2021 CVE Vulnerabilities

23,468 CVEs published in 2021.

CVE IDSeverityCVSSDescription
CVE-2021-1431HIGH7.5A vulnerability in the vDaemon process of Cisco IOS XE SD-WAN Software could allow an unauthenticated, remote attacker t...
CVE-2021-1403HIGH7.4A vulnerability in the web UI feature of Cisco IOS XE Software could allow an unauthenticated, remote attacker to conduc...
CVE-2021-1398MEDIUM6.8A vulnerability in the boot logic of Cisco IOS XE Software could allow an authenticated, local attacker with level 15 pr...
CVE-2021-1394MEDIUM5.3A vulnerability in the ingress traffic manager of Cisco IOS XE Software for Cisco Network Convergence System (NCS) 520 R...
CVE-2021-1392HIGH7.8A vulnerability in the CLI command permissions of Cisco IOS and Cisco IOS XE Software could allow an authenticated, loca...
CVE-2021-1391MEDIUM6.7A vulnerability in the dragonite debugger of Cisco IOS XE Software could allow an authenticated, local attacker to escal...
CVE-2021-1390MEDIUM6.7A vulnerability in one of the diagnostic test CLI commands of Cisco IOS XE Software could allow an authenticated, local ...
CVE-2021-1385MEDIUM6.5A vulnerability in the Cisco IOx application hosting environment of multiple Cisco platforms could allow an authenticate...
CVE-2021-1384HIGH7.2A vulnerability in Cisco IOx application hosting environment of Cisco IOS XE Software could allow an authenticated, remo...
CVE-2021-1383MEDIUM6.7Multiple vulnerabilities in the CLI of Cisco IOS XE SD-WAN Software could allow an authenticated, local attacker to acce...
CVE-2021-1382MEDIUM6.7A vulnerability in the CLI of Cisco IOS XE SD-WAN Software could allow an authenticated, local attacker to inject arbitr...
CVE-2021-1377MEDIUM5.8A vulnerability in Address Resolution Protocol (ARP) management of Cisco IOS Software and Cisco IOS XE Software could al...
CVE-2021-22169MEDIUM4.3An issue was identified in GitLab EE 13.4 or later which leaked internal IP address via error messages.
CVE-2021-22193LOW3.5An issue has been discovered in GitLab affecting all versions starting with 7.1. A member of a private group was able to...
CVE-2021-22192HIGH8.8An issue has been discovered in GitLab CE/EE affecting all versions starting from 13.2 allowing unauthorized authenticat...
CVE-2021-22186MEDIUM4.9An authorization issue in GitLab CE/EE version 9.4 and up allowed a group maintainer to modify group CI/CD variables whi...
CVE-2021-22185MEDIUM5.4Insufficient input sanitization in wikis in GitLab version 13.8 and up allows an attacker to exploit a stored cross-site...
CVE-2021-22179MEDIUM5.4A vulnerability was discovered in GitLab versions before 12.2. GitLab was vulnerable to a SSRF attack through the Outbou...
CVE-2021-22178MEDIUM5An issue has been discovered in GitLab affecting all versions starting from 13.2. Gitlab was vulnerable to SRRF attack t...
CVE-2021-22176MEDIUM4.3An issue has been discovered in GitLab affecting all versions starting with 3.0.1. Improper access control allows demote...
CVE-2021-29002MEDIUM5.4A stored cross-site scripting (XSS) vulnerability in Plone CMS 5.2.3 exists in site-controlpanel via the "form.widgets.s...
CVE-2021-28362HIGH7.5An issue was discovered in Contiki through 3.0. When sending an ICMPv6 error message because of invalid extension header...
CVE-2021-27320HIGH7.5Blind SQL injection in contactus.php in Doctor Appointment System 1.0 allows an unauthenticated attacker to insert malic...
CVE-2021-27319HIGH7.5Blind SQL injection in contactus.php in Doctor Appointment System 1.0 allows an unauthenticated attacker to insert malic...
CVE-2021-27316HIGH7.5Blind SQL injection in contactus.php in doctor appointment system 1.0 allows an unauthenticated attacker to insert malic...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now