2013 CVE Vulnerabilities
6,830 CVEs published in 2013.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2013-2919 | — | — | 1.7% | Oct 2, 2013 | Google V8, as used in Google Chrome before 30.0.1599.66, allows remote attackers to cause a denial of service (memory co... |
| CVE-2013-2918 | — | — | 1.5% | Oct 2, 2013 | Use-after-free vulnerability in the RenderBlock::collapseAnonymousBlockChild function in core/rendering/RenderBlock.cpp ... |
| CVE-2013-2917 | — | — | 1.5% | Oct 2, 2013 | The ReverbConvolverStage::ReverbConvolverStage function in core/platform/audio/ReverbConvolverStage.cpp in the Web Audio... |
| CVE-2013-2916 | — | — | 1.1% | Oct 2, 2013 | Blink, as used in Google Chrome before 30.0.1599.66, allows remote attackers to spoof the address bar via vectors involv... |
| CVE-2013-2915 | — | — | 1.1% | Oct 2, 2013 | Google Chrome before 30.0.1599.66 preserves pending NavigationEntry objects in certain invalid circumstances, which allo... |
| CVE-2013-2914 | — | — | 1.2% | Oct 2, 2013 | Use-after-free vulnerability in the color-chooser dialog in Google Chrome before 30.0.1599.66 on Windows allows remote a... |
| CVE-2013-2913 | — | — | 1.3% | Oct 2, 2013 | Use-after-free vulnerability in the XMLDocumentParser::append function in core/xml/parser/XMLDocumentParser.cpp in Blink... |
| CVE-2013-2912 | — | — | 1.5% | Oct 2, 2013 | Use-after-free vulnerability in the PepperInProcessRouter::SendToHost function in content/renderer/pepper/pepper_in_proc... |
| CVE-2013-2911 | — | — | 1.3% | Oct 2, 2013 | Use-after-free vulnerability in the XSLStyleSheet::compileStyleSheet function in core/xml/XSLStyleSheetLibxslt.cpp in Bl... |
| CVE-2013-2910 | — | — | 1.5% | Oct 2, 2013 | Use-after-free vulnerability in modules/webaudio/AudioScheduledSourceNode.cpp in the Web Audio implementation in Blink, ... |
| CVE-2013-2909 | — | — | 1.6% | Oct 2, 2013 | Use-after-free vulnerability in Blink, as used in Google Chrome before 30.0.1599.66, allows remote attackers to cause a ... |
| CVE-2013-2908 | — | — | 1.3% | Oct 2, 2013 | Google Chrome before 30.0.1599.66 uses incorrect function calls to determine the values of NavigationEntry objects, whic... |
| CVE-2013-2907 | — | — | 1.4% | Oct 2, 2013 | The Window.prototype object implementation in Google Chrome before 30.0.1599.66 allows remote attackers to cause a denia... |
| CVE-2013-2906 | — | — | 1.2% | Oct 2, 2013 | Multiple race conditions in the Web Audio implementation in Blink, as used in Google Chrome before 30.0.1599.66, allow r... |
| CVE-2013-5976 | — | — | 1.8% | Oct 1, 2013 | Cross-site scripting (XSS) vulnerability in the access policy logout page (logout.inc) in F5 BIG-IP APM 10.1.0 through 1... |
| CVE-2013-5975 | — | — | 1.8% | Oct 1, 2013 | The access policy logon page (logon.inc) in F5 BIG-IP APM 11.1.0 through 11.2.1 allows remote attackers to conduct click... |
| CVE-2013-4142 | — | — | — | Oct 1, 2013 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2013-3969. Reason: This candidate is a duplicate of... |
| CVE-2013-3969 | — | — | 10.1% | Oct 1, 2013 | The find prototype in scripting/engine_v8.h in MongoDB 2.4.0 through 2.4.4 allows remote authenticated users to cause a ... |
| CVE-2013-2013 | — | — | 0.4% | Oct 1, 2013 | The user-password-update command in python-keystoneclient before 0.2.4 accepts the new password in the --password argume... |
| CVE-2013-1892 | — | — | 44.5% | Oct 1, 2013 | MongoDB before 2.0.9 and 2.2.x before 2.2.4 does not properly validate requests to the nativeHelper function in SpiderMo... |
| CVE-2013-5580 | — | — | 2.3% | Oct 1, 2013 | The (1) Conn_StartLogin and (2) cb_Read_Resolver_Result functions in conn.c in ngIRCd 18 through 20.2, when the configur... |
| CVE-2013-3964 | — | — | 3.4% | Oct 1, 2013 | Cross-site scripting (XSS) vulnerability in Samsung SHR-5162, SHR-5082, and possibly other models, allows remote attacke... |
| CVE-2013-3963 | — | — | 1.0% | Oct 1, 2013 | Cross-site request forgery (CSRF) vulnerability in goform/usermanage in Grandstream GXV3501, GXV3504, GXV3601, GXV3601HD... |
| CVE-2013-3962 | — | — | 0.9% | Oct 1, 2013 | Cross-site scripting (XSS) vulnerability in Grandstream GXV3501, GXV3504, GXV3601, GXV3601HD/LL, GXV3611HD/LL, GXV3615W/... |
| CVE-2013-3690 | — | — | 12.4% | Oct 1, 2013 | Cross-site request forgery (CSRF) vulnerability in cgi-bin/users.cgi in Brickcom FB-100Ap, WCB-100Ap, MD-100Ap, WFB-100A... |
Check if your code is affected by 2013 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now