2015 CVE Vulnerabilities
8,779 CVEs published in 2015.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2015-4367 | — | — | 1.0% | Jun 15, 2015 | Cross-site scripting (XSS) vulnerability in the Simple Subscription module before 6.x-1.1 and 7.x-1.x before 7.x-1.1 for... |
| CVE-2015-4366 | — | — | 1.0% | Jun 15, 2015 | Cross-site scripting (XSS) vulnerability in the Mover module 6.x-1.0 for Drupal allows remote authenticated users with c... |
| CVE-2015-4365 | — | — | 1.0% | Jun 15, 2015 | Cross-site scripting (XSS) vulnerability in the Taxonomy Accordion module for Drupal allows remote authenticated users w... |
| CVE-2015-4364 | — | — | 0.7% | Jun 15, 2015 | Multiple cross-site request forgery (CSRF) vulnerabilities in includes/campaignmonitor_lists.admin.inc in the Campaign M... |
| CVE-2015-4363 | — | — | 1.2% | Jun 15, 2015 | Open redirect vulnerability in the finder_form_goto function in the Finder module for Drupal allows remote attackers to ... |
| CVE-2015-4362 | — | — | 1.1% | Jun 15, 2015 | Cross-site request forgery (CSRF) vulnerability in tracking_code.admin.inc in the Tracking Code module 7.x-1.x before 7.... |
| CVE-2015-4361 | — | — | 0.7% | Jun 15, 2015 | Cross-site request forgery (CSRF) vulnerability in the Registration codes module before 6.x-1.6 for Drupal allows remote... |
| CVE-2015-4360 | — | — | 0.7% | Jun 15, 2015 | Cross-site request forgery (CSRF) vulnerability in the Registration codes module before 6.x-1.6, 6.x-2.x before 6.x-2.8,... |
| CVE-2015-4359 | — | — | 1.1% | Jun 15, 2015 | Multiple cross-site scripting (XSS) vulnerabilities in the Registration codes module before 6.x-1.6, 6.x-2.x before 6.x-... |
| CVE-2015-4358 | — | — | 1.0% | Jun 15, 2015 | Cross-site scripting (XSS) vulnerability in unspecified administration pages in the Ubercart Discount Coupons module 6.x... |
| CVE-2015-4357 | — | — | 1.1% | Jun 15, 2015 | Cross-site scripting (XSS) vulnerability in the Webform module before 6.x-3.22, 7.x-3.x before 7.x-3.22, and 7.x-4.x bef... |
| CVE-2015-4356 | — | — | 1.0% | Jun 15, 2015 | Cross-site scripting (XSS) vulnerability in the view-based webform results table in the Webform module 7.x-4.x before 7.... |
| CVE-2015-4355 | — | — | 0.6% | Jun 15, 2015 | Cross-site request forgery (CSRF) vulnerability in the Watchdog Aggregator module for Drupal allows remote attackers to ... |
| CVE-2015-4354 | — | — | 1.0% | Jun 15, 2015 | Cross-site scripting (XSS) vulnerability in the Ubercart Webform Integration module before 6.x-1.8 and 7.x before 7.x-2.... |
| CVE-2015-4353 | — | — | 0.6% | Jun 15, 2015 | Cross-site request forgery (CSRF) vulnerability in the Custom Sitemap module for Drupal allows remote attackers to hijac... |
| CVE-2015-4352 | — | — | 0.6% | Jun 15, 2015 | Cross-site request forgery (CSRF) vulnerability in the Spider Video Player module for Drupal allows remote attackers to ... |
| CVE-2015-4351 | — | — | 1.1% | Jun 15, 2015 | The Spider Video Player module for Drupal allows remote authenticated users with the "access Spider Video Player adminis... |
| CVE-2015-4350 | — | — | 0.6% | Jun 15, 2015 | Multiple cross-site request forgery (CSRF) vulnerabilities in the Spider Catalog module for Drupal allow remote attacker... |
| CVE-2015-4349 | — | — | 0.6% | Jun 15, 2015 | Cross-site request forgery (CSRF) vulnerability in the Spider Contacts module for Drupal allows remote attackers to hija... |
| CVE-2015-4348 | — | — | 1.0% | Jun 15, 2015 | SQL injection vulnerability in the Spider Contacts module for Drupal allows remote authenticated users with the "access ... |
| CVE-2015-4347 | — | — | 1.2% | Jun 15, 2015 | Cross-site scripting (XSS) vulnerability in the inLinks Integration module for Drupal allows remote attackers to inject ... |
| CVE-2015-4346 | — | — | 1.2% | Jun 15, 2015 | Cross-site scripting (XSS) vulnerability in the SMS Framework module 6.x-1.x before 6.x-1.1 for Drupal, when the "Send t... |
| CVE-2015-4345 | — | — | 1.4% | Jun 15, 2015 | The RESTWS Basic Auth submodule in the RESTful Web Services module 7.x-1.x before 7.x-1.5 and 7.x-2.x before 7.x-2.3 for... |
| CVE-2015-4344 | — | — | 1.4% | Jun 15, 2015 | The Services Basic Authentication module 7.x-1.x through 7.x-1.3 for Drupal allows remote attackers to bypass intended r... |
| CVE-2015-3951 | — | — | 1.3% | Jun 13, 2015 | RLE Nova-Wind Turbine HMI devices store cleartext credentials, which allows remote attackers to obtain sensitive informa... |
Check if your code is affected by 2015 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now