2016 CVE Vulnerabilities

10,647 CVEs published in 2016.

CVE IDSeverityCVSSDescription
CVE-2016-10663HIGH8.1wixtoolset is a Node module wrapper around the wixtoolset binaries wixtoolset downloads binary resources over HTTP, whic...
CVE-2016-10662tomita is a node wrapper for Yandex Tomita Parser tomita downloads binary resources over HTTP, which leaves it vulnerabl...
CVE-2016-10661phantomjs-cheniu is a Headless WebKit with JS API phantomjs-cheniu downloads binary resources over HTTP, which leaves it...
CVE-2016-10660fis-parser-sass-bin a plugin for fis to compile sass using node-sass-binaries. fis-parser-sass-bin downloads binary reso...
CVE-2016-10657co-cli-installer downloads the co-cli module as part of the install process, but does so over HTTP, which leaves it vuln...
CVE-2016-10656qbs is a build tool that helps simplify the build process for developing projects across multiple platforms. qbs downloa...
CVE-2016-10655The clang-extra module installs LLVM's clang-extra tools. clang-extra downloads binary resources over HTTP, which leaves...
CVE-2016-10654sfml downloads resources over HTTP, which leaves it vulnerable to MITM attacks.
CVE-2016-10653xd-testing is a testing library for cross-device (XD) web applications. xd-testing downloads binary resources over HTTP,...
CVE-2016-10652prebuild-lwip is a module for comprehensive, fast, and simple image processing and manipulation. prebuild-lwip downloads...
CVE-2016-10651webdriver-launcher is a Node.js Selenium Webdriver Launcher. webdriver-launcher downloads binary resources over HTTP, wh...
CVE-2016-10649frames-compiler downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks. It may be possible to ...
CVE-2016-10648marionette-socket-host is a marionette-js-runner host for sending actions over a socket. marionette-socket-host download...
CVE-2016-10647node-air-sdk is an AIR SDK for nodejs. node-air-sdk downloads binary resources over HTTP, which leaves it vulnerable to ...
CVE-2016-10646resourcehacker is a Node wrapper of Resource Hacker (windows executable resource editor). resourcehacker downloads binar...
CVE-2016-10645grunt-images is a grunt plugin for processing images. grunt-images downloads binary resources over HTTP, which leaves it...
CVE-2016-10644slimerjs-edge is a npm wrapper for installing the bleeding edge version of slimerjs. slimerjs-edge downloads binary reso...
CVE-2016-10643jstestdriver is a wrapper for Google's jstestdriver. jstestdriver downloads binary resources over HTTP, which leaves it ...
CVE-2016-10642cmake installs the cmake x86 linux binaries. cmake downloads binary resources over HTTP, which leaves it vulnerable to M...
CVE-2016-10641node-bsdiff-android downloads resources over HTTP, which leaves it vulnerable to MITM attacks.
CVE-2016-10640node-thulac is a node binding for thulac. node-thulac downloads binary resources over HTTP, which leaves it vulnerable t...
CVE-2016-10639redis-srvr is a npm wrapper for redis-server. redis-srvr downloads binary resources over HTTP, which leaves it vulnerabl...
CVE-2016-10638js-given is a JavaScript frontend to jgiven. js-given downloads binary resources over HTTP, which leaves it vulnerable t...
CVE-2016-10637haxe-dev is a cross-platform toolkit. haxe-dev downloads binary resources over HTTP, which leaves it vulnerable to MITM ...
CVE-2016-10636grunt-ccompiler is a Closure Compiler Grunt Plugin. grunt-ccompiler downloads binary resources over HTTP, which leaves i...

Check if your code is affected by 2016 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now