2021 CVE Vulnerabilities

23,468 CVEs published in 2021.

CVE IDSeverityCVSSDescription
CVE-2021-21636MEDIUM4.3A missing permission check in Jenkins Team Foundation Server Plugin 5.157.1 and earlier allows attackers with Overall/Re...
CVE-2021-21635MEDIUM5.4Jenkins REST List Parameter Plugin 1.3.0 and earlier does not escape a parameter name reference in embedded JavaScript, ...
CVE-2021-21634MEDIUM6.5Jenkins Jabber (XMPP) notifier and control Plugin 1.41 and earlier stores passwords unencrypted in its global configurat...
CVE-2021-21633HIGH8.8A cross-site request forgery (CSRF) vulnerability in Jenkins OWASP Dependency-Track Plugin 3.1.0 and earlier allows atta...
CVE-2021-21632MEDIUM6.5A missing permission check in Jenkins OWASP Dependency-Track Plugin 3.1.0 and earlier allows attackers with Overall/Read...
CVE-2021-21631MEDIUM4.3Jenkins Cloud Statistics Plugin 0.26 and earlier does not perform a permission check in an HTTP endpoint, allowing attac...
CVE-2021-21630MEDIUM5.4Jenkins Extra Columns Plugin 1.22 and earlier does not escape parameter values in the build parameters column, resulting...
CVE-2021-21629HIGH8.8A cross-site request forgery (CSRF) vulnerability in Jenkins Build With Parameters Plugin 1.5 and earlier allows attacke...
CVE-2021-21628MEDIUM5.4Jenkins Build With Parameters Plugin 1.5 and earlier does not escape parameter names and descriptions, resulting in a st...
CVE-2021-26919HIGH8.8Apache Druid allows users to read data from other database systems using JDBC. This functionality is to allow trusted us...
CVE-2021-29418MEDIUM5.3The netmask package before 2.0.1 for Node.js mishandles certain unexpected characters in an IP address string, such as a...
CVE-2021-29376HIGH7.5ircII before 20210314 allows remote attackers to cause a denial of service (segmentation fault and client crash, disconn...
CVE-2021-25162HIGH8.1A remote execution of arbitrary commands vulnerability was discovered in some Aruba Instant Access Point (IAP) products ...
CVE-2021-25161MEDIUM6.1A remote cross-site scripting (xss) vulnerability was discovered in some Aruba Instant Access Point (IAP) products in ve...
CVE-2021-25160MEDIUM4.9A remote arbitrary file modification vulnerability was discovered in some Aruba Instant Access Point (IAP) products in v...
CVE-2021-25159MEDIUM6.5A remote arbitrary file modification vulnerability was discovered in some Aruba Instant Access Point (IAP) products in v...
CVE-2021-25158MEDIUM5.9A remote arbitrary file read vulnerability was discovered in some Aruba Instant Access Point (IAP) products in version(s...
CVE-2021-25157MEDIUM4.9A remote arbitrary file read vulnerability was discovered in some Aruba Instant Access Point (IAP) products in version(s...
CVE-2021-25156MEDIUM4.9A remote arbitrary directory create vulnerability was discovered in some Aruba Instant Access Point (IAP) products in ve...
CVE-2021-25155MEDIUM6.5A remote arbitrary file modification vulnerability was discovered in some Aruba Instant Access Point (IAP) products in v...
CVE-2021-25150HIGH8.8A remote execution of arbitrary commands vulnerability was discovered in some Aruba Instant Access Point (IAP) products ...
CVE-2021-25146HIGH7.2A remote execution of arbitrary commands vulnerability was discovered in some Aruba Instant Access Point (IAP) products ...
CVE-2021-25149CRITICAL9.8A remote buffer overflow vulnerability was discovered in some Aruba Instant Access Point (IAP) products in version(s): A...
CVE-2021-25148HIGH8.1A remote arbitrary file modification vulnerability was discovered in some Aruba Instant Access Point (IAP) products in v...
CVE-2021-25145MEDIUM6.5A remote unauthorized disclosure of information vulnerability was discovered in some Aruba Instant Access Point (IAP) pr...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now