2016 CVE Vulnerabilities
10,647 CVEs published in 2016.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2016-10641 | — | — | 0.6% | Jun 4, 2018 | node-bsdiff-android downloads resources over HTTP, which leaves it vulnerable to MITM attacks. |
| CVE-2016-10640 | — | — | 1.8% | Jun 4, 2018 | node-thulac is a node binding for thulac. node-thulac downloads binary resources over HTTP, which leaves it vulnerable t... |
| CVE-2016-10639 | — | — | 1.8% | Jun 4, 2018 | redis-srvr is a npm wrapper for redis-server. redis-srvr downloads binary resources over HTTP, which leaves it vulnerabl... |
| CVE-2016-10638 | — | — | 1.7% | Jun 4, 2018 | js-given is a JavaScript frontend to jgiven. js-given downloads binary resources over HTTP, which leaves it vulnerable t... |
| CVE-2016-10637 | — | — | 1.8% | Jun 4, 2018 | haxe-dev is a cross-platform toolkit. haxe-dev downloads binary resources over HTTP, which leaves it vulnerable to MITM ... |
| CVE-2016-10636 | — | — | 1.8% | Jun 4, 2018 | grunt-ccompiler is a Closure Compiler Grunt Plugin. grunt-ccompiler downloads binary resources over HTTP, which leaves i... |
| CVE-2016-1000343 | — | — | 3.2% | Jun 4, 2018 | In the Bouncy Castle JCE Provider version 1.55 and earlier the DSA key pair generator generates a weak private key if us... |
| CVE-2016-1000342 | — | — | 1.8% | Jun 4, 2018 | In the Bouncy Castle JCE Provider version 1.55 and earlier ECDSA does not fully validate ASN.1 encoding of signature on ... |
| CVE-2016-1000341 | — | — | 2.6% | Jun 4, 2018 | In the Bouncy Castle JCE Provider version 1.55 and earlier DSA signature generation is vulnerable to timing attack. Wher... |
| CVE-2016-1000340 | — | — | 2.2% | Jun 4, 2018 | In the Bouncy Castle JCE Provider versions 1.51 to 1.55, a carry propagation bug was introduced in the implementation of... |
| CVE-2016-1000339 | — | — | 2.7% | Jun 4, 2018 | In the Bouncy Castle JCE Provider version 1.55 and earlier the primary engine class used for AES was AESFastEngine. Due ... |
| CVE-2016-10634 | — | — | 1.8% | Jun 1, 2018 | scala-standalone-bin is a Binary wrapper for ScalaJS. scala-standalone-bin downloads binary resources over HTTP, which l... |
| CVE-2016-10633 | — | — | 1.8% | Jun 1, 2018 | dwebp-bin is a dwebp node.js wrapper that convert WebP into PNG. dwebp-bin downloads binary resources over HTTP, which l... |
| CVE-2016-10632 | — | — | 1.8% | Jun 1, 2018 | apk-parser2 is a module which extracts Android Manifest info from an APK file. apk-parser2 downloads binary resources ov... |
| CVE-2016-10631 | — | — | 1.7% | Jun 1, 2018 | jvminstall is a module for downloading and unpacking jvm to local system. jvminstall downloads binary resources over HTT... |
| CVE-2016-10630 | — | — | 0.5% | Jun 1, 2018 | install-g-test downloads resources over HTTP, which leaves it vulnerable to MITM attacks. |
| CVE-2016-10629 | — | — | 1.7% | Jun 1, 2018 | nw-with-arm is a NW Installer including ARM-Build. nw-with-arm downloads binary resources over HTTP, which leaves it vul... |
| CVE-2016-10628 | — | — | 2.1% | Jun 1, 2018 | selenium-wrapper is a selenium server wrapper, including installation and chrome webdriver. selenium-wrapper downloads b... |
| CVE-2016-10626 | — | — | 1.7% | Jun 1, 2018 | mystem3 is a NodeJS wrapper for the Yandex MyStem 3. mystem3 downloads binary resources over HTTP, which leaves it vulne... |
| CVE-2016-10625 | — | — | 1.7% | Jun 1, 2018 | headless-browser-lite is a minimal npm installer for phantomjs and slimerjs with no external dependencies. headless-brow... |
| CVE-2016-10624 | — | — | 2.1% | Jun 1, 2018 | selenium-chromedriver is a simple utility for downloading the Selenium Webdriver for Google Chrome selenium-chromedriver... |
| CVE-2016-10623 | — | — | 1.8% | Jun 1, 2018 | macaca-chromedriver-zxa is a Node.js wrapper for the selenium chromedriver. macaca-chromedriver-zxa downloads binary res... |
| CVE-2016-10622 | — | — | 2.0% | Jun 1, 2018 | nodeschnaps is a NodeJS compatibility layer for Java (Rhino). nodeschnaps downloads binary resources over HTTP, which le... |
| CVE-2016-10621 | — | — | 1.8% | Jun 1, 2018 | fibjs is a runtime for javascript applictions built on google v8 JS. fibjs downloads binary resources over HTTP, which l... |
| CVE-2016-10620 | — | — | 1.7% | Jun 1, 2018 | atom-node-module-installer installs node modules for atom-shell applications. atom-node-module-installer binary resource... |
Check if your code is affected by 2016 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now