| | CVE-2021-38660 | Microsoft | high | 7.8 | 2.1%
| | Microsoft Office Graphics Remote Code Execution Vulnerability | Sep 15, 2021 | Aug 10, 2026 |
| | CVE-2021-38661 | Microsoft | high | 7.8 | 2.1%
| | HEVC Video Extensions Remote Code Execution Vulnerability | Sep 15, 2021 | Aug 10, 2026 |
| | CVE-2021-38669 | Microsoft | medium | 6.4 | 2.6%
| | Microsoft Edge (Chromium-based) Tampering Vulnerability | Sep 15, 2021 | Aug 10, 2026 |
| | CVE-2021-40440 | Microsoft | medium | 5.4 | 1.0%
| | Microsoft Dynamics Business Central Cross-site Scripting Vulnerability | Sep 15, 2021 | Aug 10, 2026 |
| | CVE-2021-40448 | Microsoft | medium | 6.3 | 2.9%
| | Microsoft Accessibility Insights for Android Information Disclosure Vulnerability | Sep 15, 2021 | Aug 10, 2026 |
| | CVE-2021-40438 | Tenable | critical | 9.0 | 100.0%
| ⚠ KEV | A crafted request uri-path can cause mod_proxy to forward the request to an origin server choosen by… | Sep 16, 2021 | Aug 6, 2026 |
| | CVE-2021-31843 | Trellix | high | 7.3 | 0.0%
| | Improper privileges management vulnerability in McAfee Endpoint Security (ENS) Windows prior to 10.7… | Sep 17, 2021 | Feb 24, 2026 |
| | CVE-2021-40690 | Apache | high | 7.5 | 7.4%
| | All versions of Apache Santuario - XML Security for Java prior to 2.2.3 and 2.1.7 are vulnerable to … | Sep 19, 2021 | Aug 25, 2026 |
| | CVE-2021-31923 | ForgeRock | medium | 5.3 | — | | Ping Identity PingAccess before 5.3.3 allows HTTP request smuggling via header manipulation. | Sep 24, 2021 | Nov 21, 2024 |
| | CVE-2021-40329 | ForgeRock | critical | 9.8 | — | | The Authentication API in Ping Identity PingFederate before 10.3 mishandles certain aspects of exter… | Sep 27, 2021 | Nov 21, 2024 |
| | CVE-2021-22946 | Splunk | high | 7.5 | 0.1%
| | A user can tell curl >= 7.20.0 and <= 7.78.0 to require a successful upgrade to TLS when speaking to… | Sep 29, 2021 | Apr 16, 2026 |
| | CVE-2021-22947 | Splunk | medium | 5.9 | 0.3%
| | When curl >= 7.20.0 and <= 7.78.0 connects to an IMAP or POP3 server to retrieve data using STARTTLS… | Sep 29, 2021 | Apr 16, 2026 |
| | CVE-2021-41770 | ForgeRock | high | 7.5 | — | | Ping Identity PingFederate before 10.3.1 mishandles pre-parsing validation, leading to an XXE attack… | Oct 7, 2021 | Nov 21, 2024 |
| | CVE-2021-41182 | Tenable | medium | 6.5 | 39.4%
| | jQuery-UI is the official jQuery user interface library. Prior to version 1.13.0, accepting the valu… | Oct 26, 2021 | Aug 25, 2026 |
| | CVE-2021-41183 | Tenable | medium | 6.5 | 8.5%
| | jQuery-UI is the official jQuery user interface library. Prior to version 1.13.0, accepting the valu… | Oct 26, 2021 | Aug 25, 2026 |
| | CVE-2021-41184 | Tenable | medium | 6.5 | 40.8%
| | jQuery-UI is the official jQuery user interface library. Prior to version 1.13.0, accepting the valu… | Oct 26, 2021 | Aug 25, 2026 |
| | CVE-2021-34754 | Cisco | medium | 5.8 | 1.0%
| | Multiple vulnerabilities in the payload inspection for Ethernet Industrial Protocol (ENIP) traffic f… | Oct 27, 2021 | Aug 11, 2026 |
| | CVE-2021-34755 | Cisco | medium | 6.7 | 0.3%
| | Multiple vulnerabilities in the CLI of Cisco Firepower Threat Defense (FTD) Software could allow an … | Oct 27, 2021 | Aug 11, 2026 |
| | CVE-2021-34756 | Cisco | medium | 6.7 | 0.3%
| | Multiple vulnerabilities in the CLI of Cisco Firepower Threat Defense (FTD) Software could allow an … | Oct 27, 2021 | Aug 11, 2026 |
| | CVE-2021-34761 | Cisco | medium | 4.4 | 0.2%
| | A vulnerability in Cisco Firepower Threat Defense (FTD) Software could allow an authenticated, local… | Oct 27, 2021 | Aug 11, 2026 |
| | CVE-2021-34762 | Cisco | high | 8.1 | 1.9%
| | A vulnerability in the web-based management interface of Cisco Firepower Management Center (FMC) Sof… | Oct 27, 2021 | Aug 11, 2026 |
| | CVE-2021-34763 | Cisco | medium | 4.8 | 0.5%
| | Multiple vulnerabilities in the web-based management interface of Cisco Firepower Management Center … | Oct 27, 2021 | Aug 11, 2026 |
| | CVE-2021-34764 | Cisco | medium | 4.8 | 0.6%
| | Multiple vulnerabilities in the web-based management interface of Cisco Firepower Management Center … | Oct 27, 2021 | Aug 11, 2026 |
| | CVE-2021-34781 | Cisco | high | 8.6 | 1.3%
| | A vulnerability in the processing of SSH connections for multi-instance deployments of Cisco Firepow… | Oct 27, 2021 | Aug 11, 2026 |
| | CVE-2021-34783 | Cisco | high | 8.6 | 1.6%
| | A vulnerability in the software-based SSL/TLS message handler of Cisco Adaptive Security Appliance (… | Oct 27, 2021 | Aug 11, 2026 |
| | CVE-2021-34787 | Cisco | medium | 5.3 | 1.0%
| | A vulnerability in the identity-based firewall (IDFW) rule processing feature of Cisco Adaptive Secu… | Oct 27, 2021 | Aug 11, 2026 |
| | CVE-2021-34790 | Cisco | medium | 4.7 | 1.1%
| | Multiple vulnerabilities in the Application Level Gateway (ALG) for the Network Address Translation … | Oct 27, 2021 | Aug 11, 2026 |
| | CVE-2021-34791 | Cisco | medium | 4.7 | 1.1%
| | Multiple vulnerabilities in the Application Level Gateway (ALG) for the Network Address Translation … | Oct 27, 2021 | Aug 11, 2026 |
| | CVE-2021-34792 | Cisco | high | 8.6 | 1.4%
| | A vulnerability in the memory management of Cisco Adaptive Security Appliance (ASA) Software and Fir… | Oct 27, 2021 | Aug 11, 2026 |
| | CVE-2021-34793 | Cisco | high | 8.6 | 0.6%
| | A vulnerability in the TCP Normalizer of Cisco Adaptive Security Appliance (ASA) Software and Firepo… | Oct 27, 2021 | Aug 11, 2026 |
| | CVE-2021-34794 | Cisco | medium | 5.3 | 0.9%
| | A vulnerability in the Simple Network Management Protocol version 3 (SNMPv3) access control function… | Oct 27, 2021 | Aug 11, 2026 |
| | CVE-2021-40114 | Cisco | medium | 6.8 | 2.4%
| | Multiple Cisco products are affected by a vulnerability in the way the Snort detection engine proces… | Oct 27, 2021 | Aug 11, 2026 |
| | CVE-2021-40116 | Cisco | high | 8.6 | 1.3%
| | Multiple Cisco products are affected by a vulnerability in Snort rules that could allow an unauthent… | Oct 27, 2021 | Aug 11, 2026 |
| | CVE-2021-40117 | Cisco | high | 8.6 | 1.5%
| | A vulnerability in SSL/TLS message handler for Cisco Adaptive Security Appliance (ASA) Software and … | Oct 27, 2021 | Aug 11, 2026 |
| | CVE-2021-40118 | Cisco | high | 8.6 | 1.3%
| | A vulnerability in the web services interface of Cisco Adaptive Security Appliance (ASA) Software an… | Oct 27, 2021 | Aug 11, 2026 |
| | CVE-2021-40125 | Cisco | medium | 5.3 | 1.0%
| | A vulnerability in the Internet Key Exchange Version 2 (IKEv2) implementation of Cisco Adaptive Secu… | Oct 27, 2021 | Aug 11, 2026 |
| | CVE-2021-42278 | Microsoft | high | 7.5 | 70.2%
| ⚠ KEV | Active Directory Domain Services Elevation of Privilege Vulnerability | Nov 10, 2021 | Aug 6, 2026 |
| | CVE-2021-42287 | Microsoft | high | 7.5 | 74.3%
| ⚠ KEV | Active Directory Domain Services Elevation of Privilege Vulnerability | Nov 10, 2021 | Aug 6, 2026 |
| | CVE-2021-38665 | Microsoft | high | 7.4 | 6.2%
| | Remote Desktop Protocol Client Information Disclosure Vulnerability | Nov 10, 2021 | Aug 19, 2026 |
| | CVE-2021-40442 | Microsoft | high | 7.8 | 2.1%
| | Microsoft Excel Remote Code Execution Vulnerability | Nov 10, 2021 | Aug 19, 2026 |
| | CVE-2021-41349 | Microsoft | medium | 6.5 | 93.9%
| | Microsoft Exchange Server Spoofing Vulnerability | Nov 10, 2021 | Aug 19, 2026 |
| | CVE-2021-41351 | Microsoft | medium | 4.3 | 3.6%
| | Microsoft Edge (Chrome based) Spoofing on IE Mode | Nov 10, 2021 | Aug 19, 2026 |
| | CVE-2021-41368 | Microsoft | medium | 6.1 | 3.5%
| | Microsoft Access Remote Code Execution Vulnerability | Nov 10, 2021 | Aug 19, 2026 |
| | CVE-2021-41372 | Microsoft | high | 7.6 | 0.6%
| | A Cross-Site Scripting (XSS) and Cross-Site Request Forgery (CSRF) vulnerability exists when Power B… | Nov 10, 2021 | Aug 19, 2026 |
| | CVE-2021-41373 | Microsoft | medium | 5.5 | 0.7%
| | FSLogix Information Disclosure Vulnerability | Nov 10, 2021 | Aug 19, 2026 |
| | CVE-2021-41374 | Microsoft | medium | 6.7 | 0.6%
| | Azure Sphere Information Disclosure Vulnerability | Nov 10, 2021 | Aug 19, 2026 |
| | CVE-2021-41375 | Microsoft | medium | 4.4 | 0.8%
| | Azure Sphere Information Disclosure Vulnerability | Nov 10, 2021 | Aug 19, 2026 |
| | CVE-2021-41376 | Microsoft | low | 2.3 | 0.7%
| | Azure Sphere Information Disclosure Vulnerability | Nov 10, 2021 | Aug 19, 2026 |
| | CVE-2021-42277 | Microsoft | medium | 5.5 | 0.8%
| | Diagnostics Hub Standard Collector Elevation of Privilege Vulnerability | Nov 10, 2021 | Aug 19, 2026 |
| | CVE-2021-42292 | Microsoft | high | 7.8 | 31.9%
| ⚠ KEV | Microsoft Excel Security Feature Bypass Vulnerability | Nov 10, 2021 | Aug 19, 2026 |