2021 CVE Vulnerabilities

23,451 CVEs published in 2021.

CVE IDSeverityCVSSDescription
CVE-2021-42074HIGH7.5An issue was discovered in Barrier before 2.3.4. An unauthenticated attacker can cause a segmentation fault in the barri...
CVE-2021-42073HIGH8.2An issue was discovered in Barrier before 2.4.0. An attacker can enter an active session state with the barriers compone...
CVE-2021-42072HIGH8.8An issue was discovered in Barrier before 2.4.0. The barriers component (aka the server-side implementation of Barrier) ...
CVE-2021-34685HIGH7.2UploadService in Hitachi Vantara Pentaho Business Analytics through 9.1 does not properly verify uploaded user files, wh...
CVE-2021-34684CRITICAL9.8Hitachi Vantara Pentaho Business Analytics through 9.1 allows an unauthenticated user to execute arbitrary SQL queries o...
CVE-2021-31602HIGH7.5An issue was discovered in Hitachi Vantara Pentaho through 9.1 and Pentaho Business Intelligence Server through 7.x. The...
CVE-2021-31601MEDIUM6.5An issue was discovered in Hitachi Vantara Pentaho through 9.1 and Pentaho Business Intelligence Server through 7.x. The...
CVE-2021-31600MEDIUM4.3An issue was discovered in Hitachi Vantara Pentaho through 9.1 and Pentaho Business Intelligence Server through 7.x. The...
CVE-2021-31599HIGH8.8An issue was discovered in Hitachi Vantara Pentaho through 9.1 and Pentaho Business Intelligence Server through 7.x. A r...
CVE-2021-43414HIGH7An issue was discovered in GNU Hurd before 0.9 20210404-9. The use of an authentication protocol in the proc server is v...
CVE-2021-43413HIGH8.8An issue was discovered in GNU Hurd before 0.9 20210404-9. A single pager port is shared among everyone who mmaps a file...
CVE-2021-43412HIGH7.8An issue was discovered in GNU Hurd before 0.9 20210404-9. libports accepts fake notification messages from any client o...
CVE-2021-43411HIGH7.5An issue was discovered in GNU Hurd before 0.9 20210404-9. When trying to exec a setuid executable, there's a window of ...
CVE-2021-25978MEDIUM5.4Apostrophe CMS versions between 2.63.0 to 3.3.1 are vulnerable to Stored XSS where an editor uploads an SVG file that co...
CVE-2021-37471HIGH7.5Cradlepoint IBR900-600 devices running versions < 7.21.10 are vulnerable to a restricted shell escape sequence that prov...
CVE-2021-41251MEDIUM5.9@sap-cloud-sdk/core contains the core functionality of the SAP Cloud SDK as well as the SAP Business Technology Platform...
CVE-2021-41250MEDIUM4.3Python discord bot is the community bot for the Python Discord community. In affected versions when a non-blacklisted UR...
CVE-2021-41230HIGH8.8Pomerium is an open source identity-aware access proxy. In affected versions changes to the OIDC claims of a user after ...
CVE-2021-41228HIGH7.8TensorFlow is an open source platform for machine learning. In affected versions TensorFlow's `saved_model_cli` tool is ...
CVE-2021-41227MEDIUM5.5TensorFlow is an open source platform for machine learning. In affected versions the `ImmutableConst` operation in Tenso...
CVE-2021-41225HIGH7.8TensorFlow is an open source platform for machine learning. In affected versions TensorFlow's Grappler optimizer has a u...
CVE-2021-41222MEDIUM5.5TensorFlow is an open source platform for machine learning. In affected versions the implementation of `SplitV` can trig...
CVE-2021-41221HIGH7.8TensorFlow is an open source platform for machine learning. In affected versions the shape inference code for the `Cudnn...
CVE-2021-41220HIGH7.8TensorFlow is an open source platform for machine learning. In affected versions the async implementation of `Collective...
CVE-2021-41216HIGH7.8TensorFlow is an open source platform for machine learning. In affected versions the shape inference function for `Trans...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now