2016 CVE Vulnerabilities

10,648 CVEs published in 2016.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2016-10915——The popup-by-supsystic plugin before 1.7.9 for WordPress has CSRF.
CVE-2016-10914——The add-from-server plugin before 3.3.2 for WordPress has CSRF for importing a large file.
CVE-2016-10913——The wp-latest-posts plugin before 3.7.5 for WordPress has XSS.
CVE-2016-10907——An issue was discovered in drivers/iio/dac/ad5755.c in the Linux kernel before 4.8.6. There is an out of bounds write in...
CVE-2016-10906——An issue was discovered in drivers/net/ethernet/arc/emac_main.c in the Linux kernel before 4.5. A use-after-free is caus...
CVE-2016-10904——The olimometer plugin before 2.57 for WordPress has SQL injection.
CVE-2016-10888——The all-in-one-wp-security-and-firewall plugin before 4.0.7 for WordPress has multiple SQL injection issues.
CVE-2016-10887——The all-in-one-wp-security-and-firewall plugin before 4.0.9 for WordPress has multiple SQL injection issues.
CVE-2016-10886——The wp-editor plugin before 1.2.6 for WordPress has incorrect permissions.
CVE-2016-10885——The wp-editor plugin before 1.2.6 for WordPress has CSRF.
CVE-2016-10883——The simple-add-pages-or-posts plugin before 1.7 for WordPress has CSRF for deleting users.
CVE-2016-10882——The google-document-embedder plugin before 2.6.2 for WordPress has CSRF.
CVE-2016-10881——The google-document-embedder plugin before 2.6.2 for WordPress has XSS.
CVE-2016-10880——The google-document-embedder plugin before 2.6.1 for WordPress has XSS.
CVE-2016-10889——The nextgen-gallery plugin before 2.1.57 for WordPress has SQL injection via a gallery name.
CVE-2016-10866——The all-in-one-wp-security-and-firewall plugin before 4.2.0 for WordPress has multiple XSS issues.
CVE-2016-10871——The mailchimp-for-wp plugin before 4.0.11 for WordPress has XSS on the integration settings page.
CVE-2016-10870——The google-language-translator plugin before 5.0.06 for WordPress has XSS.
CVE-2016-10869——The contact-form-plugin plugin before 4.0.2 for WordPress has XSS.
CVE-2016-10868——The all-in-one-wp-security-and-firewall plugin before 4.0.5 for WordPress has XSS in the blacklist, file system, and fil...
CVE-2016-10879——The wp-live-chat-support plugin before 6.2.02 for WordPress has XSS.
CVE-2016-10877——The wp-editor plugin before 1.2.6.3 for WordPress has multiple XSS issues.
CVE-2016-10876——The wp-database-backup plugin before 4.3.1 for WordPress has CSRF.
CVE-2016-10865——The Lightbox Plus Colorbox plugin through 2.7.2 for WordPress has cross-site request forgery (CSRF) via wp-admin/admin.p...
CVE-2016-10863——Edimax Wi-Fi Extender devices allow goform/formwlencryptvxd CSRF with resultant PSK key disclosure.

Check if your code is affected by 2016 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now