2021 CVE Vulnerabilities
23,468 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-20268 | HIGH | 7.8 | 0.3% | Mar 9, 2021 | An out-of-bounds access flaw was found in the Linux kernel's implementation of the eBPF code verifier in the way a user ... |
| CVE-2021-20263 | LOW | 3.3 | 0.4% | Mar 9, 2021 | A flaw was found in the virtio-fs shared file system daemon (virtiofsd) of QEMU. The new 'xattrmap' option may cause the... |
| CVE-2021-20262 | MEDIUM | 6.8 | 0.3% | Mar 9, 2021 | A flaw was found in Keycloak 12.0.0 where re-authentication does not occur while updating the password. This flaw allows... |
| CVE-2021-20253 | MEDIUM | 6.7 | 0.4% | Mar 9, 2021 | A flaw was found in ansible-tower. The default installation is vulnerable to Job Isolation escape allowing an attacker t... |
| CVE-2021-20243 | MEDIUM | 5.5 | 1.1% | Mar 9, 2021 | A flaw was found in ImageMagick in MagickCore/resize.c. An attacker who submits a crafted file that is processed by Imag... |
| CVE-2021-20241 | MEDIUM | 5.5 | 1.1% | Mar 9, 2021 | A flaw was found in ImageMagick in coders/jp2.c. An attacker who submits a crafted file that is processed by ImageMagick... |
| CVE-2021-3417 | MEDIUM | 4.9 | 0.5% | Mar 9, 2021 | An internal product security audit of LXCO, prior to version 1.2.2, discovered that credentials for Lenovo XClarity Admi... |
| CVE-2021-27592 | HIGH | 7.8 | 1.4% | Mar 9, 2021 | When a user opens manipulated Universal 3D (.U3D) files received from untrusted sources in SAP 3D Visual Enterprise View... |
| CVE-2021-27591 | HIGH | 7.8 | 1.2% | Mar 9, 2021 | When a user opens manipulated Portable Document Format (.PDF) format files received from untrusted sources in SAP 3D Vis... |
| CVE-2021-27590 | HIGH | 7.8 | 1.2% | Mar 9, 2021 | When a user opens manipulated Tag Image File Format (.TIFF) format files received from untrusted sources in SAP 3D Visua... |
| CVE-2021-27589 | HIGH | 7.8 | 1.2% | Mar 9, 2021 | When a user opens manipulated Scalable Vector Graphics (.SVG) format files received from untrusted sources in SAP 3D Vis... |
| CVE-2021-27588 | HIGH | 7.8 | 1.2% | Mar 9, 2021 | When a user opens manipulated HPGL format files received from untrusted sources in SAP 3D Visual Enterprise Viewer versi... |
| CVE-2021-27587 | HIGH | 7.8 | 1.4% | Mar 9, 2021 | When a user opens manipulated Jupiter Tessellation (.JT) format files received from untrusted sources in SAP 3D Visual E... |
| CVE-2021-27586 | HIGH | 7.8 | 1.2% | Mar 9, 2021 | When a user opens manipulated Interchange File Format (.IFF) format files received from untrusted sources in SAP 3D Visu... |
| CVE-2021-27585 | HIGH | 7.8 | 1.4% | Mar 9, 2021 | When a user opens manipulated Computer Graphics Metafile (.CGM) format files received from untrusted sources in SAP 3D V... |
| CVE-2021-27584 | LOW | 3.3 | 0.7% | Mar 9, 2021 | When a user opens manipulated PhotoShop Document (.PSD) format files received from untrusted sources in SAP 3D Visual En... |
| CVE-2021-25915 | CRITICAL | 9.8 | 3.5% | Mar 9, 2021 | Prototype pollution vulnerability in 'changeset' versions 0.0.1 through 0.2.5 allows an attacker to cause a denial of se... |
| CVE-2021-21493 | LOW | 3.3 | 1.4% | Mar 9, 2021 | When a user opens manipulated Graphics Interchange Format (.GIF) format files received from untrusted sources in SAP 3D ... |
| CVE-2021-21488 | MEDIUM | 6.5 | 1.3% | Mar 9, 2021 | Knowledge Management versions 7.01, 7.02, 7.30, 7.31, 7.40, 7.50 allows a remote attacker with basic privileges to deser... |
| CVE-2021-21487 | HIGH | 8.8 | 0.8% | Mar 9, 2021 | SAP Payment Engine version 500, does not perform necessary authorization checks for an authenticated user, resulting in ... |
| CVE-2021-21486 | HIGH | 8.8 | 0.8% | Mar 9, 2021 | SAP Enterprise Financial Services versions, 101, 102, 103, 104, 105, 600, 603, 604, 605, 606, 616, 617, 618, 800, does n... |
| CVE-2021-21484 | CRITICAL | 9.8 | 1.2% | Mar 9, 2021 | LDAP authentication in SAP HANA Database version 2.0 can be bypassed if the attached LDAP directory server is configured... |
| CVE-2021-21481 | HIGH | 8.8 | 0.6% | Mar 9, 2021 | The MigrationService, which is part of SAP NetWeaver versions 7.10, 7.11, 7.20, 7.30, 7.31, 7.40, 7.50, does not perform... |
| CVE-2021-21480 | HIGH | 8.8 | 50.9% | Mar 9, 2021 | SAP MII allows users to create dashboards and save them as JSP through the SSCE (Self Service Composition Environment). ... |
| CVE-2021-20341 | MEDIUM | 5.3 | 1.0% | Mar 9, 2021 | IBM Cloud Pak for Multicloud Management Monitoring 2.2 returns potentially sensitive information in headers which could ... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now