2018 CVE Vulnerabilities

17,817 CVEs published in 2018.

CVE IDSeverityCVSSDescription
CVE-2018-8287A remote code execution vulnerability exists in the way the scripting engine handles objects in memory in Microsoft brow...
CVE-2018-8286A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Mi...
CVE-2018-8284A remote code execution vulnerability exists when the Microsoft .NET Framework fails to validate input properly, aka ".N...
CVE-2018-8283A remote code execution vulnerability exists in the way that the ChakraCore scripting engine handles objects in memory, ...
CVE-2018-8282An elevation of privilege vulnerability exists in Windows when the Windows kernel-mode driver fails to properly handle o...
CVE-2018-8281A remote code execution vulnerability exists in Microsoft Office software when the software fails to properly handle obj...
CVE-2018-8280A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Mi...
CVE-2018-8279A remote code execution vulnerability exists when Microsoft Edge improperly accesses objects in memory, aka "Microsoft E...
CVE-2018-8278A spoofing vulnerability exists when Microsoft Edge improperly handles specific HTML content, aka "Microsoft Edge Spoofi...
CVE-2018-8276A security feature bypass vulnerability exists in the Microsoft Chakra scripting engine that allows Control Flow Guard (...
CVE-2018-8275A remote code execution vulnerability exists when Microsoft Edge improperly accesses objects in memory, aka "Microsoft E...
CVE-2018-8274A remote code execution vulnerability exists when Microsoft Edge improperly accesses objects in memory, aka "Microsoft E...
CVE-2018-8262A remote code execution vulnerability exists when Microsoft Edge improperly accesses objects in memory, aka "Microsoft E...
CVE-2018-8260A Remote Code Execution vulnerability exists in .NET software when the software fails to check the source markup of a fi...
CVE-2018-8242A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Internet ...
CVE-2018-8238A security feature bypass vulnerability exists when Skype for Business or Lync do not properly parse UNC path links shar...
CVE-2018-8232A Tampering vulnerability exists when Microsoft Macro Assembler improperly validates code, aka "Microsoft Macro Assemble...
CVE-2018-8222A security feature bypass vulnerability exists in Device Guard that could allow an attacker to inject malicious code int...
CVE-2018-8206A denial of service vulnerability exists when Windows improperly handles File Transfer Protocol (FTP) connections, aka "...
CVE-2018-8202An elevation of privilege vulnerability exists in .NET Framework which could allow an attacker to elevate their privileg...
CVE-2018-8172HIGH7.8A remote code execution vulnerability exists in Visual Studio software when the software does not check the source marku...
CVE-2018-8171A Security Feature Bypass vulnerability exists in ASP.NET when the number of incorrect login attempts is not validated, ...
CVE-2018-8125A remote code execution vulnerability exists when Microsoft Edge improperly accesses objects in memory, aka "Microsoft E...
CVE-2018-0949A security feature bypass vulnerability exists when Microsoft Internet Explorer improperly handles requests involving UN...
CVE-2018-3693MEDIUM5.6Systems with microprocessors utilizing speculative execution and branch prediction may allow unauthorized disclosure of ...

Check if your code is affected by 2018 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now