2018 CVE Vulnerabilities

17,817 CVEs published in 2018.

CVE IDSeverityCVSSDescription
CVE-2018-25031MEDIUM4.3Swagger UI 4.1.2 and earlier could allow a remote attacker to conduct spoofing attacks. By persuading a victim to open a...
CVE-2018-25029HIGH8.1The Z-Wave specification requires that S2 security can be downgraded to S0 or other less secure protocols, allowing an a...
CVE-2018-17875HIGH8.8A remote code execution issue in the ping command on Poly Trio 8800 5.7.1.4145 devices allows remote authenticated users...
CVE-2018-25028HIGH7.5An issue was discovered in the libpulse-binding crate before 1.2.1 for Rust. get_context can cause a use-after-free.
CVE-2018-25027HIGH7.5An issue was discovered in the libpulse-binding crate before 1.2.1 for Rust. get_format_info can cause a use-after-free.
CVE-2018-25026CRITICAL9.8An issue was discovered in the actix-web crate before 0.7.15 for Rust. It can add the Send marker trait to an object tha...
CVE-2018-25025CRITICAL9.8An issue was discovered in the actix-web crate before 0.7.15 for Rust. It can unsoundly extend the lifetime of a string,...
CVE-2018-25024CRITICAL9.8An issue was discovered in the actix-web crate before 0.7.15 for Rust. It can unsoundly coerce an immutable reference in...
CVE-2018-25023HIGH7.5An issue was discovered in the smallvec crate before 0.6.13 for Rust. It can create an uninitialized value of any type, ...
CVE-2018-4478MEDIUM6.8A validation issue was addressed with improved logic. This issue is fixed in macOS High Sierra 10.13.5, Security Update ...
CVE-2018-4302HIGH7.8A null pointer dereference was addressed with improved validation. This issue is fixed in macOS High Sierra 10.13, iClou...
CVE-2018-13979Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n...
CVE-2018-13978Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n...
CVE-2018-13977Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n...
CVE-2018-13976Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n...
CVE-2018-13975Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n...
CVE-2018-13974Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n...
CVE-2018-13973Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n...
CVE-2018-13972Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n...
CVE-2018-13971Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n...
CVE-2018-13970Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n...
CVE-2018-11954Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n...
CVE-2018-11837Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n...
CVE-2018-10228MEDIUM6.1Cross-site scripting (XSS) vulnerability in /application/controller/admin/theme.php in LimeSurvey 3.6.2+180406 allows re...
CVE-2018-25022LOW3.1The Onion module in toxcore before 0.2.2 doesn't restrict which packets can be onion-routed, which allows a remote attac...

Check if your code is affected by 2018 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now