2021 CVE Vulnerabilities
23,445 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-1796 | CRITICAL | 9.8 | 2.0% | Apr 2, 2021 | An out-of-bounds write was addressed with improved input validation. This issue is fixed in iOS 14.4 and iPadOS 14.4. A ... |
| CVE-2021-1795 | CRITICAL | 9.8 | 2.1% | Apr 2, 2021 | An out-of-bounds write was addressed with improved input validation. This issue is fixed in iOS 14.4 and iPadOS 14.4. A ... |
| CVE-2021-1794 | CRITICAL | 9.8 | 2.1% | Apr 2, 2021 | An out-of-bounds read was addressed with improved input validation. This issue is fixed in iOS 14.4 and iPadOS 14.4. A r... |
| CVE-2021-22203 | CRITICAL | 9.8 | 1.4% | Apr 2, 2021 | An issue has been discovered in GitLab CE/EE affecting all versions starting from 13.7.9 before 13.8.7, all versions sta... |
| CVE-2021-28123 | CRITICAL | 9.8 | 1.4% | Apr 2, 2021 | Undocumented Default Cryptographic Key Vulnerability in Cohesity DataPlatform version 6.3 prior 6.3.1g, 6.4 up to 6.4.1c... |
| CVE-2021-29012 | CRITICAL | 9.8 | 3.2% | Apr 2, 2021 | DMA Softlab Radius Manager 4.4.0 assigns the same session cookie to every admin session. The cookie is valid when the ad... |
| CVE-2021-30000 | CRITICAL | 9.8 | 2.1% | Apr 2, 2021 | An issue was discovered in LATRIX 0.6.0. SQL injection in the txtaccesscode parameter of inandout.php leads to informati... |
| CVE-2021-23921 | CRITICAL | 9.1 | 1.0% | Apr 1, 2021 | An issue was discovered in Devolutions Server before 2020.3. There is broken access control on Password List entry eleme... |
| CVE-2021-21982 | CRITICAL | 9.1 | 1.4% | Apr 1, 2021 | VMware Carbon Black Cloud Workload appliance 1.0.0 and 1.01 has an authentication bypass vulnerability that may allow a ... |
| CVE-2021-20078 | CRITICAL | 9.1 | 60.4% | Apr 1, 2021 | Manage Engine OpManager builds below 125346 are vulnerable to a remote denial of service vulnerability due to a path tra... |
| CVE-2021-28918 | CRITICAL | 9.1 | 16.4% | Apr 1, 2021 | Improper input validation of octal strings in netmask npm package v1.0.6 and below allows unauthenticated remote attacke... |
| CVE-2021-29940 | CRITICAL | 9.8 | 1.3% | Apr 1, 2021 | An issue was discovered in the through crate through 2021-02-18 for Rust. There is a double free (in through and through... |
| CVE-2021-29937 | CRITICAL | 9.8 | 1.4% | Apr 1, 2021 | An issue was discovered in the telemetry crate through 2021-02-17 for Rust. There is a drop of uninitialized memory if a... |
| CVE-2021-29936 | CRITICAL | 9.8 | 1.3% | Apr 1, 2021 | An issue was discovered in the adtensor crate through 2021-01-11 for Rust. There is a drop of uninitialized memory via t... |
| CVE-2021-23005 | CRITICAL | 9.1 | 1.0% | Mar 31, 2021 | On all 7.x and 6.x versions (fixed in 8.0.0), when using a Quorum device for BIG-IQ high availability (HA) for automatic... |
| CVE-2021-22991 | CRITICAL | 9.8 | 61.1% | Mar 31, 2021 | On BIG-IP versions 16.0.x before 16.0.1.1, 15.1.x before 15.1.2.1, 14.1.x before 14.1.4, 13.1.x before 13.1.3.6, and 12.... |
| CVE-2021-22992 | CRITICAL | 9.8 | 72.7% | Mar 31, 2021 | On BIG-IP versions 16.0.x before 16.0.1.1, 15.1.x before 15.1.2.1, 14.1.x before 14.1.4, 13.1.x before 13.1.3.6, 12.1.x ... |
| CVE-2021-22989 | CRITICAL | 9.1 | 8.8% | Mar 31, 2021 | On BIG-IP versions 16.0.x before 16.0.1.1, 15.1.x before 15.1.2.1, 14.1.x before 14.1.4, 13.1.x before 13.1.3.6, 12.1.x ... |
| CVE-2021-22987 | CRITICAL | 9.9 | 13.7% | Mar 31, 2021 | On BIG-IP versions 16.0.x before 16.0.1.1, 15.1.x before 15.1.2.1, 14.1.x before 14.1.4, 13.1.x before 13.1.3.6, 12.1.x ... |
| CVE-2021-22986 | CRITICAL | 9.8 | 99.9% | Mar 31, 2021 | On BIG-IP versions 16.0.x before 16.0.1.1, 15.1.x before 15.1.2.1, 14.1.x before 14.1.4, 13.1.x before 13.1.3.6, and 12.... |
| CVE-2021-21413 | CRITICAL | 9.6 | 0.7% | Mar 30, 2021 | isolated-vm is a library for nodejs which gives you access to v8's Isolate interface. Versions of isolated-vm before v4.... |
| CVE-2021-26810 | CRITICAL | 9.8 | 4.9% | Mar 30, 2021 | D-link DIR-816 A2 v1.10 is affected by a remote code injection vulnerability. An HTTP request parameter can be used in c... |
| CVE-2021-25149 | CRITICAL | 9.8 | 1.6% | Mar 30, 2021 | A remote buffer overflow vulnerability was discovered in some Aruba Instant Access Point (IAP) products in version(s): A... |
| CVE-2021-28672 | CRITICAL | 9.8 | 2.2% | Mar 29, 2021 | Xerox Phaser 6510 before 64.65.51 and 64.59.11 (Bridge), WorkCentre 6515 before 65.65.51 and 65.59.11 (Bridge), VersaLin... |
| CVE-2021-28671 | CRITICAL | 9.8 | 2.6% | Mar 29, 2021 | Xerox Phaser 6510 before 64.65.51 and 64.59.11 (Bridge), WorkCentre 6515 before 65.65.51 and 65.59.11 (Bridge), VersaLin... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now