2021 CVE Vulnerabilities
23,451 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-38901 | MEDIUM | 5.5 | 0.2% | Dec 13, 2021 | IBM Spectrum Protect Operations Center 7.1, under special configurations, could allow a local user to obtain highly sens... |
| CVE-2021-32024 | CRITICAL | 9.8 | 1.8% | Dec 13, 2021 | A remote code execution vulnerability in the BMP image codec of BlackBerry QNX SDP version(s) 6.4 to 7.1 could allow an ... |
| CVE-2021-43818 | HIGH | 7.1 | 2.5% | Dec 13, 2021 | lxml is a library for processing XML and HTML in the Python language. Prior to version 4.6.5, the HTML Cleaner in lxml.h... |
| CVE-2021-39065 | CRITICAL | 9.8 | 2.2% | Dec 13, 2021 | IBM Spectrum Copy Data Management 2.2.13 and earlier could allow a remote attacker to execute arbitrary commands on the ... |
| CVE-2021-39064 | HIGH | 7.5 | 1.4% | Dec 13, 2021 | IBM Spectrum Copy Data Management 2.2.13 and earlier has weak authentication and password rules and incorrectly handles ... |
| CVE-2021-39058 | HIGH | 7.5 | 0.7% | Dec 13, 2021 | IBM Spectrum Copy Data Management 2.2.13 and earlier uses weaker than expected cryptographic algorithms that could allow... |
| CVE-2021-39054 | MEDIUM | 5.4 | 0.6% | Dec 13, 2021 | IBM Spectrum Copy Data Management 2.2.13 and earlier could allow a remote attacker to hijack the clicking action of the ... |
| CVE-2021-39053 | HIGH | 7.5 | 1.7% | Dec 13, 2021 | IBM Spectrum Copy Data Management 2.2.13 and earlier could allow a remote attacker to obtain sensitive information, caus... |
| CVE-2021-39052 | CRITICAL | 9.8 | 1.1% | Dec 13, 2021 | IBM Spectrum Copy Data Management 2.2.13 and earlier could allow a remote attacker to access the Spring Boot console wit... |
| CVE-2021-38947 | HIGH | 7.5 | 0.7% | Dec 13, 2021 | IBM Spectrum Copy Data Management 2.2.13 and earlier uses weaker than expected cryptographic algorithms that could allow... |
| CVE-2021-43983 | HIGH | 7.8 | 2.7% | Dec 13, 2021 | WECON LeviStudioU Versions 2019-09-21 and prior are vulnerable to multiple stack-based buffer overflow instances while p... |
| CVE-2021-40008 | HIGH | 7.5 | 0.7% | Dec 13, 2021 | There is a memory leak vulnerability in CloudEngine 12800 V200R019C00SPC800, CloudEngine 5800 V200R019C00SPC800, CloudEn... |
| CVE-2021-40007 | MEDIUM | 6.5 | 0.5% | Dec 13, 2021 | There is an information leak vulnerability in eCNS280_TD V100R005C10SPC650. The vulnerability is caused by improper log ... |
| CVE-2021-39945 | LOW | 2.7 | 0.9% | Dec 13, 2021 | Improper access control in the GitLab CE/EE API affecting all versions starting from 9.4 before 14.3.6, all versions sta... |
| CVE-2021-39944 | HIGH | 7.1 | 0.9% | Dec 13, 2021 | An issue has been discovered in GitLab CE/EE affecting all versions starting from 11.0 before 14.3.6, all versions start... |
| CVE-2021-39941 | MEDIUM | 5.3 | 1.2% | Dec 13, 2021 | An information disclosure vulnerability in GitLab CE/EE versions 12.0 to 14.3.6, 14.4 to 14.4.4, and 14.5 to 14.5.2 allo... |
| CVE-2021-39940 | MEDIUM | 6.5 | 1.5% | Dec 13, 2021 | An issue has been discovered in GitLab CE/EE affecting all versions starting from 13.2 before 14.3.6, all versions start... |
| CVE-2021-39939 | MEDIUM | 6.5 | 0.9% | Dec 13, 2021 | An uncontrolled resource consumption vulnerability in GitLab Runner affecting all versions starting from 13.7 before 14.... |
| CVE-2021-39938 | MEDIUM | 6.5 | 0.9% | Dec 13, 2021 | A vulnerable regular expression pattern in GitLab CE/EE since version 8.15 before 14.3.6, all versions starting from 14.... |
| CVE-2021-39937 | HIGH | 8.8 | 0.8% | Dec 13, 2021 | A collision in access memoization logic in all versions of GitLab CE/EE before 14.3.6, all versions starting from 14.4 b... |
| CVE-2021-39936 | MEDIUM | 4.3 | 1.0% | Dec 13, 2021 | Improper access control in GitLab CE/EE affecting all versions starting from 10.7 before 14.3.6, all versions starting f... |
| CVE-2021-39935 | HIGH | 7.5 | 30.5% | Dec 13, 2021 | An issue has been discovered in GitLab CE/EE affecting all versions starting from 10.5 before 14.3.6, all versions start... |
| CVE-2021-39934 | MEDIUM | 4.3 | 0.9% | Dec 13, 2021 | Improper access control allows any project member to retrieve the service desk email address in GitLab CE/EE versions st... |
| CVE-2021-39933 | MEDIUM | 6.5 | 1.4% | Dec 13, 2021 | An issue has been discovered in GitLab CE/EE affecting all versions starting from 12.10 before 14.3.6, all versions star... |
| CVE-2021-39932 | MEDIUM | 4.3 | 0.9% | Dec 13, 2021 | An issue has been discovered in GitLab CE/EE affecting all versions starting from 11.0 before 14.3.6, all versions start... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now