2015 CVE Vulnerabilities
8,779 CVEs published in 2015.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2015-3910 | — | — | 0.9% | May 20, 2015 | Multiple unspecified vulnerabilities in Google V8 before 4.3.61.21, as used in Google Chrome before 43.0.2357.65, allow ... |
| CVE-2015-1903 | — | — | 8.0% | May 20, 2015 | Stack-based buffer overflow in IBM Domino 8.5 before 8.5.3 FP6 IF7 and 9.0 before 9.0.1 FP3 IF3 allows remote attackers ... |
| CVE-2015-1902 | — | — | 8.0% | May 20, 2015 | Stack-based buffer overflow in IBM Domino 8.5 before 8.5.3 FP6 IF7 and 9.0 before 9.0.1 FP3 IF3 allows remote attackers ... |
| CVE-2015-1265 | — | — | 7.9% | May 20, 2015 | Multiple unspecified vulnerabilities in Google Chrome before 43.0.2357.65 allow attackers to cause a denial of service o... |
| CVE-2015-1264 | — | — | 1.2% | May 20, 2015 | Cross-site scripting (XSS) vulnerability in Google Chrome before 43.0.2357.65 allows user-assisted remote attackers to i... |
| CVE-2015-1263 | — | — | 1.0% | May 20, 2015 | The Spellcheck API implementation in Google Chrome before 43.0.2357.65 does not use an HTTPS session for downloading a H... |
| CVE-2015-1262 | — | — | 1.6% | May 20, 2015 | platform/fonts/shaping/HarfBuzzShaper.cpp in Blink, as used in Google Chrome before 43.0.2357.65, does not initialize a ... |
| CVE-2015-1261 | — | — | 1.4% | May 20, 2015 | android/java/src/org/chromium/chrome/browser/WebsiteSettingsPopup.java in Google Chrome before 43.0.2357.65 on Android d... |
| CVE-2015-1260 | — | — | 1.6% | May 20, 2015 | Multiple use-after-free vulnerabilities in content/renderer/media/user_media_client_impl.cc in the WebRTC implementation... |
| CVE-2015-1259 | — | — | 1.4% | May 20, 2015 | PDFium, as used in Google Chrome before 43.0.2357.65, does not properly initialize memory, which allows remote attackers... |
| CVE-2015-1258 | — | — | 2.4% | May 20, 2015 | Google Chrome before 43.0.2357.65 relies on libvpx code that was not built with an appropriate --size-limit value, which... |
| CVE-2015-1257 | — | — | 1.6% | May 20, 2015 | platform/graphics/filters/FEColorMatrix.cpp in the SVG implementation in Blink, as used in Google Chrome before 43.0.235... |
| CVE-2015-1256 | — | — | 1.6% | May 20, 2015 | Use-after-free vulnerability in the SVG implementation in Blink, as used in Google Chrome before 43.0.2357.65, allows re... |
| CVE-2015-1255 | — | — | 1.5% | May 20, 2015 | Use-after-free vulnerability in content/renderer/media/webaudio_capturer_source.cc in the WebAudio implementation in Goo... |
| CVE-2015-1254 | — | — | 1.7% | May 20, 2015 | core/dom/Document.cpp in Blink, as used in Google Chrome before 43.0.2357.65, enables the inheritance of the designMode ... |
| CVE-2015-1253 | — | — | 1.6% | May 20, 2015 | core/html/parser/HTMLConstructionSite.cpp in the DOM implementation in Blink, as used in Google Chrome before 43.0.2357.... |
| CVE-2015-1252 | — | — | 1.7% | May 20, 2015 | common/partial_circular_buffer.cc in Google Chrome before 43.0.2357.65 does not properly handle wraps, which allows remo... |
| CVE-2015-1251 | — | — | 2.4% | May 20, 2015 | Use-after-free vulnerability in the SpeechRecognitionClient implementation in the Speech subsystem in Google Chrome befo... |
| CVE-2015-0189 | — | — | 1.9% | May 20, 2015 | The cluster repository manager in IBM WebSphere MQ 7.5 before 7.5.0.5 and 8.0 before 8.0.0.2 allows remote authenticated... |
| CVE-2015-1920 | — | — | 6.9% | May 20, 2015 | IBM WebSphere Application Server (WAS) 6.1 through 6.1.0.47, 7.0 before 7.0.0.39, 8.0 before 8.0.0.11, and 8.5 before 8.... |
| CVE-2015-0740 | — | — | 1.3% | May 20, 2015 | Cross-site request forgery (CSRF) vulnerability in Cisco Unified Intelligence Center 10.6(1) allows remote attackers to ... |
| CVE-2015-3988 | — | — | 1.8% | May 19, 2015 | Multiple cross-site scripting (XSS) vulnerabilities in OpenStack Dashboard (Horizon) 2015.1.0 allow remote authenticated... |
| CVE-2015-3885 | — | — | 5.4% | May 19, 2015 | Integer overflow in the ljpeg_start function in dcraw 7.00 and earlier allows remote attackers to cause a denial of serv... |
| CVE-2015-3409 | — | — | 0.4% | May 19, 2015 | Untrusted search path vulnerability in Module::Signature before 0.75 allows local users to gain privileges via a Trojan ... |
| CVE-2015-3408 | — | — | 5.7% | May 19, 2015 | Module::Signature before 0.74 allows remote attackers to execute arbitrary shell commands via a crafted SIGNATURE file w... |
Check if your code is affected by 2015 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now