2015 CVE Vulnerabilities

8,779 CVEs published in 2015.

CVE IDSeverityCVSSDescription
CVE-2015-3910Multiple unspecified vulnerabilities in Google V8 before 4.3.61.21, as used in Google Chrome before 43.0.2357.65, allow ...
CVE-2015-1903Stack-based buffer overflow in IBM Domino 8.5 before 8.5.3 FP6 IF7 and 9.0 before 9.0.1 FP3 IF3 allows remote attackers ...
CVE-2015-1902Stack-based buffer overflow in IBM Domino 8.5 before 8.5.3 FP6 IF7 and 9.0 before 9.0.1 FP3 IF3 allows remote attackers ...
CVE-2015-1265Multiple unspecified vulnerabilities in Google Chrome before 43.0.2357.65 allow attackers to cause a denial of service o...
CVE-2015-1264Cross-site scripting (XSS) vulnerability in Google Chrome before 43.0.2357.65 allows user-assisted remote attackers to i...
CVE-2015-1263The Spellcheck API implementation in Google Chrome before 43.0.2357.65 does not use an HTTPS session for downloading a H...
CVE-2015-1262platform/fonts/shaping/HarfBuzzShaper.cpp in Blink, as used in Google Chrome before 43.0.2357.65, does not initialize a ...
CVE-2015-1261android/java/src/org/chromium/chrome/browser/WebsiteSettingsPopup.java in Google Chrome before 43.0.2357.65 on Android d...
CVE-2015-1260Multiple use-after-free vulnerabilities in content/renderer/media/user_media_client_impl.cc in the WebRTC implementation...
CVE-2015-1259PDFium, as used in Google Chrome before 43.0.2357.65, does not properly initialize memory, which allows remote attackers...
CVE-2015-1258Google Chrome before 43.0.2357.65 relies on libvpx code that was not built with an appropriate --size-limit value, which...
CVE-2015-1257platform/graphics/filters/FEColorMatrix.cpp in the SVG implementation in Blink, as used in Google Chrome before 43.0.235...
CVE-2015-1256Use-after-free vulnerability in the SVG implementation in Blink, as used in Google Chrome before 43.0.2357.65, allows re...
CVE-2015-1255Use-after-free vulnerability in content/renderer/media/webaudio_capturer_source.cc in the WebAudio implementation in Goo...
CVE-2015-1254core/dom/Document.cpp in Blink, as used in Google Chrome before 43.0.2357.65, enables the inheritance of the designMode ...
CVE-2015-1253core/html/parser/HTMLConstructionSite.cpp in the DOM implementation in Blink, as used in Google Chrome before 43.0.2357....
CVE-2015-1252common/partial_circular_buffer.cc in Google Chrome before 43.0.2357.65 does not properly handle wraps, which allows remo...
CVE-2015-1251Use-after-free vulnerability in the SpeechRecognitionClient implementation in the Speech subsystem in Google Chrome befo...
CVE-2015-0189The cluster repository manager in IBM WebSphere MQ 7.5 before 7.5.0.5 and 8.0 before 8.0.0.2 allows remote authenticated...
CVE-2015-1920IBM WebSphere Application Server (WAS) 6.1 through 6.1.0.47, 7.0 before 7.0.0.39, 8.0 before 8.0.0.11, and 8.5 before 8....
CVE-2015-0740Cross-site request forgery (CSRF) vulnerability in Cisco Unified Intelligence Center 10.6(1) allows remote attackers to ...
CVE-2015-3988Multiple cross-site scripting (XSS) vulnerabilities in OpenStack Dashboard (Horizon) 2015.1.0 allow remote authenticated...
CVE-2015-3885Integer overflow in the ljpeg_start function in dcraw 7.00 and earlier allows remote attackers to cause a denial of serv...
CVE-2015-3409Untrusted search path vulnerability in Module::Signature before 0.75 allows local users to gain privileges via a Trojan ...
CVE-2015-3408Module::Signature before 0.74 allows remote attackers to execute arbitrary shell commands via a crafted SIGNATURE file w...

Check if your code is affected by 2015 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now