2021 CVE Vulnerabilities
23,451 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-41259 | — | — | — | Nov 12, 2021 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: None. Reason: This CVE ID has been rejected or withdrawn ... |
| CVE-2021-41254 | HIGH | 8.8 | 1.8% | Nov 12, 2021 | kustomize-controller is a Kubernetes operator, specialized in running continuous delivery pipelines for infrastructure a... |
| CVE-2021-38985 | MEDIUM | 4.3 | 0.6% | Nov 12, 2021 | IBM Tivoli Key Lifecycle Manager 3.0, 3.0.1, 4.0, and 4.1 receives input or data, but it does not validate or incorrectl... |
| CVE-2021-38973 | LOW | 2.7 | 0.6% | Nov 12, 2021 | IBM Tivoli Key Lifecycle Manager 3.0, 3.0.1, 4.0, and 4.1 receives input or data, but it does not validate or incorrectl... |
| CVE-2021-38972 | MEDIUM | 4.3 | 0.6% | Nov 12, 2021 | IBM Tivoli Key Lifecycle Manager 3.0, 3.0.1, 4.0, and 4.1 receives input or data, but it does not validate or incorrectl... |
| CVE-2021-43493 | HIGH | 7.5 | 2.4% | Nov 12, 2021 | ServerManagement master branch as of commit 49491cc6f94980e6be7791d17be947c27071eb56 is affected by a directory traversa... |
| CVE-2021-43492 | HIGH | 7.5 | 4.0% | Nov 12, 2021 | AlquistManager branch as of commit 280d99f43b11378212652e75f6f3159cde9c1d36 is affected by a directory traversal vulnera... |
| CVE-2021-43496 | HIGH | 7.5 | 15.7% | Nov 12, 2021 | Clustering master branch as of commit 53e663e259bcfc8cdecb56c0bb255bd70bfcaa70 is affected by a directory traversal vuln... |
| CVE-2021-43494 | HIGH | 7.5 | 3.2% | Nov 12, 2021 | OpenCV-REST-API master branch as of commit 69be158c05d4dd5a4aff38fdc680a162dd6b9e49 is affected by a directory traversal... |
| CVE-2021-3934 | HIGH | 7.5 | 0.6% | Nov 12, 2021 | ohmyzsh is vulnerable to Improper Neutralization of Special Elements used in an OS Command |
| CVE-2021-43578 | HIGH | 8.1 | 1.1% | Nov 12, 2021 | Jenkins Squash TM Publisher (Squash4Jenkins) Plugin 1.0.0 and earlier implements an agent-to-controller message that doe... |
| CVE-2021-43577 | HIGH | 7.1 | 1.0% | Nov 12, 2021 | Jenkins OWASP Dependency-Check Plugin 5.1.1 and earlier does not configure its XML parser to prevent XML external entity... |
| CVE-2021-43576 | MEDIUM | 6.5 | 2.4% | Nov 12, 2021 | Jenkins pom2config Plugin 1.2 and earlier does not configure its XML parser to prevent XML external entity (XXE) attacks... |
| CVE-2021-21701 | MEDIUM | 6.5 | 1.7% | Nov 12, 2021 | Jenkins Performance Plugin 3.20 and earlier does not configure its XML parser to prevent XML external entity (XXE) attac... |
| CVE-2021-21700 | MEDIUM | 5.4 | 0.7% | Nov 12, 2021 | Jenkins Scriptler Plugin 3.3 and earlier does not escape the name of scripts on the UI when asking to confirm their dele... |
| CVE-2021-21699 | MEDIUM | 5.4 | 88.5% | Nov 12, 2021 | Jenkins Active Choices Plugin 2.5.6 and earlier does not escape the parameter name of reactive parameters and dynamic re... |
| CVE-2021-30321 | CRITICAL | 9.8 | 0.8% | Nov 12, 2021 | Possible buffer overflow due to lack of parameter length check during MBSSID scan IE parse in Snapdragon Compute, Snapdr... |
| CVE-2021-30284 | CRITICAL | 9.1 | 0.6% | Nov 12, 2021 | Possible information exposure and denial of service due to NAS not dropping messages when integrity check fails in Snapd... |
| CVE-2021-30266 | MEDIUM | 6.7 | 0.2% | Nov 12, 2021 | Possible use after free due to improper memory validation when initializing new interface via Interface add command in S... |
| CVE-2021-30265 | MEDIUM | 6.7 | 0.1% | Nov 12, 2021 | Possible memory corruption due to improper validation of memory address while processing user-space IOCTL for clearing F... |
| CVE-2021-30264 | MEDIUM | 6.7 | 0.1% | Nov 12, 2021 | Possible use after free due improper validation of reference from call back to internal store table in Snapdragon Auto, ... |
| CVE-2021-30263 | HIGH | 7.8 | 0.1% | Nov 12, 2021 | Possible race condition can occur due to lack of synchronization mechanism when On-Device Logging node open twice concur... |
| CVE-2021-30259 | HIGH | 7.8 | 0.1% | Nov 12, 2021 | Possible out of bound access due to improper validation of function table entries in Snapdragon Auto, Snapdragon Compute... |
| CVE-2021-30255 | HIGH | 7.8 | 0.2% | Nov 12, 2021 | Possible buffer overflow due to improper input validation in PDM DIAG command in FTM in Snapdragon Auto, Snapdragon Comp... |
| CVE-2021-30254 | HIGH | 7.8 | 0.2% | Nov 12, 2021 | Possible buffer overflow due to improper input validation in factory calibration and test DIAG command in Snapdragon Aut... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now