2021 CVE Vulnerabilities
23,461 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-23029 | HIGH | 8.8 | 0.8% | Sep 14, 2021 | On version 16.0.x before 16.0.1.2, insufficient permission checks may allow authenticated users with guest privileges to... |
| CVE-2021-23027 | MEDIUM | 6.1 | 0.6% | Sep 14, 2021 | On version 16.0.x before 16.0.1.2, 15.1.x before 15.1.3.1, and 14.1.x before 14.1.4.3, a DOM based cross-site scripting ... |
| CVE-2021-23026 | HIGH | 8.8 | 0.5% | Sep 14, 2021 | BIG-IP version 16.0.x before 16.0.1.2, 15.1.x before 15.1.3, 14.1.x before 14.1.4.2, 13.1.x before 13.1.4.1, and all ver... |
| CVE-2021-23030 | HIGH | 7.5 | 0.9% | Sep 14, 2021 | On BIG-IP Advanced WAF and BIG-IP ASM version 16.0.x before 16.0.1.2, 15.1.x before 15.1.3.1, 14.1.x before 14.1.4.3, 13... |
| CVE-2021-23028 | HIGH | 7.5 | 0.9% | Sep 14, 2021 | On version 16.0.x before 16.0.1.2, 15.1.x before 15.1.3.1, 14.1.x before 14.1.4.2, and 13.1.x before 13.1.4, when JSON c... |
| CVE-2021-23025 | HIGH | 8.8 | 2.2% | Sep 14, 2021 | On version 15.1.x before 15.1.0.5, 14.1.x before 14.1.3.1, 13.1.x before 13.1.3.5, and all versions of 12.1.x and 11.6.x... |
| CVE-2021-23036 | HIGH | 7.5 | 0.9% | Sep 14, 2021 | On version 16.0.x before 16.0.1.2, when a BIG-IP ASM and DataSafe profile are configured on a virtual server, undisclose... |
| CVE-2021-23031 | CRITICAL | 9.9 | 2.0% | Sep 14, 2021 | On version 16.0.x before 16.0.1.2, 15.1.x before 15.1.3, 14.1.x before 14.1.4.1, 13.1.x before 13.1.4, 12.1.x before 12.... |
| CVE-2021-39391 | MEDIUM | 6.1 | 0.8% | Sep 14, 2021 | Cross Site Scripting (XSS) vulnerability exists in the admin panel in Beego v2.0.1 via the URI path in an HTTP request, ... |
| CVE-2021-35493 | MEDIUM | 5.4 | 0.6% | Sep 14, 2021 | The WebFOCUS Reporting Server and WebFOCUS Client components of TIBCO Software Inc.'s TIBCO WebFOCUS Client, TIBCO WebFO... |
| CVE-2021-23039 | HIGH | 7.5 | 0.9% | Sep 14, 2021 | On version 16.0.x before 16.0.1.2, 15.1.x before 15.1.3, 14.1.x before 14.1.2.8, and all versions of 13.1.x and 12.1.x, ... |
| CVE-2021-23038 | CRITICAL | 9 | 0.9% | Sep 14, 2021 | On version 16.0.x before 16.0.1.2, 15.1.x before 15.1.3.1, 14.1.x before 14.1.4.2, 13.1.x before 13.1.4.1, and all versi... |
| CVE-2021-23037 | CRITICAL | 9.6 | 0.8% | Sep 14, 2021 | On all versions of 16.1.x, 16.0.x, 15.1.x, 14.1.x, 13.1.x, 12.1.x, and 11.6.x, a reflected cross-site scripting (XSS) vu... |
| CVE-2021-23035 | HIGH | 7.5 | 0.9% | Sep 14, 2021 | On BIG-IP 14.1.x before 14.1.4.4, when an HTTP profile is configured on a virtual server, after a specific sequence of p... |
| CVE-2021-23034 | HIGH | 7.5 | 0.9% | Sep 14, 2021 | On BIG-IP version 16.x before 16.1.0 and 15.1.x before 15.1.3.1, when a DNS profile using a DNS cache resolver is config... |
| CVE-2021-23033 | HIGH | 7.5 | 0.9% | Sep 14, 2021 | On BIG-IP Advanced WAF and BIG-IP ASM version 16.x before 16.1.0x, 15.1.x before 15.1.3.1, 14.1.x before 14.1.4.3, 13.1.... |
| CVE-2021-23032 | HIGH | 7.5 | 0.9% | Sep 14, 2021 | On version 16.x before 16.1.0, 15.1.x before 15.1.3.1, 14.1.x before 14.1.4.4, and all versions of 13.1.x and 12.1.x, wh... |
| CVE-2021-23045 | HIGH | 7.5 | 0.9% | Sep 14, 2021 | On BIG-IP version 16.0.x before 16.0.1.2, 15.1.x before 15.1.3.1, 14.1.x before 14.1.4.3, 13.1.x before 13.1.4.1, and al... |
| CVE-2021-41077 | HIGH | 7.5 | 1.4% | Sep 14, 2021 | The activation process in Travis CI, for certain 2021-09-03 through 2021-09-10 builds, causes secret data to have unexpe... |
| CVE-2021-23044 | HIGH | 7.5 | 0.9% | Sep 14, 2021 | On BIG-IP version 16.x before 16.1.0, 15.1.x before 15.1.3.1, 14.1.x before 14.1.4.2, 13.1.x before 13.1.4.1, and all ve... |
| CVE-2021-23046 | MEDIUM | 4.9 | 0.7% | Sep 14, 2021 | On all versions of Guided Configuration before 8.0.0, when a configuration that contains secure properties is created an... |
| CVE-2021-23043 | MEDIUM | 6.5 | 1.9% | Sep 14, 2021 | On BIG-IP, on all versions of 16.1.x, 16.0.x, 15.1.x, 14.1.x, 13.1.x, 12.1.x, and 11.6.x, a directory traversal vulnerab... |
| CVE-2021-23042 | HIGH | 7.5 | 0.9% | Sep 14, 2021 | On BIG-IP version 16.0.x before 16.0.1.2, 15.1.x before 15.1.3, 14.1.x before 14.1.4, 13.1.x before 13.1.4, and 12.1.x b... |
| CVE-2021-23040 | HIGH | 8.8 | 1.0% | Sep 14, 2021 | On BIG-IP AFM version 16.0.x before 16.0.1.2, 15.1.x before 15.1.3, 14.1.x before 14.1.4.2, 13.1.x before 13.1.4.1, and ... |
| CVE-2021-29841 | MEDIUM | 5.4 | 0.5% | Sep 14, 2021 | IBM Financial Transaction Manager 3.2.4 is vulnerable to cross-site scripting. This vulnerability allows users to embed ... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now