2018 CVE Vulnerabilities
17,817 CVEs published in 2018.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2018-20983 | — | — | 0.9% | Aug 22, 2019 | The wp-retina-2x plugin before 5.2.3 for WordPress has XSS. |
| CVE-2018-20982 | — | — | 0.9% | Aug 22, 2019 | The media-library-assistant plugin before 2.74 for WordPress has XSS via the Media/Assistant or Settings/Media Library a... |
| CVE-2018-20981 | — | — | 1.7% | Aug 22, 2019 | The ninja-forms plugin before 3.3.9 for WordPress has insufficient restrictions on submission-data retrieval during Expo... |
| CVE-2018-20980 | — | — | 1.4% | Aug 22, 2019 | The ninja-forms plugin before 3.2.15 for WordPress has parameter tampering. |
| CVE-2018-20979 | — | — | 2.0% | Aug 22, 2019 | The contact-form-7 plugin before 5.0.4 for WordPress has privilege escalation because of capability_type mishandling in ... |
| CVE-2018-17791 | — | — | 1.9% | Aug 21, 2019 | Newgen OmniFlow Intelligent Business Process Suite (iBPS) 7.0 has an "improper server side validation" vulnerability whe... |
| CVE-2018-20977 | MEDIUM | 6.1 | 0.9% | Aug 21, 2019 | The all-in-one-schemaorg-rich-snippets plugin before 1.5.0 for WordPress has XSS on the settings page. |
| CVE-2018-20970 | — | — | 0.9% | Aug 21, 2019 | The pdf-print plugin before 2.0.3 for WordPress has multiple XSS issues. |
| CVE-2018-1796 | HIGH | 7.8 | 0.4% | Aug 20, 2019 | IBM Informix Dynamic Server Enterprise Edition 12.1 could allow a local user to load malicious libraries and gain root p... |
| CVE-2018-1636 | MEDIUM | 6.7 | 0.4% | Aug 20, 2019 | Stack-based buffer overflow in oninit in IBM Informix Dynamic Server Enterprise Edition 12.1 allows an authenticated use... |
| CVE-2018-1635 | MEDIUM | 6.7 | 0.4% | Aug 20, 2019 | Stack-based buffer overflow in oninit in IBM Informix Dynamic Server Enterprise Edition 12.1 allows an authenticated use... |
| CVE-2018-1634 | MEDIUM | 6.7 | 0.4% | Aug 20, 2019 | IBM Informix Dynamic Server Enterprise Edition 12.1 could allow a local user logged in with database administrator user ... |
| CVE-2018-1633 | MEDIUM | 6.7 | 0.4% | Aug 20, 2019 | IBM Informix Dynamic Server Enterprise Edition 12.1 could allow a local user logged in with database administrator user ... |
| CVE-2018-1632 | MEDIUM | 6.7 | 0.4% | Aug 20, 2019 | IBM Informix Dynamic Server Enterprise Edition 12.1 could allow a local user logged in with database administrator user ... |
| CVE-2018-1631 | MEDIUM | 6.7 | 0.4% | Aug 20, 2019 | IBM Informix Dynamic Server Enterprise Edition 12.1 could allow a local user logged in with database administrator user ... |
| CVE-2018-1630 | MEDIUM | 6.7 | 0.4% | Aug 20, 2019 | IBM Informix Dynamic Server Enterprise Edition 12.1 could allow a local user logged in with database administrator user ... |
| CVE-2018-18056 | — | — | 0.4% | Aug 20, 2019 | An issue was discovered in the Texas Instruments (TI) TM4C, MSP432E and MSP432P microcontroller series. The eXecute-Only... |
| CVE-2018-20978 | — | — | 0.9% | Aug 20, 2019 | The wp-all-import plugin before 3.4.7 for WordPress has XSS. |
| CVE-2018-20975 | — | — | 1.2% | Aug 20, 2019 | Fat Free CRM before 0.18.1 has XSS in the tags_helper in app/helpers/tags_helper.rb. |
| CVE-2018-20976 | — | — | 0.6% | Aug 19, 2019 | An issue was discovered in fs/xfs/xfs_super.c in the Linux kernel before 4.18. A use after free exists, related to xfs_f... |
| CVE-2018-20974 | — | — | 0.6% | Aug 16, 2019 | The js-jobs plugin before 1.0.7 for WordPress has CSRF. |
| CVE-2018-20973 | — | — | 2.0% | Aug 16, 2019 | The companion-auto-update plugin before 3.2.1 for WordPress has local file inclusion. |
| CVE-2018-20972 | — | — | 0.6% | Aug 16, 2019 | The companion-auto-update plugin before 3.2.1 for WordPress has CSRF. |
| CVE-2018-20971 | — | — | 0.6% | Aug 16, 2019 | The church-admin plugin before 1.2550 for WordPress has CSRF affecting the upload of a bible reading plan. |
| CVE-2018-13884 | — | — | — | Aug 16, 2019 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n... |
Check if your code is affected by 2018 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now