2014 CVE Vulnerabilities
9,002 CVEs published in 2014.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2014-1581 | — | — | 4.0% | Oct 15, 2014 | Use-after-free vulnerability in DirectionalityUtils.cpp in Mozilla Firefox before 33.0, Firefox ESR 31.x before 31.2, an... |
| CVE-2014-1580 | — | — | 2.2% | Oct 15, 2014 | Mozilla Firefox before 33.0 does not properly initialize memory for GIF images, which allows remote attackers to obtain ... |
| CVE-2014-1578 | — | — | 3.9% | Oct 15, 2014 | The get_tile function in Mozilla Firefox before 33.0, Firefox ESR 31.x before 31.2, and Thunderbird 31.x before 31.2 all... |
| CVE-2014-1577 | — | — | 2.8% | Oct 15, 2014 | The mozilla::dom::OscillatorNodeEngine::ComputeCustom function in the Web Audio subsystem in Mozilla Firefox before 33.0... |
| CVE-2014-1576 | — | — | 5.0% | Oct 15, 2014 | Heap-based buffer overflow in the nsTransformedTextRun function in Mozilla Firefox before 33.0, Firefox ESR 31.x before ... |
| CVE-2014-1575 | — | — | 5.3% | Oct 15, 2014 | Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 33.0 allow remote attackers to caus... |
| CVE-2014-1574 | — | — | 3.9% | Oct 15, 2014 | Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 33.0, Firefox ESR 31.x before 31.2,... |
| CVE-2014-0572 | — | — | 1.5% | Oct 15, 2014 | Adobe ColdFusion 9.0 before Update 13, 9.0.1 before Update 12, 9.0.2 before Update 7, 10 before Update 14, and 11 before... |
| CVE-2014-0571 | — | — | 2.7% | Oct 15, 2014 | Cross-site scripting (XSS) vulnerability in Adobe ColdFusion 9.0 before Update 13, 9.0.1 before Update 12, 9.0.2 before ... |
| CVE-2014-0570 | — | — | 2.5% | Oct 15, 2014 | Cross-site request forgery (CSRF) vulnerability in Adobe ColdFusion 9.0 before Update 13, 9.0.1 before Update 12, 9.0.2 ... |
| CVE-2014-0569 | — | — | 90.1% | Oct 15, 2014 | Integer overflow in Adobe Flash Player before 13.0.0.250 and 14.x and 15.x before 15.0.0.189 on Windows and OS X and bef... |
| CVE-2014-0564 | — | — | 6.2% | Oct 15, 2014 | Adobe Flash Player before 13.0.0.250 and 14.x and 15.x before 15.0.0.189 on Windows and OS X and before 11.2.202.411 on ... |
| CVE-2014-0558 | — | — | 5.1% | Oct 15, 2014 | Adobe Flash Player before 13.0.0.250 and 14.x and 15.x before 15.0.0.189 on Windows and OS X and before 11.2.202.411 on ... |
| CVE-2014-3566 | LOW | 3.4 | 100.0% | Oct 15, 2014 | The SSL protocol 3.0, as used in OpenSSL through 1.0.1i and other products, uses nondeterministic CBC padding, which mak... |
| CVE-2014-8766 | — | — | 2.1% | Oct 14, 2014 | Multiple SQL injection vulnerabilities in Allomani Weblinks 1.0 allow remote attackers to execute arbitrary SQL commands... |
| CVE-2014-8765 | — | — | 1.2% | Oct 14, 2014 | Multiple cross-site scripting (XSS) vulnerabilities in the Project Issue File Review module (PIFR) module 6.x-2.x before... |
| CVE-2014-8070 | — | — | 1.3% | Oct 14, 2014 | Open redirect vulnerability in YOOtheme Pagekit CMS 0.8.7 allows remote attackers to redirect users to arbitrary web sit... |
| CVE-2014-8069 | — | — | 1.0% | Oct 14, 2014 | Multiple cross-site scripting (XSS) vulnerabilities in YOOtheme Pagekit CMS 0.8.7 allow remote attackers to inject arbit... |
| CVE-2014-6380 | — | — | 2.9% | Oct 14, 2014 | Juniper Junos 11.4 before R11, 12.1 before R9, 12.1X44 before D30, 12.1X45 before D20, 12.1X46 before D15, 12.1X47 befor... |
| CVE-2014-6379 | — | — | 2.5% | Oct 14, 2014 | Juniper Junos 11.4 before R12, 12.1 before R10, 12.1X44 before D35, 12.1X45 before D25, 12.1X46 before D20, 12.1X47 befo... |
| CVE-2014-6378 | — | — | 1.8% | Oct 14, 2014 | Juniper Junos 11.4 before R12-S4, 12.1X44 before D35, 12.1X45 before D30, 12.1X46 before D25, 12.1X47 before D10, 12.2 b... |
| CVE-2014-6377 | — | — | 1.8% | Oct 14, 2014 | Juniper JunosE before 13.3.3p0-1, 14.x before 14.3.2, and 15.x before 15.1.0, when DEBUG severity icmpTraffic logging is... |
| CVE-2014-6313 | — | — | 2.0% | Oct 14, 2014 | Cross-site scripting (XSS) vulnerability in the WooCommerce plugin before 2.2.3 for WordPress allows remote attackers to... |
| CVE-2014-3825 | — | — | 2.0% | Oct 14, 2014 | The Juniper SRX Series devices with Junos 11.4 before 11.4R12-S4, 12.1X44 before 12.1X44-D40, 12.1X45 before 12.1X45-D30... |
| CVE-2014-3818 | — | — | 1.9% | Oct 14, 2014 | Juniper Junos OS 9.1 through 11.4 before 11.4R11, 12.1 before R10, 12.1X44 before D40, 12.1X46 before D30, 12.1X47 befor... |
Check if your code is affected by 2014 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now