2021 CVE Vulnerabilities

23,451 CVEs published in 2021.

CVE IDSeverityCVSSDescription
CVE-2021-41259Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: None. Reason: This CVE ID has been rejected or withdrawn ...
CVE-2021-41254HIGH8.8kustomize-controller is a Kubernetes operator, specialized in running continuous delivery pipelines for infrastructure a...
CVE-2021-38985MEDIUM4.3IBM Tivoli Key Lifecycle Manager 3.0, 3.0.1, 4.0, and 4.1 receives input or data, but it does not validate or incorrectl...
CVE-2021-38973LOW2.7IBM Tivoli Key Lifecycle Manager 3.0, 3.0.1, 4.0, and 4.1 receives input or data, but it does not validate or incorrectl...
CVE-2021-38972MEDIUM4.3IBM Tivoli Key Lifecycle Manager 3.0, 3.0.1, 4.0, and 4.1 receives input or data, but it does not validate or incorrectl...
CVE-2021-43493HIGH7.5ServerManagement master branch as of commit 49491cc6f94980e6be7791d17be947c27071eb56 is affected by a directory traversa...
CVE-2021-43492HIGH7.5AlquistManager branch as of commit 280d99f43b11378212652e75f6f3159cde9c1d36 is affected by a directory traversal vulnera...
CVE-2021-43496HIGH7.5Clustering master branch as of commit 53e663e259bcfc8cdecb56c0bb255bd70bfcaa70 is affected by a directory traversal vuln...
CVE-2021-43494HIGH7.5OpenCV-REST-API master branch as of commit 69be158c05d4dd5a4aff38fdc680a162dd6b9e49 is affected by a directory traversal...
CVE-2021-3934HIGH7.5ohmyzsh is vulnerable to Improper Neutralization of Special Elements used in an OS Command
CVE-2021-43578HIGH8.1Jenkins Squash TM Publisher (Squash4Jenkins) Plugin 1.0.0 and earlier implements an agent-to-controller message that doe...
CVE-2021-43577HIGH7.1Jenkins OWASP Dependency-Check Plugin 5.1.1 and earlier does not configure its XML parser to prevent XML external entity...
CVE-2021-43576MEDIUM6.5Jenkins pom2config Plugin 1.2 and earlier does not configure its XML parser to prevent XML external entity (XXE) attacks...
CVE-2021-21701MEDIUM6.5Jenkins Performance Plugin 3.20 and earlier does not configure its XML parser to prevent XML external entity (XXE) attac...
CVE-2021-21700MEDIUM5.4Jenkins Scriptler Plugin 3.3 and earlier does not escape the name of scripts on the UI when asking to confirm their dele...
CVE-2021-21699MEDIUM5.4Jenkins Active Choices Plugin 2.5.6 and earlier does not escape the parameter name of reactive parameters and dynamic re...
CVE-2021-30321CRITICAL9.8Possible buffer overflow due to lack of parameter length check during MBSSID scan IE parse in Snapdragon Compute, Snapdr...
CVE-2021-30284CRITICAL9.1Possible information exposure and denial of service due to NAS not dropping messages when integrity check fails in Snapd...
CVE-2021-30266MEDIUM6.7Possible use after free due to improper memory validation when initializing new interface via Interface add command in S...
CVE-2021-30265MEDIUM6.7Possible memory corruption due to improper validation of memory address while processing user-space IOCTL for clearing F...
CVE-2021-30264MEDIUM6.7Possible use after free due improper validation of reference from call back to internal store table in Snapdragon Auto, ...
CVE-2021-30263HIGH7.8Possible race condition can occur due to lack of synchronization mechanism when On-Device Logging node open twice concur...
CVE-2021-30259HIGH7.8Possible out of bound access due to improper validation of function table entries in Snapdragon Auto, Snapdragon Compute...
CVE-2021-30255HIGH7.8Possible buffer overflow due to improper input validation in PDM DIAG command in FTM in Snapdragon Auto, Snapdragon Comp...
CVE-2021-30254HIGH7.8Possible buffer overflow due to improper input validation in factory calibration and test DIAG command in Snapdragon Aut...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now