2018 CVE Vulnerabilities
17,817 CVEs published in 2018.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2018-16985 | — | — | 1.5% | Sep 13, 2018 | In Lizard (formerly LZ5) 2.0, use of an invalid memory address was discovered in LZ5_compress_continue in lz5_compress.c... |
| CVE-2018-15310 | — | — | 0.9% | Sep 13, 2018 | A vulnerability in BIG-IP APM portal access 11.5.1-11.5.7, 11.6.0-11.6.3, and 12.1.0-12.1.3 discloses the BIG-IP softwar... |
| CVE-2018-16983 | — | — | 3.1% | Sep 13, 2018 | NoScript Classic before 5.1.8.7, as used in Tor Browser 7.x and other products, allows attackers to bypass script blocki... |
| CVE-2018-16982 | — | — | 1.0% | Sep 13, 2018 | Open Chinese Convert (OpenCC) 1.0.5 allows attackers to cause a denial of service (segmentation fault) because BinaryDic... |
| CVE-2018-8479 | — | — | 2.1% | Sep 13, 2018 | A spoofing vulnerability exists for the Azure IoT Device Provisioning for the C SDK library using the HTTP protocol on W... |
| CVE-2018-8475 | — | — | 14.6% | Sep 13, 2018 | A remote code execution vulnerability exists when Windows does not properly handle specially crafted image files, aka "W... |
| CVE-2018-8474 | — | — | 38.2% | Sep 13, 2018 | A security feature bypass vulnerability exists when Lync for Mac 2011 fails to properly sanitize specially crafted messa... |
| CVE-2018-8470 | — | — | 3.3% | Sep 13, 2018 | A security feature bypass vulnerability exists in Internet Explorer due to how scripts are handled that allows a univers... |
| CVE-2018-8469 | — | — | 15.4% | Sep 13, 2018 | An elevation of privilege vulnerability exists in Microsoft Edge that could allow an attacker to escape from the AppCont... |
| CVE-2018-8468 | — | — | 11.8% | Sep 13, 2018 | An elevation of privilege vulnerability exists when Windows, allowing a sandbox escape, aka "Windows Elevation of Privil... |
| CVE-2018-8467 | — | — | 69.0% | Sep 13, 2018 | A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Mi... |
| CVE-2018-8466 | — | — | 69.0% | Sep 13, 2018 | A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Mi... |
| CVE-2018-8465 | — | — | 14.6% | Sep 13, 2018 | A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Mi... |
| CVE-2018-8464 | — | — | 42.6% | Sep 13, 2018 | An remote code execution vulnerability exists when Microsoft Edge PDF Reader improperly handles objects in memory, aka "... |
| CVE-2018-8463 | — | — | 15.4% | Sep 13, 2018 | An elevation of privilege vulnerability exists in Microsoft Edge that could allow an attacker to escape from the AppCont... |
| CVE-2018-8462 | — | — | 1.2% | Sep 13, 2018 | An elevation of privilege vulnerability exists when the DirectX Graphics Kernel (DXGKRNL) driver improperly handles obje... |
| CVE-2018-8461 | — | — | 12.9% | Sep 13, 2018 | A remote code execution vulnerability exists when Internet Explorer improperly accesses objects in memory, aka "Internet... |
| CVE-2018-8459 | — | — | 14.6% | Sep 13, 2018 | A remote code execution vulnerability exists in the way that the ChakraCore scripting engine handles objects in memory, ... |
| CVE-2018-8457 | — | — | 13.2% | Sep 13, 2018 | A remote code execution vulnerability exists in the way the scripting engine handles objects in memory in Microsoft brow... |
| CVE-2018-8456 | — | — | 14.7% | Sep 13, 2018 | A remote code execution vulnerability exists in the way that the ChakraCore scripting engine handles objects in memory, ... |
| CVE-2018-8455 | — | — | 1.1% | Sep 13, 2018 | An elevation of privilege vulnerability exists in the way that the Windows Kernel handles objects in memory, aka "Window... |
| CVE-2018-8452 | — | — | 5.6% | Sep 13, 2018 | An information disclosure vulnerability exists when the scripting engine does not properly handle objects in memory in M... |
| CVE-2018-8449 | — | — | 3.1% | Sep 13, 2018 | A security feature bypass exists when Device Guard incorrectly validates an untrusted file, aka "Device Guard Security F... |
| CVE-2018-8447 | — | — | 12.9% | Sep 13, 2018 | A remote code execution vulnerability exists when Internet Explorer improperly accesses objects in memory, aka "Internet... |
| CVE-2018-8446 | — | — | 2.8% | Sep 13, 2018 | An information disclosure vulnerability exists when the Windows kernel improperly handles objects in memory, aka "Window... |
Check if your code is affected by 2018 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now