2018 CVE Vulnerabilities
17,817 CVEs published in 2018.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2018-1741 | MEDIUM | 6.5 | 1.3% | Oct 8, 2018 | IBM Tivoli Key Lifecycle Manager 2.6, 2.7, and 3.0 does not properly limit the number or frequency of interaction which ... |
| CVE-2018-1000810 | — | — | 3.0% | Oct 8, 2018 | The Rust Programming Language Standard Library version 1.29.0, 1.28.0, 1.27.2, 1.27.1, 127.0, 126.2, 126.1, 126.0 contai... |
| CVE-2018-1000809 | — | — | 1.7% | Oct 8, 2018 | privacyIDEA version 2.23.1 and earlier contains a Improper Input Validation vulnerability in token validation api that c... |
| CVE-2018-1000808 | — | — | 1.9% | Oct 8, 2018 | Python Cryptographic Authority pyopenssl version Before 17.5.0 contains a CWE - 401 : Failure to Release Memory Before R... |
| CVE-2018-1000807 | HIGH | 8.1 | 4.1% | Oct 8, 2018 | Python Cryptographic Authority pyopenssl version prior to version 17.5.0 contains a CWE-416: Use After Free vulnerabilit... |
| CVE-2018-1000805 | HIGH | 8.8 | 4.4% | Oct 8, 2018 | Paramiko version 2.4.1, 2.3.2, 2.2.3, 2.1.5, 2.0.8, 1.18.5, 1.17.6 contains a Incorrect Access Control vulnerability in ... |
| CVE-2018-1000804 | CRITICAL | 9.8 | 6.3% | Oct 8, 2018 | contiki-ng version 4 contains a Buffer Overflow vulnerability in AQL (Antelope Query Language) database engine that can ... |
| CVE-2018-1000803 | — | — | 1.3% | Oct 8, 2018 | Gitea version prior to version 1.5.1 contains a CWE-200 vulnerability that can result in Exposure of users private email... |
| CVE-2018-17889 | — | — | 1.2% | Oct 8, 2018 | In WECON Technology Co., Ltd. PI Studio HMI versions 4.1.9 and prior and PI Studio versions 4.2.34 and prior when parsin... |
| CVE-2018-14818 | CRITICAL | 9.8 | 3.5% | Oct 8, 2018 | WECON Technology Co., Ltd. PI Studio HMI versions 4.1.9 and prior and PI Studio versions 4.2.34 and prior have a stack-b... |
| CVE-2018-14810 | — | — | 1.7% | Oct 8, 2018 | WECON Technology Co., Ltd. PI Studio HMI versions 4.1.9 and prior and PI Studio versions 4.2.34 and prior parse files an... |
| CVE-2018-18025 | — | — | 2.5% | Oct 7, 2018 | In ImageMagick 7.0.8-13 Q16, there is a heap-based buffer over-read in the EncodeImage function of coders/pict.c, which ... |
| CVE-2018-18024 | — | — | 3.0% | Oct 7, 2018 | In ImageMagick 7.0.8-13 Q16, there is an infinite loop in the ReadBMPImage function of the coders/bmp.c file. Remote att... |
| CVE-2018-18023 | — | — | 1.5% | Oct 7, 2018 | In ImageMagick 7.0.8-13 Q16, there is a heap-based buffer over-read in the SVGStripString function of coders/svg.c, whic... |
| CVE-2018-18021 | — | — | 0.6% | Oct 7, 2018 | arch/arm64/kvm/guest.c in KVM in the Linux kernel before 4.18.12 on the arm64 platform mishandles the KVM_SET_ON_REG ioc... |
| CVE-2018-1000806 | — | — | — | Oct 6, 2018 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2018-17074. Reason: This candidate is a reservation... |
| CVE-2018-18020 | — | — | 1.3% | Oct 6, 2018 | In QPDF 8.2.1, in libqpdf/QPDFWriter.cc, QPDFWriter::unparseObject and QPDFWriter::unparseChild have recursive calls for... |
| CVE-2018-17456 | — | — | 97.4% | Oct 6, 2018 | Git before 2.14.5, 2.15.x before 2.15.3, 2.16.x before 2.16.5, 2.17.x before 2.17.2, 2.18.x before 2.18.1, and 2.19.x be... |
| CVE-2018-15763 | CRITICAL | 9 | 1.0% | Oct 5, 2018 | Pivotal Container Service, versions prior to 1.2.0, contains an information disclosure vulnerability which exposes IaaS ... |
| CVE-2018-13042 | — | — | 7.9% | Oct 5, 2018 | The 1Password application 6.8 for Android is affected by a Denial Of Service vulnerability. By starting the activity com... |
| CVE-2018-1264 | CRITICAL | 9.1 | 1.8% | Oct 5, 2018 | Cloud Foundry Log Cache, versions prior to 1.1.1, logs its UAA client secret on startup as part of its envstruct report.... |
| CVE-2018-11083 | HIGH | 8.1 | 1.5% | Oct 5, 2018 | Cloud Foundry BOSH, versions v264 prior to v264.14.0 and v265 prior to v265.7.0 and v266 prior to v266.8.0 and v267 prio... |
| CVE-2018-11082 | MEDIUM | 6.6 | 1.1% | Oct 5, 2018 | Cloud Foundry UAA, all versions prior to 4.20.0 and Cloud Foundry UAA Release, all versions prior to 61.0, allows brute ... |
| CVE-2018-11081 | HIGH | 7.9 | 1.4% | Oct 5, 2018 | Pivotal Operations Manager, versions 2.2.x prior to 2.2.1, 2.1.x prior to 2.1.11, 2.0.x prior to 2.0.16, and 1.11.x prio... |
| CVE-2018-11064 | HIGH | 7.8 | 0.4% | Oct 5, 2018 | Dell EMC Unity OE versions 4.3.0.x and 4.3.1.x and UnityVSA OE versions 4.3.0.x and 4.3.1.x contains an Incorrect File P... |
Check if your code is affected by 2018 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now