2018 CVE Vulnerabilities
17,817 CVEs published in 2018.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2018-13134 | — | — | 2.3% | Jul 4, 2018 | TP-Link Archer C1200 1.13 Build 2018/01/24 rel.52299 EU devices have XSS via the PATH_INFO to the /webpages/data URI. |
| CVE-2018-13133 | — | — | 0.3% | Jul 4, 2018 | Golden Frog VyprVPN before 2018-06-21 has a vulnerability associated with the installation process on Windows. |
| CVE-2018-13132 | — | — | 1.0% | Jul 4, 2018 | Spadeico is a smart contract running on Ethereum. The mint function has an integer overflow that allows minted tokens to... |
| CVE-2018-13131 | — | — | 1.0% | Jul 4, 2018 | SpadePreSale is a smart contract running on Ethereum. The mint function has an integer overflow that allows minted token... |
| CVE-2018-13130 | — | — | 1.0% | Jul 4, 2018 | Bitotal (TFUND) is a smart contract running on Ethereum. The mintTokens function has an integer overflow that allows min... |
| CVE-2018-13129 | — | — | 0.9% | Jul 4, 2018 | SP8DE Token (SPX) is a smart contract running on Ethereum. The mint function has an integer overflow that allows minted ... |
| CVE-2018-13128 | — | — | 1.0% | Jul 4, 2018 | Etherty Token (ETY) is a smart contract running on Ethereum. The mint function has an integer overflow that allows minte... |
| CVE-2018-13127 | — | — | 1.0% | Jul 4, 2018 | SP8DE PreSale Token (DSPX) is a smart contract running on Ethereum. The mint function has an integer overflow that allow... |
| CVE-2018-13126 | — | — | 1.0% | Jul 4, 2018 | MoxyOnePresale is a smart contract running on Ethereum. The mint function has an integer overflow that allows minted tok... |
| CVE-2018-11429 | — | — | 1.0% | Jul 4, 2018 | ATLANT (ATL) is a smart contract running on Ethereum. The mint function has an integer overflow that allows minted token... |
| CVE-2018-11335 | — | — | 1.0% | Jul 4, 2018 | GVToken Genesis Vision (GVT) is a smart contract running on Ethereum. The mint function has an integer overflow that all... |
| CVE-2018-13123 | — | — | 1.4% | Jul 3, 2018 | onefilecms.php in OneFileCMS through 2017-10-08 might allow attackers to read arbitrary files via the i and f parameters... |
| CVE-2018-13122 | MEDIUM | 6.5 | 0.8% | Jul 3, 2018 | onefilecms.php in OneFileCMS through 2017-10-08 might allow attackers to delete arbitrary files via the Delete File(s) s... |
| CVE-2018-13121 | — | — | 0.9% | Jul 3, 2018 | RealOne Player 2.0 Build 6.0.11.872 allows remote attackers to cause a denial of service (array out-of-bounds access and... |
| CVE-2018-9337 | — | — | 1.0% | Jul 3, 2018 | The PAN-OS web interface administration page in PAN-OS 6.1.20 and earlier, PAN-OS 7.1.17 and earlier, PAN-OS 8.0.10 and ... |
| CVE-2018-9335 | — | — | 1.0% | Jul 3, 2018 | The PAN-OS session browser in PAN-OS 6.1.20 and earlier, PAN-OS 7.1.16 and earlier, PAN-OS 8.0.9 and earlier, and PAN-OS... |
| CVE-2018-9334 | — | — | 0.4% | Jul 3, 2018 | The PAN-OS management web interface page in PAN-OS 6.1.20 and earlier, PAN-OS 7.1.16 and earlier, PAN-OS 8.0.8 and earli... |
| CVE-2018-9242 | — | — | 0.4% | Jul 3, 2018 | The PAN-OS management web interface page in PAN-OS 6.1.20 and earlier, PAN-OS 7.1.16 and earlier, PAN-OS 8.0.9 and earli... |
| CVE-2018-7636 | — | — | 1.1% | Jul 3, 2018 | The URL filtering "continue page" hosted by PAN-OS 8.0.10 and earlier may allow an attacker to inject arbitrary JavaScri... |
| CVE-2018-3754 | — | — | 1.2% | Jul 3, 2018 | Node.js third-party module query-mysql versions 0.0.0, 0.0.1, and 0.0.2 are vulnerable to an SQL injection vulnerability... |
| CVE-2018-3753 | — | — | 1.4% | Jul 3, 2018 | The utilities function in all versions <= 1.0.0 of the merge-objects node module can be tricked into modifying the proto... |
| CVE-2018-3752 | — | — | 1.4% | Jul 3, 2018 | The utilities function in all versions <= 1.0.0 of the merge-options node module can be tricked into modifying the proto... |
| CVE-2018-3751 | — | — | 1.4% | Jul 3, 2018 | The utilities function in all versions <= 0.3.0 of the merge-recursive node module can be tricked into modifying the pro... |
| CVE-2018-3750 | — | — | 2.1% | Jul 3, 2018 | The utilities function in all versions <= 0.5.0 of the deep-extend node module can be tricked into modifying the prototy... |
| CVE-2018-3749 | — | — | 1.4% | Jul 3, 2018 | The utilities function in all versions < 1.0.1 of the deap node module can be tricked into modifying the prototype of Ob... |
Check if your code is affected by 2018 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now