2018 CVE Vulnerabilities
17,817 CVEs published in 2018.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2018-14565 | — | — | 1.8% | Jul 23, 2018 | An issue was discovered in libthulac.so in THULAC through 2018-02-25. A heap-based buffer over-read can occur in NGramFe... |
| CVE-2018-14564 | — | — | 1.8% | Jul 23, 2018 | An issue was discovered in libthulac.so in THULAC through 2018-02-25. A SEGV can occur in NGramFeature::find_bases in in... |
| CVE-2018-14563 | — | — | 1.8% | Jul 23, 2018 | An issue was discovered in libthulac.so in THULAC through 2018-02-25. "operator delete" is used with "operator new[]" in... |
| CVE-2018-14562 | — | — | 1.8% | Jul 23, 2018 | An issue was discovered in libthulac.so in THULAC through 2018-02-25. A NULL pointer dereference can occur in the BasicM... |
| CVE-2018-14551 | — | — | 4.0% | Jul 23, 2018 | The ReadMATImageV4 function in coders/mat.c in ImageMagick 7.0.8-7 uses an uninitialized variable, leading to memory cor... |
| CVE-2018-14549 | — | — | 1.2% | Jul 23, 2018 | An issue has been found in libwav through 2017-04-20. It is a SEGV in the function wav_write in libwav.c. |
| CVE-2018-14545 | — | — | 0.8% | Jul 23, 2018 | There exists one invalid memory read bug in AP4_SampleDescription::GetType() in Ap4SampleDescription.h in Bento4 1.5.1-6... |
| CVE-2018-14544 | — | — | 0.8% | Jul 23, 2018 | There exists one invalid memory read bug in AP4_SampleDescription::GetFormat() in Ap4SampleDescription.h in Bento4 1.5.1... |
| CVE-2018-14543 | — | — | 0.8% | Jul 23, 2018 | There exists one NULL pointer dereference vulnerability in AP4_JsonInspector::AddField in Ap4Atom.cpp in Bento4 1.5.1-62... |
| CVE-2018-14532 | — | — | 1.7% | Jul 23, 2018 | An issue was discovered in Bento4 1.5.1-624. There is a heap-based buffer over-read in AP4_Mpeg2TsVideoSampleStream::Wri... |
| CVE-2018-14531 | — | — | 1.6% | Jul 23, 2018 | An issue was discovered in Bento4 1.5.1-624. There is an unspecified "heap-buffer-overflow" crash in the AP4_HvccAtom cl... |
| CVE-2018-14527 | — | — | 0.7% | Jul 23, 2018 | Feedback.asp in Xiao5uCompany 1.7 has XSS because the XSS protection mechanism in Safe.asp is insufficient (for example,... |
| CVE-2018-14524 | — | — | 1.1% | Jul 23, 2018 | dwg_decode_eed in decode.c in GNU LibreDWG before 0.6 leads to a double free (in dwg_free_eed in free.c) because it does... |
| CVE-2018-14523 | — | — | 2.0% | Jul 23, 2018 | An issue was discovered in aubio 0.4.6. A buffer over-read can occur in new_aubio_pitchyinfft in pitch/pitchyinfft.c, as... |
| CVE-2018-14522 | — | — | 1.9% | Jul 23, 2018 | An issue was discovered in aubio 0.4.6. A SEGV signal can occur in aubio_pitch_set_unit in pitch/pitch.c, as demonstrate... |
| CVE-2018-14521 | — | — | 1.5% | Jul 23, 2018 | An issue was discovered in aubio 0.4.6. A SEGV signal can occur in aubio_source_avcodec_readframe in io/source_avcodec.c... |
| CVE-2018-14517 | — | — | 0.7% | Jul 23, 2018 | SeaCMS 6.61 has two XSS issues in the admin_config.php file via certain form fields. |
| CVE-2018-14515 | — | — | 2.0% | Jul 23, 2018 | A SQL injection was discovered in WUZHI CMS 4.1.0 that allows remote attackers to inject a malicious SQL statement via t... |
| CVE-2018-14514 | — | — | 1.6% | Jul 23, 2018 | An SSRF vulnerability was discovered in idreamsoft iCMS V7.0.9 that allows attackers to read sensitive files, access an ... |
| CVE-2018-14513 | — | — | 1.1% | Jul 23, 2018 | An XSS vulnerability was discovered in WUZHI CMS 4.1.0. There is persistent XSS that allows remote attackers to inject a... |
| CVE-2018-14505 | — | — | 3.3% | Jul 22, 2018 | mitmweb in mitmproxy v4.0.3 allows DNS Rebinding attacks, related to tools/web/app.py. |
| CVE-2018-14501 | — | — | 1.5% | Jul 22, 2018 | manager/admin_ajax.php in joyplus-cms 1.6.0 has SQL Injection, as demonstrated by crafted POST data beginning with an "m... |
| CVE-2018-14492 | — | — | 1.1% | Jul 21, 2018 | Tenda AC7 through V15.03.06.44_CN, AC9 through V15.03.05.19(6318)_CN, and AC10 through V15.03.06.23_CN devices have a St... |
| CVE-2018-5070 | — | — | 25.4% | Jul 20, 2018 | Adobe Acrobat and Reader 2018.011.20040 and earlier, 2017.011.30080 and earlier, and 2015.006.30418 and earlier versions... |
| CVE-2018-5069 | — | — | 25.4% | Jul 20, 2018 | Adobe Acrobat and Reader 2018.011.20040 and earlier, 2017.011.30080 and earlier, and 2015.006.30418 and earlier versions... |
Check if your code is affected by 2018 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now