Vulnerabilities (CVE)

Filtered by NVD-CWE-noinfo
Total 36333 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-31349 1 Juniper 2 128 Technology Session Smart Router, 128 Technology Session Smart Router Firmware 2026-06-17 7.5 HIGH 9.8 CRITICAL
The usage of an internal HTTP header created an authentication bypass vulnerability (CWE-287), allowing an attacker to view internal files, change settings, manipulate services and execute arbitrary code. This issue affects all Juniper Networks 128 Technology Session Smart Router versions prior to 4.5.11, and all versions of 5.0 up to and including 5.0.1.
CVE-2021-31232 1 Linuxfoundation 1 Cortex 2026-06-17 2.1 LOW 5.5 MEDIUM
The Alertmanager in CNCF Cortex before 1.8.1 has a local file disclosure vulnerability when -experimental.alertmanager.enable-api is used. The HTTP basic auth password_file can be used as an attack vector to send any file content via a webhook. The alertmanager templates can be used as an attack vector to send any file content because the alertmanager can load any text file specified in the templates list.
CVE-2021-31231 1 Grafana 1 Enterprise Metrics 2026-06-17 2.1 LOW 5.5 MEDIUM
The Alertmanager in Grafana Enterprise Metrics before 1.2.1 and Metrics Enterprise 1.2.1 has a local file disclosure vulnerability when experimental.alertmanager.enable-api is used. The HTTP basic auth password_file can be used as an attack vector to send any file content via a webhook. The alertmanager templates can be used as an attack vector to send any file content because the alertmanager can load any text file specified in the templates list.
CVE-2021-31225 1 Stormshield 1 Endpoint Security 2026-06-17 4.3 MEDIUM 7.3 HIGH
SES Evolution before 2.1.0 allows deleting some resources not currently in use by any security policy by leveraging access to a computer having the administration console installed.
CVE-2021-31224 1 Stormshield 1 Endpoint Security 2026-06-17 2.9 LOW 3.5 LOW
SES Evolution before 2.1.0 allows duplicating an existing security policy by leveraging access of a user having read-only access to security policies.
CVE-2021-31223 1 Stormshield 1 Endpoint Security 2026-06-17 2.9 LOW 5.7 MEDIUM
SES Evolution before 2.1.0 allows reading some parts of a security policy by leveraging access to a computer having the administration console installed.
CVE-2021-31222 1 Stormshield 1 Endpoint Security 2026-06-17 2.9 LOW 5.7 MEDIUM
SES Evolution before 2.1.0 allows updating some parts of a security policy by leveraging access to a computer having the administration console installed.
CVE-2021-31221 1 Stormshield 1 Endpoint Security 2026-06-17 2.9 LOW 5.7 MEDIUM
SES Evolution before 2.1.0 allows deleting some parts of a security policy by leveraging access to a computer having the administration console installed.
CVE-2021-31220 1 Stormshield 1 Endpoint Security 2026-06-17 2.3 LOW 5.2 MEDIUM
SES Evolution before 2.1.0 allows modifying security policies by leveraging access of a user having read-only access to security policies.
CVE-2021-31215 3 Debian, Fedoraproject, Schedmd 3 Debian Linux, Fedora, Slurm 2026-06-17 6.5 MEDIUM 8.8 HIGH
SchedMD Slurm before 20.02.7 and 20.03.x through 20.11.x before 20.11.7 allows remote code execution as SlurmUser because use of a PrologSlurmctld or EpilogSlurmctld script leads to environment mishandling.
CVE-2021-31214 1 Microsoft 1 Visual Studio Code 2026-06-17 9.3 HIGH 7.8 HIGH
Visual Studio Code Remote Code Execution Vulnerability
CVE-2021-31213 1 Microsoft 1 Remote 2026-06-17 6.8 MEDIUM 7.8 HIGH
Visual Studio Code Remote Containers Extension Remote Code Execution Vulnerability
CVE-2021-31211 1 Microsoft 1 Visual Studio Code 2026-06-17 6.8 MEDIUM 7.8 HIGH
Visual Studio Code Remote Code Execution Vulnerability
CVE-2021-31209 1 Microsoft 1 Exchange Server 2026-06-17 5.8 MEDIUM 6.5 MEDIUM
Microsoft Exchange Server Spoofing Vulnerability
CVE-2021-31208 1 Microsoft 2 Windows 10, Windows Server 2016 2026-06-17 4.6 MEDIUM 7.8 HIGH
Windows Container Manager Service Elevation of Privilege Vulnerability
CVE-2021-31205 1 Microsoft 2 Windows 10, Windows Server 2016 2026-06-17 4.3 MEDIUM 6.5 MEDIUM
Windows SMB Client Security Feature Bypass Vulnerability
CVE-2021-31204 2 Fedoraproject, Microsoft 4 Fedora, .net, .net Core and 1 more 2026-06-17 4.6 MEDIUM 7.3 HIGH
.NET and Visual Studio Elevation of Privilege Vulnerability
CVE-2021-31201 1 Microsoft 16 Windows 10 1507, Windows 10 1607, Windows 10 1809 and 13 more 2026-06-17 4.6 MEDIUM 5.2 MEDIUM
Microsoft Enhanced Cryptographic Provider Elevation of Privilege Vulnerability
CVE-2021-31200 1 Microsoft 1 Neural Network Intelligence 2026-06-17 6.5 MEDIUM 7.2 HIGH
Common Utilities Remote Code Execution Vulnerability
CVE-2021-31199 1 Microsoft 16 Windows 10 1507, Windows 10 1607, Windows 10 1809 and 13 more 2026-06-17 4.6 MEDIUM 5.2 MEDIUM
Microsoft Enhanced Cryptographic Provider Elevation of Privilege Vulnerability