2018 CVE Vulnerabilities

17,817 CVEs published in 2018.

CVE IDSeverityCVSSDescription
CVE-2018-16542In Artifex Ghostscript before 9.24, attackers able to supply crafted PostScript files could use insufficient interpreter...
CVE-2018-16541In Artifex Ghostscript before 9.24, attackers able to supply crafted PostScript files could use incorrect free logic in ...
CVE-2018-16540In Artifex Ghostscript before 9.24, attackers able to supply crafted PostScript files to the builtin PDF14 converter cou...
CVE-2018-16539In Artifex Ghostscript before 9.24, attackers able to supply crafted PostScript files could use incorrect access checkin...
CVE-2018-16521An XML External Entity (XXE) vulnerability exists in HTML Form Entry 3.7.0, as distributed in OpenMRS Reference Applicat...
CVE-2018-16518A directory traversal vulnerability with remote code execution in Prim'X Zed! FREE through 1.0 build 186 and Zed! Limite...
CVE-2018-16516helpers.py in Flask-Admin 1.5.2 has Reflected XSS via a crafted URL.
CVE-2018-9194A plaintext recovery of encrypted messages or a Man-in-the-middle (MiTM) attack on RSA PKCS #1 v1.5 encryption may be po...
CVE-2018-9192A plaintext recovery of encrypted messages or a Man-in-the-middle (MiTM) attack on RSA PKCS #1 v1.5 encryption may be po...
CVE-2018-16513In Artifex Ghostscript before 9.24, attackers able to supply crafted PostScript files could use a type confusion in the ...
CVE-2018-1353An information disclosure vulnerability in Fortinet FortiManager 6.0.1 and below versions allows a standard user with ad...
CVE-2018-13259An issue was discovered in zsh before 5.6. Shebang lines exceeding 64 characters were truncated, potentially leading to ...
CVE-2018-0502An issue was discovered in zsh before 5.6. The beginning of a #! script file was mishandled, potentially leading to an e...
CVE-2018-16511An issue was discovered in Artifex Ghostscript before 9.24. A type confusion in "ztype" could be used by remote attacker...
CVE-2018-16510An issue was discovered in Artifex Ghostscript before 9.24. Incorrect exec stack handling in the "CS" and "SC" PDF primi...
CVE-2018-16509An issue was discovered in Artifex Ghostscript before 9.24. Incorrect "restoration of privilege" checking during handlin...
CVE-2018-1000672Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2018-16391, CVE-2018-16392, CVE-2018-16393, CVE-2018...
CVE-2018-1000662Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was inadvertently assigned...
CVE-2018-6923In FreeBSD before 11.1-STABLE, 11.2-RELEASE-p2, 11.1-RELEASE-p13, ip fragment reassembly code is vulnerable to a denial ...
CVE-2018-6555The irda_setsockopt function in net/irda/af_irda.c and later in drivers/staging/irda/net/af_irda.c in the Linux kernel b...
CVE-2018-6554Memory leak in the irda_bind function in net/irda/af_irda.c and later in drivers/staging/irda/net/af_irda.c in the Linux...
CVE-2018-7990Mate10 Pro Huawei smart phones with the versions before 8.1.0.326(C00) have a FRP bypass vulnerability. During the mobil...
CVE-2018-7938P10 Huawei smartphones with the versions before Victoria-AL00AC00B217 have an information leak vulnerability due to the ...
CVE-2018-7937In Huawei HiRouter-CD20-10 with the versions before 1.9.6 and WS5200-10 with the versions before 1.9.6, there is a plug-...
CVE-2018-7936Mate 10 Pro Huawei smart phones with the versions before BLA-L29 8.0.0.148(C432) have a Factory Reset Protection (FRP) b...

Check if your code is affected by 2018 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now