2017 CVE Vulnerabilities
17,104 CVEs published in 2017.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2017-18519 | — | — | 0.9% | Aug 20, 2019 | The customer-area plugin before 7.4.3 for WordPress has XSS via admin pages. |
| CVE-2017-18518 | — | — | 1.6% | Aug 20, 2019 | The bws-smtp plugin before 1.1.0 for WordPress has multiple XSS issues. |
| CVE-2017-18569 | — | — | 0.7% | Aug 20, 2019 | The my-wp-translate plugin before 1.0.4 for WordPress has CSRF. |
| CVE-2017-18568 | — | — | 0.9% | Aug 20, 2019 | The my-wp-translate plugin before 1.0.4 for WordPress has XSS. |
| CVE-2017-18567 | — | — | 0.9% | Aug 20, 2019 | The wp-all-import plugin before 3.4.6 for WordPress has XSS. |
| CVE-2017-18520 | — | — | 0.9% | Aug 20, 2019 | The democracy-poll plugin before 5.4 for WordPress has XSS via update_l10n in admin/class.DemAdminInit.php. |
| CVE-2017-18517 | — | — | 1.6% | Aug 20, 2019 | The bws-pinterest plugin before 1.0.5 for WordPress has multiple XSS issues. |
| CVE-2017-18552 | — | — | 0.4% | Aug 19, 2019 | An issue was discovered in net/rds/af_rds.c in the Linux kernel before 4.11. There is an out of bounds write and read in... |
| CVE-2017-18551 | MEDIUM | 6.7 | 0.4% | Aug 19, 2019 | An issue was discovered in drivers/i2c/i2c-core-smbus.c in the Linux kernel before 4.14.15. There is an out of bounds wr... |
| CVE-2017-18550 | — | — | 0.5% | Aug 19, 2019 | An issue was discovered in drivers/scsi/aacraid/commctrl.c in the Linux kernel before 4.13. There is potential exposure ... |
| CVE-2017-18549 | — | — | 0.6% | Aug 19, 2019 | An issue was discovered in drivers/scsi/aacraid/commctrl.c in the Linux kernel before 4.13. There is potential exposure ... |
| CVE-2017-18547 | — | — | 0.6% | Aug 16, 2019 | The nelio-ab-testing plugin before 4.6.4 for WordPress has CSRF in experiment forms. |
| CVE-2017-18546 | — | — | 0.6% | Aug 16, 2019 | The jayj-quicktag plugin before 1.3.2 for WordPress has CSRF. |
| CVE-2017-18545 | — | — | 1.3% | Aug 16, 2019 | The invite-anyone plugin before 1.3.16 for WordPress has incorrect escaping of untrusted Dashboard and front-end input. |
| CVE-2017-18544 | — | — | 0.6% | Aug 16, 2019 | The invite-anyone plugin before 1.3.16 for WordPress has admin-panel CSRF. |
| CVE-2017-18543 | — | — | 1.8% | Aug 16, 2019 | The invite-anyone plugin before 1.3.16 for WordPress has incorrect access control for email-based invitations. |
| CVE-2017-18542 | — | — | 1.4% | Aug 16, 2019 | The zendesk-help-center plugin before 1.0.5 for WordPress has multiple XSS issues. |
| CVE-2017-18541 | — | — | 0.9% | Aug 16, 2019 | The xo-security plugin before 1.5.3 for WordPress has XSS. |
| CVE-2017-18548 | — | — | 1.8% | Aug 16, 2019 | The note-press plugin before 0.1.2 for WordPress has SQL injection. |
| CVE-2017-14232 | — | — | 1.2% | Aug 15, 2019 | The read_chunk function in flif-dec.cpp in Free Lossless Image Format (FLIF) 0.3 allows remote attackers to cause a deni... |
| CVE-2017-18513 | — | — | 0.6% | Aug 14, 2019 | The responsive-menu plugin before 3.1.4 for WordPress has no CSRF protection mechanism for the admin interface. |
| CVE-2017-18512 | — | — | 0.6% | Aug 14, 2019 | The newsletter-by-supsystic plugin before 1.1.8 for WordPress has CSRF. |
| CVE-2017-18511 | — | — | 0.6% | Aug 14, 2019 | The custom-sidebars plugin before 3.0.8.1 for WordPress has CSRF. |
| CVE-2017-18510 | — | — | 0.6% | Aug 14, 2019 | The custom-sidebars plugin before 3.1.0 for WordPress has CSRF related to set location, import actions, and export actio... |
| CVE-2017-18514 | CRITICAL | 9.8 | 1.7% | Aug 14, 2019 | The simple-login-log plugin before 1.1.2 for WordPress has SQL injection. |
Check if your code is affected by 2017 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now