2021 CVE Vulnerabilities

23,468 CVEs published in 2021.

CVE IDSeverityCVSSDescription
CVE-2021-20268HIGH7.8An out-of-bounds access flaw was found in the Linux kernel's implementation of the eBPF code verifier in the way a user ...
CVE-2021-20263LOW3.3A flaw was found in the virtio-fs shared file system daemon (virtiofsd) of QEMU. The new 'xattrmap' option may cause the...
CVE-2021-20262MEDIUM6.8A flaw was found in Keycloak 12.0.0 where re-authentication does not occur while updating the password. This flaw allows...
CVE-2021-20253MEDIUM6.7A flaw was found in ansible-tower. The default installation is vulnerable to Job Isolation escape allowing an attacker t...
CVE-2021-20243MEDIUM5.5A flaw was found in ImageMagick in MagickCore/resize.c. An attacker who submits a crafted file that is processed by Imag...
CVE-2021-20241MEDIUM5.5A flaw was found in ImageMagick in coders/jp2.c. An attacker who submits a crafted file that is processed by ImageMagick...
CVE-2021-3417MEDIUM4.9An internal product security audit of LXCO, prior to version 1.2.2, discovered that credentials for Lenovo XClarity Admi...
CVE-2021-27592HIGH7.8When a user opens manipulated Universal 3D (.U3D) files received from untrusted sources in SAP 3D Visual Enterprise View...
CVE-2021-27591HIGH7.8When a user opens manipulated Portable Document Format (.PDF) format files received from untrusted sources in SAP 3D Vis...
CVE-2021-27590HIGH7.8When a user opens manipulated Tag Image File Format (.TIFF) format files received from untrusted sources in SAP 3D Visua...
CVE-2021-27589HIGH7.8When a user opens manipulated Scalable Vector Graphics (.SVG) format files received from untrusted sources in SAP 3D Vis...
CVE-2021-27588HIGH7.8When a user opens manipulated HPGL format files received from untrusted sources in SAP 3D Visual Enterprise Viewer versi...
CVE-2021-27587HIGH7.8When a user opens manipulated Jupiter Tessellation (.JT) format files received from untrusted sources in SAP 3D Visual E...
CVE-2021-27586HIGH7.8When a user opens manipulated Interchange File Format (.IFF) format files received from untrusted sources in SAP 3D Visu...
CVE-2021-27585HIGH7.8When a user opens manipulated Computer Graphics Metafile (.CGM) format files received from untrusted sources in SAP 3D V...
CVE-2021-27584LOW3.3When a user opens manipulated PhotoShop Document (.PSD) format files received from untrusted sources in SAP 3D Visual En...
CVE-2021-25915CRITICAL9.8Prototype pollution vulnerability in 'changeset' versions 0.0.1 through 0.2.5 allows an attacker to cause a denial of se...
CVE-2021-21493LOW3.3When a user opens manipulated Graphics Interchange Format (.GIF) format files received from untrusted sources in SAP 3D ...
CVE-2021-21488MEDIUM6.5Knowledge Management versions 7.01, 7.02, 7.30, 7.31, 7.40, 7.50 allows a remote attacker with basic privileges to deser...
CVE-2021-21487HIGH8.8SAP Payment Engine version 500, does not perform necessary authorization checks for an authenticated user, resulting in ...
CVE-2021-21486HIGH8.8SAP Enterprise Financial Services versions, 101, 102, 103, 104, 105, 600, 603, 604, 605, 606, 616, 617, 618, 800, does n...
CVE-2021-21484CRITICAL9.8LDAP authentication in SAP HANA Database version 2.0 can be bypassed if the attached LDAP directory server is configured...
CVE-2021-21481HIGH8.8The MigrationService, which is part of SAP NetWeaver versions 7.10, 7.11, 7.20, 7.30, 7.31, 7.40, 7.50, does not perform...
CVE-2021-21480HIGH8.8SAP MII allows users to create dashboards and save them as JSP through the SSCE (Self Service Composition Environment). ...
CVE-2021-20341MEDIUM5.3IBM Cloud Pak for Multicloud Management Monitoring 2.2 returns potentially sensitive information in headers which could ...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now