2018 CVE Vulnerabilities
17,817 CVEs published in 2018.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2018-1000422 | — | — | 0.8% | Jan 9, 2019 | An improper authorization vulnerability exists in Jenkins Crowd 2 Integration Plugin 2.0.0 and earlier in CrowdSecurityR... |
| CVE-2018-1000421 | — | — | 1.3% | Jan 9, 2019 | An improper authorization vulnerability exists in Jenkins Mesos Plugin 0.17.1 and earlier in MesosCloud.java that allows... |
| CVE-2018-1000420 | — | — | 1.4% | Jan 9, 2019 | An improper authorization vulnerability exists in Jenkins Mesos Plugin 0.17.1 and earlier in MesosCloud.java that allows... |
| CVE-2018-1000419 | — | — | 1.6% | Jan 9, 2019 | An improper authorization vulnerability exists in Jenkins HipChat Plugin 2.2.0 and earlier in HipChatNotifier.java that ... |
| CVE-2018-1000418 | — | — | 1.1% | Jan 9, 2019 | An improper authorization vulnerability exists in Jenkins HipChat Plugin 2.2.0 and earlier in HipChatNotifier.java that ... |
| CVE-2018-1000417 | — | — | 0.8% | Jan 9, 2019 | A cross-site request forgery vulnerability exists in Jenkins Email Extension Template Plugin 1.0 and earlier in ExtEmail... |
| CVE-2018-1000416 | — | — | 0.8% | Jan 9, 2019 | A reflected cross-site scripting vulnerability exists in Jenkins Job Config History Plugin 2.18 and earlier in all Jelly... |
| CVE-2018-1000415 | — | — | 0.6% | Jan 9, 2019 | A cross-site scripting vulnerability exists in Jenkins Rebuilder Plugin 1.28 and earlier in RebuildAction/BooleanParamet... |
| CVE-2018-1000414 | — | — | 0.8% | Jan 9, 2019 | A cross-site request forgery vulnerability exists in Jenkins Config File Provider Plugin 3.1 and earlier in ConfigFilesM... |
| CVE-2018-1000411 | — | — | 0.8% | Jan 9, 2019 | A cross-site request forgery vulnerability exists in Jenkins JUnit Plugin 1.25 and earlier in TestObject.java that allow... |
| CVE-2018-1000410 | — | — | 0.4% | Jan 9, 2019 | An information exposure vulnerability exists in Jenkins 2.145 and earlier, LTS 2.138.1 and earlier, and the Stapler fram... |
| CVE-2018-1000409 | — | — | 1.2% | Jan 9, 2019 | A session fixation vulnerability exists in Jenkins 2.145 and earlier, LTS 2.138.1 and earlier in core/src/main/java/huds... |
| CVE-2018-1000408 | — | — | 1.5% | Jan 9, 2019 | A denial of service vulnerability exists in Jenkins 2.145 and earlier, LTS 2.138.1 and earlier in core/src/main/java/hud... |
| CVE-2018-1000407 | — | — | 1.5% | Jan 9, 2019 | A cross-site scripting vulnerability exists in Jenkins 2.145 and earlier, LTS 2.138.1 and earlier in core/src/main/java/... |
| CVE-2018-1000406 | — | — | 4.0% | Jan 9, 2019 | A path traversal vulnerability exists in Jenkins 2.145 and earlier, LTS 2.138.1 and earlier in core/src/main/java/hudson... |
| CVE-2018-0705 | — | — | 2.1% | Jan 9, 2019 | Directory traversal vulnerability in Cybozu Dezie 8.0.2 to 8.1.2 allows remote attackers to read arbitrary files via HTT... |
| CVE-2018-0704 | — | — | 1.9% | Jan 9, 2019 | Directory traversal vulnerability in Cybozu Office 10.0.0 to 10.8.1 allows remote attackers to delete arbitrary files vi... |
| CVE-2018-0703 | — | — | 1.9% | Jan 9, 2019 | Directory traversal vulnerability in Cybozu Office 10.0.0 to 10.8.1 allows remote attackers to delete arbitrary files vi... |
| CVE-2018-0702 | — | — | 1.9% | Jan 9, 2019 | Directory traversal vulnerability in Cybozu Mailwise 5.0.0 to 5.4.5 allows remote attackers to delete arbitrary files vi... |
| CVE-2018-0698 | — | — | 0.6% | Jan 9, 2019 | Cross-site scripting vulnerability in GROWI v3.2.3 and earlier allows remote attackers to inject arbitrary web script or... |
| CVE-2018-0689 | — | — | 1.7% | Jan 9, 2019 | HTTP header injection vulnerability in SEIKO EPSON printers and scanners (DS-570W firmware versions released prior to 20... |
| CVE-2018-0688 | — | — | 1.0% | Jan 9, 2019 | Open redirect vulnerability in SEIKO EPSON printers and scanners (DS-570W firmware versions released prior to 2018 March... |
| CVE-2018-0678 | — | — | 1.1% | Jan 9, 2019 | Buffer overflow in BN-SDWBP3 firmware version 1.0.9 and earlier allows an attacker on the same network segment to execut... |
| CVE-2018-0677 | — | — | 0.6% | Jan 9, 2019 | BN-SDWBP3 firmware version 1.0.9 and earlier allows attacker with administrator rights on the same network segment to ex... |
| CVE-2018-0676 | — | — | 0.6% | Jan 9, 2019 | BN-SDWBP3 firmware version 1.0.9 and earlier allows an attacker on the same network segment to bypass authentication to ... |
Check if your code is affected by 2018 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now