2015 CVE Vulnerabilities
8,779 CVEs published in 2015.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2015-3384 | — | — | 1.0% | Apr 21, 2015 | Cross-site scripting (XSS) vulnerability in the Bank Account Listing Page in the Commerce Balanced Payments module for D... |
| CVE-2015-3383 | — | — | 1.2% | Apr 21, 2015 | Open redirect vulnerability in the Node basket module for Drupal allows remote attackers to redirect users to arbitrary ... |
| CVE-2015-3382 | — | — | 0.6% | Apr 21, 2015 | Multiple cross-site request forgery (CSRF) vulnerabilities in the Node basket module for Drupal allow remote attackers t... |
| CVE-2015-3381 | — | — | 1.0% | Apr 21, 2015 | Cross-site scripting (XSS) vulnerability in the Node basket module for Drupal allows remote authenticated users to injec... |
| CVE-2015-3380 | — | — | 0.6% | Apr 21, 2015 | Multiple cross-site request forgery (CSRF) vulnerabilities in the Feature Set module for Drupal allow remote attackers t... |
| CVE-2015-3379 | — | — | 1.1% | Apr 21, 2015 | The Views module before 6.x-2.18, 6.x-3.x before 6.x-3.2, and 7.x-3.x before 7.x-3.10 for Drupal does not properly restr... |
| CVE-2015-3378 | — | — | 1.6% | Apr 21, 2015 | Open redirect vulnerability in the Views module before 6.x-2.18, 6.x-3.x before 6.x-3.2, and 7.x-3.x before 7.x-3.10 for... |
| CVE-2015-3376 | — | — | 1.0% | Apr 21, 2015 | Cross-site scripting (XSS) vulnerability in the Quizzler module before 7-x.1.16 for Drupal allows remote authenticated u... |
| CVE-2015-3375 | — | — | 0.7% | Apr 21, 2015 | Cross-site request forgery (CSRF) vulnerability in the Shibboleth Authentication module before 6.x-4.1 and 7.x-4.x befor... |
| CVE-2015-3374 | — | — | 0.6% | Apr 21, 2015 | Multiple cross-site request forgery (CSRF) vulnerabilities in the Corner module for Drupal allow remote attackers to hij... |
| CVE-2015-3373 | — | — | 2.1% | Apr 21, 2015 | The Amazon AWS module before 7.x-1.3 for Drupal uses the base URL and AWS access key to generate the access token, which... |
| CVE-2015-3372 | — | — | 1.0% | Apr 21, 2015 | Cross-site scripting (XSS) vulnerability in the Node Invite module before 6.x-2.5 for Drupal allows remote authenticated... |
| CVE-2015-3371 | — | — | 1.2% | Apr 21, 2015 | Open redirect vulnerability in the Node Invite module before 6.x-2.5 for Drupal allows remote attackers to redirect user... |
| CVE-2015-3370 | — | — | 0.7% | Apr 21, 2015 | Cross-site request forgery (CSRF) vulnerability in the Node Invite module before 6.x-2.5 for Drupal allows remote attack... |
| CVE-2015-3369 | — | — | 1.0% | Apr 21, 2015 | Cross-site scripting (XSS) vulnerability in the Taxonews module before 6.x-1.2 and 7.x-1.x before 7.x-1.1 for Drupal all... |
| CVE-2015-3368 | — | — | 1.0% | Apr 21, 2015 | Cross-site scripting (XSS) vulnerability in the administration user interface in the Classified Ads module before 6.x-3.... |
| CVE-2015-3367 | — | — | 0.7% | Apr 21, 2015 | Multiple cross-site request forgery (CSRF) vulnerabilities in the Patterns module before 7.x-2.2 for Drupal allow remote... |
| CVE-2015-3366 | — | — | 0.7% | Apr 21, 2015 | Cross-site request forgery (CSRF) vulnerability in the Alfresco module before 6.x-1.3 for Drupal allows remote attackers... |
| CVE-2015-3365 | — | — | 1.0% | Apr 21, 2015 | Cross-site scripting (XSS) vulnerability in the nodeauthor module for Drupal allows remote authenticated users to inject... |
| CVE-2015-3364 | — | — | 1.2% | Apr 21, 2015 | Cross-site scripting (XSS) vulnerability in the Content Analysis module before 6.x-1.7 for Drupal allows remote attacker... |
| CVE-2015-3363 | — | — | 0.7% | Apr 21, 2015 | Cross-site request forgery (CSRF) vulnerability in the Contact Form Fields module before 6.x-2.3 for Drupal allows remot... |
| CVE-2015-3362 | — | — | 1.0% | Apr 21, 2015 | Cross-site scripting (XSS) vulnerability in the Video module before 7.x-2.11 for Drupal, when using the video WYSIWYG pl... |
| CVE-2015-3361 | — | — | 1.1% | Apr 21, 2015 | Cross-site scripting (XSS) vulnerability in the Linkit module before 7.x-2.7 and 7.x-3.x before 7.x-3.3 for Drupal, when... |
| CVE-2015-3360 | — | — | 1.0% | Apr 21, 2015 | Cross-site scripting (XSS) vulnerability in the Term Merge module before 7.x-1.2 for Drupal allows remote authenticated ... |
| CVE-2015-3359 | — | — | 1.0% | Apr 21, 2015 | Multiple cross-site scripting (XSS) vulnerabilities in the Room Reservations module before 7.x-1.1 for Drupal allow remo... |
Check if your code is affected by 2015 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now