2021 CVE Vulnerabilities

23,445 CVEs published in 2021.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2021-26434HIGH7.8Visual Studio Elevation of Privilege Vulnerability
CVE-2021-22149HIGH8.8Elastic Enterprise Search App Search versions before 7.14.0 are vulnerable to an issue where API keys were missing autho...
CVE-2021-22148HIGH8.8Elastic Enterprise Search App Search versions before 7.14.0 was vulnerable to an issue where API keys were not bound to ...
CVE-2021-3778HIGH7.8vim is vulnerable to Heap-based Buffer Overflow
CVE-2021-3777HIGH7.5nodejs-tmpl is vulnerable to Inefficient Regular Expression Complexity
CVE-2021-3706HIGH7.5adminlte is vulnerable to Sensitive Cookie Without 'HttpOnly' Flag
CVE-2021-23029HIGH8.8On version 16.0.x before 16.0.1.2, insufficient permission checks may allow authenticated users with guest privileges to...
CVE-2021-23026HIGH8.8BIG-IP version 16.0.x before 16.0.1.2, 15.1.x before 15.1.3, 14.1.x before 14.1.4.2, 13.1.x before 13.1.4.1, and all ver...
CVE-2021-23030HIGH7.5On BIG-IP Advanced WAF and BIG-IP ASM version 16.0.x before 16.0.1.2, 15.1.x before 15.1.3.1, 14.1.x before 14.1.4.3, 13...
CVE-2021-23028HIGH7.5On version 16.0.x before 16.0.1.2, 15.1.x before 15.1.3.1, 14.1.x before 14.1.4.2, and 13.1.x before 13.1.4, when JSON c...
CVE-2021-23025HIGH8.8On version 15.1.x before 15.1.0.5, 14.1.x before 14.1.3.1, 13.1.x before 13.1.3.5, and all versions of 12.1.x and 11.6.x...
CVE-2021-23036HIGH7.5On version 16.0.x before 16.0.1.2, when a BIG-IP ASM and DataSafe profile are configured on a virtual server, undisclose...
CVE-2021-23039HIGH7.5On version 16.0.x before 16.0.1.2, 15.1.x before 15.1.3, 14.1.x before 14.1.2.8, and all versions of 13.1.x and 12.1.x, ...
CVE-2021-23035HIGH7.5On BIG-IP 14.1.x before 14.1.4.4, when an HTTP profile is configured on a virtual server, after a specific sequence of p...
CVE-2021-23034HIGH7.5On BIG-IP version 16.x before 16.1.0 and 15.1.x before 15.1.3.1, when a DNS profile using a DNS cache resolver is config...
CVE-2021-23033HIGH7.5On BIG-IP Advanced WAF and BIG-IP ASM version 16.x before 16.1.0x, 15.1.x before 15.1.3.1, 14.1.x before 14.1.4.3, 13.1....
CVE-2021-23032HIGH7.5On version 16.x before 16.1.0, 15.1.x before 15.1.3.1, 14.1.x before 14.1.4.4, and all versions of 13.1.x and 12.1.x, wh...
CVE-2021-23045HIGH7.5On BIG-IP version 16.0.x before 16.0.1.2, 15.1.x before 15.1.3.1, 14.1.x before 14.1.4.3, 13.1.x before 13.1.4.1, and al...
CVE-2021-41077HIGH7.5The activation process in Travis CI, for certain 2021-09-03 through 2021-09-10 builds, causes secret data to have unexpe...
CVE-2021-23044HIGH7.5On BIG-IP version 16.x before 16.1.0, 15.1.x before 15.1.3.1, 14.1.x before 14.1.4.2, 13.1.x before 13.1.4.1, and all ve...
CVE-2021-23042HIGH7.5On BIG-IP version 16.0.x before 16.0.1.2, 15.1.x before 15.1.3, 14.1.x before 14.1.4, 13.1.x before 13.1.4, and 12.1.x b...
CVE-2021-23040HIGH8.8On BIG-IP AFM version 16.0.x before 16.0.1.2, 15.1.x before 15.1.3, 14.1.x before 14.1.4.2, 13.1.x before 13.1.4.1, and ...
CVE-2021-23051HIGH7.5On BIG-IP versions 15.1.0.4 through 15.1.3, when the Data Plane Development Kit (DPDK)/Elastic Network Adapter (ENA) dri...
CVE-2021-23050HIGH7.5On BIG-IP Advanced WAF and BIG-IP ASM version 16.0.x before 16.0.1.2 and 15.1.x before 15.1.3 and NGINX App Protect on a...
CVE-2021-23049HIGH7.5On BIG-IP version 16.0.x before 16.0.1.2 and 15.1.x before 15.1.3, when the iRules RESOLVER::summarize command is used o...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now