# Mitigations Database

Canonical: https://kb.cynergy.app/space/MD/

- [CVE-2021-23383](https://kb.cynergy.app/space/MD/899219859.md)
- [CVE-2020-11023](https://kb.cynergy.app/space/MD/899219880.md)
- [CVE Database](https://kb.cynergy.app/space/MD/899252687.md)
- [CVE-2021-3618](https://kb.cynergy.app/space/MD/899252710.md)
- [CVE-2019-20372](https://kb.cynergy.app/space/MD/899252756.md)
- [CVE-2019-9513](https://kb.cynergy.app/space/MD/899252763.md)
- [CVE-2019-9516](https://kb.cynergy.app/space/MD/899252770.md)
- [CVE-2018-16845](https://kb.cynergy.app/space/MD/899252819.md)
- [CVE-2021-23017](https://kb.cynergy.app/space/MD/899285395.md)
- [CVE-2021-23369](https://kb.cynergy.app/space/MD/899285404.md)
- [CVE-2019-11358](https://kb.cynergy.app/space/MD/899285411.md)
- [CVE-2018-20676](https://kb.cynergy.app/space/MD/899285418.md)
- [CVE-2020-11022](https://kb.cynergy.app/space/MD/899350958.md)
- [CVE-2019-9511](https://kb.cynergy.app/space/MD/899350993.md)
- [CVE-2019-8331](https://kb.cynergy.app/space/MD/899351014.md)
- [CVE-2018-20677](https://kb.cynergy.app/space/MD/899351021.md)
- [Mitigations Database](https://kb.cynergy.app/space/MD/899416076.md)
- [Application Security Vulnerabilities](https://kb.cynergy.app/space/MD/899416092.md)
- [Asset not protected by Web Application Firewall (WAF)](https://kb.cynergy.app/space/MD/899416103.md)
- [Infrastructure Vulnerabilities](https://kb.cynergy.app/space/MD/899416114.md)
- [Subdomain Takeover/ Hijacking vulnerability](https://kb.cynergy.app/space/MD/899416125.md)
- [Exposed Ports &#x26; Services](https://kb.cynergy.app/space/MD/899416154.md)
- [Cloud Security Vulnerabilities](https://kb.cynergy.app/space/MD/899416165.md)
- [Exposed AWS S3 bucket](https://kb.cynergy.app/space/MD/899416176.md)
- [Exposed Azure Blob](https://kb.cynergy.app/space/MD/899416227.md)
- [Exposed GCP Bucket](https://kb.cynergy.app/space/MD/899416238.md)
- [Email Security Vulnerabilities](https://kb.cynergy.app/space/MD/899416249.md)
- [Missing DMARC Records](https://kb.cynergy.app/space/MD/899416260.md)
- [Missing or Misconfigured SPF Record](https://kb.cynergy.app/space/MD/899416287.md)
- [Missing DKIM Record](https://kb.cynergy.app/space/MD/899416308.md)
- [DNS Zone Transfer Vulnerability](https://kb.cynergy.app/space/MD/899416331.md)
- [Employee Security Vulnerabilities](https://kb.cynergy.app/space/MD/899416358.md)
- [Compromised Employee Credentials](https://kb.cynergy.app/space/MD/899416369.md)
- [Data Breach Exposure Mitigations](https://kb.cynergy.app/space/MD/899416380.md)
- [Exposed Secrets - GitHub](https://kb.cynergy.app/space/MD/899416391.md)
- [Exposed Secrets - Paste Sites](https://kb.cynergy.app/space/MD/899416402.md)
- [Mitigations Database Home](https://kb.cynergy.app/space/MD/901447977.md)
- [BOD 22-01 Cynergy Identified Vulnerabilities](https://kb.cynergy.app/space/MD/903806982.md)
- [Known Exploited Vulnerabilities - Identifiable by Cynergy](https://kb.cynergy.app/space/MD/904069123.md)
- [Cynergy&#x27;s Top-13 Vulnerabilities for 2022](https://kb.cynergy.app/space/MD/904626177.md)
- [Open Mail Relay Vulnerability](https://kb.cynergy.app/space/MD/906985473.md)
- [DNS Security Vulnerabilities](https://kb.cynergy.app/space/MD/912850945.md)
- [CVE-2022-39261](https://kb.cynergy.app/space/MD/922255361.md)
- [CVE-2022-31629](https://kb.cynergy.app/space/MD/922648581.md)
- [CVE-2022-31626](https://kb.cynergy.app/space/MD/922681347.md)
- [CVE-2022-31628](https://kb.cynergy.app/space/MD/922845185.md)
- [CVE-2022-21663](https://kb.cynergy.app/space/MD/923599062.md)
- [CVE-2021-44223](https://kb.cynergy.app/space/MD/923599158.md)
- [CVE-2021-32759](https://kb.cynergy.app/space/MD/923599218.md)
- [CVE-2022-31625](https://kb.cynergy.app/space/MD/923631619.md)
- [CVE-2022-29455](https://kb.cynergy.app/space/MD/923631649.md)
- [CVE-2022-21664](https://kb.cynergy.app/space/MD/923631759.md)
- [CVE-2022-21662](https://kb.cynergy.app/space/MD/923631857.md)
- [CVE-2021-39201](https://kb.cynergy.app/space/MD/923631891.md)
- [CVE-2021-39200](https://kb.cynergy.app/space/MD/923631950.md)
- [CVE-2021-24891](https://kb.cynergy.app/space/MD/923632057.md)
- [CVE-2021-24507](https://kb.cynergy.app/space/MD/923632089.md)
- [CVE-2021-24206](https://kb.cynergy.app/space/MD/923632101.md)
- [CVE-2021-24204](https://kb.cynergy.app/space/MD/923632143.md)
- [CVE-2021-23414](https://kb.cynergy.app/space/MD/923632255.md)
- [CVE-2022-24729](https://kb.cynergy.app/space/MD/923664453.md)
- [CVE-2021-29489](https://kb.cynergy.app/space/MD/923664627.md)
- [CVE-2021-29450](https://kb.cynergy.app/space/MD/923664662.md)
- [CVE-2021-24203](https://kb.cynergy.app/space/MD/923664788.md)
- [CVE-2021-24201](https://kb.cynergy.app/space/MD/923664798.md)
- [CVE-2022-25844](https://kb.cynergy.app/space/MD/923729984.md)
- [CVE-2022-24775](https://kb.cynergy.app/space/MD/923730036.md)
- [CVE-2022-21661](https://kb.cynergy.app/space/MD/923730109.md)
- [CVE-2021-24205](https://kb.cynergy.app/space/MD/923730248.md)
- [CVE-2021-24202](https://kb.cynergy.app/space/MD/923730318.md)
- [CVE-2021-23450](https://kb.cynergy.app/space/MD/923730337.md)
- [CVE-2021-23445](https://kb.cynergy.app/space/MD/923730347.md)
- [CVE-2022-0323](https://kb.cynergy.app/space/MD/923762709.md)
- [CVE-2021-21707](https://kb.cynergy.app/space/MD/927629342.md)
- [CVE-2022-3602](https://kb.cynergy.app/space/MD/927662136.md)
- [CVE-2022-3786](https://kb.cynergy.app/space/MD/927924232.md)
- [CVE-2021-21708](https://kb.cynergy.app/space/MD/927989761.md)
- [CVE-2022-42889](https://kb.cynergy.app/space/MD/928219253.md)
- [CVE-2019-10744](https://kb.cynergy.app/space/MD/929234945.md)
- [CVE-2019-11043](https://kb.cynergy.app/space/MD/930054145.md)
- [Covered WAFs for Discovery](https://kb.cynergy.app/space/MD/957153285.md)
- [2023 Top CVEs](https://kb.cynergy.app/space/MD/973504521.md)
- [Cynergy Identified CVEs- Active Vulnerability Assessment](https://kb.cynergy.app/space/MD/973635735.md)
- [AWS](https://kb.cynergy.app/space/MD/991592472.md)
- [GCP](https://kb.cynergy.app/space/MD/991592484.md)
- [Best Practice](https://kb.cynergy.app/space/MD/991592496.md)
- [Ensure EC2 instances have tags](https://kb.cynergy.app/space/MD/991592779.md)
- [Ensure QLDB ledger has deletion protection enabled](https://kb.cynergy.app/space/MD/991592793.md)
- [Ensure AWS EBS volumes are encrypted](https://kb.cynergy.app/space/MD/991592825.md)
- [Ensure AWS CloudFront distribution is using secure SSL protocols for HTTPS communication](https://kb.cynergy.app/space/MD/991592848.md)
- [Ensure all data stored in SageMaker is securely encrypted at rest](https://kb.cynergy.app/space/MD/991592881.md)
- [Ensure SNS topic uses a Custom Master Key](https://kb.cynergy.app/space/MD/991592894.md)
- [Ensure unused network interfaces are deleted](https://kb.cynergy.app/space/MD/991592961.md)
- [Ensure DAX is securely encrypted at rest](https://kb.cynergy.app/space/MD/991592976.md)
- [Ensure all data stored in Aurora is securely encrypted at rest](https://kb.cynergy.app/space/MD/991593034.md)
- [Ensure AWS SageMaker notebook instance is configured with data encryption at rest using KMS key](https://kb.cynergy.app/space/MD/991593050.md)
- [Ensure AWS Glue security configuration encryption is enabled](https://kb.cynergy.app/space/MD/991593067.md)
- [Ensure Neptune cluster instance is not publicly available](https://kb.cynergy.app/space/MD/991593079.md)
- [Ensure AWS Load Balancer is using TLS 1.2](https://kb.cynergy.app/space/MD/991593100.md)
- [Ensure DynamoDB Tables have Auto Scaling enabled](https://kb.cynergy.app/space/MD/991593116.md)
- [Ensure ECR repositories are encrypted](https://kb.cynergy.app/space/MD/991593141.md)
- [AZURE](https://kb.cynergy.app/space/MD/991756314.md)
- [Ensure EBS volumes are attached to an instance](https://kb.cynergy.app/space/MD/991756620.md)
- [Ensure AWS ElastiCache Redis cluster with in-transit encryption is enabled](https://kb.cynergy.app/space/MD/991756680.md)
- [Ensure data stored in the ElastiCache Replication Group is securely encrypted in-transit](https://kb.cynergy.app/space/MD/991756692.md)
- [Ensure AWS SQS server side encryption is enabled](https://kb.cynergy.app/space/MD/991756723.md)
- [Ensure all unused Elastic IPs are deleted](https://kb.cynergy.app/space/MD/991756767.md)
- [Ensure ECR image tags are immutable](https://kb.cynergy.app/space/MD/991756814.md)
- [Ensure AWS Redshift cluster is encrypted](https://kb.cynergy.app/space/MD/991756828.md)
- [Ensure AWS resources that support tags have Tags](https://kb.cynergy.app/space/MD/991756844.md)
- [Ensure CloudFront distribution has WAF enabled](https://kb.cynergy.app/space/MD/991756860.md)
- [Ensure PGAudit is enabled on RDS Postgres instances](https://kb.cynergy.app/space/MD/991756905.md)
- [Ensure Glue Data Catalog encryption is enabled](https://kb.cynergy.app/space/MD/991756917.md)
- [Ensure EFS volumes in ECS task definitions have encryption in transit enabled](https://kb.cynergy.app/space/MD/991756931.md)
- [Ensure Amazon EFS has an AWS Backup backup plan](https://kb.cynergy.app/space/MD/991756967.md)
- [Cloud Compliance Mitigation](https://kb.cynergy.app/space/MD/991789072.md)
- [Ensure DynamoDB PITR is enabled](https://kb.cynergy.app/space/MD/991789381.md)
- [Ensure all data stored in the EBS snapshot is securely encrypted](https://kb.cynergy.app/space/MD/991789393.md)
- [Ensure Instances and Launch configurations use encrypted EBS volumes](https://kb.cynergy.app/space/MD/991789424.md)
- [Ensure AWS EFS with encryption for data at rest is enabled](https://kb.cynergy.app/space/MD/991789461.md)
- [Ensure unused Elastic Load Balancers are deleted](https://kb.cynergy.app/space/MD/991789516.md)
- [Ensure DocumentDB is encrypted at rest](https://kb.cynergy.app/space/MD/991789562.md)
- [Ensure Athena workgroup prevents disabling encryption](https://kb.cynergy.app/space/MD/991789601.md)
- [Ensure instances with scheduled reboots are rescheduled or manually rebooted](https://kb.cynergy.app/space/MD/991789615.md)
- [Ensure API gateway caching is enabled](https://kb.cynergy.app/space/MD/991789690.md)
- [Ensure Amazon ElastiCache Redis clusters have automatic backup turned on](https://kb.cynergy.app/space/MD/991789716.md)
- [Ensure KMS has a rotation policy](https://kb.cynergy.app/space/MD/991789738.md)
- [Ensure AWS RDS DB cluster encryption is enabled](https://kb.cynergy.app/space/MD/991854919.md)
- [Ensure ECR image scan on push is enabled](https://kb.cynergy.app/space/MD/991854951.md)
- [Ensure AWS ElastiCache Redis cluster with encryption for data at rest is enabled](https://kb.cynergy.app/space/MD/991854970.md)
- [Ensure Neptune storage is securely encrypted](https://kb.cynergy.app/space/MD/991855009.md)
- [Ensure AWS Kinesis streams are encrypted using SSE](https://kb.cynergy.app/space/MD/991855051.md)
- [Ensure Athena Database is encrypted at rest](https://kb.cynergy.app/space/MD/991855073.md)
- [Ensure CodeBuild project encryption is not disabled (Artifacts)](https://kb.cynergy.app/space/MD/991855087.md)
- [Ensure Instance Metadata Service version 1 is not enabled](https://kb.cynergy.app/space/MD/991855102.md)
- [Ensure MSK cluster encryption at rest and in transit is enabled](https://kb.cynergy.app/space/MD/991855117.md)
- [Ensure RDS instances have backup policy](https://kb.cynergy.app/space/MD/991855184.md)
- [Ensure EBS has an AWS Backup backup plan](https://kb.cynergy.app/space/MD/991855216.md)
- [Ensure DynamoDB tables are encrypted](https://kb.cynergy.app/space/MD/991855235.md)
- [Ensure RDS global clusters are encrypted](https://kb.cynergy.app/space/MD/991855257.md)
- [Ensure Redshift cluster is encrypted by KMS](https://kb.cynergy.app/space/MD/991855274.md)
- [Exposed Cloud Instance AWS](https://kb.cynergy.app/space/MD/994508916.md)
- [Exposed Cloud Instance GCP](https://kb.cynergy.app/space/MD/994508945.md)
- [Exposed Cloud Instance AZURE](https://kb.cynergy.app/space/MD/994672760.md)
- [CVE-2021-40438](https://kb.cynergy.app/space/MD/1124925452.md)
- [CVE-2024-6387](https://kb.cynergy.app/space/MD/1128529923.md)
- [CVE-2024-4577](https://kb.cynergy.app/space/MD/1134854154.md)
- [Ensure Secret Manager secret is encrypted using KMS](https://kb.cynergy.app/space/MD/1164607496.md)
- [AWS Lambda function is not configured for a DLQ](https://kb.cynergy.app/space/MD/1207861251.md)
- [AWS Lambda function is not configured for function-level concurrent execution Limit](https://kb.cynergy.app/space/MD/1207992330.md)
- [AWS Lambda Function is not assigned to access within VPC](https://kb.cynergy.app/space/MD/1208025091.md)
- [AWS EMR cluster is not configured with Kerberos authentication](https://kb.cynergy.app/space/MD/1208090626.md)
- [Elastic load balancers do not use SSL Certificates provided by AWS Certificate Manager](https://kb.cynergy.app/space/MD/1208123394.md)
- [Redshift clusters version upgrade is not default](https://kb.cynergy.app/space/MD/1208221700.md)
- [Not only encrypted EBS volumes are attached to EC2 instances](https://kb.cynergy.app/space/MD/1208352769.md)
- [RDS clusters and instances have deletion protection disabled](https://kb.cynergy.app/space/MD/1208385540.md)
- [EC2 EBS is not optimized](https://kb.cynergy.app/space/MD/1208418306.md)
- [GuardDuty is not enabled to specific org/region](https://kb.cynergy.app/space/MD/1208614916.md)
- [Redshift does not use SSL](https://kb.cynergy.app/space/MD/1209597958.md)
- [Session Manager data is not encrypted in transit](https://kb.cynergy.app/space/MD/1209630722.md)
- [S3 bucket lock configuration disabled Description](https://kb.cynergy.app/space/MD/1209663489.md)
- [RDS database cluster snapshot is not encrypted](https://kb.cynergy.app/space/MD/1209761794.md)
- [S3 bucket cross-region replication disabled](https://kb.cynergy.app/space/MD/1209892865.md)
- [RDS instances do not have Multi-AZ enabled](https://kb.cynergy.app/space/MD/1210056705.md)
- [DocDB does not have audit logs enabled](https://kb.cynergy.app/space/MD/1210122241.md)
- [Exposed API Documentation](https://kb.cynergy.app/space/MD/1243480092.md)
- [CVE-2022-37454](https://kb.cynergy.app/space/MD/1268252678.md)
- [CVE-2021-26691](https://kb.cynergy.app/space/MD/1268252695.md)

---
Generated: 2026-09-27T21:44:27.642Z