2015 CVE Vulnerabilities
8,779 CVEs published in 2015.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2015-6786 | — | — | 1.7% | Dec 6, 2015 | The CSPSourceList::matches function in WebKit/Source/core/frame/csp/CSPSourceList.cpp in the Content Security Policy (CS... |
| CVE-2015-6785 | — | — | 1.7% | Dec 6, 2015 | The CSPSource::hostMatches function in WebKit/Source/core/frame/csp/CSPSource.cpp in the Content Security Policy (CSP) i... |
| CVE-2015-6784 | — | — | 1.7% | Dec 6, 2015 | The page serializer in Google Chrome before 47.0.2526.73 mishandles Mark of the Web (MOTW) comments for URLs containing ... |
| CVE-2015-6783 | — | — | 1.2% | Dec 6, 2015 | The FindStartOffsetOfFileInZipFile function in crazy_linker_zip.cpp in crazy_linker (aka Crazy Linker) in Android 5.x an... |
| CVE-2015-6782 | — | — | 1.1% | Dec 6, 2015 | The Document::open function in WebKit/Source/core/dom/Document.cpp in Google Chrome before 47.0.2526.73 does not ensure ... |
| CVE-2015-6781 | — | — | 1.6% | Dec 6, 2015 | Integer overflow in the FontData::Bound function in data/font_data.cc in Google sfntly, as used in Google Chrome before ... |
| CVE-2015-6780 | — | — | 1.1% | Dec 6, 2015 | Use-after-free vulnerability in the Infobars implementation in Google Chrome before 47.0.2526.73 allows remote attackers... |
| CVE-2015-6779 | — | — | 2.0% | Dec 6, 2015 | PDFium, as used in Google Chrome before 47.0.2526.73, does not properly restrict use of chrome: URLs, which allows remot... |
| CVE-2015-6778 | — | — | 1.7% | Dec 6, 2015 | The CJBig2_SymbolDict class in fxcodec/jbig2/JBig2_SymbolDict.cpp in PDFium, as used in Google Chrome before 47.0.2526.7... |
| CVE-2015-6777 | — | — | 1.6% | Dec 6, 2015 | Use-after-free vulnerability in the ContainerNode::notifyNodeInsertedInternal function in WebKit/Source/core/dom/Contain... |
| CVE-2015-6776 | — | — | 1.5% | Dec 6, 2015 | The opj_dwt_decode_1* functions in dwt.c in OpenJPEG, as used in PDFium in Google Chrome before 47.0.2526.73, allow remo... |
| CVE-2015-6775 | — | — | 2.1% | Dec 6, 2015 | fpdfsdk/src/jsapi/fxjs_v8.cpp in PDFium, as used in Google Chrome before 47.0.2526.73, does not use signatures, which al... |
| CVE-2015-6774 | — | — | 1.5% | Dec 6, 2015 | Use-after-free vulnerability in the GetLoadTimes function in renderer/loadtimes_extension_bindings.cc in the Extensions ... |
| CVE-2015-6773 | — | — | 1.7% | Dec 6, 2015 | The convolution implementation in Skia, as used in Google Chrome before 47.0.2526.73, does not properly constrain row le... |
| CVE-2015-6772 | — | — | 1.6% | Dec 6, 2015 | The DOM implementation in Blink, as used in Google Chrome before 47.0.2526.73, does not prevent javascript: URL navigati... |
| CVE-2015-6771 | — | — | 2.1% | Dec 6, 2015 | js/array.js in Google V8, as used in Google Chrome before 47.0.2526.73, improperly implements certain map and filter ope... |
| CVE-2015-6770 | — | — | 2.0% | Dec 6, 2015 | The DOM implementation in Google Chrome before 47.0.2526.73 allows remote attackers to bypass the Same Origin Policy via... |
| CVE-2015-6769 | — | — | 2.0% | Dec 6, 2015 | The provisional-load commit implementation in WebKit/Source/bindings/core/v8/WindowProxy.cpp in Google Chrome before 47.... |
| CVE-2015-6768 | — | — | 1.9% | Dec 6, 2015 | The DOM implementation in Google Chrome before 47.0.2526.73 allows remote attackers to bypass the Same Origin Policy via... |
| CVE-2015-6767 | — | — | 1.9% | Dec 6, 2015 | Use-after-free vulnerability in content/browser/appcache/appcache_dispatcher_host.cc in the AppCache implementation in G... |
| CVE-2015-6766 | — | — | 1.9% | Dec 6, 2015 | Use-after-free vulnerability in the AppCache implementation in Google Chrome before 47.0.2526.73 allows remote attackers... |
| CVE-2015-6765 | — | — | 4.5% | Dec 6, 2015 | Use-after-free vulnerability in content/browser/appcache/appcache_update_job.cc in Google Chrome before 47.0.2526.73 all... |
| CVE-2015-6849 | — | — | 2.3% | Dec 5, 2015 | EMC NetWorker before 8.0.4.5, 8.1.x before 8.1.3.6, 8.2.x before 8.2.2.2, and 9.0 before build 407 allows remote attacke... |
| CVE-2015-6394 | — | — | 0.3% | Dec 5, 2015 | The kernel in Cisco NX-OS 5.2(9)N1(1) on Nexus 5000 devices allows local users to cause a denial of service (device cras... |
| CVE-2015-6391 | — | — | 1.9% | Dec 5, 2015 | Cisco Unified SIP 3905 phones allow remote attackers to cause a denial of service (resource consumption and functionalit... |
Check if your code is affected by 2015 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now