2021 CVE Vulnerabilities
23,461 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-37351 | MEDIUM | 5.3 | 2.8% | Aug 13, 2021 | Nagios XI before version 5.8.5 is vulnerable to insecure permissions and allows unauthenticated users to access guarded ... |
| CVE-2021-37350 | CRITICAL | 9.8 | 79.3% | Aug 13, 2021 | Nagios XI before version 5.8.5 is vulnerable to SQL injection vulnerability in Bulk Modifications Tool due to improper i... |
| CVE-2021-37349 | HIGH | 7.8 | 0.7% | Aug 13, 2021 | Nagios XI before version 5.8.5 is vulnerable to local privilege escalation because cleaner.php does not sanitise input r... |
| CVE-2021-37348 | HIGH | 7.5 | 2.8% | Aug 13, 2021 | Nagios XI before version 5.8.5 is vulnerable to local file inclusion through improper limitation of a pathname in index.... |
| CVE-2021-37347 | HIGH | 7.8 | 0.8% | Aug 13, 2021 | Nagios XI before version 5.8.5 is vulnerable to local privilege escalation because getprofile.sh does not validate the d... |
| CVE-2021-37346 | CRITICAL | 9.8 | 73.6% | Aug 13, 2021 | Nagios XI WatchGuard Wizard before version 1.4.8 is vulnerable to remote code execution through Improper neutralisation ... |
| CVE-2021-37345 | HIGH | 7.8 | 0.9% | Aug 13, 2021 | Nagios XI before version 5.8.5 is vulnerable to local privilege escalation because xi-sys.cfg is being imported from the... |
| CVE-2021-37344 | CRITICAL | 9.8 | 96.8% | Aug 13, 2021 | Nagios XI Switch Wizard before version 2.5.7 is vulnerable to remote code execution through improper neutralisation of s... |
| CVE-2021-37343 | HIGH | 8.8 | 23.8% | Aug 13, 2021 | A path traversal vulnerability exists in Nagios XI below version 5.8.5 AutoDiscovery component and could lead to post au... |
| CVE-2021-37695 | MEDIUM | 5.4 | 1.3% | Aug 13, 2021 | ckeditor is an open source WYSIWYG HTML editor with rich content support. A potential vulnerability has been discovered ... |
| CVE-2021-37690 | MEDIUM | 6.6 | 0.2% | Aug 13, 2021 | TensorFlow is an end-to-end open source platform for machine learning. In affected versions when running shape functions... |
| CVE-2021-38614 | HIGH | 7.5 | 1.2% | Aug 12, 2021 | Polipo through 1.1.1, when NDEBUG is used, allows a heap-based buffer overflow during parsing of a Range header. NOTE: T... |
| CVE-2021-38603 | MEDIUM | 4.8 | 1.1% | Aug 12, 2021 | PluXML 5.8.7 allows core/admin/profil.php stored XSS via the Information field. |
| CVE-2021-38602 | MEDIUM | 4.8 | 0.8% | Aug 12, 2021 | PluXML 5.8.7 allows Article Editing stored XSS via Headline or Content. |
| CVE-2021-37692 | MEDIUM | 5.5 | 0.2% | Aug 12, 2021 | TensorFlow is an end-to-end open source platform for machine learning. In affected versions under certain conditions, Go... |
| CVE-2021-37691 | MEDIUM | 5.5 | 0.2% | Aug 12, 2021 | TensorFlow is an end-to-end open source platform for machine learning. In affected versions an attacker can craft a TFLi... |
| CVE-2021-37687 | MEDIUM | 5.5 | 0.2% | Aug 12, 2021 | TensorFlow is an end-to-end open source platform for machine learning. In affected versions TFLite's [`GatherNd` impleme... |
| CVE-2021-37685 | MEDIUM | 5.5 | 0.2% | Aug 12, 2021 | TensorFlow is an end-to-end open source platform for machine learning. In affected versions TFLite's [`expand_dims.cc`](... |
| CVE-2021-37684 | MEDIUM | 5.5 | 0.1% | Aug 12, 2021 | TensorFlow is an end-to-end open source platform for machine learning. In affected versions the implementations of pooli... |
| CVE-2021-37683 | MEDIUM | 5.5 | 0.2% | Aug 12, 2021 | TensorFlow is an end-to-end open source platform for machine learning. In affected versions the implementation of divisi... |
| CVE-2021-37682 | HIGH | 7.1 | 0.2% | Aug 12, 2021 | TensorFlow is an end-to-end open source platform for machine learning. In affected versions all TFLite operations that u... |
| CVE-2021-37679 | HIGH | 7.8 | 0.2% | Aug 12, 2021 | TensorFlow is an end-to-end open source platform for machine learning. In affected versions it is possible to nest a `tf... |
| CVE-2021-37678 | HIGH | 8.8 | 0.5% | Aug 12, 2021 | TensorFlow is an end-to-end open source platform for machine learning. In affected versions TensorFlow and Keras can be ... |
| CVE-2021-37677 | MEDIUM | 5.5 | 0.1% | Aug 12, 2021 | TensorFlow is an end-to-end open source platform for machine learning. In affected versions the shape inference code for... |
| CVE-2021-37674 | MEDIUM | 5.5 | 0.2% | Aug 12, 2021 | TensorFlow is an end-to-end open source platform for machine learning. In affected versions an attacker can trigger a de... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now