2021 CVE Vulnerabilities
23,445 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-21813 | HIGH | 7.8 | 0.3% | Aug 13, 2021 | Within the function HandleFileArg the argument filepattern is under control of the user who passes it in from the comman... |
| CVE-2021-21812 | HIGH | 7.8 | 0.3% | Aug 13, 2021 | A stack-based buffer overflow vulnerability exists in the command-line-parsing HandleFileArg functionality of AT&T Labs’... |
| CVE-2021-38623 | HIGH | 7.5 | 1.0% | Aug 13, 2021 | The deferred_image_processing (aka Deferred image processing) extension before 1.0.2 for TYPO3 allows Denial of Service ... |
| CVE-2021-36793 | HIGH | 7.5 | 1.0% | Aug 13, 2021 | The routes (aka Extbase Yaml Routes) extension before 2.1.1 for TYPO3, when CsrfTokenViewHelper is used, allows Sensitiv... |
| CVE-2021-36792 | HIGH | 7.2 | 0.7% | Aug 13, 2021 | The dated_news (aka Dated News) extension through 5.1.1 for TYPO3 has incorrect Access Control for confirming various ap... |
| CVE-2021-36786 | HIGH | 7.5 | 1.0% | Aug 13, 2021 | The miniorange_saml (aka Miniorange Saml) extension before 1.4.3 for TYPO3 allows Sensitive Data Exposure of API credent... |
| CVE-2021-37693 | HIGH | 7.5 | 0.8% | Aug 13, 2021 | Discourse is an open-source platform for community discussion. In Discourse before versions 2.7.8 and 2.8.0.beta4, when ... |
| CVE-2021-34398 | HIGH | 7.8 | 0.3% | Aug 13, 2021 | NVIDIA DCGM, all versions prior to 2.2.9, contains a vulnerability in the DIAG module where any user can inject shared l... |
| CVE-2021-37349 | HIGH | 7.8 | 0.7% | Aug 13, 2021 | Nagios XI before version 5.8.5 is vulnerable to local privilege escalation because cleaner.php does not sanitise input r... |
| CVE-2021-37348 | HIGH | 7.5 | 2.8% | Aug 13, 2021 | Nagios XI before version 5.8.5 is vulnerable to local file inclusion through improper limitation of a pathname in index.... |
| CVE-2021-37347 | HIGH | 7.8 | 0.8% | Aug 13, 2021 | Nagios XI before version 5.8.5 is vulnerable to local privilege escalation because getprofile.sh does not validate the d... |
| CVE-2021-37345 | HIGH | 7.8 | 0.9% | Aug 13, 2021 | Nagios XI before version 5.8.5 is vulnerable to local privilege escalation because xi-sys.cfg is being imported from the... |
| CVE-2021-37343 | HIGH | 8.8 | 23.8% | Aug 13, 2021 | A path traversal vulnerability exists in Nagios XI below version 5.8.5 AutoDiscovery component and could lead to post au... |
| CVE-2021-38614 | HIGH | 7.5 | 1.2% | Aug 12, 2021 | Polipo through 1.1.1, when NDEBUG is used, allows a heap-based buffer overflow during parsing of a Range header. NOTE: T... |
| CVE-2021-37682 | HIGH | 7.1 | 0.2% | Aug 12, 2021 | TensorFlow is an end-to-end open source platform for machine learning. In affected versions all TFLite operations that u... |
| CVE-2021-37679 | HIGH | 7.8 | 0.2% | Aug 12, 2021 | TensorFlow is an end-to-end open source platform for machine learning. In affected versions it is possible to nest a `tf... |
| CVE-2021-37678 | HIGH | 8.8 | 0.5% | Aug 12, 2021 | TensorFlow is an end-to-end open source platform for machine learning. In affected versions TensorFlow and Keras can be ... |
| CVE-2021-37665 | HIGH | 7.8 | 0.2% | Aug 12, 2021 | TensorFlow is an end-to-end open source platform for machine learning. In affected versions due to incomplete validation... |
| CVE-2021-37663 | HIGH | 7.8 | 0.2% | Aug 12, 2021 | TensorFlow is an end-to-end open source platform for machine learning. In affected versions due to incomplete validation... |
| CVE-2021-37681 | HIGH | 7.8 | 0.2% | Aug 12, 2021 | TensorFlow is an end-to-end open source platform for machine learning. In affected versions the implementation of SVDF i... |
| CVE-2021-37676 | HIGH | 7.8 | 0.2% | Aug 12, 2021 | TensorFlow is an end-to-end open source platform for machine learning. In affected versions an attacker can cause undefi... |
| CVE-2021-37671 | HIGH | 7.8 | 0.2% | Aug 12, 2021 | TensorFlow is an end-to-end open source platform for machine learning. In affected versions an attacker can cause undefi... |
| CVE-2021-37667 | HIGH | 7.8 | 0.2% | Aug 12, 2021 | TensorFlow is an end-to-end open source platform for machine learning. In affected versions an attacker can cause undefi... |
| CVE-2021-37666 | HIGH | 7.8 | 0.2% | Aug 12, 2021 | TensorFlow is an end-to-end open source platform for machine learning. In affected versions an attacker can cause undefi... |
| CVE-2021-37652 | HIGH | 7.8 | 0.2% | Aug 12, 2021 | TensorFlow is an end-to-end open source platform for machine learning. In affected versions the implementation for `tf.r... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now