2018 CVE Vulnerabilities

17,817 CVEs published in 2018.

CVE IDSeverityCVSSDescription
CVE-2018-16985In Lizard (formerly LZ5) 2.0, use of an invalid memory address was discovered in LZ5_compress_continue in lz5_compress.c...
CVE-2018-15310A vulnerability in BIG-IP APM portal access 11.5.1-11.5.7, 11.6.0-11.6.3, and 12.1.0-12.1.3 discloses the BIG-IP softwar...
CVE-2018-16983NoScript Classic before 5.1.8.7, as used in Tor Browser 7.x and other products, allows attackers to bypass script blocki...
CVE-2018-16982Open Chinese Convert (OpenCC) 1.0.5 allows attackers to cause a denial of service (segmentation fault) because BinaryDic...
CVE-2018-8479A spoofing vulnerability exists for the Azure IoT Device Provisioning for the C SDK library using the HTTP protocol on W...
CVE-2018-8475A remote code execution vulnerability exists when Windows does not properly handle specially crafted image files, aka "W...
CVE-2018-8474A security feature bypass vulnerability exists when Lync for Mac 2011 fails to properly sanitize specially crafted messa...
CVE-2018-8470A security feature bypass vulnerability exists in Internet Explorer due to how scripts are handled that allows a univers...
CVE-2018-8469An elevation of privilege vulnerability exists in Microsoft Edge that could allow an attacker to escape from the AppCont...
CVE-2018-8468An elevation of privilege vulnerability exists when Windows, allowing a sandbox escape, aka "Windows Elevation of Privil...
CVE-2018-8467A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Mi...
CVE-2018-8466A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Mi...
CVE-2018-8465A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Mi...
CVE-2018-8464An remote code execution vulnerability exists when Microsoft Edge PDF Reader improperly handles objects in memory, aka "...
CVE-2018-8463An elevation of privilege vulnerability exists in Microsoft Edge that could allow an attacker to escape from the AppCont...
CVE-2018-8462An elevation of privilege vulnerability exists when the DirectX Graphics Kernel (DXGKRNL) driver improperly handles obje...
CVE-2018-8461A remote code execution vulnerability exists when Internet Explorer improperly accesses objects in memory, aka "Internet...
CVE-2018-8459A remote code execution vulnerability exists in the way that the ChakraCore scripting engine handles objects in memory, ...
CVE-2018-8457A remote code execution vulnerability exists in the way the scripting engine handles objects in memory in Microsoft brow...
CVE-2018-8456A remote code execution vulnerability exists in the way that the ChakraCore scripting engine handles objects in memory, ...
CVE-2018-8455An elevation of privilege vulnerability exists in the way that the Windows Kernel handles objects in memory, aka "Window...
CVE-2018-8452An information disclosure vulnerability exists when the scripting engine does not properly handle objects in memory in M...
CVE-2018-8449A security feature bypass exists when Device Guard incorrectly validates an untrusted file, aka "Device Guard Security F...
CVE-2018-8447A remote code execution vulnerability exists when Internet Explorer improperly accesses objects in memory, aka "Internet...
CVE-2018-8446An information disclosure vulnerability exists when the Windows kernel improperly handles objects in memory, aka "Window...

Check if your code is affected by 2018 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now