2021 CVE Vulnerabilities

23,461 CVEs published in 2021.

CVE IDSeverityCVSSDescription
CVE-2021-37351MEDIUM5.3Nagios XI before version 5.8.5 is vulnerable to insecure permissions and allows unauthenticated users to access guarded ...
CVE-2021-37350CRITICAL9.8Nagios XI before version 5.8.5 is vulnerable to SQL injection vulnerability in Bulk Modifications Tool due to improper i...
CVE-2021-37349HIGH7.8Nagios XI before version 5.8.5 is vulnerable to local privilege escalation because cleaner.php does not sanitise input r...
CVE-2021-37348HIGH7.5Nagios XI before version 5.8.5 is vulnerable to local file inclusion through improper limitation of a pathname in index....
CVE-2021-37347HIGH7.8Nagios XI before version 5.8.5 is vulnerable to local privilege escalation because getprofile.sh does not validate the d...
CVE-2021-37346CRITICAL9.8Nagios XI WatchGuard Wizard before version 1.4.8 is vulnerable to remote code execution through Improper neutralisation ...
CVE-2021-37345HIGH7.8Nagios XI before version 5.8.5 is vulnerable to local privilege escalation because xi-sys.cfg is being imported from the...
CVE-2021-37344CRITICAL9.8Nagios XI Switch Wizard before version 2.5.7 is vulnerable to remote code execution through improper neutralisation of s...
CVE-2021-37343HIGH8.8A path traversal vulnerability exists in Nagios XI below version 5.8.5 AutoDiscovery component and could lead to post au...
CVE-2021-37695MEDIUM5.4ckeditor is an open source WYSIWYG HTML editor with rich content support. A potential vulnerability has been discovered ...
CVE-2021-37690MEDIUM6.6TensorFlow is an end-to-end open source platform for machine learning. In affected versions when running shape functions...
CVE-2021-38614HIGH7.5Polipo through 1.1.1, when NDEBUG is used, allows a heap-based buffer overflow during parsing of a Range header. NOTE: T...
CVE-2021-38603MEDIUM4.8PluXML 5.8.7 allows core/admin/profil.php stored XSS via the Information field.
CVE-2021-38602MEDIUM4.8PluXML 5.8.7 allows Article Editing stored XSS via Headline or Content.
CVE-2021-37692MEDIUM5.5TensorFlow is an end-to-end open source platform for machine learning. In affected versions under certain conditions, Go...
CVE-2021-37691MEDIUM5.5TensorFlow is an end-to-end open source platform for machine learning. In affected versions an attacker can craft a TFLi...
CVE-2021-37687MEDIUM5.5TensorFlow is an end-to-end open source platform for machine learning. In affected versions TFLite's [`GatherNd` impleme...
CVE-2021-37685MEDIUM5.5TensorFlow is an end-to-end open source platform for machine learning. In affected versions TFLite's [`expand_dims.cc`](...
CVE-2021-37684MEDIUM5.5TensorFlow is an end-to-end open source platform for machine learning. In affected versions the implementations of pooli...
CVE-2021-37683MEDIUM5.5TensorFlow is an end-to-end open source platform for machine learning. In affected versions the implementation of divisi...
CVE-2021-37682HIGH7.1TensorFlow is an end-to-end open source platform for machine learning. In affected versions all TFLite operations that u...
CVE-2021-37679HIGH7.8TensorFlow is an end-to-end open source platform for machine learning. In affected versions it is possible to nest a `tf...
CVE-2021-37678HIGH8.8TensorFlow is an end-to-end open source platform for machine learning. In affected versions TensorFlow and Keras can be ...
CVE-2021-37677MEDIUM5.5TensorFlow is an end-to-end open source platform for machine learning. In affected versions the shape inference code for...
CVE-2021-37674MEDIUM5.5TensorFlow is an end-to-end open source platform for machine learning. In affected versions an attacker can trigger a de...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now