2021 CVE Vulnerabilities

23,451 CVEs published in 2021.

CVE IDSeverityCVSSDescription
CVE-2021-38901MEDIUM5.5IBM Spectrum Protect Operations Center 7.1, under special configurations, could allow a local user to obtain highly sens...
CVE-2021-32024CRITICAL9.8A remote code execution vulnerability in the BMP image codec of BlackBerry QNX SDP version(s) 6.4 to 7.1 could allow an ...
CVE-2021-43818HIGH7.1lxml is a library for processing XML and HTML in the Python language. Prior to version 4.6.5, the HTML Cleaner in lxml.h...
CVE-2021-39065CRITICAL9.8IBM Spectrum Copy Data Management 2.2.13 and earlier could allow a remote attacker to execute arbitrary commands on the ...
CVE-2021-39064HIGH7.5IBM Spectrum Copy Data Management 2.2.13 and earlier has weak authentication and password rules and incorrectly handles ...
CVE-2021-39058HIGH7.5IBM Spectrum Copy Data Management 2.2.13 and earlier uses weaker than expected cryptographic algorithms that could allow...
CVE-2021-39054MEDIUM5.4IBM Spectrum Copy Data Management 2.2.13 and earlier could allow a remote attacker to hijack the clicking action of the ...
CVE-2021-39053HIGH7.5IBM Spectrum Copy Data Management 2.2.13 and earlier could allow a remote attacker to obtain sensitive information, caus...
CVE-2021-39052CRITICAL9.8IBM Spectrum Copy Data Management 2.2.13 and earlier could allow a remote attacker to access the Spring Boot console wit...
CVE-2021-38947HIGH7.5IBM Spectrum Copy Data Management 2.2.13 and earlier uses weaker than expected cryptographic algorithms that could allow...
CVE-2021-43983HIGH7.8WECON LeviStudioU Versions 2019-09-21 and prior are vulnerable to multiple stack-based buffer overflow instances while p...
CVE-2021-40008HIGH7.5There is a memory leak vulnerability in CloudEngine 12800 V200R019C00SPC800, CloudEngine 5800 V200R019C00SPC800, CloudEn...
CVE-2021-40007MEDIUM6.5There is an information leak vulnerability in eCNS280_TD V100R005C10SPC650. The vulnerability is caused by improper log ...
CVE-2021-39945LOW2.7Improper access control in the GitLab CE/EE API affecting all versions starting from 9.4 before 14.3.6, all versions sta...
CVE-2021-39944HIGH7.1An issue has been discovered in GitLab CE/EE affecting all versions starting from 11.0 before 14.3.6, all versions start...
CVE-2021-39941MEDIUM5.3An information disclosure vulnerability in GitLab CE/EE versions 12.0 to 14.3.6, 14.4 to 14.4.4, and 14.5 to 14.5.2 allo...
CVE-2021-39940MEDIUM6.5An issue has been discovered in GitLab CE/EE affecting all versions starting from 13.2 before 14.3.6, all versions start...
CVE-2021-39939MEDIUM6.5An uncontrolled resource consumption vulnerability in GitLab Runner affecting all versions starting from 13.7 before 14....
CVE-2021-39938MEDIUM6.5A vulnerable regular expression pattern in GitLab CE/EE since version 8.15 before 14.3.6, all versions starting from 14....
CVE-2021-39937HIGH8.8A collision in access memoization logic in all versions of GitLab CE/EE before 14.3.6, all versions starting from 14.4 b...
CVE-2021-39936MEDIUM4.3Improper access control in GitLab CE/EE affecting all versions starting from 10.7 before 14.3.6, all versions starting f...
CVE-2021-39935HIGH7.5An issue has been discovered in GitLab CE/EE affecting all versions starting from 10.5 before 14.3.6, all versions start...
CVE-2021-39934MEDIUM4.3Improper access control allows any project member to retrieve the service desk email address in GitLab CE/EE versions st...
CVE-2021-39933MEDIUM6.5An issue has been discovered in GitLab CE/EE affecting all versions starting from 12.10 before 14.3.6, all versions star...
CVE-2021-39932MEDIUM4.3An issue has been discovered in GitLab CE/EE affecting all versions starting from 11.0 before 14.3.6, all versions start...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now