2018 CVE Vulnerabilities

17,817 CVEs published in 2018.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2018-2582MEDIUM6.5Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: Hotspot). Supported versions t...
CVE-2018-2581MEDIUM4.7Vulnerability in the Java SE component of Oracle Java SE (subcomponent: JavaFX). Supported versions that are affected ar...
CVE-2018-5747MEDIUM5.5In Long Range Zip (aka lrzip) 0.631, there is a use-after-free in the ucompthread function (stream.c). Remote attackers ...
CVE-2018-5686MEDIUM5.5In MuPDF 1.12.0, there is an infinite loop vulnerability and application hang in the pdf_parse_array function (pdf/pdf-p...
CVE-2018-5376MEDIUM6.1Discuz! DiscuzX X3.4 has XSS via the include\spacecp\spacecp_upload.php op parameter.
CVE-2018-0014MEDIUM4.3Juniper Networks ScreenOS devices do not pad Ethernet packets with zeros, and thus some packets can contain fragments of...
CVE-2018-0013MEDIUM6.5A local file inclusion vulnerability in Juniper Networks Junos Space Network Management Platform may allow an authentica...
CVE-2018-0011MEDIUM5.4A reflected cross site scripting (XSS) vulnerability in Junos Space may potentially allow a remote authenticated user to...
CVE-2018-0009MEDIUM5.4On Juniper Networks SRX series devices, firewall rules configured to match custom application UUIDs starting with zeros ...
CVE-2018-0008MEDIUM6.2An unauthenticated root login may allow upon reboot when a commit script is used. A commit script allows a device admini...
CVE-2018-0006MEDIUM6.5A high rate of VLAN authentication attempts sent from an adjacent host on the local broadcast domain can trigger high me...
CVE-2018-0004MEDIUM6.5A sustained sequence of different types of normal transit traffic can trigger a high CPU consumption denial of service c...
CVE-2018-0003MEDIUM6.5A specially crafted MPLS packet received or processed by the system, on an interface configured with MPLS, will store in...
CVE-2018-5281MEDIUM5.4SonicWall SonicOS on Network Security Appliance (NSA) 2017 Q4 devices has XSS via the CFS Custom Category and Cloud AV D...
CVE-2018-5280MEDIUM5.4SonicWall SonicOS on Network Security Appliance (NSA) 2016 Q4 devices has XSS via the Configure SSO screens.
CVE-2018-5269MEDIUM5.5In OpenCV 3.3.1, an assertion failure happens in cv::RBaseStream::setPos in modules/imgcodecs/src/bitstrm.cpp because of...
CVE-2018-5268MEDIUM5.5In OpenCV 3.3.1, a heap-based buffer overflow happens in cv::Jpeg2KDecoder::readComponent8u in modules/imgcodecs/src/grf...

Check if your code is affected by 2018 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now