2021 CVE Vulnerabilities
23,451 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-42124 | HIGH | 8.8 | 2.6% | Dec 7, 2021 | An improper access control vulnerability exists in Ivanti Avalanche before 6.3.3 allows an attacker with access to the I... |
| CVE-2021-22956 | HIGH | 7.5 | 0.9% | Dec 7, 2021 | An uncontrolled resource consumption vulnerability exists in Citrix ADC <13.0-83.27, <12.1-63.22 and 11.1-65.23 that cou... |
| CVE-2021-22955 | HIGH | 7.5 | 0.9% | Dec 7, 2021 | A unauthenticated denial of service vulnerability exists in Citrix ADC <13.0-83.27, <12.1-63.22 and 11.1-65.23 when conf... |
| CVE-2021-40096 | MEDIUM | 5.4 | 0.7% | Dec 7, 2021 | A cross-site scripting (XSS) vulnerability in integration configuration in SquaredUp for SCOM 5.2.1.6654 allows remote a... |
| CVE-2021-40095 | MEDIUM | 4.9 | 1.0% | Dec 7, 2021 | An issue was discovered in SquaredUp for SCOM 5.2.1.6654. The Download Log feature in System / Maintenance was susceptib... |
| CVE-2021-40094 | MEDIUM | 5.4 | 0.5% | Dec 7, 2021 | A DOM-based XSS vulnerability affects SquaredUp for SCOM 5.2.1.6654. If successfully exploited, this vulnerability may a... |
| CVE-2021-40093 | MEDIUM | 5.4 | 0.6% | Dec 7, 2021 | A cross-site scripting (XSS) vulnerability in integration configuration in SquaredUp for SCOM 5.2.1.6654 allows remote a... |
| CVE-2021-40092 | MEDIUM | 5.4 | 0.6% | Dec 7, 2021 | A cross-site scripting (XSS) vulnerability in Image Tile in SquaredUp for SCOM 5.2.1.6654 allows remote attackers to inj... |
| CVE-2021-28703 | HIGH | 7 | 0.3% | Dec 7, 2021 | grant table v2 status pages may remain accessible after de-allocation (take two) Guest get permitted access to certain X... |
| CVE-2021-4049 | MEDIUM | 6.5 | 0.4% | Dec 7, 2021 | livehelperchat is vulnerable to Cross-Site Request Forgery (CSRF) |
| CVE-2021-29116 | MEDIUM | 6.1 | 0.8% | Dec 7, 2021 | A stored Cross Site Scripting (XSS) vulnerability in Esri ArcGIS Server feature services versions 10.8.1 and 10.9 (only)... |
| CVE-2021-29115 | MEDIUM | 5.3 | 2.1% | Dec 7, 2021 | An information disclosure vulnerability in the ArcGIS Service Directory in Esri ArcGIS Enterprise versions 10.9.0 and be... |
| CVE-2021-29114 | CRITICAL | 9.8 | 1.0% | Dec 7, 2021 | A SQL injection vulnerability in feature services provided by Esri ArcGIS Server 10.9 and below allows a remote, unauthe... |
| CVE-2021-29113 | MEDIUM | 4.7 | 0.8% | Dec 7, 2021 | A remote file inclusion vulnerability in the ArcGIS Server help documentation may allow a remote, unauthenticated attack... |
| CVE-2021-44513 | HIGH | 7 | 0.2% | Dec 7, 2021 | Insecure creation of temporary directories in tmate-ssh-server 2.3.0 allows a local attacker to compromise the integrity... |
| CVE-2021-44512 | HIGH | 7 | 0.3% | Dec 7, 2021 | World-writable permissions on the /tmp/tmate/sessions directory in tmate-ssh-server 2.3.0 allow a local attacker to comp... |
| CVE-2021-44686 | HIGH | 7.5 | 5.0% | Dec 7, 2021 | calibre before 5.32.0 contains a regular expression that is vulnerable to ReDoS (Regular Expression Denial of Service) i... |
| CVE-2021-44685 | CRITICAL | 9.8 | 3.5% | Dec 7, 2021 | Git-it through 4.4.0 allows OS command injection at the Branches Aren't Just For Birds challenge step. During the verifi... |
| CVE-2021-44684 | CRITICAL | 9.8 | 2.6% | Dec 7, 2021 | naholyr github-todos 3.1.0 is vulnerable to command injection. The range argument for the _hook subcommand is concatenat... |
| CVE-2021-44682 | CRITICAL | 9.8 | 1.8% | Dec 6, 2021 | An issue (6 of 6) was discovered in Veritas Enterprise Vault through 14.1.2. On start-up, the Enterprise Vault applicati... |
| CVE-2021-44681 | CRITICAL | 9.8 | 1.8% | Dec 6, 2021 | An issue (5 of 6) was discovered in Veritas Enterprise Vault through 14.1.2. On start-up, the Enterprise Vault applicati... |
| CVE-2021-44680 | CRITICAL | 9.8 | 1.8% | Dec 6, 2021 | An issue (4 of 6) was discovered in Veritas Enterprise Vault through 14.1.2. On start-up, the Enterprise Vault applicati... |
| CVE-2021-44679 | CRITICAL | 9.8 | 1.8% | Dec 6, 2021 | An issue (3 of 6) was discovered in Veritas Enterprise Vault through 14.1.2. On start-up, the Enterprise Vault applicati... |
| CVE-2021-44678 | CRITICAL | 9.8 | 1.8% | Dec 6, 2021 | An issue (2 of 6) was discovered in Veritas Enterprise Vault through 14.1.2. On start-up, the Enterprise Vault applicati... |
| CVE-2021-44677 | CRITICAL | 9.8 | 1.8% | Dec 6, 2021 | An issue (1 of 6) was discovered in Veritas Enterprise Vault through 14.1.2. On start-up, the Enterprise Vault applicati... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now