2017 CVE Vulnerabilities
17,104 CVEs published in 2017.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2017-5071 | MEDIUM | 6.3 | 2.2% | Oct 27, 2017 | Insufficient validation of untrusted input in V8 in Google Chrome prior to 59.0.3071.86 for Linux, Windows and Mac, and ... |
| CVE-2017-5069 | MEDIUM | 6.1 | 1.2% | Oct 27, 2017 | Incorrect MIME type of XSS-Protection reports in Blink in Google Chrome prior to 58.0.3029.81 for Linux, Windows, and Ma... |
| CVE-2017-5067 | MEDIUM | 6.5 | 1.4% | Oct 27, 2017 | An insufficient watchdog timer in navigation in Google Chrome prior to 58.0.3029.81 for Linux, Windows, and Mac allowed ... |
| CVE-2017-5066 | MEDIUM | 6.5 | 0.7% | Oct 27, 2017 | Insufficient consistency checks in signature handling in the networking stack in Google Chrome prior to 58.0.3029.81 for... |
| CVE-2017-5065 | MEDIUM | 4.7 | 1.2% | Oct 27, 2017 | Lack of an appropriate action on page navigation in Blink in Google Chrome prior to 58.0.3029.81 for Windows and Mac all... |
| CVE-2017-5061 | MEDIUM | 5.3 | 1.2% | Oct 27, 2017 | A race condition in navigation in Google Chrome prior to 58.0.3029.81 for Linux, Windows, and Mac allowed a remote attac... |
| CVE-2017-5060 | MEDIUM | 6.5 | 1.3% | Oct 27, 2017 | Insufficient Policy Enforcement in Omnibox in Google Chrome prior to 58.0.3029.81 for Mac, Windows, and Linux, and 58.0.... |
| CVE-2017-15906 | MEDIUM | 5.3 | 3.4% | Oct 26, 2017 | The process_open function in sftp-server.c in OpenSSH before 7.6 does not properly prevent write operations in readonly ... |
| CVE-2017-15881 | MEDIUM | 4.8 | 1.2% | Oct 24, 2017 | Cross-Site Scripting vulnerability in KeystoneJS before 4.0.0-beta.7 allows remote authenticated administrators to injec... |
| CVE-2017-15874 | MEDIUM | 5 | 0.9% | Oct 24, 2017 | archival/libarchive/decompress_unlzma.c in BusyBox 1.27.2 has an Integer Underflow that leads to a read access violation... |
| CVE-2017-15873 | MEDIUM | 5.5 | 1.3% | Oct 24, 2017 | The get_next_block function in archival/libarchive/decompress_bunzip2.c in BusyBox 1.27.2 has an Integer Overflow that m... |
| CVE-2017-9947 | MEDIUM | 5.3 | 7.3% | Oct 23, 2017 | A vulnerability has been identified in Siemens APOGEE PXC and TALON TC BACnet Automation Controllers in all versions <V3... |
| CVE-2017-10384 | MEDIUM | 6.5 | 3.1% | Oct 19, 2017 | Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: DDL). Supported versions that are aff... |
| CVE-2017-10379 | MEDIUM | 6.5 | 2.3% | Oct 19, 2017 | Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Client programs). Supported versions that are... |
| CVE-2017-10378 | MEDIUM | 6.5 | 3.3% | Oct 19, 2017 | Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Optimizer). Supported versions that a... |
| CVE-2017-10359 | MEDIUM | 5.4 | 1.5% | Oct 19, 2017 | Vulnerability in the Oracle Hyperion BI+ component of Oracle Hyperion (subcomponent: UI and Visualization). The supporte... |
| CVE-2017-10357 | MEDIUM | 5.3 | 3.3% | Oct 19, 2017 | Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: Serialization). Supported vers... |
| CVE-2017-10356 | MEDIUM | 6.2 | 0.8% | Oct 19, 2017 | Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: Security). Supported ... |
| CVE-2017-10355 | MEDIUM | 5.3 | 16.2% | Oct 19, 2017 | Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: Networking). Supporte... |
| CVE-2017-10350 | MEDIUM | 5.3 | 3.3% | Oct 19, 2017 | Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: JAX-WS). Supported versions th... |
| CVE-2017-10349 | MEDIUM | 5.3 | 3.3% | Oct 19, 2017 | Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: JAXP). Supported versions that... |
| CVE-2017-10348 | MEDIUM | 5.3 | 3.3% | Oct 19, 2017 | Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: Libraries). Supported versions... |
| CVE-2017-10347 | MEDIUM | 5.3 | 3.1% | Oct 19, 2017 | Vulnerability in the Java SE, JRockit component of Oracle Java SE (subcomponent: Serialization). Supported versions that... |
| CVE-2017-10320 | MEDIUM | 4.9 | 1.9% | Oct 19, 2017 | Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: InnoDB). Supported versions that are ... |
| CVE-2017-10295 | MEDIUM | 4 | 2.2% | Oct 19, 2017 | Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: Networking). Supporte... |
Check if your code is affected by 2017 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now