2014 CVE Vulnerabilities
9,002 CVEs published in 2014.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2014-8372 | — | — | 0.9% | Dec 11, 2014 | AirWatch by VMware On-Premise 7.3.x before 7.3.3.0 (FP3) allows remote authenticated users to obtain the organizational ... |
| CVE-2014-7852 | — | — | 1.0% | Dec 11, 2014 | Cross-site scripting (XSS) vulnerability in JBoss RichFaces, as used in JBoss Portal 6.1.1, allows remote attackers to i... |
| CVE-2014-8632 | — | — | 1.0% | Dec 11, 2014 | The structured-clone implementation in Mozilla Firefox before 34.0 and SeaMonkey before 2.31 does not properly interact ... |
| CVE-2014-8631 | — | — | 1.6% | Dec 11, 2014 | The Chrome Object Wrapper (COW) implementation in Mozilla Firefox before 34.0 and SeaMonkey before 2.31 supports native-... |
| CVE-2014-7192 | — | — | 13.4% | Dec 11, 2014 | Eval injection vulnerability in index.js in the syntax-error package before 1.1.1 for Node.js 0.10.x, as used in IBM Rat... |
| CVE-2014-6114 | — | — | 2.2% | Dec 11, 2014 | The Hosted Transparent Decision Service in the Rule Execution Server in IBM WebSphere ILOG JRules 7.1 before MP1 FP5 IF4... |
| CVE-2014-1595 | — | — | 0.3% | Dec 11, 2014 | Mozilla Firefox before 34.0, Firefox ESR 31.x before 31.3, and Thunderbird before 31.3 on Apple OS X 10.10 omit a CoreGr... |
| CVE-2014-1594 | — | — | 3.4% | Dec 11, 2014 | Mozilla Firefox before 34.0, Firefox ESR 31.x before 31.3, Thunderbird before 31.3, and SeaMonkey before 2.31 might allo... |
| CVE-2014-1593 | — | — | 4.1% | Dec 11, 2014 | Stack-based buffer overflow in the mozilla::FileBlockCache::Read function in Mozilla Firefox before 34.0, Firefox ESR 31... |
| CVE-2014-1592 | — | — | 3.4% | Dec 11, 2014 | Use-after-free vulnerability in the nsHtml5TreeOperation function in xul.dll in Mozilla Firefox before 34.0, Firefox ESR... |
| CVE-2014-1591 | — | — | 1.2% | Dec 11, 2014 | Mozilla Firefox 33.0 and SeaMonkey before 2.31 include path strings in CSP violation reports, which allows remote attack... |
| CVE-2014-1590 | — | — | 1.7% | Dec 11, 2014 | The XMLHttpRequest.prototype.send method in Mozilla Firefox before 34.0, Firefox ESR 31.x before 31.3, Thunderbird befor... |
| CVE-2014-1589 | — | — | 1.8% | Dec 11, 2014 | Mozilla Firefox before 34.0 and SeaMonkey before 2.31 provide stylesheets with an incorrect primary namespace, which all... |
| CVE-2014-1588 | — | — | 3.5% | Dec 11, 2014 | Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 34.0 and SeaMonkey before 2.31 allo... |
| CVE-2014-1587 | — | — | 3.5% | Dec 11, 2014 | Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 34.0, Firefox ESR 31.x before 31.3,... |
| CVE-2014-8680 | — | — | 9.0% | Dec 11, 2014 | The GeoIP functionality in ISC BIND 9.10.0 through 9.10.1 allows remote attackers to cause a denial of service (assertio... |
| CVE-2014-8602 | — | — | 25.2% | Dec 11, 2014 | iterator.c in NLnet Labs Unbound before 1.5.1 does not limit delegation chaining, which allows remote attackers to cause... |
| CVE-2014-8500 | — | — | 65.7% | Dec 11, 2014 | ISC BIND 9.0.x through 9.8.x, 9.9.0 through 9.9.6, and 9.10.0 through 9.10.1 does not limit delegation chaining, which a... |
| CVE-2014-8966 | — | — | 13.1% | Dec 11, 2014 | Microsoft Internet Explorer 6 through 8 allows remote attackers to execute arbitrary code or cause a denial of service (... |
| CVE-2014-6376 | — | — | 13.1% | Dec 11, 2014 | Microsoft Internet Explorer 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory co... |
| CVE-2014-6375 | — | — | 13.1% | Dec 11, 2014 | Microsoft Internet Explorer 8 allows remote attackers to execute arbitrary code or cause a denial of service (memory cor... |
| CVE-2014-6374 | — | — | 12.5% | Dec 11, 2014 | Microsoft Internet Explorer 6 through 11 allows remote attackers to execute arbitrary code or cause a denial of service ... |
| CVE-2014-6373 | — | — | 13.1% | Dec 11, 2014 | Microsoft Internet Explorer 10 allows remote attackers to execute arbitrary code or cause a denial of service (memory co... |
| CVE-2014-6369 | — | — | 24.6% | Dec 11, 2014 | Microsoft Internet Explorer 9 through 11 allows remote attackers to execute arbitrary code or cause a denial of service ... |
| CVE-2014-6368 | — | — | 12.2% | Dec 11, 2014 | Microsoft Internet Explorer 11 allows remote attackers to bypass the ASLR protection mechanism via a crafted web site, a... |
Check if your code is affected by 2014 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now