2016 CVE Vulnerabilities

10,647 CVEs published in 2016.

CVE IDSeverityCVSSDescription
CVE-2016-5415Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n...
CVE-2016-5413Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n...
CVE-2016-4991CRITICAL9.8Input passed to the Pdf() function is shell escaped and passed to child_process.exec() during PDF rendering. However, th...
CVE-2016-4458Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n...
CVE-2016-4452Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n...
CVE-2016-4427HIGH7.5In zulip before 1.3.12, deactivated users could access messages if SSO was enabled.
CVE-2016-4426MEDIUM4.3In zulip before 1.3.12, bot API keys were accessible to other users in the same realm.
CVE-2016-3730Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n...
CVE-2016-3709MEDIUM6.1Possible cross-site scripting vulnerability in libxml after commit 960f0e2.
CVE-2016-3701Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n...
CVE-2016-3700Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n...
CVE-2016-3692Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n...
CVE-2016-2122Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n...
CVE-2016-2101Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n...
CVE-2016-0796HIGH7.5WordPress Plugin mb.miniAudioPlayer-an HTML5 audio player for your mp3 files is prone to multiple vulnerabilities, inclu...
CVE-2016-0786Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n...
CVE-2016-2139MEDIUM6.4In kippo-graph before version 1.5.1, there is a cross-site scripting vulnerability in $file_link in class/KippoInput.cla...
CVE-2016-2138MEDIUM6.4In kippo-graph before version 1.5.1, there is a cross-site scripting vulnerability in xss_clean() in class/KippoInput.cl...
CVE-2016-15004CRITICAL9.8A vulnerability was found in InfiniteWP Client Plugin 1.5.1.3/1.6.0. It has been declared as critical. Affected by this ...
CVE-2016-15003HIGH7.8A vulnerability has been found in FileZilla Client 3.17.0.0 and classified as problematic. This vulnerability affects un...
CVE-2016-15002HIGH8.8A vulnerability, which was classified as critical, was found in MONyog Ultimate 6.63. This affects an unknown part of th...
CVE-2016-20014CRITICAL9.8In pam_tacplus.c in pam_tacplus before 1.4.1, pam_sm_acct_mgmt does not zero out the arep data structure.
CVE-2016-1239CRITICAL9.8duck before 0.10 did not properly handle loading of untrusted code from the current directory.
CVE-2016-20013HIGH7.5sha256crypt and sha512crypt through 0.6 allow attackers to cause a denial of service (CPU consumption) because the algor...
CVE-2016-2124MEDIUM5.9A flaw was found in the way samba implemented SMB1 authentication. An attacker could use this flaw to retrieve the plain...

Check if your code is affected by 2016 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now