2018 CVE Vulnerabilities

17,817 CVEs published in 2018.

CVE IDSeverityCVSSDescription
CVE-2018-14807CRITICAL9.8A stack-based buffer overflow vulnerability in Opto 22 PAC Control Basic and PAC Control Professional versions R10.0a an...
CVE-2018-18482An issue was discovered in libpg_query 10-1.0.2. There is a memory leak in pg_query_raw_parse in pg_query_parse.c, which...
CVE-2018-18481A heap-based buffer over-read exists in libopencad 0.2.0 in the ReadCHAR function in lib/dwg/io.cpp, resulting in an app...
CVE-2018-18480A heap-based buffer over-read exists in libopencad 0.2.0 in the ReadMCHAR function in lib/dwg/io.cpp, resulting in an ap...
CVE-2018-18478Persistent Cross-Site Scripting (XSS) issues in LibreNMS before 1.44 allow remote attackers to inject arbitrary web scri...
CVE-2018-1822CRITICAL9.8IBM FlashSystem 900 product GUI allows a specially crafted attack to bypass the authentication requirements of the syste...
CVE-2018-1518MEDIUM6.2IBM InfoSphere Information Server 11.7 is affected by a weak password encryption vulnerability that could allow a local ...
CVE-2018-5188Memory safety bugs present in Firefox 60, Firefox ESR 60, and Firefox ESR 52.8. Some of these bugs showed evidence of me...
CVE-2018-5187Memory safety bugs present in Firefox 60 and Firefox ESR 60. Some of these bugs showed evidence of memory corruption and...
CVE-2018-5186Memory safety bugs present in Firefox 60. Some of these bugs showed evidence of memory corruption and we presume that wi...
CVE-2018-5156A vulnerability can occur when capturing a media stream when the media source type is changed as the capture is occurrin...
CVE-2018-12387A vulnerability where the JavaScript JIT compiler inlines Array.prototype.push with multiple arguments that results in t...
CVE-2018-12386A vulnerability in register allocation in JavaScript can lead to type confusion, allowing for an arbitrary read and writ...
CVE-2018-12385A potentially exploitable crash in TransportSecurityInfo used for SSL can be triggered by data stored in the local cache...
CVE-2018-12383If a user saved passwords before Firefox 58 and then later set a master password, an unencrypted copy of these passwords...
CVE-2018-12382The displayed addressbar URL can be spoofed on Firefox for Android using a javascript: URI in concert with JavaScript to...
CVE-2018-12381Manually dragging and dropping an Outlook email message into the browser will trigger a page navigation when the message...
CVE-2018-12379When the Mozilla Updater opens a MAR format file which contains a very long item filename, an out-of-bounds write can be...
CVE-2018-12378A use-after-free vulnerability can occur when an IndexedDB index is deleted while still in use by JavaScript code that i...
CVE-2018-12377A use-after-free vulnerability can occur when refresh driver timers are refreshed in some circumstances during shutdown ...
CVE-2018-12376Memory safety bugs present in Firefox 61 and Firefox ESR 60.1. Some of these bugs showed evidence of memory corruption a...
CVE-2018-12375Memory safety bugs present in Firefox 61. Some of these bugs showed evidence of memory corruption and we presume that wi...
CVE-2018-12374Plaintext of decrypted emails can leak through by user submitting an embedded form by pressing enter key within a text i...
CVE-2018-12373dDecrypted S/MIME parts hidden with CSS or the plaintext HTML tag can leak plaintext when included in a HTML reply/forwa...
CVE-2018-12372Decrypted S/MIME parts, when included in HTML crafted for an attack, can leak plaintext when included in a a HTML reply/...

Check if your code is affected by 2018 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now