2016 CVE Vulnerabilities

10,647 CVEs published in 2016.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2016-10595HIGH8.1jdf-sass is a fork from node-sass, jdf use only. jdf-sass downloads executable resources over HTTP, which leaves it vuln...
CVE-2016-10583HIGH8.1closure-utils is Utilities for Closure Library based projects. closure-utils downloads binary resources over HTTP, which...
CVE-2016-10560HIGH8.1galenframework-cli is the node wrapper for the Galen Framework. galenframework-cli below 2.3.1 download binary resources...
CVE-2016-10524HIGH8.2i18n-node-angular is a module used to interact between i18n and angular without using additional resources. A REST API e...
CVE-2016-10521HIGH7.5jshamcrest is vulnerable to regular expression denial of service (ReDoS) when certain types of user input is passed in t...
CVE-2016-10520HIGH7.5jadedown is vulnerable to regular expression denial of service (ReDoS) when certain types of user input is passed in.
CVE-2016-10680HIGH8.1adamvr-geoip-lite is a light weight native JavaScript implementation of GeoIP API from MaxMind adamvr-geoip-lite downloa...
CVE-2016-10658HIGH8.1native-opencv is the OpenCV library installed via npm native-opencv downloads binary resources over HTTP, which leaves i...
CVE-2016-8656HIGH7Jboss jbossas before versions 5.2.0-23, 6.4.13, 7.0.5 is vulnerable to an unsafe file handling in the jboss init script ...
CVE-2016-9602HIGH7.6Qemu before version 2.9 is vulnerable to an improper link following when built with the VirtFS. A privileged user inside...
CVE-2016-9043HIGH7.8An out of bound write vulnerability exists in the EMF parsing functionality of CorelDRAW X8 (CdrGfx - Corel Graphics Eng...
CVE-2016-9038HIGH7.8An exploitable double fetch vulnerability exists in the SboxDrv.sys driver functionality of Invincea-X 6.1.3-24058. A sp...
CVE-2016-8732HIGH7.8Multiple security flaws exists in InvProtectDrv.sys which is a part of Invincea Dell Protected Workspace 5.1.1-22303. We...
CVE-2016-8730HIGH7.8An of bound write / memory corruption vulnerability exists in the GIF parsing functionality of Core PHOTO-PAINT X8 18.1....
CVE-2016-8729HIGH7.8An exploitable memory corruption vulnerability exists in the JBIG2 parser of Artifex MuPDF 1.9. A specially crafted PDF ...
CVE-2016-8728HIGH7.8An exploitable heap out of bounds write vulnerability exists in the Fitz graphical library part of the MuPDF renderer. A...
CVE-2016-8384HIGH8.8An exploitable heap corruption vulnerability exists in the DHFSummary functionality of AntennaHouse DMC HTMLFilter.
CVE-2016-8383HIGH8.8An exploitable heap corruption vulnerability exists in the Doc_GetFontTable functionality of AntennaHouse DMC HTMLFilter...
CVE-2016-8382HIGH8.3An exploitable heap corruption vulnerability exists in the Doc_SetSummary functionality of AntennaHouse DMC HTMLFilter. ...
CVE-2016-9587HIGH8.1Ansible before versions 2.1.4, 2.2.1 is vulnerable to an improper input validation in Ansible's handling of data sent fr...
CVE-2016-9599HIGH7.1puppet-tripleo before versions 5.5.0, 6.2.0 is vulnerable to an access-control flaw in the IPtables rules management, wh...
CVE-2016-9952HIGH8.1The verify_certificate function in lib/vtls/schannel.c in libcurl 7.30.0 through 7.51.0, when built for Windows CE using...
CVE-2016-10708HIGH7.5sshd in OpenSSH before 7.4 allows remote attackers to cause a denial of service (NULL pointer dereference and daemon cra...
CVE-2016-10707HIGH7.5jQuery 3.0.0-rc.1 is vulnerable to Denial of Service (DoS) due to removing a logic that lowercased attribute names. Any ...
CVE-2016-6914HIGH7.8Ubiquiti UniFi Video before 3.8.0 for Windows uses weak permissions for the installation directory, which allows local u...

Check if your code is affected by 2016 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now