2021 CVE Vulnerabilities
23,445 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-22146 | HIGH | 7.5 | 27.8% | Jul 21, 2021 | All versions of Elastic Cloud Enterprise has the Elasticsearch “anonymous” user enabled by default in deployed clusters.... |
| CVE-2021-21406 | HIGH | 8.8 | 1.0% | Jul 21, 2021 | Combodo iTop is an open source, web based IT Service Management tool. In versions prior to 2.7.4, there is a command inj... |
| CVE-2021-23409 | HIGH | 7.5 | 1.6% | Jul 21, 2021 | The package github.com/pires/go-proxyproto before 0.6.0 are vulnerable to Denial of Service (DoS) via creating connectio... |
| CVE-2021-1099 | HIGH | 7.8 | 0.2% | Jul 21, 2021 | NVIDIA vGPU software contains a vulnerability in the Virtual GPU Manager (vGPU plugin) that could allow an attacker to c... |
| CVE-2021-1098 | HIGH | 7.8 | 0.3% | Jul 21, 2021 | NVIDIA vGPU software contains a vulnerability in the Virtual GPU Manager (vGPU plugin), where it doesn't release some re... |
| CVE-2021-1097 | HIGH | 7.8 | 0.3% | Jul 21, 2021 | NVIDIA vGPU software contains a vulnerability in the Virtual GPU Manager (vGPU plugin), where it improperly validates th... |
| CVE-2021-2458 | HIGH | 7.6 | 0.7% | Jul 21, 2021 | Vulnerability in the Identity Manager product of Oracle Fusion Middleware (component: Identity Console). Supported versi... |
| CVE-2021-2454 | HIGH | 7 | 0.4% | Jul 21, 2021 | Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). The supported version that... |
| CVE-2021-2453 | HIGH | 7.5 | 1.1% | Jul 21, 2021 | Vulnerability in the Oracle Outside In Technology product of Oracle Fusion Middleware (component: Outside In Filters). T... |
| CVE-2021-2452 | HIGH | 7.5 | 1.1% | Jul 21, 2021 | Vulnerability in the Oracle Outside In Technology product of Oracle Fusion Middleware (component: Outside In Filters). T... |
| CVE-2021-2451 | HIGH | 7.5 | 1.1% | Jul 21, 2021 | Vulnerability in the Oracle Outside In Technology product of Oracle Fusion Middleware (component: Outside In Filters). T... |
| CVE-2021-2450 | HIGH | 7.5 | 1.1% | Jul 21, 2021 | Vulnerability in the Oracle Outside In Technology product of Oracle Fusion Middleware (component: Outside In Filters). T... |
| CVE-2021-2449 | HIGH | 7.5 | 1.1% | Jul 21, 2021 | Vulnerability in the Oracle Outside In Technology product of Oracle Fusion Middleware (component: Outside In Filters). T... |
| CVE-2021-2329 | HIGH | 7.2 | 1.0% | Jul 21, 2021 | Vulnerability in the Oracle XML DB component of Oracle Database Server. Supported versions that are affected are 12.1.0.... |
| CVE-2021-2328 | HIGH | 7.2 | 1.0% | Jul 21, 2021 | Vulnerability in the Oracle Text component of Oracle Database Server. Supported versions that are affected are 12.1.0.2,... |
| CVE-2021-32751 | HIGH | 7.5 | 2.7% | Jul 20, 2021 | Gradle is a build tool with a focus on build automation. In versions prior to 7.2, start scripts generated by the `appli... |
| CVE-2021-36230 | HIGH | 8.8 | 1.0% | Jul 20, 2021 | HashiCorp Terraform Enterprise releases up to v202106-1 did not properly perform authorization checks on a subset of API... |
| CVE-2021-33909 | HIGH | 7.8 | 9.8% | Jul 20, 2021 | fs/seq_file.c in the Linux kernel 3.16 through 5.13.x before 5.13.4 does not properly restrict seq buffer allocations, l... |
| CVE-2021-3246 | HIGH | 8.8 | 3.3% | Jul 20, 2021 | A heap buffer overflow vulnerability in msadpcm_decode_block of libsndfile 1.0.30 allows attackers to execute arbitrary ... |
| CVE-2021-22235 | HIGH | 7.5 | 3.3% | Jul 20, 2021 | Crash in DNP dissector in Wireshark 3.4.0 to 3.4.6 and 3.2.0 to 3.2.14 allows denial of service via packet injection or ... |
| CVE-2021-32463 | HIGH | 7.8 | 0.4% | Jul 20, 2021 | An incorrect permission assignment denial-of-service vulnerability in Trend Micro Apex One, Apex One as a Service (SaaS)... |
| CVE-2021-27021 | HIGH | 8.8 | 1.3% | Jul 20, 2021 | A flaw was discovered in Puppet DB, this flaw results in an escalation of privileges which allows the user to delete tab... |
| CVE-2021-26095 | HIGH | 8.8 | 0.7% | Jul 20, 2021 | The combination of various cryptographic issues in the session management of FortiMail 6.4.0 through 6.4.4 and 6.2.0 thr... |
| CVE-2021-22125 | HIGH | 7.2 | 1.4% | Jul 20, 2021 | An instance of improper neutralization of special elements in the sniffer module of FortiSandbox before 3.2.2 may allow ... |
| CVE-2021-35054 | HIGH | 7.5 | 1.4% | Jul 20, 2021 | Minecraft before 1.17.1, when online-mode=false is configured, allows path traversal for deletion of arbitrary JSON file... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now