2018 CVE Vulnerabilities
17,817 CVEs published in 2018.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2018-25081 | HIGH | 7.5 | 1.0% | Mar 9, 2023 | Bitwarden through 2023.2.1 offers password auto-fill within a cross-domain IFRAME element. NOTE: the vendor's position i... |
| CVE-2018-25079 | HIGH | 7.5 | 0.9% | Feb 4, 2023 | A vulnerability was found in Segmentio is-url up to 1.2.2. It has been rated as problematic. Affected by this issue is s... |
| CVE-2018-25078 | HIGH | 7.8 | 0.4% | Jan 26, 2023 | man-db before 2.8.5 on Gentoo allows local users (with access to the man user account) to gain root privileges because /... |
| CVE-2018-25077 | HIGH | 7.5 | 0.9% | Jan 18, 2023 | A vulnerability was found in melnaron mel-spintax. It has been rated as problematic. Affected by this issue is some unkn... |
| CVE-2018-25074 | HIGH | 7.5 | 0.9% | Jan 11, 2023 | A vulnerability was found in Prestaul skeemas and classified as problematic. This issue affects some unknown processing ... |
| CVE-2018-25067 | HIGH | 7.2 | 0.6% | Jan 6, 2023 | A vulnerability, which was classified as critical, was found in JoomGallery up to 3.3.3. This affects an unknown part of... |
| CVE-2018-25062 | HIGH | 7.5 | 0.9% | Jan 1, 2023 | A vulnerability classified as problematic has been found in flar2 ElementalX up to 6.x on Nexus 9. Affected is the funct... |
| CVE-2018-25061 | HIGH | 7.5 | 0.9% | Dec 31, 2022 | A vulnerability was found in rgb2hex up to 0.1.5. It has been rated as problematic. This issue affects some unknown proc... |
| CVE-2018-25060 | HIGH | 7.5 | 0.5% | Dec 30, 2022 | A vulnerability was found in Macaron csrf and classified as problematic. Affected by this issue is some unknown function... |
| CVE-2018-25049 | HIGH | 7.5 | 0.7% | Dec 27, 2022 | A vulnerability was found in email-existence. It has been rated as problematic. Affected by this issue is some unknown f... |
| CVE-2018-25044 | HIGH | 8.8 | 0.9% | Jun 17, 2022 | A vulnerability, which was classified as critical, has been found in uTorrent. This issue affects some unknown processin... |
| CVE-2018-25043 | HIGH | 8.8 | 1.1% | Jun 17, 2022 | A vulnerability classified as critical was found in uTorrent. This vulnerability affects unknown code of the component P... |
| CVE-2018-25042 | HIGH | 8.8 | 0.9% | Jun 17, 2022 | A vulnerability classified as critical has been found in uTorrent. This affects an unknown part. The manipulation leads ... |
| CVE-2018-25041 | HIGH | 8.8 | 1.0% | Jun 17, 2022 | A vulnerability was found in uTorrent. It has been rated as critical. Affected by this issue is some unknown functionali... |
| CVE-2018-25040 | HIGH | 8.8 | 0.8% | Jun 17, 2022 | A vulnerability was found in uTorrent Web. It has been declared as critical. Affected by this vulnerability is an unknow... |
| CVE-2018-18907 | HIGH | 7.5 | 0.7% | Jun 16, 2022 | An issue was discovered on D-Link DIR-850L 1.21WW devices. A partially completed WPA handshake is sufficient for obtaini... |
| CVE-2018-17240 | HIGH | 7.5 | 3.4% | Jun 10, 2022 | There is a memory dump vulnerability on Netwave IP camera devices at //proc/kcore that allows an unauthenticated attacke... |
| CVE-2018-25033 | HIGH | 8.1 | 1.0% | May 8, 2022 | ADMesh through 0.98.4 has a heap-based buffer over-read in stl_update_connects_remove_1 (called from stl_remove_degenera... |
| CVE-2018-25032 | HIGH | 7.5 | 52.1% | Mar 25, 2022 | zlib before 1.2.12 allows memory corruption when deflating (i.e., when compressing) if the input has many distant matche... |
| CVE-2018-25029 | HIGH | 8.1 | 0.6% | Feb 4, 2022 | The Z-Wave specification requires that S2 security can be downgraded to S0 or other less secure protocols, allowing an a... |
| CVE-2018-17875 | HIGH | 8.8 | 2.7% | Dec 28, 2021 | A remote code execution issue in the ping command on Poly Trio 8800 5.7.1.4145 devices allows remote authenticated users... |
| CVE-2018-25028 | HIGH | 7.5 | 1.1% | Dec 27, 2021 | An issue was discovered in the libpulse-binding crate before 1.2.1 for Rust. get_context can cause a use-after-free. |
| CVE-2018-25027 | HIGH | 7.5 | 1.3% | Dec 27, 2021 | An issue was discovered in the libpulse-binding crate before 1.2.1 for Rust. get_format_info can cause a use-after-free. |
| CVE-2018-25023 | HIGH | 7.5 | 1.4% | Dec 27, 2021 | An issue was discovered in the smallvec crate before 0.6.13 for Rust. It can create an uninitialized value of any type, ... |
| CVE-2018-4302 | HIGH | 7.8 | 0.9% | Dec 23, 2021 | A null pointer dereference was addressed with improved validation. This issue is fixed in macOS High Sierra 10.13, iClou... |
Check if your code is affected by 2018 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now