2018 CVE Vulnerabilities
17,817 CVEs published in 2018.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2018-14807 | CRITICAL | 9.8 | 3.1% | Oct 18, 2018 | A stack-based buffer overflow vulnerability in Opto 22 PAC Control Basic and PAC Control Professional versions R10.0a an... |
| CVE-2018-18482 | — | — | 1.1% | Oct 18, 2018 | An issue was discovered in libpg_query 10-1.0.2. There is a memory leak in pg_query_raw_parse in pg_query_parse.c, which... |
| CVE-2018-18481 | — | — | 1.1% | Oct 18, 2018 | A heap-based buffer over-read exists in libopencad 0.2.0 in the ReadCHAR function in lib/dwg/io.cpp, resulting in an app... |
| CVE-2018-18480 | — | — | 1.1% | Oct 18, 2018 | A heap-based buffer over-read exists in libopencad 0.2.0 in the ReadMCHAR function in lib/dwg/io.cpp, resulting in an ap... |
| CVE-2018-18478 | — | — | 1.6% | Oct 18, 2018 | Persistent Cross-Site Scripting (XSS) issues in LibreNMS before 1.44 allow remote attackers to inject arbitrary web scri... |
| CVE-2018-1822 | CRITICAL | 9.8 | 3.4% | Oct 18, 2018 | IBM FlashSystem 900 product GUI allows a specially crafted attack to bypass the authentication requirements of the syste... |
| CVE-2018-1518 | MEDIUM | 6.2 | 0.2% | Oct 18, 2018 | IBM InfoSphere Information Server 11.7 is affected by a weak password encryption vulnerability that could allow a local ... |
| CVE-2018-5188 | — | — | 3.9% | Oct 18, 2018 | Memory safety bugs present in Firefox 60, Firefox ESR 60, and Firefox ESR 52.8. Some of these bugs showed evidence of me... |
| CVE-2018-5187 | — | — | 3.0% | Oct 18, 2018 | Memory safety bugs present in Firefox 60 and Firefox ESR 60. Some of these bugs showed evidence of memory corruption and... |
| CVE-2018-5186 | — | — | 2.2% | Oct 18, 2018 | Memory safety bugs present in Firefox 60. Some of these bugs showed evidence of memory corruption and we presume that wi... |
| CVE-2018-5156 | — | — | 3.8% | Oct 18, 2018 | A vulnerability can occur when capturing a media stream when the media source type is changed as the capture is occurrin... |
| CVE-2018-12387 | — | — | 9.6% | Oct 18, 2018 | A vulnerability where the JavaScript JIT compiler inlines Array.prototype.push with multiple arguments that results in t... |
| CVE-2018-12386 | — | — | 13.4% | Oct 18, 2018 | A vulnerability in register allocation in JavaScript can lead to type confusion, allowing for an arbitrary read and writ... |
| CVE-2018-12385 | — | — | 0.4% | Oct 18, 2018 | A potentially exploitable crash in TransportSecurityInfo used for SSL can be triggered by data stored in the local cache... |
| CVE-2018-12383 | — | — | 0.5% | Oct 18, 2018 | If a user saved passwords before Firefox 58 and then later set a master password, an unencrypted copy of these passwords... |
| CVE-2018-12382 | — | — | 1.7% | Oct 18, 2018 | The displayed addressbar URL can be spoofed on Firefox for Android using a javascript: URI in concert with JavaScript to... |
| CVE-2018-12381 | — | — | 1.8% | Oct 18, 2018 | Manually dragging and dropping an Outlook email message into the browser will trigger a page navigation when the message... |
| CVE-2018-12379 | — | — | 0.4% | Oct 18, 2018 | When the Mozilla Updater opens a MAR format file which contains a very long item filename, an out-of-bounds write can be... |
| CVE-2018-12378 | — | — | 3.4% | Oct 18, 2018 | A use-after-free vulnerability can occur when an IndexedDB index is deleted while still in use by JavaScript code that i... |
| CVE-2018-12377 | — | — | 3.4% | Oct 18, 2018 | A use-after-free vulnerability can occur when refresh driver timers are refreshed in some circumstances during shutdown ... |
| CVE-2018-12376 | — | — | 3.1% | Oct 18, 2018 | Memory safety bugs present in Firefox 61 and Firefox ESR 60.1. Some of these bugs showed evidence of memory corruption a... |
| CVE-2018-12375 | — | — | 1.8% | Oct 18, 2018 | Memory safety bugs present in Firefox 61. Some of these bugs showed evidence of memory corruption and we presume that wi... |
| CVE-2018-12374 | — | — | 2.0% | Oct 18, 2018 | Plaintext of decrypted emails can leak through by user submitting an embedded form by pressing enter key within a text i... |
| CVE-2018-12373 | — | — | 2.4% | Oct 18, 2018 | dDecrypted S/MIME parts hidden with CSS or the plaintext HTML tag can leak plaintext when included in a HTML reply/forwa... |
| CVE-2018-12372 | — | — | 2.5% | Oct 18, 2018 | Decrypted S/MIME parts, when included in HTML crafted for an attack, can leak plaintext when included in a a HTML reply/... |
Check if your code is affected by 2018 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now