2018 CVE Vulnerabilities

17,817 CVEs published in 2018.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2018-0230HIGH8.6A vulnerability in the internal packet-processing functionality of Cisco Firepower Threat Defense (FTD) Software for Cis...
CVE-2018-0228HIGH8.6A vulnerability in the ingress flow creation functionality of Cisco Adaptive Security Appliance (ASA) could allow an una...
CVE-2018-0227HIGH7.5A vulnerability in the Secure Sockets Layer (SSL) Virtual Private Network (VPN) Client Certificate Authentication featur...
CVE-2018-3843HIGH8.8An exploitable type confusion vulnerability exists in the way Foxit PDF Reader version 9.0.1.1049 parses files with asso...
CVE-2018-3842HIGH8.8An exploitable use of an uninitialized pointer vulnerability exists in the JavaScript engine in Foxit PDF Reader version...
CVE-2018-2826HIGH8.3Vulnerability in the Java SE component of Oracle Java SE (subcomponent: Libraries). The supported version that is affect...
CVE-2018-2825HIGH8.3Vulnerability in the Java SE component of Oracle Java SE (subcomponent: Libraries). The supported version that is affect...
CVE-2018-2814HIGH8.3Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: Hotspot). Supported versions t...
CVE-2018-2811HIGH7.7Vulnerability in the Java SE component of Oracle Java SE (subcomponent: Install). Supported versions that are affected a...
CVE-2018-2794HIGH7.7Vulnerability in the Java SE, JRockit component of Oracle Java SE (subcomponent: Security). Supported versions that are ...
CVE-2018-2783HIGH7.4Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: Security). Supported ...
CVE-2018-2755HIGH7.7Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Replication). Supported versions that...
CVE-2018-1274HIGH7.5Spring Data Commons, versions 1.13 to 1.13.10, 2.0 to 2.0.5, and older unsupported versions, contain a property path par...
CVE-2018-1088HIGH8.1A privilege escalation flaw was found in gluster 3.x snapshot scheduler. Any gluster client allowed to mount gluster vol...
CVE-2018-8834HIGH7.8Parsing malformed project files in Omron CX-One versions 4.42 and prior, including the following applications: CX-FLnet ...
CVE-2018-7514HIGH7.8Parsing malformed project files in Omron CX-One versions 4.42 and prior, including the following applications: CX-FLnet ...
CVE-2018-5430HIGH8.8The Spring web flows of TIBCO Software Inc.'s TIBCO JasperReports Server, TIBCO JasperReports Server Community Edition, ...
CVE-2018-5429HIGH8.8A vulnerability in the report scripting component of TIBCO Software Inc.'s TIBCO JasperReports Server, TIBCO JasperRepor...
CVE-2018-3849HIGH8.8In the ffghtb function in NASA CFITSIO 3.42, specially crafted images parsed via the library can cause a stack-based buf...
CVE-2018-3848HIGH8.8In the ffghbn function in NASA CFITSIO 3.42, specially crafted images parsed via the library can cause a stack-based buf...
CVE-2018-3846HIGH8.8In the ffgphd and ffgtkn functions in NASA CFITSIO 3.42, specially crafted images parsed via the library can cause a sta...
CVE-2018-3889HIGH7.8A specially crafted PCX image processed via the application can lead to an out-of-bounds write, overwriting arbitrary da...
CVE-2018-3868HIGH7.8A specially crafted TIFF image processed via the application can lead to an out-of-bounds write, overwriting arbitrary d...
CVE-2018-3862HIGH7.8A specially crafted TIFF image processed via the application can lead to an out-of-bounds write, overwriting
CVE-2018-3861HIGH7.8A specially crafted TIFF image processed via the application can lead to an out-of-bounds write, overwriting arbitrary d...

Check if your code is affected by 2018 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now