2018 CVE Vulnerabilities
17,817 CVEs published in 2018.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2018-17478 | — | — | 1.1% | Jun 27, 2019 | Incorrect array position calculations in V8 in Google Chrome prior to 70.0.3538.102 allowed a remote attacker to potenti... |
| CVE-2018-17460 | — | — | 0.6% | Jun 27, 2019 | Insufficient data validation in filesystem URIs in Google Chrome prior to 68.0.3440.75 allowed a remote attacker to spoo... |
| CVE-2018-16086 | — | — | 0.5% | Jun 27, 2019 | Insufficient policy enforcement in extensions API in Google Chrome prior to 69.0.3497.81 allowed an attacker who convinc... |
| CVE-2018-16077 | — | — | 0.7% | Jun 27, 2019 | Object lifecycle issue in Blink in Google Chrome prior to 69.0.3497.81 allowed a remote attacker to bypass content secur... |
| CVE-2018-16075 | — | — | 0.9% | Jun 27, 2019 | Insufficient file type enforcement in Blink in Google Chrome prior to 69.0.3497.81 allowed a remote attacker to obtain l... |
| CVE-2018-16074 | — | — | 0.9% | Jun 27, 2019 | Insufficient policy enforcement in site isolation in Google Chrome prior to 69.0.3497.81 allowed a remote attacker to by... |
| CVE-2018-16073 | — | — | 0.9% | Jun 27, 2019 | Insufficient policy enforcement in site isolation in Google Chrome prior to 69.0.3497.81 allowed a remote attacker to by... |
| CVE-2018-16070 | — | — | 0.9% | Jun 27, 2019 | Integer overflows in Skia in Google Chrome prior to 69.0.3497.81 allowed a remote attacker to potentially exploit heap c... |
| CVE-2018-16069 | — | — | 0.9% | Jun 27, 2019 | Unintended floating-point error accumulation in SwiftShader in Google Chrome prior to 69.0.3497.81 allowed a remote atta... |
| CVE-2018-16064 | — | — | 0.5% | Jun 27, 2019 | Insufficient data validation in Extensions API in Google Chrome prior to 68.0.3440.75 allowed an attacker who convinced ... |
| CVE-2018-15557 | — | — | 3.3% | Jun 27, 2019 | An issue was discovered in the Quantenna WiFi Controller on Telus Actiontec WEB6000Q v1.1.02.22 devices. An attacker can... |
| CVE-2018-15556 | — | — | 3.3% | Jun 27, 2019 | The Quantenna WiFi Controller on Telus Actiontec WEB6000Q v1.1.02.22 allows login with root level access with the user "... |
| CVE-2018-1893 | MEDIUM | 5.4 | 0.6% | Jun 27, 2019 | IBM Rational Collaborative Lifecycle Management 6.0 through 6.0.6.1 is vulnerable to cross-site scripting. This vulnerab... |
| CVE-2018-1892 | MEDIUM | 5.4 | 0.6% | Jun 27, 2019 | IBM Rational Collaborative Lifecycle Management 6.0 through 6.0.6.1 is vulnerable to cross-site scripting. This vulnerab... |
| CVE-2018-1828 | MEDIUM | 5.4 | 0.6% | Jun 27, 2019 | IBM Rational Collaborative Lifecycle Management 6.0 through 6.0.6.1 is vulnerable to cross-site scripting. This vulnerab... |
| CVE-2018-1827 | MEDIUM | 5.4 | 0.6% | Jun 27, 2019 | IBM Rational Collaborative Lifecycle Management 6.0 through 6.0.6.1 is vulnerable to cross-site scripting. This vulnerab... |
| CVE-2018-1826 | MEDIUM | 5.4 | 0.6% | Jun 27, 2019 | IBM Rational Collaborative Lifecycle Management 6.0 through 6.0.6.1 is vulnerable to cross-site scripting. This vulnerab... |
| CVE-2018-1760 | MEDIUM | 5.4 | 0.6% | Jun 27, 2019 | IBM Rational Collaborative Lifecycle Management 6.0 through 6.0.6.1 is vulnerable to cross-site scripting. This vulnerab... |
| CVE-2018-1758 | MEDIUM | 5.4 | 0.6% | Jun 27, 2019 | IBM Rational Collaborative Lifecycle Management 6.0 through 6.0.6.1 is vulnerable to cross-site scripting. This vulnerab... |
| CVE-2018-1734 | MEDIUM | 4.3 | 0.9% | Jun 27, 2019 | IBM Rational Collaborative Lifecycle Management 6.0 through 6.0.6.1 discloses sensitive information in error messages th... |
| CVE-2018-20847 | HIGH | 8.8 | 2.2% | Jun 26, 2019 | An improper computation of p_tx0, p_tx1, p_ty0 and p_ty1 in the function opj_get_encoding_parameters in openjp2/pi.c in ... |
| CVE-2018-20846 | MEDIUM | 6.5 | 2.2% | Jun 26, 2019 | Out-of-bounds accesses in the functions pi_next_lrcp, pi_next_rlcp, pi_next_rpcl, pi_next_pcrl, pi_next_rpcl, and pi_nex... |
| CVE-2018-20845 | MEDIUM | 6.5 | 2.3% | Jun 26, 2019 | Division-by-zero vulnerabilities in the functions pi_next_pcrl, pi_next_cprl, and pi_next_rpcl in openmj2/pi.c in OpenJP... |
| CVE-2018-2013 | MEDIUM | 5.3 | 1.8% | Jun 25, 2019 | IBM API Connect 2018.1 through 2018.4.1.5 could disclose sensitive information to an unauthorized user that could aid in... |
| CVE-2018-2011 | MEDIUM | 5.3 | 2.8% | Jun 25, 2019 | IBM API Connect 2018.1 through 2018.4.1.5 could allow an attacker to obtain sensitive information from a specially craft... |
Check if your code is affected by 2018 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now