2018 CVE Vulnerabilities
17,817 CVEs published in 2018.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2018-6179 | — | — | 1.2% | Jan 9, 2019 | Insufficient enforcement of file access permission in the activeTab case in Extensions in Google Chrome prior to 68.0.34... |
| CVE-2018-6178 | — | — | 0.9% | Jan 9, 2019 | Eliding from the wrong side in an infobar in DevTools in Google Chrome prior to 68.0.3440.75 allowed an attacker who con... |
| CVE-2018-6175 | — | — | 1.4% | Jan 9, 2019 | Incorrect handling of confusable characters in URL Formatter in Google Chrome prior to 68.0.3440.75 allowed a remote att... |
| CVE-2018-6174 | — | — | 3.3% | Jan 9, 2019 | Integer overflows in Swiftshader in Google Chrome prior to 68.0.3440.75 potentially allowed a remote attacker to execute... |
| CVE-2018-6173 | — | — | 1.4% | Jan 9, 2019 | Incorrect handling of confusable characters in URL Formatter in Google Chrome prior to 68.0.3440.75 allowed a remote att... |
| CVE-2018-6172 | — | — | 1.4% | Jan 9, 2019 | Incorrect handling of confusable characters in URL Formatter in Google Chrome prior to 68.0.3440.75 allowed a remote att... |
| CVE-2018-6170 | — | — | 1.5% | Jan 9, 2019 | A bad cast in PDFium in Google Chrome prior to 68.0.3440.75 allowed a remote attacker to potentially exploit heap corrup... |
| CVE-2018-6169 | — | — | 1.4% | Jan 9, 2019 | Lack of timeout on extension install prompt in Extensions in Google Chrome prior to 68.0.3440.75 allowed a remote attack... |
| CVE-2018-6167 | — | — | 1.4% | Jan 9, 2019 | Incorrect handling of confusable characters in URL Formatter in Google Chrome prior to 68.0.3440.75 allowed a remote att... |
| CVE-2018-6166 | — | — | 1.5% | Jan 9, 2019 | Incorrect handling of confusable characters in URL Formatter in Google Chrome prior to 68.0.3440.75 allowed a remote att... |
| CVE-2018-6165 | — | — | 1.5% | Jan 9, 2019 | Incorrect handling of reloads in Navigation in Google Chrome prior to 68.0.3440.75 allowed a remote attacker to spoof th... |
| CVE-2018-6164 | — | — | 1.7% | Jan 9, 2019 | Insufficient origin checks for CSS content in Blink in Google Chrome prior to 68.0.3440.75 allowed a remote attacker to ... |
| CVE-2018-6163 | — | — | 1.4% | Jan 9, 2019 | Incorrect handling of confusable characters in URL Formatter in Google Chrome prior to 68.0.3440.75 allowed a remote att... |
| CVE-2018-6162 | — | — | 1.6% | Jan 9, 2019 | Improper deserialization in WebGL in Google Chrome on Mac prior to 68.0.3440.75 allowed a remote attacker to potentially... |
| CVE-2018-6160 | — | — | 1.0% | Jan 9, 2019 | JavaScript alert handling in Prompts in Google Chrome prior to 68.0.3440.75 allowed a remote attacker to spoof the conte... |
| CVE-2018-6158 | — | — | 1.3% | Jan 9, 2019 | A race condition in Oilpan in Google Chrome prior to 68.0.3440.75 allowed a remote attacker to potentially exploit heap ... |
| CVE-2018-6153 | — | — | 1.6% | Jan 9, 2019 | A precision error in Skia in Google Chrome prior to 68.0.3440.75 allowed a remote attacker who had compromised the rende... |
| CVE-2018-6151 | — | — | 1.2% | Jan 9, 2019 | Bad cast in DevTools in Google Chrome on Win, Linux, Mac, Chrome OS prior to 66.0.3359.117 allowed an attacker who convi... |
| CVE-2018-6147 | — | — | 0.4% | Jan 9, 2019 | Lack of secure text entry mode in Browser UI in Google Chrome on Mac prior to 67.0.3396.62 allowed a local attacker to o... |
| CVE-2018-6144 | — | — | 1.5% | Jan 9, 2019 | Off-by-one error in PDFium in Google Chrome prior to 67.0.3396.62 allowed a remote attacker to perform an out of bounds ... |
| CVE-2018-6143 | — | — | 1.6% | Jan 9, 2019 | Insufficient validation in V8 in Google Chrome prior to 67.0.3396.62 allowed a remote attacker to perform an out of boun... |
| CVE-2018-6141 | — | — | 1.7% | Jan 9, 2019 | Insufficient validation of an image filter in Skia in Google Chrome prior to 67.0.3396.62 allowed a remote attacker who ... |
| CVE-2018-6140 | — | — | 2.6% | Jan 9, 2019 | Allowing the chrome.debugger API to attach to Web UI pages in DevTools in Google Chrome prior to 67.0.3396.62 allowed an... |
| CVE-2018-6139 | — | — | 1.9% | Jan 9, 2019 | Insufficient target checks on the chrome.debugger API in DevTools in Google Chrome prior to 67.0.3396.62 allowed an atta... |
| CVE-2018-6137 | — | — | 1.9% | Jan 9, 2019 | CSS Paint API in Blink in Google Chrome prior to 67.0.3396.62 allowed a remote attacker to leak cross-origin data via a ... |
Check if your code is affected by 2018 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now