2017 CVE Vulnerabilities

17,104 CVEs published in 2017.

CVE IDSeverityCVSSDescription
CVE-2017-18515The wp-statistics plugin before 12.0.8 for WordPress has SQL injection.
CVE-2017-18488The Backup Guard plugin before 1.1.47 for WordPress has multiple XSS issues.
CVE-2017-18487The adsense-plugin (aka Google AdSense) plugin before 1.44 for WordPress has multiple XSS issues.
CVE-2017-18507The wp-live-chat-support plugin before 7.1.05 for WordPress has XSS.
CVE-2017-18498The simple-job-board plugin before 2.4.4 for WordPress has reflected XSS via keyword search.
CVE-2017-18497The liveforms plugin before 3.4.0 for WordPress has XSS.
CVE-2017-18496The htaccess plugin before 1.7.6 for WordPress has multiple XSS issues.
CVE-2017-18495The gravity-forms-sms-notifications plugin before 2.4.0 for WordPress has XSS.
CVE-2017-18494The custom-search-plugin plugin before 1.36 for WordPress has multiple XSS issues.
CVE-2017-18493The custom-admin-page plugin before 0.1.2 for WordPress has multiple XSS issues.
CVE-2017-18492The contact-form-to-db plugin before 1.5.7 for WordPress has multiple XSS issues.
CVE-2017-18491The contact-form-plugin plugin before 4.0.6 for WordPress has multiple XSS issues.
CVE-2017-18490The contact-form-multi plugin before 1.2.1 for WordPress has multiple XSS issues.
CVE-2017-18489The contact-form-7-sms-addon plugin before 2.4.0 for WordPress has XSS.
CVE-2017-18509HIGH7.8An issue was discovered in net/ipv6/ip6mr.c in the Linux kernel before 4.11. By setting a specific socket option, an att...
CVE-2017-18505The twitter-plugin plugin before 2.55 for WordPress has XSS.
CVE-2017-18504The twitter-cards-meta plugin before 2.5.0 for WordPress has CSRF.
CVE-2017-18503The twitter-cards-meta plugin before 2.5.0 for WordPress has XSS.
CVE-2017-18502The subscriber plugin before 1.3.5 for WordPress has multiple XSS issues.
CVE-2017-18501The social-login-bws plugin before 0.2 for WordPress has multiple XSS issues.
CVE-2017-18500The social-buttons-pack plugin before 1.1.1 for WordPress has multiple XSS issues.
CVE-2017-18499MEDIUM6.1The simple-membership plugin before 3.5.7 for WordPress has XSS.
CVE-2017-18508MEDIUM6.1The wp-live-chat-support plugin before 7.1.03 for WordPress has XSS.
CVE-2017-18506The woocommerce-pdf-invoices-packing-slips plugin before 2.0.13 for WordPress has XSS via the tab or section variable on...
CVE-2017-18486Jitbit Helpdesk before 9.0.3 allows remote attackers to escalate privileges because of mishandling of the User/AutoLogin...

Check if your code is affected by 2017 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now