logo

CVE-2021-31956 and CVE-2021-21224

ID: cfa55abe-8aac-53ce-b76e-6d329c97f936

STIX ID: report--cfa55abe-8aac-53ce-b76e-6d329c97f936

Feed Name: Arctic Wolf Blog

Threat Score
80/100

Date Published: 2021-10-25

Date Updated: 2026-04-26

...
...

Security researchers observed the Magnitude Exploit Kit expand to include exploits for Chromium-based browsers and a Windows NTFS privilege escalation (CVE-2021-31956), while also reporting a Chromium V8 type-confusion RCE (CVE-2021-21224); Microsoft has noted CVE-2021-31956 was actively exploited in the wild and Kaspersky linked these flaws to an attack chain associated with the PuzzleMaker Group. Arctic Wolf recommends patching affected Google Chrome, Microsoft Edge, and Windows versions to mitigate remote code execution and privilege escalation risks.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.