2021 CVE Vulnerabilities

23,468 CVEs published in 2021.

CVE IDSeverityCVSSDescription
CVE-2021-22998MEDIUM5.3On BIG-IP versions 16.0.x before 16.0.1.1, 15.1.x before 15.1.2.1, 14.1.x before 14.1.4, 13.1.x before 13.1.3.6, 12.1.x ...
CVE-2021-22997HIGH7.5On all 7.x and 6.x versions (fixed in 8.0.0), BIG-IQ HA ElasticSearch service does not implement any form of authenticat...
CVE-2021-22996HIGH7.5On all 7.x versions (fixed in 8.0.0), when set up for auto failover, a BIG-IQ Data Collection Device (DCD) cluster membe...
CVE-2021-22994MEDIUM6.1On BIG-IP versions 16.0.x before 16.0.1.1, 15.1.x before 15.1.2.1, 14.1.x before 14.1.4, 13.1.x before 13.1.3.6, 12.1.x ...
CVE-2021-22993HIGH8.8On BIG-IP Advanced WAF and BIG-IP ASM versions 16.0.x before 16.0.1.1, 15.1.x before 15.1.2, 14.1.x before 14.1.3.1, 13....
CVE-2021-22991CRITICAL9.8On BIG-IP versions 16.0.x before 16.0.1.1, 15.1.x before 15.1.2.1, 14.1.x before 14.1.4, 13.1.x before 13.1.3.6, and 12....
CVE-2021-21983MEDIUM6.5Arbitrary file write vulnerability in vRealize Operations Manager API (CVE-2021-21983) prior to 8.4 may allow an authent...
CVE-2021-21975HIGH7.5Server Side Request Forgery in vRealize Operations Manager API (CVE-2021-21975) prior to 8.4 may allow a malicious actor...
CVE-2021-21418MEDIUM5.4ps_emailsubscription is a newsletter subscription module for the PrestaShop platform. An employee can inject javascript ...
CVE-2021-29658HIGH8.8The unofficial vscode-rufo extension before 0.0.4 for Visual Studio Code allows attackers to execute arbitrary binaries ...
CVE-2021-22995HIGH7.5On all 7.x and 6.x versions (fixed in 8.0.0), BIG-IQ high availability (HA) when using a Quorum device for automatic fai...
CVE-2021-22992CRITICAL9.8On BIG-IP versions 16.0.x before 16.0.1.1, 15.1.x before 15.1.2.1, 14.1.x before 14.1.4, 13.1.x before 13.1.3.6, 12.1.x ...
CVE-2021-22990HIGH7.2On BIG-IP versions 16.0.x before 16.0.1.1, 15.1.x before 15.1.2.1, 14.1.x before 14.1.4, 13.1.x before 13.1.3.6, 12.1.x ...
CVE-2021-22989CRITICAL9.1On BIG-IP versions 16.0.x before 16.0.1.1, 15.1.x before 15.1.2.1, 14.1.x before 14.1.4, 13.1.x before 13.1.3.6, 12.1.x ...
CVE-2021-22987CRITICAL9.9On BIG-IP versions 16.0.x before 16.0.1.1, 15.1.x before 15.1.2.1, 14.1.x before 14.1.4, 13.1.x before 13.1.3.6, 12.1.x ...
CVE-2021-23348HIGH8.8This affects the package portprocesses before 1.0.5. If (attacker-controlled) user input is given to the killProcess fun...
CVE-2021-22988HIGH8.8On BIG-IP versions 16.0.x before 16.0.1.1, 15.1.x before 15.1.2.1, 14.1.x before 14.1.4, 13.1.x before 13.1.3.6, 12.1.x ...
CVE-2021-22986CRITICAL9.8On BIG-IP versions 16.0.x before 16.0.1.1, 15.1.x before 15.1.2.1, 14.1.x before 14.1.4, 13.1.x before 13.1.3.6, and 12....
CVE-2021-3479MEDIUM5.5There's a flaw in OpenEXR's Scanline API functionality in versions before 3.0.0-beta. An attacker who is able to submit ...
CVE-2021-3478MEDIUM5.5There's a flaw in OpenEXR's scanline input file functionality in versions before 3.0.0-beta. An attacker able to submit ...
CVE-2021-3477MEDIUM5.5There's a flaw in OpenEXR's deep tile sample size calculations in versions before 3.0.0-beta. An attacker who is able to...
CVE-2021-3470MEDIUM5.3A heap overflow issue was found in Redis in versions before 5.0.10, before 6.0.9 and before 6.2.0 when using a heap allo...
CVE-2021-28245HIGH7.5PbootCMS 3.0.4 contains a SQL injection vulnerability through index.php via the search parameter that can reveal sensiti...
CVE-2021-23988HIGH8.8Mozilla developers reported memory safety bugs present in Firefox 86. Some of these bugs showed evidence of memory corru...
CVE-2021-23987HIGH8.8Mozilla developers and community members reported memory safety bugs present in Firefox 86 and Firefox ESR 78.8. Some of...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now