2021 CVE Vulnerabilities
23,461 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-1578 | HIGH | 8.8 | 2.0% | Aug 25, 2021 | A vulnerability in an API endpoint of Cisco Application Policy Infrastructure Controller (APIC) and Cisco Cloud Applicat... |
| CVE-2021-1577 | CRITICAL | 9.1 | 1.3% | Aug 25, 2021 | A vulnerability in an API endpoint of Cisco Application Policy Infrastructure Controller (APIC) and Cisco Cloud Applicat... |
| CVE-2021-3713 | HIGH | 7.4 | 0.6% | Aug 25, 2021 | An out-of-bounds write flaw was found in the UAS (USB Attached SCSI) device emulation of QEMU in versions prior to 6.2.0... |
| CVE-2021-3605 | MEDIUM | 5.5 | 1.0% | Aug 25, 2021 | There's a flaw in OpenEXR's rleUncompress functionality in versions prior to 3.0.5. An attacker who is able to submit a ... |
| CVE-2021-39159 | CRITICAL | 9.8 | 1.9% | Aug 25, 2021 | BinderHub is a kubernetes-based cloud service that allows users to share reproducible interactive computing environments... |
| CVE-2021-33015 | HIGH | 7.8 | 1.0% | Aug 25, 2021 | Cscape (All Versions prior to 9.90 SP5) lacks proper validation of user-supplied data when parsing project files. This c... |
| CVE-2021-32995 | HIGH | 7.8 | 1.0% | Aug 25, 2021 | Cscape (All Versions prior to 9.90 SP5) lacks proper validation of user-supplied data when parsing project files. This c... |
| CVE-2021-32975 | HIGH | 7.8 | 1.0% | Aug 25, 2021 | Cscape (All Versions prior to 9.90 SP5) lacks proper validation of user-supplied data when parsing project files. This c... |
| CVE-2021-31989 | MEDIUM | 5.3 | 0.4% | Aug 25, 2021 | A user with permission to log on to the machine hosting the AXIS Device Manager client could under certain conditions ex... |
| CVE-2021-22256 | MEDIUM | 5.4 | 0.7% | Aug 25, 2021 | Improper authorization in GitLab CE/EE affecting all versions since 12.6 allowed guest users to create issues for Sentry... |
| CVE-2021-22250 | MEDIUM | 5.4 | 0.8% | Aug 25, 2021 | Improper authorization in GitLab CE/EE affecting all versions since 13.3 allowed users to view and delete impersonation ... |
| CVE-2021-22247 | MEDIUM | 4.3 | 0.8% | Aug 25, 2021 | Improper authorization in GitLab CE/EE affecting all versions since 13.0 allows guests in private projects to view CI/CD... |
| CVE-2021-22245 | LOW | 2.7 | 1.4% | Aug 25, 2021 | Improper validation of commit author in GitLab CE/EE affecting all versions allowed an attacker to make several pages in... |
| CVE-2021-22244 | MEDIUM | 6.5 | 1.0% | Aug 25, 2021 | Improper authorization in the vulnerability report feature in GitLab EE affecting all versions since 13.1 allowed a repo... |
| CVE-2021-22243 | MEDIUM | 4.3 | 0.5% | Aug 25, 2021 | Under specialized conditions, GitLab CE/EE versions starting 7.10 may allow existing GitLab users to use an invite URL m... |
| CVE-2021-22242 | MEDIUM | 5.4 | 63.6% | Aug 25, 2021 | Insufficient input sanitization in Mermaid markdown in GitLab CE/EE version 11.4 and up allows an attacker to exploit a ... |
| CVE-2021-22237 | MEDIUM | 4.9 | 0.8% | Aug 25, 2021 | Under specialized conditions, GitLab may allow a user with an impersonation token to perform Git actions even if imperso... |
| CVE-2021-22236 | HIGH | 8.8 | 0.9% | Aug 25, 2021 | Due to improper handling of OAuth client IDs, new subscriptions generated OAuth tokens on an incorrect OAuth client appl... |
| CVE-2021-21869 | HIGH | 7.8 | 1.8% | Aug 25, 2021 | An unsafe deserialization vulnerability exists in the Engine.plugin ProfileInformation ProfileData functionality of CODE... |
| CVE-2021-21850 | HIGH | 8.8 | 1.7% | Aug 25, 2021 | An exploitable integer overflow vulnerability exists within the MPEG-4 decoding functionality of the GPAC Project on Adv... |
| CVE-2021-21849 | HIGH | 8.8 | 1.7% | Aug 25, 2021 | An exploitable integer overflow vulnerability exists within the MPEG-4 decoding functionality of the GPAC Project on Adv... |
| CVE-2021-21848 | HIGH | 8.8 | 1.7% | Aug 25, 2021 | An exploitable integer overflow vulnerability exists within the MPEG-4 decoding functionality of the GPAC Project on Adv... |
| CVE-2021-21842 | HIGH | 8.8 | 1.7% | Aug 25, 2021 | An exploitable integer overflow vulnerability exists within the MPEG-4 decoding functionality of the GPAC Project on Adv... |
| CVE-2021-21841 | HIGH | 8.8 | 1.7% | Aug 25, 2021 | An exploitable integer overflow vulnerability exists within the MPEG-4 decoding functionality of the GPAC Project on Adv... |
| CVE-2021-21840 | HIGH | 8.8 | 1.7% | Aug 25, 2021 | An exploitable integer overflow vulnerability exists within the MPEG-4 decoding functionality of the GPAC Project on Adv... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now