2015 CVE Vulnerabilities
8,779 CVEs published in 2015.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2015-5794 | — | — | 2.8% | Sep 18, 2015 | WebKit, as used in Apple iOS before 9 and iTunes before 12.3, allows remote attackers to execute arbitrary code or cause... |
| CVE-2015-5793 | — | — | 2.5% | Sep 18, 2015 | WebKit, as used in JavaScriptCore in Apple iOS before 9 and iTunes before 12.3, allows remote attackers to execute arbit... |
| CVE-2015-5792 | — | — | 2.5% | Sep 18, 2015 | WebKit, as used in Apple iOS before 9 and iTunes before 12.3, allows remote attackers to execute arbitrary code or cause... |
| CVE-2015-5791 | — | — | 2.5% | Sep 18, 2015 | WebKit, as used in JavaScriptCore in Apple iOS before 9 and iTunes before 12.3, allows remote attackers to execute arbit... |
| CVE-2015-5790 | — | — | 2.5% | Sep 18, 2015 | WebKit, as used in Apple iOS before 9 and iTunes before 12.3, allows remote attackers to execute arbitrary code or cause... |
| CVE-2015-5789 | — | — | 2.5% | Sep 18, 2015 | WebKit, as used in Apple iOS before 9 and iTunes before 12.3, allows remote attackers to execute arbitrary code or cause... |
| CVE-2015-5788 | — | — | 2.1% | Sep 18, 2015 | The WebKit Canvas implementation in Apple iOS before 9 allows remote attackers to bypass the Same Origin Policy and obta... |
| CVE-2015-5767 | — | — | 1.9% | Sep 18, 2015 | The user interface in Safari in Apple iOS before 9 allows remote attackers to spoof URLs via unspecified vectors, a diff... |
| CVE-2015-5765 | — | — | 1.9% | Sep 18, 2015 | The user interface in Safari in Apple iOS before 9 allows remote attackers to spoof URLs via unspecified vectors, a diff... |
| CVE-2015-5764 | — | — | 2.5% | Sep 18, 2015 | The user interface in Safari in Apple iOS before 9 allows remote attackers to spoof URLs via unspecified vectors, a diff... |
| CVE-2015-3801 | — | — | 2.2% | Sep 18, 2015 | The document.cookie API implementation in the CFNetwork Cookies subsystem in WebKit in Apple iOS before 9 allows remote ... |
| CVE-2015-7235 | — | — | 4.8% | Sep 17, 2015 | Multiple SQL injection vulnerabilities in dex_reservations.php in the CP Reservation Calendar plugin before 1.1.7 for Wo... |
| CVE-2015-7234 | — | — | 2.0% | Sep 17, 2015 | The OSF module 7.x-3.x before 7.x-3.1 for Drupal, when the OSF Ontology and OSF Import modules are enabled, allows user-... |
| CVE-2015-7233 | — | — | 0.5% | Sep 17, 2015 | Cross-site request forgery (CSRF) vulnerability in the OSF module 7.x-3.x before 7.x-3.1 for Drupal, when the OSF Import... |
| CVE-2015-7232 | — | — | 0.9% | Sep 17, 2015 | Cross-site scripting (XSS) vulnerability in unspecified administration pages in the OSF module 7.x-3.x before 7.x-3.1 fo... |
| CVE-2015-7231 | — | — | 1.1% | Sep 17, 2015 | The Commerce Commonwealth (CBA) module 7.x-1.x before 7.x-1.5 for Drupal does not properly validate payments, which allo... |
| CVE-2015-7230 | — | — | 0.9% | Sep 17, 2015 | The Workbench Email module 7.x-3.x before 7.x-3.4 for Drupal allows remote authenticated users with certain permissions ... |
| CVE-2015-7229 | — | — | 1.0% | Sep 17, 2015 | The Twitter module 6.x-5.x before 6.x-5.2, 7.x-5.x before 7.x-5.9, and 7.x-6.x before 7.x-6.0 for Drupal does not proper... |
| CVE-2015-7228 | — | — | 1.3% | Sep 17, 2015 | The RESTful module 7.x-1.x before 7.x-1.3 for Drupal does not properly cache pages of authenticated users when using non... |
| CVE-2015-7227 | — | — | 0.8% | Sep 17, 2015 | The Fieldable Panels Panes module 7.x-1.x before 7.x-1.7 for Drupal does not properly check permissions to edit Fieldabl... |
| CVE-2015-7226 | — | — | 2.1% | Sep 17, 2015 | The Administration Views module 7.x-1.x before 7.x-1.5 for Drupal checks access permissions based on the router path fro... |
| CVE-2015-6672 | — | — | 1.4% | Sep 17, 2015 | Cross-site scripting (XSS) vulnerability in the Administrative Web Interface in Citrix NetScaler Application Delivery Co... |
| CVE-2015-5538 | — | — | 3.1% | Sep 17, 2015 | Multiple unspecified vulnerabilities in Citrix NetScaler Application Delivery Controller (ADC) and NetScaler Gateway bef... |
| CVE-2015-4040 | — | — | 6.8% | Sep 17, 2015 | Directory traversal vulnerability in the configuration utility in F5 BIG-IP before 12.0.0 and Enterprise Manager 3.0.0 t... |
| CVE-2015-1319 | — | — | 0.4% | Sep 17, 2015 | The Unity Settings Daemon before 14.04.0+14.04.20150825-0ubuntu2 and 15.04.x before 15.04.1+15.04.20150408-0ubuntu1.2 do... |
Check if your code is affected by 2015 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now