2014 CVE Vulnerabilities
9,002 CVEs published in 2014.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2014-4602 | — | — | 1.6% | Jul 1, 2014 | Multiple cross-site scripting (XSS) vulnerabilities in xencarousel-admin.js.php in the XEN Carousel plugin 0.12.2 and ea... |
| CVE-2014-4585 | — | — | 1.6% | Jul 1, 2014 | Cross-site scripting (XSS) vulnerability in the WP-FaceThumb plugin possibly 1.0 and earlier for WordPress allows remote... |
| CVE-2014-4584 | — | — | 1.6% | Jul 1, 2014 | Cross-site scripting (XSS) vulnerability in admin/editFacility.php in the wp-easybooking plugin 1.0.3 and earlier for Wo... |
| CVE-2014-4583 | — | — | 1.6% | Jul 1, 2014 | Multiple cross-site scripting (XSS) vulnerabilities in forms/messages.php in the WP-Contact (wp-contact-sidebar-widget) ... |
| CVE-2014-4575 | — | — | 1.6% | Jul 1, 2014 | Cross-site scripting (XSS) vulnerability in js/window.php in the Wikipop plugin 2.0 and earlier for WordPress allows rem... |
| CVE-2014-4569 | — | — | 2.0% | Jul 1, 2014 | Cross-site scripting (XSS) vulnerability in ls/vv_login.php in the VideoWhisper Live Streaming Integration plugin 4.27.2... |
| CVE-2014-4564 | — | — | 1.6% | Jul 1, 2014 | Cross-site scripting (XSS) vulnerability in check.php in the Validated plugin 1.0.2 and earlier for WordPress allows rem... |
| CVE-2014-4556 | — | — | 1.6% | Jul 1, 2014 | Cross-site scripting (XSS) vulnerability in test-plugin.php in the Swipe Checkout for eShop plugin 3.7.0 and earlier for... |
| CVE-2014-4545 | — | — | 1.6% | Jul 1, 2014 | Multiple cross-site scripting (XSS) vulnerabilities in pq_dialog.php in the Pro Quoter plugin 1.0 and earlier for WordPr... |
| CVE-2014-4538 | — | — | 1.6% | Jul 1, 2014 | Cross-site scripting (XSS) vulnerability in process.php in the Malware Finder plugin 1.1 and earlier for WordPress allow... |
| CVE-2014-4533 | — | — | 1.6% | Jul 1, 2014 | Cross-site scripting (XSS) vulnerability in ajax_functions.php in the GEO Redirector plugin 1.0.1 and earlier for WordPr... |
| CVE-2014-4528 | — | — | 1.6% | Jul 1, 2014 | Multiple cross-site scripting (XSS) vulnerabilities in admin/swarm-settings.php in the Bugs Go Viral : Facebook Promotio... |
| CVE-2014-4521 | — | — | 1.6% | Jul 1, 2014 | Cross-site scripting (XSS) vulnerability in client-assist.php in the dsIDXpress IDX plugin before 2.1.1 for WordPress al... |
| CVE-2014-4520 | — | — | 2.0% | Jul 1, 2014 | Cross-site scripting (XSS) vulnerability in phprack.php in the DMCA WaterMarker plugin before 1.1 for WordPress allows r... |
| CVE-2014-4518 | — | — | 1.6% | Jul 1, 2014 | Cross-site scripting (XSS) vulnerability in xd_resize.php in the Contact Form by ContactMe.com plugin 2.3 and earlier fo... |
| CVE-2014-4516 | — | — | 1.6% | Jul 1, 2014 | Cross-site scripting (XSS) vulnerability in bicm-carousel-preview.php in the BIC Media Widget plugin 1.0 and earlier for... |
| CVE-2014-4515 | — | — | 1.6% | Jul 1, 2014 | Cross-site scripting (XSS) vulnerability in mce_anyfont/dialog.php in the AnyFont plugin 2.2.3 and earlier for WordPress... |
| CVE-2014-4513 | — | — | 4.5% | Jul 1, 2014 | Multiple cross-site scripting (XSS) vulnerabilities in server/offline.php in the ActiveHelper LiveHelp Live Chat plugin ... |
| CVE-2014-1383 | — | — | 0.9% | Jul 1, 2014 | Apple TV before 6.1.2 allows remote authenticated users to bypass an intended password requirement for iTunes Store purc... |
| CVE-2014-1382 | — | — | 2.6% | Jul 1, 2014 | WebKit, as used in Apple iOS before 7.1.2, Apple Safari before 6.1.5 and 7.x before 7.0.5, and Apple TV before 6.1.2, al... |
| CVE-2014-1381 | — | — | 2.9% | Jul 1, 2014 | Thunderbolt in Apple OS X before 10.9.4 does not properly restrict IOThunderBoltController API calls, which allows attac... |
| CVE-2014-1380 | — | — | 0.4% | Jul 1, 2014 | The Security - Keychain component in Apple OS X before 10.9.4 does not properly implement keystroke observers, which all... |
| CVE-2014-1379 | — | — | 2.2% | Jul 1, 2014 | Graphics Drivers in Apple OS X before 10.9.4 allows attackers to gain privileges or cause a denial of service (NULL poin... |
| CVE-2014-1378 | — | — | 0.4% | Jul 1, 2014 | IOGraphicsFamily in Apple OS X before 10.9.4 allows local users to bypass the ASLR protection mechanism by leveraging re... |
| CVE-2014-1377 | — | — | 4.2% | Jul 1, 2014 | Array index error in IOAcceleratorFamily in Apple OS X before 10.9.4 allows attackers to execute arbitrary code via a cr... |
Check if your code is affected by 2014 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now