2021 CVE Vulnerabilities

23,451 CVEs published in 2021.

CVE IDSeverityCVSSDescription
CVE-2021-42124HIGH8.8An improper access control vulnerability exists in Ivanti Avalanche before 6.3.3 allows an attacker with access to the I...
CVE-2021-22956HIGH7.5An uncontrolled resource consumption vulnerability exists in Citrix ADC <13.0-83.27, <12.1-63.22 and 11.1-65.23 that cou...
CVE-2021-22955HIGH7.5A unauthenticated denial of service vulnerability exists in Citrix ADC <13.0-83.27, <12.1-63.22 and 11.1-65.23 when conf...
CVE-2021-40096MEDIUM5.4A cross-site scripting (XSS) vulnerability in integration configuration in SquaredUp for SCOM 5.2.1.6654 allows remote a...
CVE-2021-40095MEDIUM4.9An issue was discovered in SquaredUp for SCOM 5.2.1.6654. The Download Log feature in System / Maintenance was susceptib...
CVE-2021-40094MEDIUM5.4A DOM-based XSS vulnerability affects SquaredUp for SCOM 5.2.1.6654. If successfully exploited, this vulnerability may a...
CVE-2021-40093MEDIUM5.4A cross-site scripting (XSS) vulnerability in integration configuration in SquaredUp for SCOM 5.2.1.6654 allows remote a...
CVE-2021-40092MEDIUM5.4A cross-site scripting (XSS) vulnerability in Image Tile in SquaredUp for SCOM 5.2.1.6654 allows remote attackers to inj...
CVE-2021-28703HIGH7grant table v2 status pages may remain accessible after de-allocation (take two) Guest get permitted access to certain X...
CVE-2021-4049MEDIUM6.5livehelperchat is vulnerable to Cross-Site Request Forgery (CSRF)
CVE-2021-29116MEDIUM6.1A stored Cross Site Scripting (XSS) vulnerability in Esri ArcGIS Server feature services versions 10.8.1 and 10.9 (only)...
CVE-2021-29115MEDIUM5.3An information disclosure vulnerability in the ArcGIS Service Directory in Esri ArcGIS Enterprise versions 10.9.0 and be...
CVE-2021-29114CRITICAL9.8A SQL injection vulnerability in feature services provided by Esri ArcGIS Server 10.9 and below allows a remote, unauthe...
CVE-2021-29113MEDIUM4.7A remote file inclusion vulnerability in the ArcGIS Server help documentation may allow a remote, unauthenticated attack...
CVE-2021-44513HIGH7Insecure creation of temporary directories in tmate-ssh-server 2.3.0 allows a local attacker to compromise the integrity...
CVE-2021-44512HIGH7World-writable permissions on the /tmp/tmate/sessions directory in tmate-ssh-server 2.3.0 allow a local attacker to comp...
CVE-2021-44686HIGH7.5calibre before 5.32.0 contains a regular expression that is vulnerable to ReDoS (Regular Expression Denial of Service) i...
CVE-2021-44685CRITICAL9.8Git-it through 4.4.0 allows OS command injection at the Branches Aren't Just For Birds challenge step. During the verifi...
CVE-2021-44684CRITICAL9.8naholyr github-todos 3.1.0 is vulnerable to command injection. The range argument for the _hook subcommand is concatenat...
CVE-2021-44682CRITICAL9.8An issue (6 of 6) was discovered in Veritas Enterprise Vault through 14.1.2. On start-up, the Enterprise Vault applicati...
CVE-2021-44681CRITICAL9.8An issue (5 of 6) was discovered in Veritas Enterprise Vault through 14.1.2. On start-up, the Enterprise Vault applicati...
CVE-2021-44680CRITICAL9.8An issue (4 of 6) was discovered in Veritas Enterprise Vault through 14.1.2. On start-up, the Enterprise Vault applicati...
CVE-2021-44679CRITICAL9.8An issue (3 of 6) was discovered in Veritas Enterprise Vault through 14.1.2. On start-up, the Enterprise Vault applicati...
CVE-2021-44678CRITICAL9.8An issue (2 of 6) was discovered in Veritas Enterprise Vault through 14.1.2. On start-up, the Enterprise Vault applicati...
CVE-2021-44677CRITICAL9.8An issue (1 of 6) was discovered in Veritas Enterprise Vault through 14.1.2. On start-up, the Enterprise Vault applicati...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now