Total
36333 CVE
| CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
|---|---|---|---|---|---|
| CVE-2021-31349 | 1 Juniper | 2 128 Technology Session Smart Router, 128 Technology Session Smart Router Firmware | 2026-06-17 | 7.5 HIGH | 9.8 CRITICAL |
| The usage of an internal HTTP header created an authentication bypass vulnerability (CWE-287), allowing an attacker to view internal files, change settings, manipulate services and execute arbitrary code. This issue affects all Juniper Networks 128 Technology Session Smart Router versions prior to 4.5.11, and all versions of 5.0 up to and including 5.0.1. | |||||
| CVE-2021-31232 | 1 Linuxfoundation | 1 Cortex | 2026-06-17 | 2.1 LOW | 5.5 MEDIUM |
| The Alertmanager in CNCF Cortex before 1.8.1 has a local file disclosure vulnerability when -experimental.alertmanager.enable-api is used. The HTTP basic auth password_file can be used as an attack vector to send any file content via a webhook. The alertmanager templates can be used as an attack vector to send any file content because the alertmanager can load any text file specified in the templates list. | |||||
| CVE-2021-31231 | 1 Grafana | 1 Enterprise Metrics | 2026-06-17 | 2.1 LOW | 5.5 MEDIUM |
| The Alertmanager in Grafana Enterprise Metrics before 1.2.1 and Metrics Enterprise 1.2.1 has a local file disclosure vulnerability when experimental.alertmanager.enable-api is used. The HTTP basic auth password_file can be used as an attack vector to send any file content via a webhook. The alertmanager templates can be used as an attack vector to send any file content because the alertmanager can load any text file specified in the templates list. | |||||
| CVE-2021-31225 | 1 Stormshield | 1 Endpoint Security | 2026-06-17 | 4.3 MEDIUM | 7.3 HIGH |
| SES Evolution before 2.1.0 allows deleting some resources not currently in use by any security policy by leveraging access to a computer having the administration console installed. | |||||
| CVE-2021-31224 | 1 Stormshield | 1 Endpoint Security | 2026-06-17 | 2.9 LOW | 3.5 LOW |
| SES Evolution before 2.1.0 allows duplicating an existing security policy by leveraging access of a user having read-only access to security policies. | |||||
| CVE-2021-31223 | 1 Stormshield | 1 Endpoint Security | 2026-06-17 | 2.9 LOW | 5.7 MEDIUM |
| SES Evolution before 2.1.0 allows reading some parts of a security policy by leveraging access to a computer having the administration console installed. | |||||
| CVE-2021-31222 | 1 Stormshield | 1 Endpoint Security | 2026-06-17 | 2.9 LOW | 5.7 MEDIUM |
| SES Evolution before 2.1.0 allows updating some parts of a security policy by leveraging access to a computer having the administration console installed. | |||||
| CVE-2021-31221 | 1 Stormshield | 1 Endpoint Security | 2026-06-17 | 2.9 LOW | 5.7 MEDIUM |
| SES Evolution before 2.1.0 allows deleting some parts of a security policy by leveraging access to a computer having the administration console installed. | |||||
| CVE-2021-31220 | 1 Stormshield | 1 Endpoint Security | 2026-06-17 | 2.3 LOW | 5.2 MEDIUM |
| SES Evolution before 2.1.0 allows modifying security policies by leveraging access of a user having read-only access to security policies. | |||||
| CVE-2021-31215 | 3 Debian, Fedoraproject, Schedmd | 3 Debian Linux, Fedora, Slurm | 2026-06-17 | 6.5 MEDIUM | 8.8 HIGH |
| SchedMD Slurm before 20.02.7 and 20.03.x through 20.11.x before 20.11.7 allows remote code execution as SlurmUser because use of a PrologSlurmctld or EpilogSlurmctld script leads to environment mishandling. | |||||
| CVE-2021-31214 | 1 Microsoft | 1 Visual Studio Code | 2026-06-17 | 9.3 HIGH | 7.8 HIGH |
| Visual Studio Code Remote Code Execution Vulnerability | |||||
| CVE-2021-31213 | 1 Microsoft | 1 Remote | 2026-06-17 | 6.8 MEDIUM | 7.8 HIGH |
| Visual Studio Code Remote Containers Extension Remote Code Execution Vulnerability | |||||
| CVE-2021-31211 | 1 Microsoft | 1 Visual Studio Code | 2026-06-17 | 6.8 MEDIUM | 7.8 HIGH |
| Visual Studio Code Remote Code Execution Vulnerability | |||||
| CVE-2021-31209 | 1 Microsoft | 1 Exchange Server | 2026-06-17 | 5.8 MEDIUM | 6.5 MEDIUM |
| Microsoft Exchange Server Spoofing Vulnerability | |||||
| CVE-2021-31208 | 1 Microsoft | 2 Windows 10, Windows Server 2016 | 2026-06-17 | 4.6 MEDIUM | 7.8 HIGH |
| Windows Container Manager Service Elevation of Privilege Vulnerability | |||||
| CVE-2021-31205 | 1 Microsoft | 2 Windows 10, Windows Server 2016 | 2026-06-17 | 4.3 MEDIUM | 6.5 MEDIUM |
| Windows SMB Client Security Feature Bypass Vulnerability | |||||
| CVE-2021-31204 | 2 Fedoraproject, Microsoft | 4 Fedora, .net, .net Core and 1 more | 2026-06-17 | 4.6 MEDIUM | 7.3 HIGH |
| .NET and Visual Studio Elevation of Privilege Vulnerability | |||||
| CVE-2021-31201 | 1 Microsoft | 16 Windows 10 1507, Windows 10 1607, Windows 10 1809 and 13 more | 2026-06-17 | 4.6 MEDIUM | 5.2 MEDIUM |
| Microsoft Enhanced Cryptographic Provider Elevation of Privilege Vulnerability | |||||
| CVE-2021-31200 | 1 Microsoft | 1 Neural Network Intelligence | 2026-06-17 | 6.5 MEDIUM | 7.2 HIGH |
| Common Utilities Remote Code Execution Vulnerability | |||||
| CVE-2021-31199 | 1 Microsoft | 16 Windows 10 1507, Windows 10 1607, Windows 10 1809 and 13 more | 2026-06-17 | 4.6 MEDIUM | 5.2 MEDIUM |
| Microsoft Enhanced Cryptographic Provider Elevation of Privilege Vulnerability | |||||
