2016 CVE Vulnerabilities
10,647 CVEs published in 2016.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2016-10567 | — | — | 1.7% | May 29, 2018 | product-monitor is a HTML/JavaScript template for monitoring a product by encouraging product developers to gather all t... |
| CVE-2016-10566 | — | — | 1.7% | May 29, 2018 | install-nw is a module which quickly and robustly installs and caches NW.js. install-nw versions below 1.1.5 download bi... |
| CVE-2016-10559 | — | — | 1.8% | May 29, 2018 | selenium-download downloads the latest versions of the selenium standalone server and the chromedriver. selenium-downloa... |
| CVE-2016-10558 | — | — | 1.8% | May 29, 2018 | aerospike is an Aerospike add-on module for Node.js. aerospike versions below 2.4.2 download binary resources over HTTP,... |
| CVE-2016-10556 | — | — | 1.3% | May 29, 2018 | sequelize is an Object-relational mapping, or a middleman to convert things from Postgres, MySQL, MariaDB, SQLite and Mi... |
| CVE-2016-10551 | — | — | 1.8% | May 29, 2018 | waterline-sequel is a module that helps generate SQL statements for Waterline apps Any user input that goes into Waterli... |
| CVE-2016-10525 | — | — | 2.5% | May 29, 2018 | When attempting to allow authentication mode `try` in hapi, hapi-auth-jwt2 version 5.1.1 introduced an issue whereby peo... |
| CVE-2016-7076 | MEDIUM | 6.4 | 0.5% | May 29, 2018 | sudo before version 1.8.18p1 is vulnerable to a bypass in the sudo noexec restriction if application run via sudo execut... |
| CVE-2016-8656 | HIGH | 7 | 0.4% | May 22, 2018 | Jboss jbossas before versions 5.2.0-23, 6.4.13, 7.0.5 is vulnerable to an unsafe file handling in the jboss init script ... |
| CVE-2016-8627 | MEDIUM | 4.3 | 2.7% | May 11, 2018 | admin-cli before versions 3.0.0.alpha25, 2.2.1.cr2 is vulnerable to an EAP feature to download server log files that all... |
| CVE-2016-9335 | — | — | 1.6% | May 9, 2018 | A hard-coded cryptographic key vulnerability was identified in Red Lion Controls Sixnet-Managed Industrial Switches runn... |
| CVE-2016-10722 | CRITICAL | 9.8 | 2.7% | May 2, 2018 | partclone.fat in Partclone before 0.2.88 is prone to a heap-based buffer overflow vulnerability due to insufficient vali... |
| CVE-2016-10721 | — | — | 2.2% | May 2, 2018 | partclone.restore in Partclone 0.2.87 is prone to a heap-based buffer overflow vulnerability due to insufficient validat... |
| CVE-2016-10036 | — | — | 26.4% | May 1, 2018 | Unrestricted file upload vulnerability in ui/artifact/upload in JFrog Artifactory before 4.16 allows remote attackers to... |
| CVE-2016-9602 | HIGH | 7.6 | 3.8% | Apr 26, 2018 | Qemu before version 2.9 is vulnerable to an improper link following when built with the VirtFS. A privileged user inside... |
| CVE-2016-9590 | MEDIUM | 6.5 | 1.2% | Apr 26, 2018 | puppet-swift before versions 8.2.1, 9.4.4 is vulnerable to an information-disclosure in Red Hat OpenStack Platform direc... |
| CVE-2016-9043 | HIGH | 7.8 | 2.8% | Apr 24, 2018 | An out of bound write vulnerability exists in the EMF parsing functionality of CorelDRAW X8 (CdrGfx - Corel Graphics Eng... |
| CVE-2016-9038 | HIGH | 7.8 | 0.3% | Apr 24, 2018 | An exploitable double fetch vulnerability exists in the SboxDrv.sys driver functionality of Invincea-X 6.1.3-24058. A sp... |
| CVE-2016-8732 | HIGH | 7.8 | 0.6% | Apr 24, 2018 | Multiple security flaws exists in InvProtectDrv.sys which is a part of Invincea Dell Protected Workspace 5.1.1-22303. We... |
| CVE-2016-8730 | HIGH | 7.8 | 2.2% | Apr 24, 2018 | An of bound write / memory corruption vulnerability exists in the GIF parsing functionality of Core PHOTO-PAINT X8 18.1.... |
| CVE-2016-8729 | HIGH | 7.8 | 1.7% | Apr 24, 2018 | An exploitable memory corruption vulnerability exists in the JBIG2 parser of Artifex MuPDF 1.9. A specially crafted PDF ... |
| CVE-2016-8728 | HIGH | 7.8 | 1.9% | Apr 24, 2018 | An exploitable heap out of bounds write vulnerability exists in the Fitz graphical library part of the MuPDF renderer. A... |
| CVE-2016-8384 | HIGH | 8.8 | 1.5% | Apr 24, 2018 | An exploitable heap corruption vulnerability exists in the DHFSummary functionality of AntennaHouse DMC HTMLFilter. |
| CVE-2016-8383 | HIGH | 8.8 | 2.2% | Apr 24, 2018 | An exploitable heap corruption vulnerability exists in the Doc_GetFontTable functionality of AntennaHouse DMC HTMLFilter... |
| CVE-2016-8382 | HIGH | 8.3 | 2.1% | Apr 24, 2018 | An exploitable heap corruption vulnerability exists in the Doc_SetSummary functionality of AntennaHouse DMC HTMLFilter. ... |
Check if your code is affected by 2016 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now