2021 CVE Vulnerabilities
23,468 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-22998 | MEDIUM | 5.3 | 0.9% | Mar 31, 2021 | On BIG-IP versions 16.0.x before 16.0.1.1, 15.1.x before 15.1.2.1, 14.1.x before 14.1.4, 13.1.x before 13.1.3.6, 12.1.x ... |
| CVE-2021-22997 | HIGH | 7.5 | 1.1% | Mar 31, 2021 | On all 7.x and 6.x versions (fixed in 8.0.0), BIG-IQ HA ElasticSearch service does not implement any form of authenticat... |
| CVE-2021-22996 | HIGH | 7.5 | 1.0% | Mar 31, 2021 | On all 7.x versions (fixed in 8.0.0), when set up for auto failover, a BIG-IQ Data Collection Device (DCD) cluster membe... |
| CVE-2021-22994 | MEDIUM | 6.1 | 0.6% | Mar 31, 2021 | On BIG-IP versions 16.0.x before 16.0.1.1, 15.1.x before 15.1.2.1, 14.1.x before 14.1.4, 13.1.x before 13.1.3.6, 12.1.x ... |
| CVE-2021-22993 | HIGH | 8.8 | 0.9% | Mar 31, 2021 | On BIG-IP Advanced WAF and BIG-IP ASM versions 16.0.x before 16.0.1.1, 15.1.x before 15.1.2, 14.1.x before 14.1.3.1, 13.... |
| CVE-2021-22991 | CRITICAL | 9.8 | 61.1% | Mar 31, 2021 | On BIG-IP versions 16.0.x before 16.0.1.1, 15.1.x before 15.1.2.1, 14.1.x before 14.1.4, 13.1.x before 13.1.3.6, and 12.... |
| CVE-2021-21983 | MEDIUM | 6.5 | 68.6% | Mar 31, 2021 | Arbitrary file write vulnerability in vRealize Operations Manager API (CVE-2021-21983) prior to 8.4 may allow an authent... |
| CVE-2021-21975 | HIGH | 7.5 | 78.3% | Mar 31, 2021 | Server Side Request Forgery in vRealize Operations Manager API (CVE-2021-21975) prior to 8.4 may allow a malicious actor... |
| CVE-2021-21418 | MEDIUM | 5.4 | 0.8% | Mar 31, 2021 | ps_emailsubscription is a newsletter subscription module for the PrestaShop platform. An employee can inject javascript ... |
| CVE-2021-29658 | HIGH | 8.8 | 1.2% | Mar 31, 2021 | The unofficial vscode-rufo extension before 0.0.4 for Visual Studio Code allows attackers to execute arbitrary binaries ... |
| CVE-2021-22995 | HIGH | 7.5 | 0.9% | Mar 31, 2021 | On all 7.x and 6.x versions (fixed in 8.0.0), BIG-IQ high availability (HA) when using a Quorum device for automatic fai... |
| CVE-2021-22992 | CRITICAL | 9.8 | 72.7% | Mar 31, 2021 | On BIG-IP versions 16.0.x before 16.0.1.1, 15.1.x before 15.1.2.1, 14.1.x before 14.1.4, 13.1.x before 13.1.3.6, 12.1.x ... |
| CVE-2021-22990 | HIGH | 7.2 | 8.8% | Mar 31, 2021 | On BIG-IP versions 16.0.x before 16.0.1.1, 15.1.x before 15.1.2.1, 14.1.x before 14.1.4, 13.1.x before 13.1.3.6, 12.1.x ... |
| CVE-2021-22989 | CRITICAL | 9.1 | 8.8% | Mar 31, 2021 | On BIG-IP versions 16.0.x before 16.0.1.1, 15.1.x before 15.1.2.1, 14.1.x before 14.1.4, 13.1.x before 13.1.3.6, 12.1.x ... |
| CVE-2021-22987 | CRITICAL | 9.9 | 13.7% | Mar 31, 2021 | On BIG-IP versions 16.0.x before 16.0.1.1, 15.1.x before 15.1.2.1, 14.1.x before 14.1.4, 13.1.x before 13.1.3.6, 12.1.x ... |
| CVE-2021-23348 | HIGH | 8.8 | 1.8% | Mar 31, 2021 | This affects the package portprocesses before 1.0.5. If (attacker-controlled) user input is given to the killProcess fun... |
| CVE-2021-22988 | HIGH | 8.8 | 10.4% | Mar 31, 2021 | On BIG-IP versions 16.0.x before 16.0.1.1, 15.1.x before 15.1.2.1, 14.1.x before 14.1.4, 13.1.x before 13.1.3.6, 12.1.x ... |
| CVE-2021-22986 | CRITICAL | 9.8 | 99.9% | Mar 31, 2021 | On BIG-IP versions 16.0.x before 16.0.1.1, 15.1.x before 15.1.2.1, 14.1.x before 14.1.4, 13.1.x before 13.1.3.6, and 12.... |
| CVE-2021-3479 | MEDIUM | 5.5 | 1.0% | Mar 31, 2021 | There's a flaw in OpenEXR's Scanline API functionality in versions before 3.0.0-beta. An attacker who is able to submit ... |
| CVE-2021-3478 | MEDIUM | 5.5 | 1.0% | Mar 31, 2021 | There's a flaw in OpenEXR's scanline input file functionality in versions before 3.0.0-beta. An attacker able to submit ... |
| CVE-2021-3477 | MEDIUM | 5.5 | 1.0% | Mar 31, 2021 | There's a flaw in OpenEXR's deep tile sample size calculations in versions before 3.0.0-beta. An attacker who is able to... |
| CVE-2021-3470 | MEDIUM | 5.3 | 1.1% | Mar 31, 2021 | A heap overflow issue was found in Redis in versions before 5.0.10, before 6.0.9 and before 6.2.0 when using a heap allo... |
| CVE-2021-28245 | HIGH | 7.5 | 1.1% | Mar 31, 2021 | PbootCMS 3.0.4 contains a SQL injection vulnerability through index.php via the search parameter that can reveal sensiti... |
| CVE-2021-23988 | HIGH | 8.8 | 1.1% | Mar 31, 2021 | Mozilla developers reported memory safety bugs present in Firefox 86. Some of these bugs showed evidence of memory corru... |
| CVE-2021-23987 | HIGH | 8.8 | 1.4% | Mar 31, 2021 | Mozilla developers and community members reported memory safety bugs present in Firefox 86 and Firefox ESR 78.8. Some of... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now