2018 CVE Vulnerabilities

17,817 CVEs published in 2018.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2018-1904HIGH8.1IBM WebSphere Application Server 7.0, 8.0, 8.5, and 9.0 could allow remote attackers to execute arbitrary Java code thro...
CVE-2018-17480HIGH8.8Execution of user supplied Javascript during array deserialization leading to an out of bounds write in V8 in Google Chr...
CVE-2018-15800HIGH8.1Cloud Foundry Bits Service, versions prior to 2.18.0, includes an information disclosure vulnerability. A remote malicio...
CVE-2018-1279HIGH8.5Pivotal RabbitMQ for PCF, all versions, uses a deterministically generated cookie that is shared between all machines wh...
CVE-2018-20004HIGH8.8An issue has been found in Mini-XML (aka mxml) 2.12. It is a stack-based buffer overflow in mxml_write_node in mxml-file...
CVE-2018-9577HIGH7.8In impd_parametric_drc_parse_gain_set_params of impd_drc_static_payload.c there is a possible out of bounds write due to...
CVE-2018-9576HIGH7.8In impd_parse_parametric_drc_instructions of impd_drc_static_payload.c there is a possible out of bounds write due to mi...
CVE-2018-9575HIGH7.8In impd_parse_dwnmix_instructions of impd_drc_static_payload.c there is a possible out of bounds write due to missing bo...
CVE-2018-9574HIGH7.8In impd_parse_split_drc_characteristic of impd_drc_static_payload.c there is a possible out of bounds write due to missi...
CVE-2018-9573HIGH7.8In impd_parse_filt_block of impd_drc_dynamic_payload.c there is a possible out of bounds write due to missing bounds che...
CVE-2018-9572HIGH8.8In impd_drc_parse_coeff of impd_drc_static_payload.c there is a possible out of bounds write due to missing bounds check...
CVE-2018-9571HIGH8.8In impd_parse_loud_eq_instructions of impd_drc_dynamic_payload.c there is a possible out-of-bound write due to missing b...
CVE-2018-9570HIGH7.8In impd_parse_drc_ext_v1 of impd_drc_dynamic_payload.c there is a possible out-of-bound write due to missing bounds chec...
CVE-2018-9569HIGH8.8In impd_init_drc_decode_post_config of impd_drc_gain_decoder.c there is a possible out-of-bound write due to incorrect b...
CVE-2018-5802HIGH8.8An error within the "kodak_radc_load_raw()" function (internal/dcraw_common.cpp) related to the "buf" variable in LibRaw...
CVE-2018-16861HIGH7.6A cross-site scripting (XSS) flaw was found in the foreman component of satellite. An attacker with privilege to create ...
CVE-2018-1920HIGH7.1IBM Marketing Platform 9.1.0, 9.1.2 and 10.1 is vulnerable to a XML External Entity Injection (XXE) attack when processi...
CVE-2018-1424HIGH7.1IBM Marketing Platform 9.1.0, 9.1.2, and 10.1 is vulnerable to a XML External Entity Injection (XXE) attack when process...
CVE-2018-17924HIGH8.6Rockwell Automation MicroLogix 1400 Controllers and 1756 ControlLogix Communications Modules An unauthenticated, remote ...
CVE-2018-19939HIGH7.5The Goodix GT9xx touchscreen driver for custom Linux kernels on Xiaomi daisy-o-oss and daisy-p-oss as used in Mi A2 Lite...
CVE-2018-19935HIGH7.5ext/imap/php_imap.c in PHP 5.x and 7.x before 7.3.0 allows remote attackers to cause a denial of service (NULL pointer d...
CVE-2018-19931HIGH7.8An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils through...
CVE-2018-6757HIGH7.5Privilege Escalation vulnerability in Microsoft Windows client in McAfee True Key (TK) 5.1.230.7 and earlier allows loca...
CVE-2018-6756HIGH7.8Authentication Abuse vulnerability in Microsoft Windows client in McAfee True Key (TK) 5.1.230.7 and earlier allows loca...
CVE-2018-6755HIGH7.2Weak Directory Permission Vulnerability in Microsoft Windows client in McAfee True Key (TK) 5.1.230.7 and earlier allows...

Check if your code is affected by 2018 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now