2018 CVE Vulnerabilities
17,817 CVEs published in 2018.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2018-1000069 | — | — | 2.3% | Mar 13, 2018 | FreePlane version 1.5.9 and earlier contains a XML External Entity (XXE) vulnerability in XML Parser in mindmap loader t... |
| CVE-2018-1000114 | — | — | 0.6% | Mar 13, 2018 | An improper authorization vulnerability exists in Jenkins Promoted Builds Plugin 2.31.1 and earlier in Status.java and M... |
| CVE-2018-1000113 | — | — | 0.7% | Mar 13, 2018 | A cross-site scripting vulnerability exists in Jenkins TestLink Plugin 2.12 and earlier in TestLinkBuildAction/summary.j... |
| CVE-2018-1000112 | — | — | 1.0% | Mar 13, 2018 | An improper authorization vulnerability exists in Jenkins Mercurial Plugin version 2.2 and earlier in MercurialStatus.ja... |
| CVE-2018-1000111 | — | — | 0.9% | Mar 13, 2018 | An improper authorization vulnerability exists in Jenkins Subversion Plugin version 2.10.2 and earlier in SubversionStat... |
| CVE-2018-1000110 | — | — | 4.0% | Mar 13, 2018 | An improper authorization vulnerability exists in Jenkins Git Plugin version 3.7.0 and earlier in GitStatus.java that al... |
| CVE-2018-1000109 | — | — | 0.7% | Mar 13, 2018 | An improper authorization vulnerability exists in Jenkins Google Play Android Publisher Plugin version 1.6 and earlier i... |
| CVE-2018-1000108 | — | — | 0.8% | Mar 13, 2018 | A cross-site scripting vulnerability exists in Jenkins CppNCSS Plugin 1.1 and earlier in AbstractProjectAction/index.jel... |
| CVE-2018-1000107 | — | — | 0.7% | Mar 13, 2018 | An improper authorization vulnerability exists in Jenkins Job and Node Ownership Plugin 0.11.0 and earlier in OwnershipD... |
| CVE-2018-1000106 | — | — | 0.9% | Mar 13, 2018 | An improper authorization vulnerability exists in Jenkins Gerrit Trigger Plugin 2.27.4 and earlier in GerritManagement.j... |
| CVE-2018-1000105 | — | — | 0.7% | Mar 13, 2018 | An improper authorization vulnerability exists in Jenkins Gerrit Trigger Plugin 2.27.4 and earlier in GerritManagement.j... |
| CVE-2018-1000104 | — | — | 0.3% | Mar 13, 2018 | A plaintext storage of a password vulnerability exists in Jenkins Coverity Plugin 1.10.0 and earlier in CIMInstance.java... |
| CVE-2018-1000103 | — | — | — | Mar 13, 2018 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2018-1000068. Reason: This candidate is a reservation... |
| CVE-2018-1000102 | — | — | — | Mar 13, 2018 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2018-1000067. Reason: This candidate is a reservation... |
| CVE-2018-8078 | — | — | 0.8% | Mar 13, 2018 | YzmCMS 3.7 has Stored XSS via the title parameter to advertisement/adver/edit.html. |
| CVE-2018-8087 | — | — | 0.5% | Mar 13, 2018 | Memory leak in the hwsim_new_radio_nl function in drivers/net/wireless/mac80211_hwsim.c in the Linux kernel through 4.15... |
| CVE-2018-1000099 | — | — | 3.5% | Mar 13, 2018 | Teluu PJSIP version 2.7.1 and earlier contains a Access of Null/Uninitialized Pointer vulnerability in pjmedia SDP parsi... |
| CVE-2018-1000098 | — | — | 3.5% | Mar 13, 2018 | Teluu PJSIP version 2.7.1 and earlier contains a Integer Overflow vulnerability in pjmedia SDP parsing that can result i... |
| CVE-2018-1000097 | — | — | 2.0% | Mar 13, 2018 | Sharutils sharutils (unshar command) version 4.15.2 contains a Buffer Overflow vulnerability in Affected component on th... |
| CVE-2018-1000096 | — | — | 0.7% | Mar 13, 2018 | brianleroux tiny-json-http version all versions since commit 9b8e74a232bba4701844e07bcba794173b0238a8 (Oct 29 2016) cont... |
| CVE-2018-1000095 | — | — | 0.5% | Mar 13, 2018 | oVirt version 4.2.0 to 4.2.2 contains a Cross Site Scripting (XSS) vulnerability in the name/description of VMs portion ... |
| CVE-2018-1000094 | — | — | 40.5% | Mar 13, 2018 | CMS Made Simple version 2.2.5 contains a Remote Code Execution vulnerability in File Manager that can result in Allows a... |
| CVE-2018-8086 | — | — | — | Mar 13, 2018 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. ... |
| CVE-2018-7563 | — | — | 1.1% | Mar 12, 2018 | An issue was discovered in GLPI through 9.2.1. The application is affected by XSS in the query string to front/preferenc... |
| CVE-2018-7562 | — | — | 1.7% | Mar 12, 2018 | A remote code execution issue was discovered in GLPI through 9.2.1. There is a race condition that allows temporary acce... |
Check if your code is affected by 2018 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now