2021 CVE Vulnerabilities
23,451 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-1317 | HIGH | 7.2 | 3.0% | Feb 4, 2021 | Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV016, RV042, RV042G, RV082, RV32... |
| CVE-2021-1316 | HIGH | 7.2 | 3.0% | Feb 4, 2021 | Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV016, RV042, RV042G, RV082, RV32... |
| CVE-2021-1315 | HIGH | 7.2 | 3.0% | Feb 4, 2021 | Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV016, RV042, RV042G, RV082, RV32... |
| CVE-2021-1314 | HIGH | 7.2 | 3.0% | Feb 4, 2021 | Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV016, RV042, RV042G, RV082, RV32... |
| CVE-2021-1313 | HIGH | 7.5 | 2.0% | Feb 4, 2021 | Multiple vulnerabilities in the ingress packet processing function of Cisco IOS XR Software could allow an unauthenticat... |
| CVE-2021-1297 | HIGH | 7.5 | 3.7% | Feb 4, 2021 | Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV160, RV160W, RV260, RV260P, and... |
| CVE-2021-1296 | HIGH | 7.5 | 3.7% | Feb 4, 2021 | Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV160, RV160W, RV260, RV260P, and... |
| CVE-2021-1288 | HIGH | 7.5 | 2.0% | Feb 4, 2021 | Multiple vulnerabilities in the ingress packet processing function of Cisco IOS XR Software could allow an unauthenticat... |
| CVE-2021-1243 | HIGH | 7.5 | 1.3% | Feb 4, 2021 | A vulnerability in the Local Packet Transport Services (LPTS) programming of the SNMP with the management plane protecti... |
| CVE-2021-25276 | HIGH | 7.1 | 0.5% | Feb 3, 2021 | In SolarWinds Serv-U before 15.2.2 Hotfix 1, there is a directory containing user profile files (that include users' pas... |
| CVE-2021-25275 | HIGH | 7.8 | 0.6% | Feb 3, 2021 | SolarWinds Orion Platform before 2020.2.4, as used by various SolarWinds products, installs and uses a SQL Server backen... |
| CVE-2021-25776 | HIGH | 7.5 | 1.1% | Feb 3, 2021 | In JetBrains TeamCity before 2020.2, an ECR token could be exposed in a build's parameters. |
| CVE-2021-25769 | HIGH | 7.5 | 1.8% | Feb 3, 2021 | In JetBrains YouTrack before 2020.4.6808, the YouTrack administrator wasn't able to access attachments. |
| CVE-2021-25765 | HIGH | 8.8 | 0.7% | Feb 3, 2021 | In JetBrains YouTrack before 2020.4.4701, CSRF via attachment upload was possible. |
| CVE-2021-25758 | HIGH | 7.8 | 1.0% | Feb 3, 2021 | In JetBrains IntelliJ IDEA before 2020.3, potentially insecure deserialization of the workspace model could lead to loca... |
| CVE-2021-21294 | HIGH | 7.5 | 2.1% | Feb 2, 2021 | Http4s (http4s-blaze-server) is a minimal, idiomatic Scala interface for HTTP services. Http4s before versions 0.21.17, ... |
| CVE-2021-21293 | HIGH | 7.5 | 2.1% | Feb 2, 2021 | blaze is a Scala library for building asynchronous pipelines, with a focus on network IO. All servers running blaze-core... |
| CVE-2021-23271 | HIGH | 8 | 0.9% | Feb 2, 2021 | The TIBCO EBX Web Server component of TIBCO Software Inc.'s TIBCO EBX contains a vulnerability that theoretically allows... |
| CVE-2021-21289 | HIGH | 8.3 | 3.5% | Feb 2, 2021 | Mechanize is an open-source ruby library that makes automated web interaction easy. In Mechanize from version 2.0.0 and ... |
| CVE-2021-25310 | HIGH | 8.8 | 4.6% | Feb 2, 2021 | The administration web interface on Belkin Linksys WRT160NL 1.0.04.002_US_20130619 devices allows remote authenticated a... |
| CVE-2021-21287 | HIGH | 7.7 | 24.8% | Feb 1, 2021 | MinIO is a High Performance Object Storage released under Apache License v2.0. In MinIO before version RELEASE.2021-01-3... |
| CVE-2021-3283 | HIGH | 7.5 | 1.5% | Feb 1, 2021 | HashiCorp Nomad and Nomad Enterprise up to 0.12.9 exec and java task drivers can access processes associated with other ... |
| CVE-2021-3282 | HIGH | 7.5 | 1.3% | Feb 1, 2021 | HashiCorp Vault Enterprise 1.6.0 & 1.6.1 allowed the `remove-peer` raft operator command to be executed against DR secon... |
| CVE-2021-21286 | HIGH | 8.8 | 0.8% | Feb 1, 2021 | AVideo Platform is an open-source Audio and Video platform. It is similar to a self-hosted YouTube. In AVideo Platform b... |
| CVE-2021-21277 | HIGH | 8.8 | 2.7% | Feb 1, 2021 | angular-expressions is "angular's nicest part extracted as a standalone module for the browser and node". In angular-exp... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now