2021 CVE Vulnerabilities
23,468 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-21636 | MEDIUM | 4.3 | 0.8% | Mar 30, 2021 | A missing permission check in Jenkins Team Foundation Server Plugin 5.157.1 and earlier allows attackers with Overall/Re... |
| CVE-2021-21635 | MEDIUM | 5.4 | 8.8% | Mar 30, 2021 | Jenkins REST List Parameter Plugin 1.3.0 and earlier does not escape a parameter name reference in embedded JavaScript, ... |
| CVE-2021-21634 | MEDIUM | 6.5 | 0.8% | Mar 30, 2021 | Jenkins Jabber (XMPP) notifier and control Plugin 1.41 and earlier stores passwords unencrypted in its global configurat... |
| CVE-2021-21633 | HIGH | 8.8 | 0.8% | Mar 30, 2021 | A cross-site request forgery (CSRF) vulnerability in Jenkins OWASP Dependency-Track Plugin 3.1.0 and earlier allows atta... |
| CVE-2021-21632 | MEDIUM | 6.5 | 1.1% | Mar 30, 2021 | A missing permission check in Jenkins OWASP Dependency-Track Plugin 3.1.0 and earlier allows attackers with Overall/Read... |
| CVE-2021-21631 | MEDIUM | 4.3 | 0.8% | Mar 30, 2021 | Jenkins Cloud Statistics Plugin 0.26 and earlier does not perform a permission check in an HTTP endpoint, allowing attac... |
| CVE-2021-21630 | MEDIUM | 5.4 | 72.4% | Mar 30, 2021 | Jenkins Extra Columns Plugin 1.22 and earlier does not escape parameter values in the build parameters column, resulting... |
| CVE-2021-21629 | HIGH | 8.8 | 0.7% | Mar 30, 2021 | A cross-site request forgery (CSRF) vulnerability in Jenkins Build With Parameters Plugin 1.5 and earlier allows attacke... |
| CVE-2021-21628 | MEDIUM | 5.4 | 81.9% | Mar 30, 2021 | Jenkins Build With Parameters Plugin 1.5 and earlier does not escape parameter names and descriptions, resulting in a st... |
| CVE-2021-26919 | HIGH | 8.8 | 34.9% | Mar 30, 2021 | Apache Druid allows users to read data from other database systems using JDBC. This functionality is to allow trusted us... |
| CVE-2021-29418 | MEDIUM | 5.3 | 1.7% | Mar 30, 2021 | The netmask package before 2.0.1 for Node.js mishandles certain unexpected characters in an IP address string, such as a... |
| CVE-2021-29376 | HIGH | 7.5 | 2.3% | Mar 30, 2021 | ircII before 20210314 allows remote attackers to cause a denial of service (segmentation fault and client crash, disconn... |
| CVE-2021-25162 | HIGH | 8.1 | 27.0% | Mar 30, 2021 | A remote execution of arbitrary commands vulnerability was discovered in some Aruba Instant Access Point (IAP) products ... |
| CVE-2021-25161 | MEDIUM | 6.1 | 16.4% | Mar 30, 2021 | A remote cross-site scripting (xss) vulnerability was discovered in some Aruba Instant Access Point (IAP) products in ve... |
| CVE-2021-25160 | MEDIUM | 4.9 | 7.1% | Mar 30, 2021 | A remote arbitrary file modification vulnerability was discovered in some Aruba Instant Access Point (IAP) products in v... |
| CVE-2021-25159 | MEDIUM | 6.5 | 13.5% | Mar 30, 2021 | A remote arbitrary file modification vulnerability was discovered in some Aruba Instant Access Point (IAP) products in v... |
| CVE-2021-25158 | MEDIUM | 5.9 | 30.6% | Mar 30, 2021 | A remote arbitrary file read vulnerability was discovered in some Aruba Instant Access Point (IAP) products in version(s... |
| CVE-2021-25157 | MEDIUM | 4.9 | 10.3% | Mar 30, 2021 | A remote arbitrary file read vulnerability was discovered in some Aruba Instant Access Point (IAP) products in version(s... |
| CVE-2021-25156 | MEDIUM | 4.9 | 40.5% | Mar 30, 2021 | A remote arbitrary directory create vulnerability was discovered in some Aruba Instant Access Point (IAP) products in ve... |
| CVE-2021-25155 | MEDIUM | 6.5 | 13.3% | Mar 30, 2021 | A remote arbitrary file modification vulnerability was discovered in some Aruba Instant Access Point (IAP) products in v... |
| CVE-2021-25150 | HIGH | 8.8 | 2.8% | Mar 30, 2021 | A remote execution of arbitrary commands vulnerability was discovered in some Aruba Instant Access Point (IAP) products ... |
| CVE-2021-25146 | HIGH | 7.2 | 2.7% | Mar 30, 2021 | A remote execution of arbitrary commands vulnerability was discovered in some Aruba Instant Access Point (IAP) products ... |
| CVE-2021-25149 | CRITICAL | 9.8 | 1.6% | Mar 30, 2021 | A remote buffer overflow vulnerability was discovered in some Aruba Instant Access Point (IAP) products in version(s): A... |
| CVE-2021-25148 | HIGH | 8.1 | 0.9% | Mar 30, 2021 | A remote arbitrary file modification vulnerability was discovered in some Aruba Instant Access Point (IAP) products in v... |
| CVE-2021-25145 | MEDIUM | 6.5 | 0.4% | Mar 30, 2021 | A remote unauthorized disclosure of information vulnerability was discovered in some Aruba Instant Access Point (IAP) pr... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now