2014 CVE Vulnerabilities

9,002 CVEs published in 2014.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2014-3606Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu...
CVE-2014-1850Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2014-3743. Reason: This candidate is a duplicate of C...
CVE-2014-10049Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n...
CVE-2014-9992Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n...
CVE-2014-9982Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n...
CVE-2014-10061Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n...
CVE-2014-10060Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n...
CVE-2014-10395The cp-polls plugin before 1.0.1 for WordPress has XSS in the votes list.
CVE-2014-10393The cforms2 plugin before 10.5 for WordPress has XSS.
CVE-2014-10386The wp-live-chat-support plugin before 4.1.0 for WordPress has JavaScript injections.
CVE-2014-10382The feature-comments plugin before 1.2.5 for WordPress has CSRF for featuring or burying a comment.
CVE-2014-10394The rich-counter plugin before 1.2.0 for WordPress has JavaScript injection via a User-Agent header.
CVE-2014-10392The cforms2 plugin before 10.2 for WordPress has XSS.
CVE-2014-10391The wp-support-plus-responsive-ticket-system plugin before 4.1 for WordPress has JavaScript injection.
CVE-2014-10390The wp-support-plus-responsive-ticket-system plugin before 4.2 for WordPress has directory traversal.
CVE-2014-10389The wp-support-plus-responsive-ticket-system plugin before 4.2 for WordPress has incorrect authentication.
CVE-2014-10388The wp-support-plus-responsive-ticket-system plugin before 4.2 for WordPress has full path disclosure.
CVE-2014-10387The wp-support-plus-responsive-ticket-system plugin before 4.2 for WordPress has SQL injection.
CVE-2014-10385The memphis-documents-library plugin before 3.0 for WordPress has XSS via $_REQUEST.
CVE-2014-10384The memphis-documents-library plugin before 3.0 for WordPress has Local File Inclusion.
CVE-2014-10383The memphis-documents-library plugin before 3.0 for WordPress has Remote File Inclusion.
CVE-2014-10379The duplicate-post plugin before 2.6 for WordPress has SQL injection.
CVE-2014-10378The duplicate-post plugin before 2.6 for WordPress has XSS.
CVE-2014-10380The profile-builder plugin before 1.1.66 for WordPress has multiple XSS issues in forms.
CVE-2014-10381The user-domain-whitelist plugin before 1.5 for WordPress has CSRF.

Check if your code is affected by 2014 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now