2018 CVE Vulnerabilities
17,817 CVEs published in 2018.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2018-12579 | — | — | 1.2% | Aug 20, 2018 | An issue was discovered in OXID eShop Enterprise Edition before 5.3.8, 6.0.x before 6.0.3, and 6.1.x before 6.1.0; Profe... |
| CVE-2018-1656 | HIGH | 7.4 | 4.5% | Aug 20, 2018 | The IBM Java Runtime Environment's Diagnostic Tooling Framework for Java (DTFJ) (IBM SDK, Java Technology Edition 6.0 , ... |
| CVE-2018-1517 | MEDIUM | 5.9 | 4.0% | Aug 20, 2018 | A flaw in the java.math component in IBM SDK, Java Technology Edition 6.0, 7.0, and 8.0 may allow an attacker to inflict... |
| CVE-2018-1394 | MEDIUM | 5.4 | 0.7% | Aug 20, 2018 | Multiple IBM Rational products are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrar... |
| CVE-2018-14079 | — | — | 1.4% | Aug 20, 2018 | Wi2be SMART HP WMT R1.2.20_201400922 allows unauthorized remote attackers to obtain sensitive information via /Status/Sy... |
| CVE-2018-14078 | — | — | 2.2% | Aug 20, 2018 | Wi2be SMART HP WMT R1.2.20_201400922 allows unauthorized remote attackers to reset the admin password via the /ConfigWiz... |
| CVE-2018-14077 | — | — | 1.4% | Aug 20, 2018 | Wi2be SMART HP WMT R1.2.20_201400922 allows unauthorized remote attackers to backup the device configuration via a direc... |
| CVE-2018-1000226 | — | — | 12.5% | Aug 20, 2018 | Cobbler version Verified as present in Cobbler versions 2.6.11+, but code inspection suggests at least 2.0.0+ or possibl... |
| CVE-2018-1000225 | — | — | 1.3% | Aug 20, 2018 | Cobbler version Verified as present in Cobbler versions 2.6.11+, but code inspection suggests at least 2.0.0+ or possibl... |
| CVE-2018-1000224 | — | — | 3.8% | Aug 20, 2018 | Godot Engine version All versions prior to 2.1.5, all 3.0 versions prior to 3.0.6. contains a Signed/unsigned comparison... |
| CVE-2018-1000223 | — | — | 2.4% | Aug 20, 2018 | soundtouch version up to and including 2.0.0 contains a Buffer Overflow vulnerability in SoundStretch/WavFile.cpp:WavInF... |
| CVE-2018-1000222 | — | — | 4.2% | Aug 20, 2018 | Libgd version 2.2.5 contains a Double Free Vulnerability vulnerability in gdImageBmpPtr Function that can result in Remo... |
| CVE-2018-1000221 | — | — | 1.4% | Aug 20, 2018 | pkgconf version 1.5.0 to 1.5.2 contains a Buffer Overflow vulnerability in dequote() that can result in dequote() functi... |
| CVE-2018-1000220 | — | — | — | Aug 20, 2018 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2014-5462. Reason: This candidate is a reservation ... |
| CVE-2018-1000219 | — | — | 0.9% | Aug 20, 2018 | OpenEMR version v5_0_1_4 contains a Cross Site Scripting (XSS) vulnerability in The 'scan' parameter in line #41 of inte... |
| CVE-2018-1000218 | — | — | 0.8% | Aug 20, 2018 | OpenEMR version v5_0_1_4 contains a Cross Site Scripting (XSS) vulnerability in The 'file' parameter in line #43 of inte... |
| CVE-2018-1000217 | — | — | 1.8% | Aug 20, 2018 | Dave Gamble cJSON version 1.7.3 and earlier contains a CWE-416: Use After Free vulnerability in cJSON library that can r... |
| CVE-2018-1000216 | — | — | 1.5% | Aug 20, 2018 | Dave Gamble cJSON version 1.7.2 and earlier contains a CWE-415: Double Free vulnerability in cJSON library that can resu... |
| CVE-2018-1000215 | — | — | 1.7% | Aug 20, 2018 | Dave Gamble cJSON version 1.7.6 and earlier contains a CWE-772 vulnerability in cJSON library that can result in Denial ... |
| CVE-2018-1000214 | — | — | — | Aug 20, 2018 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2018-1999024. Reason: This candidate is a reservati... |
| CVE-2018-1000213 | — | — | — | Aug 20, 2018 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2018-1999023. Reason: This candidate is a reservati... |
| CVE-2018-1000212 | — | — | — | Aug 20, 2018 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2018-1999022. Reason: This candidate is a reservati... |
| CVE-2018-1000657 | — | — | 0.5% | Aug 20, 2018 | Rust Programming Language Rust standard library version Commit bfa0e1f58acf1c28d500c34ed258f09ae021893e and later; stabl... |
| CVE-2018-1000656 | — | — | 3.9% | Aug 20, 2018 | The Pallets Project flask version Before 0.12.3 contains a CWE-20: Improper Input Validation vulnerability in flask that... |
| CVE-2018-1000655 | — | — | 0.9% | Aug 20, 2018 | Jsish version 2.4.65 contains a CWE-476: NULL Pointer Dereference vulnerability in Function jsi_ValueCopyMove from jsiVa... |
Check if your code is affected by 2018 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now