2018 CVE Vulnerabilities

17,817 CVEs published in 2018.

CVE IDSeverityCVSSDescription
CVE-2018-13134TP-Link Archer C1200 1.13 Build 2018/01/24 rel.52299 EU devices have XSS via the PATH_INFO to the /webpages/data URI.
CVE-2018-13133Golden Frog VyprVPN before 2018-06-21 has a vulnerability associated with the installation process on Windows.
CVE-2018-13132Spadeico is a smart contract running on Ethereum. The mint function has an integer overflow that allows minted tokens to...
CVE-2018-13131SpadePreSale is a smart contract running on Ethereum. The mint function has an integer overflow that allows minted token...
CVE-2018-13130Bitotal (TFUND) is a smart contract running on Ethereum. The mintTokens function has an integer overflow that allows min...
CVE-2018-13129SP8DE Token (SPX) is a smart contract running on Ethereum. The mint function has an integer overflow that allows minted ...
CVE-2018-13128Etherty Token (ETY) is a smart contract running on Ethereum. The mint function has an integer overflow that allows minte...
CVE-2018-13127SP8DE PreSale Token (DSPX) is a smart contract running on Ethereum. The mint function has an integer overflow that allow...
CVE-2018-13126MoxyOnePresale is a smart contract running on Ethereum. The mint function has an integer overflow that allows minted tok...
CVE-2018-11429ATLANT (ATL) is a smart contract running on Ethereum. The mint function has an integer overflow that allows minted token...
CVE-2018-11335GVToken Genesis Vision (GVT) is a smart contract running on Ethereum. The mint function has an integer overflow that all...
CVE-2018-13123onefilecms.php in OneFileCMS through 2017-10-08 might allow attackers to read arbitrary files via the i and f parameters...
CVE-2018-13122MEDIUM6.5onefilecms.php in OneFileCMS through 2017-10-08 might allow attackers to delete arbitrary files via the Delete File(s) s...
CVE-2018-13121RealOne Player 2.0 Build 6.0.11.872 allows remote attackers to cause a denial of service (array out-of-bounds access and...
CVE-2018-9337The PAN-OS web interface administration page in PAN-OS 6.1.20 and earlier, PAN-OS 7.1.17 and earlier, PAN-OS 8.0.10 and ...
CVE-2018-9335The PAN-OS session browser in PAN-OS 6.1.20 and earlier, PAN-OS 7.1.16 and earlier, PAN-OS 8.0.9 and earlier, and PAN-OS...
CVE-2018-9334The PAN-OS management web interface page in PAN-OS 6.1.20 and earlier, PAN-OS 7.1.16 and earlier, PAN-OS 8.0.8 and earli...
CVE-2018-9242The PAN-OS management web interface page in PAN-OS 6.1.20 and earlier, PAN-OS 7.1.16 and earlier, PAN-OS 8.0.9 and earli...
CVE-2018-7636The URL filtering "continue page" hosted by PAN-OS 8.0.10 and earlier may allow an attacker to inject arbitrary JavaScri...
CVE-2018-3754Node.js third-party module query-mysql versions 0.0.0, 0.0.1, and 0.0.2 are vulnerable to an SQL injection vulnerability...
CVE-2018-3753The utilities function in all versions <= 1.0.0 of the merge-objects node module can be tricked into modifying the proto...
CVE-2018-3752The utilities function in all versions <= 1.0.0 of the merge-options node module can be tricked into modifying the proto...
CVE-2018-3751The utilities function in all versions <= 0.3.0 of the merge-recursive node module can be tricked into modifying the pro...
CVE-2018-3750The utilities function in all versions <= 0.5.0 of the deep-extend node module can be tricked into modifying the prototy...
CVE-2018-3749The utilities function in all versions < 1.0.1 of the deap node module can be tricked into modifying the prototype of Ob...

Check if your code is affected by 2018 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now