2013 CVE Vulnerabilities

6,830 CVEs published in 2013.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2013-2919Google V8, as used in Google Chrome before 30.0.1599.66, allows remote attackers to cause a denial of service (memory co...
CVE-2013-2918Use-after-free vulnerability in the RenderBlock::collapseAnonymousBlockChild function in core/rendering/RenderBlock.cpp ...
CVE-2013-2917The ReverbConvolverStage::ReverbConvolverStage function in core/platform/audio/ReverbConvolverStage.cpp in the Web Audio...
CVE-2013-2916Blink, as used in Google Chrome before 30.0.1599.66, allows remote attackers to spoof the address bar via vectors involv...
CVE-2013-2915Google Chrome before 30.0.1599.66 preserves pending NavigationEntry objects in certain invalid circumstances, which allo...
CVE-2013-2914Use-after-free vulnerability in the color-chooser dialog in Google Chrome before 30.0.1599.66 on Windows allows remote a...
CVE-2013-2913Use-after-free vulnerability in the XMLDocumentParser::append function in core/xml/parser/XMLDocumentParser.cpp in Blink...
CVE-2013-2912Use-after-free vulnerability in the PepperInProcessRouter::SendToHost function in content/renderer/pepper/pepper_in_proc...
CVE-2013-2911Use-after-free vulnerability in the XSLStyleSheet::compileStyleSheet function in core/xml/XSLStyleSheetLibxslt.cpp in Bl...
CVE-2013-2910Use-after-free vulnerability in modules/webaudio/AudioScheduledSourceNode.cpp in the Web Audio implementation in Blink, ...
CVE-2013-2909Use-after-free vulnerability in Blink, as used in Google Chrome before 30.0.1599.66, allows remote attackers to cause a ...
CVE-2013-2908Google Chrome before 30.0.1599.66 uses incorrect function calls to determine the values of NavigationEntry objects, whic...
CVE-2013-2907The Window.prototype object implementation in Google Chrome before 30.0.1599.66 allows remote attackers to cause a denia...
CVE-2013-2906Multiple race conditions in the Web Audio implementation in Blink, as used in Google Chrome before 30.0.1599.66, allow r...
CVE-2013-5976Cross-site scripting (XSS) vulnerability in the access policy logout page (logout.inc) in F5 BIG-IP APM 10.1.0 through 1...
CVE-2013-5975The access policy logon page (logon.inc) in F5 BIG-IP APM 11.1.0 through 11.2.1 allows remote attackers to conduct click...
CVE-2013-4142Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2013-3969. Reason: This candidate is a duplicate of...
CVE-2013-3969The find prototype in scripting/engine_v8.h in MongoDB 2.4.0 through 2.4.4 allows remote authenticated users to cause a ...
CVE-2013-2013The user-password-update command in python-keystoneclient before 0.2.4 accepts the new password in the --password argume...
CVE-2013-1892MongoDB before 2.0.9 and 2.2.x before 2.2.4 does not properly validate requests to the nativeHelper function in SpiderMo...
CVE-2013-5580The (1) Conn_StartLogin and (2) cb_Read_Resolver_Result functions in conn.c in ngIRCd 18 through 20.2, when the configur...
CVE-2013-3964Cross-site scripting (XSS) vulnerability in Samsung SHR-5162, SHR-5082, and possibly other models, allows remote attacke...
CVE-2013-3963Cross-site request forgery (CSRF) vulnerability in goform/usermanage in Grandstream GXV3501, GXV3504, GXV3601, GXV3601HD...
CVE-2013-3962Cross-site scripting (XSS) vulnerability in Grandstream GXV3501, GXV3504, GXV3601, GXV3601HD/LL, GXV3611HD/LL, GXV3615W/...
CVE-2013-3690Cross-site request forgery (CSRF) vulnerability in cgi-bin/users.cgi in Brickcom FB-100Ap, WCB-100Ap, MD-100Ap, WFB-100A...

Check if your code is affected by 2013 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now