2014 CVE Vulnerabilities
9,002 CVEs published in 2014.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2014-4715 | — | — | 2.8% | Jul 3, 2014 | Yann Collet LZ4 before r119, when used on certain 32-bit platforms that allocate memory beyond 0x80000000, does not prop... |
| CVE-2014-4667 | — | — | 5.9% | Jul 3, 2014 | The sctp_association_free function in net/sctp/associola.c in the Linux kernel before 3.15.2 does not properly manage a ... |
| CVE-2014-4656 | — | — | 0.5% | Jul 3, 2014 | Multiple integer overflows in sound/core/control.c in the ALSA control implementation in the Linux kernel before 3.15.2 ... |
| CVE-2014-4655 | — | — | 0.5% | Jul 3, 2014 | The snd_ctl_elem_add function in sound/core/control.c in the ALSA control implementation in the Linux kernel before 3.15... |
| CVE-2014-4654 | — | — | 0.5% | Jul 3, 2014 | The snd_ctl_elem_add function in sound/core/control.c in the ALSA control implementation in the Linux kernel before 3.15... |
| CVE-2014-4653 | — | — | 0.5% | Jul 3, 2014 | sound/core/control.c in the ALSA control implementation in the Linux kernel before 3.15.2 does not ensure possession of ... |
| CVE-2014-4652 | — | — | 0.3% | Jul 3, 2014 | Race condition in the tlv handler functionality in the snd_ctl_elem_user_tlv function in sound/core/control.c in the ALS... |
| CVE-2014-4611 | — | — | 8.1% | Jul 3, 2014 | Integer overflow in the LZ4 algorithm implementation, as used in Yann Collet LZ4 before r118 and in the lz4_uncompress f... |
| CVE-2014-4608 | HIGH | 7.3 | 5.4% | Jul 3, 2014 | Multiple integer overflows in the lzo1x_decompress_safe function in lib/lzo/lzo1x_decompress_safe.c in the LZO decompres... |
| CVE-2014-4614 | — | — | 0.7% | Jul 2, 2014 | Multiple cross-site request forgery (CSRF) vulnerabilities in Piwigo before 2.6.2 allow remote attackers to hijack the a... |
| CVE-2014-4606 | — | — | 1.6% | Jul 2, 2014 | Cross-site scripting (XSS) vulnerability in redirect_to_zeenshare.php in the ZeenShare plugin 1.0.1 and earlier for Word... |
| CVE-2014-4597 | — | — | 1.6% | Jul 2, 2014 | Cross-site scripting (XSS) vulnerability in test.php in the WP Social Invitations plugin before 1.4.4.3 for WordPress al... |
| CVE-2014-4591 | — | — | 1.6% | Jul 2, 2014 | Cross-site scripting (XSS) vulnerability in picasa_upload.php in the WP-Picasa-Image plugin 1.0 and earlier for WordPres... |
| CVE-2014-4581 | — | — | 1.6% | Jul 2, 2014 | Cross-site scripting (XSS) vulnerability in facture.php in the WPCB plugin 2.4.8 and earlier for WordPress allows remote... |
| CVE-2014-4571 | — | — | 1.6% | Jul 2, 2014 | Multiple cross-site scripting (XSS) vulnerabilities in vncal.js.php in the VN-Calendar plugin 1.0 and earlier for WordPr... |
| CVE-2014-4565 | — | — | 1.6% | Jul 2, 2014 | Multiple cross-site scripting (XSS) vulnerabilities in vcc.js.php in the Verification Code for Comments plugin 2.1.0 and... |
| CVE-2014-4563 | — | — | 1.6% | Jul 2, 2014 | Cross-site scripting (XSS) vulnerability in go.php in the URL Cloak & Encrypt (url-cloak-encrypt) plugin 2.0 and earlier... |
| CVE-2014-4555 | — | — | 1.6% | Jul 2, 2014 | Cross-site scripting (XSS) vulnerability in fonts/font-form.php in the Style It plugin 1.0 and earlier for WordPress all... |
| CVE-2014-4554 | — | — | 2.0% | Jul 2, 2014 | Cross-site scripting (XSS) vulnerability in templates/download.php in the SS Downloads plugin before 1.5 for WordPress a... |
| CVE-2014-4549 | — | — | 2.1% | Jul 2, 2014 | Multiple cross-site scripting (XSS) vulnerabilities in pages/3DComplete.php in the WooCommerce SagePay Direct Payment Ga... |
| CVE-2014-4546 | — | — | 1.6% | Jul 2, 2014 | Cross-site scripting (XSS) vulnerability in book_ajax.php in the Rezgo plugin 1.4.2 and earlier for WordPress allows rem... |
| CVE-2014-4534 | — | — | 1.6% | Jul 2, 2014 | Multiple cross-site scripting (XSS) vulnerabilities in videoplayer/autoplay.php in the HTML5 Video Player with Playlist ... |
| CVE-2014-3737 | — | — | 2.1% | Jul 2, 2014 | Cross-site scripting (XSS) vulnerability in templates/defaultheader.php in Lamp Design Storesprite before 7 - 19-06-14, ... |
| CVE-2014-4605 | — | — | 1.6% | Jul 2, 2014 | Cross-site scripting (XSS) vulnerability in cal/test.php in the ZdStatistics (zdstats) plugin 2.0.1 and earlier for Word... |
| CVE-2014-4604 | — | — | 1.6% | Jul 2, 2014 | Cross-site scripting (XSS) vulnerability in settings/pwsettings.php in the Your Text Manager plugin 0.3.0 and earlier fo... |
Check if your code is affected by 2014 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now