2018 CVE Vulnerabilities
17,817 CVEs published in 2018.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2018-2914 | — | — | 3.9% | Oct 17, 2018 | Vulnerability in the Oracle GoldenGate component of Oracle GoldenGate (subcomponent: Manager). Supported versions that a... |
| CVE-2018-2913 | — | — | 4.2% | Oct 17, 2018 | Vulnerability in the Oracle GoldenGate component of Oracle GoldenGate (subcomponent: Monitoring Manager). Supported vers... |
| CVE-2018-2912 | — | — | 3.9% | Oct 17, 2018 | Vulnerability in the Oracle GoldenGate component of Oracle GoldenGate (subcomponent: Manager). Supported versions that a... |
| CVE-2018-2911 | — | — | 1.9% | Oct 17, 2018 | Vulnerability in the Oracle GlassFish Server component of Oracle Fusion Middleware (subcomponent: Java Server Faces). Th... |
| CVE-2018-2909 | — | — | 0.7% | Oct 17, 2018 | Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (subcomponent: Core). The supported version... |
| CVE-2018-2902 | — | — | 1.5% | Oct 17, 2018 | Vulnerability in the Oracle WebLogic Server component of Oracle Fusion Middleware (subcomponent: Console). Supported ver... |
| CVE-2018-2889 | — | — | 2.1% | Oct 17, 2018 | Vulnerability in the MICROS Retail-J component of Oracle Retail Applications (subcomponent: Internal Operations). The su... |
| CVE-2018-2887 | — | — | 1.2% | Oct 17, 2018 | Vulnerability in the MICROS Retail-J component of Oracle Retail Applications (subcomponent: Back Office). Supported vers... |
| CVE-2018-18308 | — | — | 3.6% | Oct 16, 2018 | In the 4.2.23 version of BigTree, a Stored XSS vulnerability has been discovered in /admin/ajax/file-browser/upload/ (ak... |
| CVE-2018-18307 | — | — | 1.5% | Oct 16, 2018 | A Stored XSS vulnerability has been discovered in version 4.1.0 of AlchemyCMS via the /admin/pictures image field. NOTE:... |
| CVE-2018-14772 | — | — | 6.6% | Oct 16, 2018 | Pydio 4.2.1 through 8.2.1 has an authenticated remote code execution vulnerability in which an attacker with administrat... |
| CVE-2018-11025 | — | — | 2.6% | Oct 16, 2018 | kernel/omap/drivers/mfd/twl6030-gpadc.c in the kernel component in Amazon Kindle Fire HD(3rd) Fire OS 4.5.5.3 allows att... |
| CVE-2018-11024 | — | — | 2.6% | Oct 16, 2018 | kernel/omap/drivers/misc/gcx/gcioctl/gcif.c in the kernel component in Amazon Kindle Fire HD (3rd) Fire OS 4.5.5.3 allow... |
| CVE-2018-11023 | — | — | 2.6% | Oct 16, 2018 | kernel/omap/drivers/misc/gcx/gcioctl/gcif.c in the kernel component in Amazon Kindle Fire HD (3rd) Fire OS 4.5.5.3 allow... |
| CVE-2018-11022 | — | — | 2.6% | Oct 16, 2018 | kernel/omap/drivers/misc/gcx/gcioctl/gcif.c in the kernel component in Amazon Kindle Fire HD(3rd) Fire OS 4.5.5.3 allows... |
| CVE-2018-11021 | — | — | 3.0% | Oct 16, 2018 | kernel/omap/drivers/video/omap2/dsscomp/device.c in the kernel component in Amazon Kindle Fire HD(3rd) Fire OS 4.5.5.3 a... |
| CVE-2018-11020 | — | — | 0.6% | Oct 16, 2018 | kernel/omap/drivers/rpmsg/rpmsg_omx.c in the kernel component in Amazon Kindle Fire HD(3rd) Fire OS 4.5.5.3 allows attac... |
| CVE-2018-11019 | — | — | 3.0% | Oct 16, 2018 | kernel/omap/drivers/misc/gcx/gcioctl/gcif.c in the kernel component in Amazon Kindle Fire HD(3rd) Fire OS 4.5.5.3 allows... |
| CVE-2018-6974 | HIGH | 8.8 | 0.5% | Oct 16, 2018 | VMware ESXi (6.7 before ESXi670-201810101-SG, 6.5 before ESXi650-201808401-BG, and 6.0 before ESXi600-201808401-BG), Wor... |
| CVE-2018-1777 | MEDIUM | 5.4 | 1.0% | Oct 16, 2018 | IBM WebSphere Application Server 7.0, 8.0, 8.5, and 9.0 is vulnerable to cross-site scripting. This vulnerability allows... |
| CVE-2018-18389 | — | — | 1.9% | Oct 16, 2018 | Due to incorrect access control in Neo4j Enterprise Database Server 3.4.x before 3.4.9, the setting of LDAP for authenti... |
| CVE-2018-18385 | — | — | 2.3% | Oct 16, 2018 | Asciidoctor in versions < 1.5.8 allows remote attackers to cause a denial of service (infinite loop). The loop was cause... |
| CVE-2018-18384 | — | — | 2.6% | Oct 16, 2018 | Info-ZIP UnZip 6.0 has a buffer overflow in list.c, when a ZIP archive has a crafted relationship between the compressed... |
| CVE-2018-10839 | MEDIUM | 6.5 | 3.2% | Oct 16, 2018 | Qemu emulator <= 3.0.0 built with the NE2000 NIC emulation support is vulnerable to an integer overflow, which could lea... |
| CVE-2018-13399 | — | — | 0.3% | Oct 16, 2018 | The Microsoft Windows Installer for Atlassian Fisheye and Crucible before version 4.6.1 allows local attackers to escala... |
Check if your code is affected by 2018 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now