2018 CVE Vulnerabilities
17,817 CVEs published in 2018.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2018-20068 | — | — | 0.5% | Jan 9, 2019 | Incorrect handling of 304 status codes in Navigation in Google Chrome prior to 71.0.3578.80 allowed a remote attacker to... |
| CVE-2018-20067 | — | — | 0.5% | Jan 9, 2019 | A renderer initiated back navigation was incorrectly allowed to cancel a browser initiated one in Navigation in Google C... |
| CVE-2018-20066 | — | — | 0.6% | Jan 9, 2019 | Incorrect object lifecycle in Extensions in Google Chrome prior to 71.0.3578.80 allowed a remote attacker to potentially... |
| CVE-2018-20065 | — | — | 0.6% | Jan 9, 2019 | Handling of URI action in PDFium in Google Chrome prior to 71.0.3578.80 allowed a remote attacker to initiate potentiall... |
| CVE-2018-17470 | — | — | 1.5% | Jan 9, 2019 | A heap buffer overflow in GPU in Google Chrome prior to 70.0.3538.67 allowed a remote attacker who had compromised the r... |
| CVE-2018-17461 | — | — | 0.6% | Jan 9, 2019 | An out of bounds read in PDFium in Google Chrome prior to 68.0.3440.75 allowed a remote attacker to perform an out of bo... |
| CVE-2018-17459 | — | — | 1.0% | Jan 9, 2019 | Incorrect handling of clicks in the omnibox in Navigation in Google Chrome prior to 69.0.3497.92 allowed a remote attack... |
| CVE-2018-17458 | — | — | 2.2% | Jan 9, 2019 | An improper update of the WebAssembly dispatch table in WebAssembly in Google Chrome prior to 69.0.3497.92 allowed a rem... |
| CVE-2018-17457 | — | — | 1.8% | Jan 9, 2019 | An object lifecycle issue in Blink could lead to a use after free in WebAudio in Google Chrome prior to 69.0.3497.81 all... |
| CVE-2018-16088 | — | — | 1.1% | Jan 9, 2019 | A missing check for JS-simulated input events in Blink in Google Chrome prior to 69.0.3497.81 allowed a remote attacker ... |
| CVE-2018-16087 | — | — | 1.0% | Jan 9, 2019 | Lack of proper state tracking in Permissions in Google Chrome prior to 69.0.3497.81 allowed a remote attacker to bypass ... |
| CVE-2018-16085 | — | — | 1.5% | Jan 9, 2019 | A use after free in ResourceCoordinator in Google Chrome prior to 69.0.3497.81 allowed a remote attacker to potentially ... |
| CVE-2018-16084 | — | — | 1.1% | Jan 9, 2019 | The default selected dialog button in CustomHandlers in Google Chrome prior to 69.0.3497.81 allowed a remote attacker wh... |
| CVE-2018-16083 | — | — | 5.3% | Jan 9, 2019 | An out of bounds read in forward error correction code in WebRTC in Google Chrome prior to 69.0.3497.81 allowed a remote... |
| CVE-2018-16082 | — | — | 1.6% | Jan 9, 2019 | An out of bounds read in Swiftshader in Google Chrome prior to 69.0.3497.81 allowed a remote attacker to potentially per... |
| CVE-2018-16081 | — | — | 1.1% | Jan 9, 2019 | Allowing the chrome.debugger API to run on file:// URLs in DevTools in Google Chrome prior to 69.0.3497.81 allowed an at... |
| CVE-2018-16080 | — | — | 1.4% | Jan 9, 2019 | A missing check for popup window handling in Fullscreen in Google Chrome on macOS prior to 69.0.3497.81 allowed a remote... |
| CVE-2018-16079 | — | — | 1.1% | Jan 9, 2019 | A race condition between permission prompts and navigations in Prompts in Google Chrome prior to 69.0.3497.81 allowed a ... |
| CVE-2018-16078 | — | — | 1.8% | Jan 9, 2019 | Unsafe handling of credit card details in Autofill in Google Chrome prior to 69.0.3497.81 allowed a remote attacker to o... |
| CVE-2018-16076 | — | — | 1.5% | Jan 9, 2019 | Missing bounds check in PDFium in Google Chrome prior to 69.0.3497.81 allowed a remote attacker to perform an out of bou... |
| CVE-2018-16072 | — | — | 0.8% | Jan 9, 2019 | A missing origin check related to HLS manifests in Blink in Google Chrome prior to 69.0.3497.81 allowed a remote attacke... |
| CVE-2018-16071 | — | — | 4.8% | Jan 9, 2019 | A use after free in WebRTC in Google Chrome prior to 69.0.3497.81 allowed a remote attacker to potentially exploit heap ... |
| CVE-2018-16068 | — | — | 1.9% | Jan 9, 2019 | Missing validation in Mojo in Google Chrome prior to 69.0.3497.81 allowed a remote attacker to potentially perform a san... |
| CVE-2018-16067 | — | — | 1.4% | Jan 9, 2019 | A use after free in WebAudio in Google Chrome prior to 69.0.3497.81 allowed a remote attacker to potentially exploit hea... |
| CVE-2018-16066 | — | — | 1.5% | Jan 9, 2019 | A use after free in Blink in Google Chrome prior to 69.0.3497.81 allowed a remote attacker to potentially exploit heap c... |
Check if your code is affected by 2018 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now