2021 CVE Vulnerabilities
23,468 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-26937 | CRITICAL | 9.8 | 9.1% | Feb 9, 2021 | encoding.c in GNU Screen through 4.8.0 allows remote attackers to cause a denial of service (invalid write access and ap... |
| CVE-2021-26551 | HIGH | 8.8 | 2.6% | Feb 9, 2021 | An issue was discovered in SmartFoxServer 2.17.0. An attacker can execute arbitrary Python code, and bypass the javashel... |
| CVE-2021-26550 | MEDIUM | 5.5 | 0.4% | Feb 9, 2021 | An issue was discovered in SmartFoxServer 2.17.0. Cleartext password disclosure can occur via /config/server.xml. |
| CVE-2021-26549 | MEDIUM | 5.4 | 1.3% | Feb 9, 2021 | An XSS issue was discovered in SmartFoxServer 2.17.0. Input passed to the AdminTool console is not properly sanitized be... |
| CVE-2021-3191 | HIGH | 8.8 | 3.6% | Feb 9, 2021 | Idelji Web ViewPoint Suite, as used in conjunction with HPE NonStop, allows Remote Unauthorized Access for T0320L01^ABY ... |
| CVE-2021-22267 | MEDIUM | 5.9 | 1.4% | Feb 9, 2021 | Idelji Web ViewPoint Suite, as used in conjunction with HPE NonStop, allows a remote replay attack for T0320L01^ABP thro... |
| CVE-2021-25666 | MEDIUM | 4.3 | 0.7% | Feb 9, 2021 | A vulnerability has been identified in SCALANCE W780 and W740 (IEEE 802.11n) family (All versions < V6.3). Sending speci... |
| CVE-2021-25141 | MEDIUM | 4.4 | 0.3% | Feb 9, 2021 | A security vulnerability has been identified in in certain HPE and Aruba L2/L3 switch firmware. A data processing error ... |
| CVE-2021-25140 | CRITICAL | 9.8 | 12.0% | Feb 9, 2021 | A potential security vulnerability has been identified in the HPE Moonshot Provisioning Manager v1.20. The HPE Moonshot ... |
| CVE-2021-25139 | CRITICAL | 9.8 | 7.9% | Feb 9, 2021 | A potential security vulnerability has been identified in the HPE Moonshot Provisioning Manager v1.20. The HPE Moonshot ... |
| CVE-2021-22663 | HIGH | 7.8 | 1.3% | Feb 9, 2021 | Cscape (All versions prior to 9.90 SP3.5) lacks proper validation of user-supplied data when parsing project files. This... |
| CVE-2021-26676 | MEDIUM | 6.5 | 1.2% | Feb 9, 2021 | gdhcp in ConnMan before 1.39 could be used by network-adjacent attackers to leak sensitive stack information, allowing f... |
| CVE-2021-26675 | HIGH | 8.8 | 1.3% | Feb 9, 2021 | A stack-based buffer overflow in dnsproxy in ConnMan before 1.39 could be used by network adjacent attackers to execute ... |
| CVE-2021-21148 | HIGH | 8.8 | 19.8% | Feb 9, 2021 | Heap buffer overflow in V8 in Google Chrome prior to 88.0.4324.150 allowed a remote attacker to potentially exploit heap... |
| CVE-2021-3394 | HIGH | 8.8 | 5.8% | Feb 9, 2021 | Millennium Millewin (also known as "Cartella clinica") 13.39.028, 13.39.28.3342, and 13.39.146.1 has insecure folder per... |
| CVE-2021-26921 | MEDIUM | 6.5 | 1.3% | Feb 9, 2021 | In util/session/sessionmanager.go in Argo CD before 1.8.4, tokens continue to work even when the user account is disable... |
| CVE-2021-21147 | MEDIUM | 4.3 | 0.8% | Feb 9, 2021 | Inappropriate implementation in Skia in Google Chrome prior to 88.0.4324.146 allowed a local attacker to spoof the conte... |
| CVE-2021-21146 | CRITICAL | 9.6 | 1.1% | Feb 9, 2021 | Use after free in Navigation in Google Chrome prior to 88.0.4324.146 allowed a remote attacker who had compromised the r... |
| CVE-2021-21145 | HIGH | 8.8 | 1.0% | Feb 9, 2021 | Use after free in Fonts in Google Chrome prior to 88.0.4324.146 allowed a remote attacker to potentially exploit heap co... |
| CVE-2021-21144 | HIGH | 8.8 | 0.9% | Feb 9, 2021 | Heap buffer overflow in Tab Groups in Google Chrome prior to 88.0.4324.146 allowed an attacker who convinced a user to i... |
| CVE-2021-21143 | HIGH | 8.8 | 0.8% | Feb 9, 2021 | Heap buffer overflow in Extensions in Google Chrome prior to 88.0.4324.146 allowed an attacker who convinced a user to i... |
| CVE-2021-21142 | CRITICAL | 9.6 | 1.1% | Feb 9, 2021 | Use after free in Payments in Google Chrome on Mac prior to 88.0.4324.146 allowed a remote attacker to potentially perfo... |
| CVE-2021-26719 | MEDIUM | 6.5 | 1.4% | Feb 9, 2021 | A directory traversal issue was discovered in Gradle gradle-enterprise-test-distribution-agent before 1.3.2, test-distri... |
| CVE-2021-21141 | MEDIUM | 6.5 | 5.4% | Feb 9, 2021 | Insufficient policy enforcement in File System API in Google Chrome prior to 88.0.4324.96 allowed a remote attacker to b... |
| CVE-2021-21140 | MEDIUM | 6.8 | 0.8% | Feb 9, 2021 | Uninitialized use in USB in Google Chrome prior to 88.0.4324.96 allowed a local attacker to potentially perform out of b... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now