IT
58.306 CVE tracked
789 Exploited now
188 Used by ransomware
Last sync

CVE Tracker

58.306 CVE

Ten vendors followed by CPE identifier, not by keyword: a CVE appears here once NVD says which products it affects — usually a few days after it is published.

CVE Tracker
Identifier Severity, sorted ascending Product and flaw EPSS, sort descending In KEV since, sort descending
CVE-2021-43211 MED 5.5 microsoft windows_10_update_assistant Windows 10 Update Assistant Elevation of Privilege Vulnerability 0.9% —
CVE-2021-43056 MED 5.5 fedoraproject fedora An issue was discovered in the Linux kernel for powerpc before 5.14.15. It allows a malicious KVM guest to crash the host, when the host is running on Power8, due to an arch/powerpc/kvm/book3s_hv_rmhandlers.S implementation bug in the handling of the SRR1 regi 0.4% —
CVE-2021-43016 MED 5.5 adobe incopy Adobe InCopy version 16.4 (and earlier) is affected by a Null pointer dereference vulnerability when parsing a specially crafted file. An unauthenticated attacker could leverage this vulnerability to achieve an application denial-of-service in the context of t 2.1% —
CVE-2021-42734 MED 5.5 adobe photoshop Adobe Photoshop version 22.5.1  and earlier versions   are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this 0.5% —
CVE-2021-42733 MED 5.5 adobe bridge Adobe Bridge version 11.1.1 (and earlier) is affected by a Null pointer dereference vulnerability when parsing a specially crafted file. An unauthenticated attacker could leverage this vulnerability to achieve an application denial-of-service in the context of 1.4% —
CVE-2021-42295 MED 5.5 microsoft 365_apps Visual Basic for Applications Information Disclosure Vulnerability 2.9% —
CVE-2021-42280 MED 5.5 microsoft windows_10 Windows Feedback Hub Elevation of Privilege Vulnerability 0.9% —
CVE-2021-42277 MED 5.5 microsoft visual_studio Diagnostics Hub Standard Collector Elevation of Privilege Vulnerability 0.9% —
CVE-2021-42265 MED 5.5 adobe premiere_pro Adobe Premiere Pro versions 22.0 (and earlier) and 15.4.2 (and earlier) are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exp 0.3% —
CVE-2021-42264 MED 5.5 adobe premiere_pro Adobe Premiere Pro 15.4.1 (and earlier) is affected by a Null pointer dereference vulnerability when parsing a specially crafted file. An unauthenticated attacker could leverage this vulnerability to achieve an application denial-of-service in the context of t 1.1% —
CVE-2021-42263 MED 5.5 adobe premiere_pro Adobe Premiere Pro 15.4.1 (and earlier) is affected by a Null pointer dereference vulnerability when parsing a specially crafted file. An unauthenticated attacker could leverage this vulnerability to achieve an application denial-of-service in the context of t 1.1% —
CVE-2021-4218 MED 5.5 linux linux_kernel A flaw was found in the Linux kernel’s implementation of reading the SVC RDMA counters. Reading the counter sysctl panics the system. This flaw allows a local attacker with local access to cause a denial of service while the system reboots. The issue is specif 0.3% —
CVE-2021-4155 MED 5.5 linux linux_kernel A data leak flaw was found in the way XFS_IOC_ALLOCSP IOCTL in the XFS filesystem allowed for size increase of files with unaligned size. A local attacker could use this flaw to leak data on the XFS filesystem otherwise not accessible to them. 0.3% —
CVE-2021-4150 MED 5.5 linux linux_kernel A use-after-free flaw was found in the add_partition in block/partitions/core.c in the Linux kernel. A local attacker with user privileges could cause a denial of service on the system. The issue results from the lack of code cleanup when device_add call fails 0.3% —
CVE-2021-4149 MED 5.5 debian debian_linux A vulnerability was found in btrfs_alloc_tree_b in fs/btrfs/extent-tree.c in the Linux kernel due to an improper lock operation in btrfs. In this flaw, a user with a local privilege may cause a denial of service (DOS) due to a deadlock problem. 0.4% —
CVE-2021-4148 MED 5.5 fedoraproject fedora A vulnerability was found in the Linux kernel's block_invalidatepage in fs/buffer.c in the filesystem. A missing sanity check may allow a local attacker with user privilege to cause a denial of service (DOS) problem. 0.3% —
CVE-2021-41379 MED 5.5 ransomware microsoft windows_10_1507 Windows Installer Elevation of Privilege Vulnerability 19.5%
CVE-2021-41373 MED 5.5 microsoft fslogix FSLogix Information Disclosure Vulnerability 0.8% —
CVE-2021-4135 MED 5.5 linux linux_kernel A memory leak vulnerability was found in the Linux kernel's eBPF for the Simulated networking device driver in the way user uses BPF for the device such that function nsim_map_alloc_elem being called. A local user could use this flaw to get unauthorized access 0.2% —
CVE-2021-41343 MED 5.5 microsoft windows_10 Windows Fast FAT File System Driver Information Disclosure Vulnerability 0.7% —
CVE-2021-41338 MED 5.5 microsoft windows_10 Windows AppContainer Firewall Rules Security Feature Bypass Vulnerability 3.3% —
CVE-2021-41336 MED 5.5 microsoft windows_11 Windows Kernel Information Disclosure Vulnerability 0.7% —
CVE-2021-41023 MED 5.5 fortinet fortisiem A unprotected storage of credentials in Fortinet FortiSIEM Windows Agent version 4.1.4 and below allows an authenticated user to disclosure agent password due to plaintext credential storage in log files 0.2% —
CVE-2021-4095 MED 5.5 fedoraproject fedora A NULL pointer dereference was found in the Linux kernel's KVM when dirty ring logging is enabled without an active vCPU context. An unprivileged local attacker on the host may use this flaw to cause a kernel oops condition and thus a denial of service by issu 0.4% —
CVE-2021-40833 MED 5.5 f-secure atlant A vulnerability affecting F-Secure antivirus engine was discovered whereby unpacking UPX file can lead to denial-of-service. The vulnerability can be exploited remotely by an attacker. A successful attack will result in denial-of-service of the antivirus engin 0.4% —