2014 CVE Vulnerabilities
9,002 CVEs published in 2014.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2014-0161 | MEDIUM | 5.9 | 0.4% | Jan 2, 2020 | ovirt-engine-sdk-python before 3.4.0.7 and 3.5.0.4 does not verify that the hostname of the remote endpoint matches the ... |
| CVE-2014-0104 | MEDIUM | 5.9 | 0.8% | Jan 2, 2020 | In fence-agents before 4.0.17 does not verify remote SSL certificates in the fence_cisco_ucs.py script which can potenti... |
| CVE-2014-6420 | MEDIUM | 6.1 | 1.8% | Dec 27, 2019 | Cross-site scripting (XSS) vulnerability in Livefyre LiveComments 3.0 allows remote attackers to inject arbitrary web sc... |
| CVE-2014-4550 | MEDIUM | 6.1 | 3.9% | Dec 27, 2019 | Cross-site scripting (XSS) vulnerability in preview-shortcode-external.php in the Shortcode Ninja plugin 1.4 and earlier... |
| CVE-2014-4536 | MEDIUM | 6.1 | 3.9% | Dec 27, 2019 | Multiple cross-site scripting (XSS) vulnerabilities in tests/notAuto_test_ContactService_pauseCampaign.php in the Infusi... |
| CVE-2014-4535 | MEDIUM | 6.1 | 4.0% | Dec 27, 2019 | Cross-site scripting (XSS) vulnerability in the Import Legacy Media plugin 0.1 and earlier for WordPress allows remote a... |
| CVE-2014-4567 | MEDIUM | 6.1 | 1.2% | Dec 27, 2019 | Cross-site scripting (XSS) vulnerability in comments/videowhisper2/r_logout.php in the Video Comments Webcam Recorder pl... |
| CVE-2014-4558 | MEDIUM | 6.1 | 4.1% | Dec 27, 2019 | Cross-site scripting (XSS) vulnerability in test-plugin.php in the Swipe Checkout for WooCommerce plugin 2.7.1 and earli... |
| CVE-2014-4548 | MEDIUM | 6.1 | 1.2% | Dec 27, 2019 | Cross-site scripting (XSS) vulnerability in tinymce/popup.php in the Ruven Toolkit plugin 1.1 and earlier for WordPress ... |
| CVE-2014-4544 | MEDIUM | 6.1 | 3.8% | Dec 27, 2019 | Cross-site scripting (XSS) vulnerability in the Podcast Channels plugin 0.20 and earlier for WordPress allows remote att... |
| CVE-2014-4539 | MEDIUM | 6.1 | 4.0% | Dec 27, 2019 | Cross-site scripting (XSS) vulnerability in the Movies plugin 0.6 and earlier for WordPress allows remote attackers to i... |
| CVE-2014-4592 | MEDIUM | 6.1 | 3.9% | Dec 27, 2019 | Cross-site scripting (XSS) vulnerability in rss.class/scripts/magpie_debug.php in the WP-Planet plugin 0.1 and earlier f... |
| CVE-2014-4519 | MEDIUM | 6.1 | 1.2% | Dec 27, 2019 | Cross-site scripting (XSS) vulnerability in the Conversador plugin 2.61 and earlier for WordPress allows remote attacker... |
| CVE-2014-4559 | MEDIUM | 6.1 | 1.2% | Dec 27, 2019 | Multiple cross-site scripting (XSS) vulnerabilities in test-plugin.php in the Swipe Checkout for WP e-Commerce plugin 3.... |
| CVE-2014-4525 | MEDIUM | 6.1 | 1.2% | Dec 27, 2019 | Cross-site scripting (XSS) vulnerability in magpie/scripts/magpie_slashbox.php in the Ebay Feeds for WordPress plugin 1.... |
| CVE-2014-4523 | MEDIUM | 6.1 | 1.2% | Dec 27, 2019 | Cross-site scripting (XSS) vulnerability in the Easy Career Openings plugin 0.4 and earlier for WordPress allows remote ... |
| CVE-2014-8178 | MEDIUM | 5.5 | 0.5% | Dec 17, 2019 | Docker Engine before 1.8.3 and CS Docker Engine before 1.6.2-CS7 do not use a globally unique identifier to store image ... |
| CVE-2014-8561 | MEDIUM | 6.5 | 2.2% | Dec 15, 2019 | imagemagick 6.8.9.6 has remote DOS via infinite loop |
| CVE-2014-4913 | MEDIUM | 6.1 | 1.2% | Dec 15, 2019 | ZF2014-03 has a potential cross site scripting vector in multiple view helpers |
| CVE-2014-3652 | MEDIUM | 6.1 | 0.7% | Dec 15, 2019 | JBoss KeyCloak: Open redirect vulnerability via failure to validate the redirect URL. |
| CVE-2014-3536 | MEDIUM | 5.5 | 0.3% | Dec 15, 2019 | CFME (CloudForms Management Engine) 5: RHN account information is logged to top_output.log during registration |
| CVE-2014-2387 | MEDIUM | 4.4 | 0.4% | Dec 13, 2019 | Pen 0.18.0 has Insecure Temporary File Creation vulnerabilities |
| CVE-2014-0241 | MEDIUM | 5.5 | 0.3% | Dec 13, 2019 | rubygem-hammer_cli_foreman: File /etc/hammer/cli.modules.d/foreman.yml world readable |
| CVE-2014-0091 | MEDIUM | 5.3 | 1.6% | Dec 11, 2019 | Foreman has improper input validation which could lead to partial Denial of Service |
| CVE-2014-0026 | MEDIUM | 6.5 | 0.4% | Dec 11, 2019 | katello-headpin is vulnerable to CSRF in REST API |
Check if your code is affected by 2014 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now