially perfo...
CVE-2021-26719MEDIUM6.5A directory traversal issue was discovered in Gradle gradle-enterprise-test-distribution-agent before 1.3.2, test-distri...
CVE-2021-21141MEDIUM6.5Insufficient policy enforcement in File System API in Google Chrome prior to 88.0.4324.96 allowed a remote attacker to b...
CVE-2021-21140MEDIUM6.8Uninitialized use in USB in Google Chrome prior to 88.0.4324.96 allowed a local attacker to potentially perform out of b...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now