2021 CVE Vulnerabilities
23,468 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-20225 | MEDIUM | 6.7 | 1.0% | Mar 3, 2021 | A flaw was found in grub2 in versions prior to 2.06. The option parser allows an attacker to write past the end of a hea... |
| CVE-2021-20076 | HIGH | 8.8 | 2.0% | Mar 3, 2021 | Tenable.sc and Tenable.sc Core versions 5.13.0 through 5.17.0 were found to contain a vulnerability that could allow an ... |
| CVE-2021-3419 | — | — | — | Mar 3, 2021 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. No... |
| CVE-2021-27215 | CRITICAL | 9.8 | 2.3% | Mar 3, 2021 | An issue was discovered in genua genugate before 9.0 Z p19, 9.1.x through 9.6.x before 9.6 p7, and 10.x before 10.1 p4. ... |
| CVE-2021-26813 | HIGH | 7.5 | 2.4% | Mar 3, 2021 | markdown2 >=1.0.1.18, fixed in 2.4.0, is affected by a regular expression denial of service vulnerability. If an attacke... |
| CVE-2021-25252 | MEDIUM | 5.5 | 0.6% | Mar 3, 2021 | Trend Micro's Virus Scan API (VSAPI) and Advanced Threat Scan Engine (ATSE) - are vulnerable to a memory exhaustion vuln... |
| CVE-2021-25315 | HIGH | 7.8 | 2.3% | Mar 3, 2021 | CWE - CWE-287: Improper Authentication vulnerability in SUSE Linux Enterprise Server 15 SP 3; openSUSE Tumbleweed allows... |
| CVE-2021-23347 | MEDIUM | 4.8 | 0.5% | Mar 3, 2021 | The package github.com/argoproj/argo-cd/cmd before 1.7.13, from 1.8.0 and before 1.8.6 are vulnerable to Cross-site Scri... |
| CVE-2021-27923 | HIGH | 7.5 | 3.1% | Mar 3, 2021 | Pillow before 8.1.2 allows attackers to cause a denial of service (memory consumption) because the reported size of a co... |
| CVE-2021-27922 | HIGH | 7.5 | 4.9% | Mar 3, 2021 | Pillow before 8.1.2 allows attackers to cause a denial of service (memory consumption) because the reported size of a co... |
| CVE-2021-27921 | HIGH | 7.5 | 3.2% | Mar 3, 2021 | Pillow before 8.1.2 allows attackers to cause a denial of service (memory consumption) because the reported size of a co... |
| CVE-2021-2138 | MEDIUM | 4.6 | 0.4% | Mar 3, 2021 | Vulnerability in the Oracle Cloud Infrastructure Data Science Notebook Sessions. Easily exploitable vulnerability allows... |
| CVE-2021-22863 | HIGH | 8.1 | 1.0% | Mar 3, 2021 | An improper access control vulnerability was identified in the GitHub Enterprise Server GraphQL API that allowed authent... |
| CVE-2021-22862 | MEDIUM | 6.5 | 0.8% | Mar 3, 2021 | An improper access control vulnerability was identified in GitHub Enterprise Server that allowed an authenticated user w... |
| CVE-2021-22861 | MEDIUM | 6.5 | 0.9% | Mar 3, 2021 | An improper access control vulnerability was identified in GitHub Enterprise Server that allowed authenticated users of ... |
| CVE-2021-21353 | CRITICAL | 9 | 4.3% | Mar 3, 2021 | Pug is an npm package which is a high-performance template engine. In pug before version 3.0.1, if a remote attacker wa... |
| CVE-2021-21352 | CRITICAL | 9.1 | 1.4% | Mar 3, 2021 | Anuko Time Tracker is an open source, web-based time tracking application written in PHP. In TimeTracker before version ... |
| CVE-2021-27078 | CRITICAL | 9.1 | 18.3% | Mar 3, 2021 | Microsoft Exchange Server Remote Code Execution Vulnerability |
| CVE-2021-27065 | HIGH | 7.8 | 99.9% | Mar 3, 2021 | Microsoft Exchange Server Remote Code Execution Vulnerability |
| CVE-2021-26858 | HIGH | 7.8 | 89.5% | Mar 3, 2021 | Microsoft Exchange Server Remote Code Execution Vulnerability |
| CVE-2021-26857 | HIGH | 7.8 | 94.0% | Mar 3, 2021 | Microsoft Exchange Server Remote Code Execution Vulnerability |
| CVE-2021-26855 | CRITICAL | 9.1 | 100.0% | Mar 3, 2021 | Microsoft Exchange Server Remote Code Execution Vulnerability |
| CVE-2021-26854 | MEDIUM | 6.6 | 19.6% | Mar 3, 2021 | Microsoft Exchange Server Remote Code Execution Vulnerability |
| CVE-2021-26412 | CRITICAL | 9.1 | 30.4% | Mar 3, 2021 | Microsoft Exchange Server Remote Code Execution Vulnerability |
| CVE-2021-21258 | MEDIUM | 5.4 | 0.7% | Mar 2, 2021 | GLPI is an open-source asset and IT management software package that provides ITIL Service Desk features, licenses track... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now