2016 CVE Vulnerabilities
10,647 CVEs published in 2016.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2016-7038 | — | — | 1.0% | Jan 20, 2017 | In Moodle 2.x and 3.x, web service tokens are not invalidated when the user password is changed or forced to be changed. |
| CVE-2016-5014 | — | — | 1.0% | Jan 20, 2017 | In Moodle 2.x and 3.x, an unenrolled user still receives event monitor notifications even though they can no longer acce... |
| CVE-2016-5013 | — | — | 0.9% | Jan 20, 2017 | In Moodle 2.x and 3.x, text injection can occur in email headers, potentially leading to outbound spam. |
| CVE-2016-5012 | — | — | 1.2% | Jan 20, 2017 | In Moodle 3.x, glossary search displays entries without checking user permissions to view them. |
| CVE-2016-10143 | — | — | 1.8% | Jan 20, 2017 | A vulnerability in Tiki Wiki CMS 15.2 could allow a remote attacker to read arbitrary files on a targeted system via a c... |
| CVE-2016-5725 | — | — | 24.1% | Jan 19, 2017 | Directory traversal vulnerability in JCraft JSch before 0.1.54 on Windows, when the mode is ChannelSftp.OVERWRITE, allow... |
| CVE-2016-9016 | — | — | 0.4% | Jan 19, 2017 | Firejail 0.9.38.4 allows local users to execute arbitrary commands outside of the sandbox via a crafted TIOCSTI ioctl ca... |
| CVE-2016-7794 | — | — | 3.5% | Jan 19, 2017 | sociomantic-tsunami git-hub before 0.10.3 allows remote attackers to execute arbitrary code via a crafted repository nam... |
| CVE-2016-7793 | — | — | 3.3% | Jan 19, 2017 | sociomantic-tsunami git-hub before 0.10.3 allows remote attackers to execute arbitrary code via a crafted repository URL... |
| CVE-2016-7545 | — | — | 0.4% | Jan 19, 2017 | SELinux policycoreutils allows local users to execute arbitrary commands outside of the sandbox via a crafted TIOCSTI io... |
| CVE-2016-7543 | — | — | 0.6% | Jan 19, 2017 | Bash before 4.4 allows local users to execute arbitrary commands with root privileges via crafted SHELLOPTS and PS4 envi... |
| CVE-2016-10075 | — | — | 0.4% | Jan 19, 2017 | The tqdm._version module in tqdm versions 4.4.1 and 4.10 allows local users to execute arbitrary code via a crafted repo... |
| CVE-2016-9650 | — | — | 1.1% | Jan 19, 2017 | Blink in Google Chrome prior to 55.0.2883.75 for Mac, Windows and Linux, and 55.0.2883.84 for Android incorrectly handle... |
| CVE-2016-5226 | — | — | 0.7% | Jan 19, 2017 | Blink in Google Chrome prior to 55.0.2883.75 for Linux, Windows and Mac executed javascript: URLs entered in the URL bar... |
| CVE-2016-5225 | — | — | 1.1% | Jan 19, 2017 | Blink in Google Chrome prior to 55.0.2883.75 for Mac, Windows and Linux, and 55.0.2883.84 for Android incorrectly handle... |
| CVE-2016-5224 | — | — | 1.1% | Jan 19, 2017 | A timing attack on denormalized floating point arithmetic in SVG filters in Blink in Google Chrome prior to 55.0.2883.75... |
| CVE-2016-5223 | — | — | 1.0% | Jan 19, 2017 | Integer overflow in PDFium in Google Chrome prior to 55.0.2883.75 for Mac, Windows and Linux, and 55.0.2883.84 for Andro... |
| CVE-2016-5222 | — | — | 1.1% | Jan 19, 2017 | Incorrect handling of invalid URLs in Google Chrome prior to 55.0.2883.75 for Mac, Windows and Linux, and 55.0.2883.84 f... |
| CVE-2016-5221 | — | — | 1.1% | Jan 19, 2017 | Type confusion in libGLESv2 in ANGLE in Google Chrome prior to 55.0.2883.75 for Mac, Windows and Linux, and 55.0.2883.84... |
| CVE-2016-5220 | — | — | 1.1% | Jan 19, 2017 | PDFium in Google Chrome prior to 55.0.2883.75 for Mac, Windows and Linux, and 55.0.2883.84 for Android incorrectly handl... |
| CVE-2016-5219 | — | — | 1.0% | Jan 19, 2017 | A heap use after free in V8 in Google Chrome prior to 55.0.2883.75 for Mac, Windows and Linux, and 55.0.2883.84 for Andr... |
| CVE-2016-5218 | — | — | 1.2% | Jan 19, 2017 | The extensions API in Google Chrome prior to 55.0.2883.75 for Mac, Windows and Linux, and 55.0.2883.84 for Android incor... |
| CVE-2016-5217 | — | — | 1.2% | Jan 19, 2017 | The extensions API in Google Chrome prior to 55.0.2883.75 for Mac, Windows and Linux, and 55.0.2883.84 for Android incor... |
| CVE-2016-5216 | — | — | 0.8% | Jan 19, 2017 | A use after free in PDFium in Google Chrome prior to 55.0.2883.75 for Mac, Windows and Linux, and 55.0.2883.84 for Andro... |
| CVE-2016-5215 | — | — | 1.0% | Jan 19, 2017 | A use after free in webaudio in Google Chrome prior to 55.0.2883.75 for Mac, Windows and Linux, and 55.0.2883.84 for And... |
Check if your code is affected by 2016 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now