2017 CVE Vulnerabilities
17,105 CVEs published in 2017.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2017-1490 | — | — | 1.0% | Sep 14, 2017 | An unspecified vulnerability in the Lifecycle Query Engine of Jazz Reporting Service 6.0 through 6.0.4 could disclose hi... |
| CVE-2017-1002151 | HIGH | 7.5 | 1.1% | Sep 14, 2017 | Pagure 3.3.0 and earlier is vulnerable to loss of confidentially due to improper authorization |
| CVE-2017-1002150 | — | — | 0.8% | Sep 14, 2017 | python-fedora 0.8.0 and lower is vulnerable to an open redirect resulting in loss of CSRF protection |
| CVE-2017-1002100 | — | — | 1.3% | Sep 14, 2017 | Default access permissions for Persistent Volumes (PVs) created by the Kubernetes Azure cloud provider in versions 1.6.0... |
| CVE-2017-1002028 | — | — | 2.0% | Sep 14, 2017 | Vulnerability in wordpress plugin wordpress-gallery-transformation v1.0, SQL injection is in ./wordpress-gallery-transfo... |
| CVE-2017-1002027 | — | — | 2.6% | Sep 14, 2017 | Vulnerability in wordpress plugin rk-responsive-contact-form v1.0, The variable $delid isn't sanitized before being pass... |
| CVE-2017-1002026 | — | — | 1.7% | Sep 14, 2017 | Vulnerability in wordpress plugin Event Expresso Free v3.1.37.11.L, The function edit_event_category does not sanitize u... |
| CVE-2017-1002025 | — | — | 1.7% | Sep 14, 2017 | Vulnerability in wordpress plugin add-edit-delete-listing-for-member-module v1.0, The plugin author does not sanitize us... |
| CVE-2017-1002024 | — | — | 1.3% | Sep 14, 2017 | Vulnerability in web application Kind Editor v4.1.12, kindeditor/php/upload_json.php does not check authentication befor... |
| CVE-2017-1002023 | — | — | 3.0% | Sep 14, 2017 | Vulnerability in wordpress plugin Easy Team Manager v1.3.2, The code does not sanitize id before making it part of an SQ... |
| CVE-2017-1002022 | — | — | 3.6% | Sep 14, 2017 | Vulnerability in wordpress plugin surveys v1.01.8, The code in questions.php does not sanitize the survey variable befor... |
| CVE-2017-1002021 | — | — | 3.6% | Sep 14, 2017 | Vulnerability in wordpress plugin surveys v1.01.8, The code in individual_responses.php does not sanitize the survey_id ... |
| CVE-2017-1002020 | — | — | 3.6% | Sep 14, 2017 | Vulnerability in wordpress plugin surveys v1.01.8, The code in survey_form.php does not sanitize the action variable bef... |
| CVE-2017-1002019 | — | — | 2.5% | Sep 14, 2017 | Vulnerability in wordpress plugin eventr v1.02.2, The edit.php form and event_form.php code do not sanitize input, this ... |
| CVE-2017-1002018 | — | — | 2.5% | Sep 14, 2017 | Vulnerability in wordpress plugin eventr v1.02.2, The edit.php form and attendees.php code do not sanitize input, this a... |
| CVE-2017-1002017 | — | — | 0.7% | Sep 14, 2017 | Vulnerability in wordpress plugin gift-certificate-creator v1.0, The code in gc-list.php doesn't sanitize user input to ... |
| CVE-2017-1002016 | CRITICAL | 9.8 | 2.6% | Sep 14, 2017 | Vulnerability in wordpress plugin flickr-picture-backup v0.7, The code in flickr-picture-download.php doesn't check to s... |
| CVE-2017-1002015 | — | — | 2.9% | Sep 14, 2017 | Vulnerability in wordpress plugin image-gallery-with-slideshow v1.5.2, Blind SQL Injection in image-gallery-with-slidesh... |
| CVE-2017-1002014 | — | — | 2.9% | Sep 14, 2017 | Vulnerability in wordpress plugin image-gallery-with-slideshow v1.5.2, Blind SQL Injection in image-gallery-with-slidesh... |
| CVE-2017-1002013 | — | — | 2.9% | Sep 14, 2017 | Vulnerability in wordpress plugin image-gallery-with-slideshow v1.5.2, Blind SQL Injection via imgid parameter in image-... |
| CVE-2017-1002012 | — | — | 3.4% | Sep 14, 2017 | Vulnerability in wordpress plugin image-gallery-with-slideshow v1.5.2, In image-gallery-with-slideshow/admin_setting.php... |
| CVE-2017-1002011 | — | — | 1.0% | Sep 14, 2017 | Vulnerability in wordpress plugin image-gallery-with-slideshow v1.5.2, There is a stored XSS vulnerability via the $valu... |
| CVE-2017-1002010 | — | — | 2.3% | Sep 14, 2017 | Vulnerability in wordpress plugin Membership Simplified v1.58, The code in membership-simplified-for-oap-members-only/up... |
| CVE-2017-1002009 | — | — | 2.3% | Sep 14, 2017 | Vulnerability in wordpress plugin Membership Simplified v1.58, The code in membership-simplified-for-oap-members-only/up... |
| CVE-2017-1002008 | CRITICAL | 9.8 | 16.9% | Sep 14, 2017 | Vulnerability in wordpress plugin membership-simplified-for-oap-members-only v1.58, The file download code located membe... |
Check if your code is affected by 2017 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now