2016 CVE Vulnerabilities

10,647 CVEs published in 2016.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2016-1905The API server in Kubernetes does not properly check admission control, which allows remote authenticated users to acces...
CVE-2016-1505The filesystem storage backend in Radicale before 1.1 on Windows allows remote attackers to read or write to arbitrary f...
CVE-2016-2213The jpeg2000_decode_tile function in libavcodec/jpeg2000dec.c in FFmpeg before 2.8.6 allows remote attackers to cause a ...
CVE-2016-7028Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2016-0728. Reason: This candidate is a duplicate of...
CVE-2016-2199Multiple cross-site request forgery (CSRF) vulnerabilities in the Organizations and Remediation management page in Enter...
CVE-2016-2049examples/consumer/common.php in JanRain PHP OpenID library (aka php-openid) improperly checks the openid.realm parameter...
CVE-2016-1730WebSheet in Apple iOS before 9.2.1 allows remote attackers to read or write to cookies by operating a crafted captive po...
CVE-2016-1729Untrusted search path vulnerability in OSA Scripts in Apple OS X before 10.11.3 allows attackers to load arbitrary scrip...
CVE-2016-1728The Cascading Style Sheets (CSS) implementation in Apple iOS before 9.2.1 and Safari before 9.0.3 mishandles the "a:visi...
CVE-2016-1727WebKit, as used in Apple iOS before 9.2.1, Safari before 9.0.3, and tvOS before 9.1.1, allows remote attackers to execut...
CVE-2016-1726WebKit, as used in Apple iOS before 9.2.1 and Safari before 9.0.3, allows remote attackers to execute arbitrary code or ...
CVE-2016-1725WebKit, as used in Apple iOS before 9.2.1 and Safari before 9.0.3, allows remote attackers to execute arbitrary code or ...
CVE-2016-1724WebKit, as used in Apple iOS before 9.2.1, Safari before 9.0.3, and tvOS before 9.1.1, allows remote attackers to execut...
CVE-2016-1723WebKit, as used in Apple iOS before 9.2.1 and Safari before 9.0.3, allows remote attackers to execute arbitrary code or ...
CVE-2016-1722syslog in Apple iOS before 9.2.1, OS X before 10.11.3, and tvOS before 9.1.1 allows local users to gain privileges or ca...
CVE-2016-1721The kernel in Apple iOS before 9.2.1, OS X before 10.11.3, and tvOS before 9.1.1 allows local users to gain privileges o...
CVE-2016-1720IOKit in Apple iOS before 9.2.1, OS X before 10.11.3, and tvOS before 9.1.1 allows local users to gain privileges or cau...
CVE-2016-1719The IOHIDFamily API in Apple iOS before 9.2.1, OS X before 10.11.3, and tvOS before 9.1.1 allows local users to gain pri...
CVE-2016-1718The IOAcceleratorFamily2 interface in IOAcceleratorFamily in Apple OS X before 10.11.3 allows local users to gain privil...
CVE-2016-1717The Disk Images component in Apple iOS before 9.2.1, OS X before 10.11.3, and tvOS before 9.1.1 allows local users to ga...
CVE-2016-1716AppleGraphicsPowerManagement in Apple OS X before 10.11.3 allows local users to gain privileges or cause a denial of ser...
CVE-2016-1948Mozilla Firefox before 44.0 on Android does not ensure that HTTPS is used for a lightweight-theme installation, which al...
CVE-2016-1947Mozilla Firefox 43.x mishandles attempts to connect to the Application Reputation service, which makes it easier for rem...
CVE-2016-1946The MoofParser::Metadata function in binding/MoofParser.cpp in libstagefright in Mozilla Firefox before 44.0 does not li...
CVE-2016-1945The nsZipArchive function in Mozilla Firefox before 44.0 might allow remote attackers to cause a denial of service or po...

Check if your code is affected by 2016 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now