2018 CVE Vulnerabilities

17,817 CVEs published in 2018.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2018-21012MEDIUM6.1The cf7-invisible-recaptcha plugin before 1.3.2 for WordPress has XSS.
CVE-2018-20977MEDIUM6.1The all-in-one-schemaorg-rich-snippets plugin before 1.5.0 for WordPress has XSS on the settings page.
CVE-2018-1636MEDIUM6.7Stack-based buffer overflow in oninit in IBM Informix Dynamic Server Enterprise Edition 12.1 allows an authenticated use...
CVE-2018-1635MEDIUM6.7Stack-based buffer overflow in oninit in IBM Informix Dynamic Server Enterprise Edition 12.1 allows an authenticated use...
CVE-2018-1634MEDIUM6.7IBM Informix Dynamic Server Enterprise Edition 12.1 could allow a local user logged in with database administrator user ...
CVE-2018-1633MEDIUM6.7IBM Informix Dynamic Server Enterprise Edition 12.1 could allow a local user logged in with database administrator user ...
CVE-2018-1632MEDIUM6.7IBM Informix Dynamic Server Enterprise Edition 12.1 could allow a local user logged in with database administrator user ...
CVE-2018-1631MEDIUM6.7IBM Informix Dynamic Server Enterprise Edition 12.1 could allow a local user logged in with database administrator user ...
CVE-2018-1630MEDIUM6.7IBM Informix Dynamic Server Enterprise Edition 12.1 could allow a local user logged in with database administrator user ...
CVE-2018-17790MEDIUM5.4Prospecta Master Data Online (MDO) 2.0 has Stored XSS.
CVE-2018-20965MEDIUM6.1The ultimate-member plugin before 2.0.4 for WordPress has XSS.
CVE-2018-20826MEDIUM4.3The inline-create rest resource in Jira before version 7.12.3 allows authenticated remote attackers to set the reporter ...
CVE-2018-20860MEDIUM6.5libopenmpt before 0.3.13 allows a crash with malformed MED files.
CVE-2018-20859MEDIUM6.1edx-platform before 2018-07-18 allows XSS via a response to a Chemical Equation advanced problem.
CVE-2018-2022MEDIUM5.3IBM QRadar SIEM 7.2 and 7.3 discloses sensitive information to unauthorized users. The information can be used to mount ...
CVE-2018-2021MEDIUM6.1IBM QRadar SIEM 7.2 and 7.3 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary Ja...
CVE-2018-1921MEDIUM5.4IBM Campaign 9.1.0, 9.1.2, 10.1, and 11.0 is vulnerable to cross-site scripting. This vulnerability allows users to embe...
CVE-2018-1968MEDIUM5.3IBM Security Identity Manager 7.0.1 discloses sensitive information to unauthorized users. The information can be used t...
CVE-2018-19583MEDIUM6.5GitLab CE/EE, versions 8.0 up to 11.x before 11.3.11, 11.4 before 11.4.8, and 11.5 before 11.5.1, would log access token...
CVE-2018-19574MEDIUM5.4GitLab CE/EE, versions 7.6 up to 11.x before 11.3.11, 11.4 before 11.4.8, and 11.5 before 11.5.1, are vulnerable to an X...
CVE-2018-19573MEDIUM5.4GitLab CE/EE, versions 10.3 up to 11.x before 11.3.11, 11.4 before 11.4.8, and 11.5 before 11.5.1, are vulnerable to an ...
CVE-2018-19570MEDIUM5.4GitLab CE/EE, versions 11.3 before 11.3.11, 11.4 before 11.4.8, and 11.5 before 11.5.1, are vulnerable to an XSS vulnera...
CVE-2018-19577MEDIUM5.3Gitlab CE/EE, versions 8.6 up to 11.x before 11.3.11, 11.4 before 11.4.8, and 11.5 before 11.5.1, are vulnerable to an i...
CVE-2018-11563MEDIUM4.6An issue was discovered in Open Ticket Request System (OTRS) 6.0.x through 6.0.7. A carefully constructed email could be...
CVE-2018-12715MEDIUM6.1DIGISOL DG-HR3400 devices have XSS via a modified SSID when the apssid value is unchanged.

Check if your code is affected by 2018 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now