2016 CVE Vulnerabilities

10,647 CVEs published in 2016.

CVE IDSeverityCVSSDescription
CVE-2016-9433An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. w3m allows remote attackers to cause a denial...
CVE-2016-9432An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. w3m allows remote attackers to cause a denial...
CVE-2016-9431An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. Infinite recursion vulnerability in w3m allow...
CVE-2016-9430An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. w3m allows remote attackers to cause a denial...
CVE-2016-9429An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. Buffer overflow in the formUpdateBuffer funct...
CVE-2016-9428HIGH8.8An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. Heap-based buffer overflow in the addMultirow...
CVE-2016-9427CRITICAL9.8Integer overflow vulnerability in bdwgc before 2016-09-27 allows attackers to cause client of bdwgc denial of service (h...
CVE-2016-9426An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. Integer overflow vulnerability in the renderT...
CVE-2016-9425An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. Heap-based buffer overflow in the addMultirow...
CVE-2016-9424An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. w3m doesn't properly validate the value of ta...
CVE-2016-9423An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. Heap-based buffer overflow in w3m allows remo...
CVE-2016-9422An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. The feed_table_tag function in w3m doesn't pr...
CVE-2016-9866An issue was discovered in phpMyAdmin. When the arg_separator is different from its default & value, the CSRF token was ...
CVE-2016-9865An issue was discovered in phpMyAdmin. Due to a bug in serialized string parsing, it was possible to bypass the protecti...
CVE-2016-9864An issue was discovered in phpMyAdmin. With a crafted username or a table name, it was possible to inject SQL statements...
CVE-2016-9863An issue was discovered in phpMyAdmin. With a very large request to table partitioning function, it is possible to invok...
CVE-2016-9862An issue was discovered in phpMyAdmin. With a crafted login request it is possible to inject BBCode in the login page. A...
CVE-2016-9861An issue was discovered in phpMyAdmin. Due to the limitation in URL matching, it was possible to bypass the URL white-li...
CVE-2016-9860An issue was discovered in phpMyAdmin. An unauthenticated user can execute a denial of service attack when phpMyAdmin is...
CVE-2016-9859An issue was discovered in phpMyAdmin. With a crafted request parameter value it is possible to initiate a denial of ser...
CVE-2016-9858An issue was discovered in phpMyAdmin. With a crafted request parameter value it is possible to initiate a denial of ser...
CVE-2016-9857An issue was discovered in phpMyAdmin. XSS is possible because of a weakness in a regular expression used in some JavaSc...
CVE-2016-9856An XSS issue was discovered in phpMyAdmin because of an improper fix for CVE-2016-2559 in PMASA-2016-10. This issue is r...
CVE-2016-9855An issue was discovered in phpMyAdmin. By calling some scripts that are part of phpMyAdmin in an unexpected way, it is p...
CVE-2016-9854An issue was discovered in phpMyAdmin. By calling some scripts that are part of phpMyAdmin in an unexpected way, it is p...

Check if your code is affected by 2016 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now