2021 CVE Vulnerabilities

23,461 CVEs published in 2021.

CVE IDSeverityCVSSDescription
CVE-2021-1578HIGH8.8A vulnerability in an API endpoint of Cisco Application Policy Infrastructure Controller (APIC) and Cisco Cloud Applicat...
CVE-2021-1577CRITICAL9.1A vulnerability in an API endpoint of Cisco Application Policy Infrastructure Controller (APIC) and Cisco Cloud Applicat...
CVE-2021-3713HIGH7.4An out-of-bounds write flaw was found in the UAS (USB Attached SCSI) device emulation of QEMU in versions prior to 6.2.0...
CVE-2021-3605MEDIUM5.5There's a flaw in OpenEXR's rleUncompress functionality in versions prior to 3.0.5. An attacker who is able to submit a ...
CVE-2021-39159CRITICAL9.8BinderHub is a kubernetes-based cloud service that allows users to share reproducible interactive computing environments...
CVE-2021-33015HIGH7.8Cscape (All Versions prior to 9.90 SP5) lacks proper validation of user-supplied data when parsing project files. This c...
CVE-2021-32995HIGH7.8Cscape (All Versions prior to 9.90 SP5) lacks proper validation of user-supplied data when parsing project files. This c...
CVE-2021-32975HIGH7.8Cscape (All Versions prior to 9.90 SP5) lacks proper validation of user-supplied data when parsing project files. This c...
CVE-2021-31989MEDIUM5.3A user with permission to log on to the machine hosting the AXIS Device Manager client could under certain conditions ex...
CVE-2021-22256MEDIUM5.4Improper authorization in GitLab CE/EE affecting all versions since 12.6 allowed guest users to create issues for Sentry...
CVE-2021-22250MEDIUM5.4Improper authorization in GitLab CE/EE affecting all versions since 13.3 allowed users to view and delete impersonation ...
CVE-2021-22247MEDIUM4.3Improper authorization in GitLab CE/EE affecting all versions since 13.0 allows guests in private projects to view CI/CD...
CVE-2021-22245LOW2.7Improper validation of commit author in GitLab CE/EE affecting all versions allowed an attacker to make several pages in...
CVE-2021-22244MEDIUM6.5Improper authorization in the vulnerability report feature in GitLab EE affecting all versions since 13.1 allowed a repo...
CVE-2021-22243MEDIUM4.3Under specialized conditions, GitLab CE/EE versions starting 7.10 may allow existing GitLab users to use an invite URL m...
CVE-2021-22242MEDIUM5.4Insufficient input sanitization in Mermaid markdown in GitLab CE/EE version 11.4 and up allows an attacker to exploit a ...
CVE-2021-22237MEDIUM4.9Under specialized conditions, GitLab may allow a user with an impersonation token to perform Git actions even if imperso...
CVE-2021-22236HIGH8.8Due to improper handling of OAuth client IDs, new subscriptions generated OAuth tokens on an incorrect OAuth client appl...
CVE-2021-21869HIGH7.8An unsafe deserialization vulnerability exists in the Engine.plugin ProfileInformation ProfileData functionality of CODE...
CVE-2021-21850HIGH8.8An exploitable integer overflow vulnerability exists within the MPEG-4 decoding functionality of the GPAC Project on Adv...
CVE-2021-21849HIGH8.8An exploitable integer overflow vulnerability exists within the MPEG-4 decoding functionality of the GPAC Project on Adv...
CVE-2021-21848HIGH8.8An exploitable integer overflow vulnerability exists within the MPEG-4 decoding functionality of the GPAC Project on Adv...
CVE-2021-21842HIGH8.8An exploitable integer overflow vulnerability exists within the MPEG-4 decoding functionality of the GPAC Project on Adv...
CVE-2021-21841HIGH8.8An exploitable integer overflow vulnerability exists within the MPEG-4 decoding functionality of the GPAC Project on Adv...
CVE-2021-21840HIGH8.8An exploitable integer overflow vulnerability exists within the MPEG-4 decoding functionality of the GPAC Project on Adv...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now