VULNERABILITY REMEDIATIONCVE remediation guides
Move from asset identification to supported remediation and post-change verification while keeping source evidence visible.
These defensive guides do not provide exploit reproduction or bypass instructions. 01Confirm exposure first
Match the product, version, installation path, and external exposure before treating a score as an action order.
02Prefer supported fixes
Use vendor advisories and supported update paths. An unverified fixed-version field stays visibly unresolved.
03Verify and retain rollback
Confirm version state, service health, access paths, logs, and rollback readiness after the change.
18,562 guide candidatesPage 1517 of 1547
Priority reviewCriticalFixed-version data
CVE-2017-8046Pivotal Pivotal Spring Data REST and Spring Boot, spring boot, spring data rest
- Affected
- Pivotal Spring Data REST versions prior to 2.6.9 (Ingalls SR9), 3.0.1 (Kay SR1) and Spring Boot versions prior to 1.5.9, 2.0 M6, < 1.5.9, 2.0.0, 3.0.0, < 2.6.9
- Fixed
- 1.5.9, 2.6.9
Known exploitedCriticalFixed-version data
CVE-2017-1000486Primetek Primefaces Application
- Affected
- >= 4.0 <= 4.0.24, >= 5.0 < 5.2.21, >= 5.3 < 5.3.8
- Fixed
- 5.2.21, 5.3.8
Known exploitedHighFixed-version data
CVE-2017-17562Embedthis GoAhead
- Affected
- < 3.6.5, 3.0, 4.0
- Fixed
- 3.6.5
Known exploitedCriticalFixed-version data
CVE-2017-15944Palo Alto Networks PAN-OS
- Affected
- < 6.1.19, >= 7.0.0 < 7.0.19, >= 7.1.0 < 7.1.14, >= 8.0.0 < 8.0.6
- Fixed
- 6.1.19, 7.0.19, 7.1.14, 8.0.6
Review reviewHighResearch in progress
CVE-2017-16879ncurses
- Affected
- 6.0
- Fixed
- No verified fixed-version field is available yet
Review reviewHighResearch in progress
CVE-2017-12350Cisco Umbrella Insights Virtual Appliance, umbrella virtual appliance
- Affected
- Cisco Umbrella Insights Virtual Appliance, <= 2.1.0
- Fixed
- No verified fixed-version field is available yet
Known exploitedHighResearch in progress
CVE-2017-11882Microsoft Office
- Affected
- Microsoft Office 2007 Service Pack 3, Microsoft Office 2010 Service Pack 2, Microsoft Office 2013 Service Pack 1, Microsoft Office 2016, 2007, 2010, 2013, 2016
- Fixed
- No verified fixed-version field is available yet
Known exploitedHighResearch in progress
CVE-2017-16651Roundcube Roundcube Webmail
- Affected
- <= 1.1.9, 1.2.0, 1.2.1, 1.2.2, 1.2.3, 1.2.4, 1.2.5, 1.2.6, 1.3.0, 1.3.1, 1.3.2, 7.0, 9.0
- Fixed
- No verified fixed-version field is available yet
Review reviewHighResearch in progress
CVE-2017-14919CADRA, node.js
- Affected
- < V2511, 4.8.2, 4.8.3, 4.8.4, 6.10.2, 6.10.3, 6.11.0, 6.11.1, 6.11.2, 6.11.3, 6.11.4, 8.0.0, 8.1.0, 8.1.1, 8.1.2, 8.1.3, 8.1.4, 8.2.0, 8.2.1, 8.3.0
- Fixed
- No verified fixed-version field is available yet
Known exploitedHighFixed-version data
CVE-2017-5070Google Chromium V8
- Affected
- Google Chrome prior to 59.0.3071.86 for Linux, Windows and Mac, and 59.0.3071.92 for Android, < 59.0.3071.86, < 59.0.3071.92, 6.0
- Fixed
- 59.0.3071.86, 59.0.3071.92
Known exploitedHighResearch in progress
CVE-2017-11292Adobe Flash Player
- Affected
- Adobe Flash Player 27.0.0.159 and earlier, <= 27.0.0.159, <= 27.0.0.130, 6.0
- Fixed
- No verified fixed-version field is available yet
Known exploitedHighResearch in progress
CVE-2017-10271Oracle WebLogic Server
- Affected
- 10.3.6.0.0, 12.1.3.0.0, 12.2.1.1.0, 12.2.1.2.0
- Fixed
- No verified fixed-version field is available yet