2021 CVE Vulnerabilities
23,445 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-26434 | HIGH | 7.8 | 0.8% | Sep 15, 2021 | Visual Studio Elevation of Privilege Vulnerability |
| CVE-2021-22149 | HIGH | 8.8 | 0.9% | Sep 15, 2021 | Elastic Enterprise Search App Search versions before 7.14.0 are vulnerable to an issue where API keys were missing autho... |
| CVE-2021-22148 | HIGH | 8.8 | 0.9% | Sep 15, 2021 | Elastic Enterprise Search App Search versions before 7.14.0 was vulnerable to an issue where API keys were not bound to ... |
| CVE-2021-3778 | HIGH | 7.8 | 1.6% | Sep 15, 2021 | vim is vulnerable to Heap-based Buffer Overflow |
| CVE-2021-3777 | HIGH | 7.5 | 1.3% | Sep 15, 2021 | nodejs-tmpl is vulnerable to Inefficient Regular Expression Complexity |
| CVE-2021-3706 | HIGH | 7.5 | 1.1% | Sep 15, 2021 | adminlte is vulnerable to Sensitive Cookie Without 'HttpOnly' Flag |
| CVE-2021-23029 | HIGH | 8.8 | 0.8% | Sep 14, 2021 | On version 16.0.x before 16.0.1.2, insufficient permission checks may allow authenticated users with guest privileges to... |
| CVE-2021-23026 | HIGH | 8.8 | 0.5% | Sep 14, 2021 | BIG-IP version 16.0.x before 16.0.1.2, 15.1.x before 15.1.3, 14.1.x before 14.1.4.2, 13.1.x before 13.1.4.1, and all ver... |
| CVE-2021-23030 | HIGH | 7.5 | 0.9% | Sep 14, 2021 | On BIG-IP Advanced WAF and BIG-IP ASM version 16.0.x before 16.0.1.2, 15.1.x before 15.1.3.1, 14.1.x before 14.1.4.3, 13... |
| CVE-2021-23028 | HIGH | 7.5 | 0.9% | Sep 14, 2021 | On version 16.0.x before 16.0.1.2, 15.1.x before 15.1.3.1, 14.1.x before 14.1.4.2, and 13.1.x before 13.1.4, when JSON c... |
| CVE-2021-23025 | HIGH | 8.8 | 2.2% | Sep 14, 2021 | On version 15.1.x before 15.1.0.5, 14.1.x before 14.1.3.1, 13.1.x before 13.1.3.5, and all versions of 12.1.x and 11.6.x... |
| CVE-2021-23036 | HIGH | 7.5 | 0.9% | Sep 14, 2021 | On version 16.0.x before 16.0.1.2, when a BIG-IP ASM and DataSafe profile are configured on a virtual server, undisclose... |
| CVE-2021-23039 | HIGH | 7.5 | 0.9% | Sep 14, 2021 | On version 16.0.x before 16.0.1.2, 15.1.x before 15.1.3, 14.1.x before 14.1.2.8, and all versions of 13.1.x and 12.1.x, ... |
| CVE-2021-23035 | HIGH | 7.5 | 0.9% | Sep 14, 2021 | On BIG-IP 14.1.x before 14.1.4.4, when an HTTP profile is configured on a virtual server, after a specific sequence of p... |
| CVE-2021-23034 | HIGH | 7.5 | 0.9% | Sep 14, 2021 | On BIG-IP version 16.x before 16.1.0 and 15.1.x before 15.1.3.1, when a DNS profile using a DNS cache resolver is config... |
| CVE-2021-23033 | HIGH | 7.5 | 0.9% | Sep 14, 2021 | On BIG-IP Advanced WAF and BIG-IP ASM version 16.x before 16.1.0x, 15.1.x before 15.1.3.1, 14.1.x before 14.1.4.3, 13.1.... |
| CVE-2021-23032 | HIGH | 7.5 | 0.9% | Sep 14, 2021 | On version 16.x before 16.1.0, 15.1.x before 15.1.3.1, 14.1.x before 14.1.4.4, and all versions of 13.1.x and 12.1.x, wh... |
| CVE-2021-23045 | HIGH | 7.5 | 0.9% | Sep 14, 2021 | On BIG-IP version 16.0.x before 16.0.1.2, 15.1.x before 15.1.3.1, 14.1.x before 14.1.4.3, 13.1.x before 13.1.4.1, and al... |
| CVE-2021-41077 | HIGH | 7.5 | 1.4% | Sep 14, 2021 | The activation process in Travis CI, for certain 2021-09-03 through 2021-09-10 builds, causes secret data to have unexpe... |
| CVE-2021-23044 | HIGH | 7.5 | 0.9% | Sep 14, 2021 | On BIG-IP version 16.x before 16.1.0, 15.1.x before 15.1.3.1, 14.1.x before 14.1.4.2, 13.1.x before 13.1.4.1, and all ve... |
| CVE-2021-23042 | HIGH | 7.5 | 0.9% | Sep 14, 2021 | On BIG-IP version 16.0.x before 16.0.1.2, 15.1.x before 15.1.3, 14.1.x before 14.1.4, 13.1.x before 13.1.4, and 12.1.x b... |
| CVE-2021-23040 | HIGH | 8.8 | 1.0% | Sep 14, 2021 | On BIG-IP AFM version 16.0.x before 16.0.1.2, 15.1.x before 15.1.3, 14.1.x before 14.1.4.2, 13.1.x before 13.1.4.1, and ... |
| CVE-2021-23051 | HIGH | 7.5 | 0.9% | Sep 14, 2021 | On BIG-IP versions 15.1.0.4 through 15.1.3, when the Data Plane Development Kit (DPDK)/Elastic Network Adapter (ENA) dri... |
| CVE-2021-23050 | HIGH | 7.5 | 0.5% | Sep 14, 2021 | On BIG-IP Advanced WAF and BIG-IP ASM version 16.0.x before 16.0.1.2 and 15.1.x before 15.1.3 and NGINX App Protect on a... |
| CVE-2021-23049 | HIGH | 7.5 | 0.9% | Sep 14, 2021 | On BIG-IP version 16.0.x before 16.0.1.2 and 15.1.x before 15.1.3, when the iRules RESOLVER::summarize command is used o... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now