2019 CVE Vulnerabilities

17,624 CVEs published in 2019.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2019-2666——Vulnerability in the Oracle One-to-One Fulfillment component of Oracle E-Business Suite (subcomponent: Print Server). Su...
CVE-2019-2599——Vulnerability in the PeopleSoft Enterprise PT PeopleTools component of Oracle PeopleSoft Products (subcomponent: Pagelet...
CVE-2019-2569——Vulnerability in the Core RDBMS component of Oracle Database Server. Supported versions that are affected are 11.2.0.4, ...
CVE-2019-2561——Vulnerability in the Oracle Retail Xstore Office component of Oracle Retail Applications (subcomponent: Internal Operati...
CVE-2019-2484——Vulnerability in the Application Express component of Oracle Database Server. Supported versions that are affected are 5...
CVE-2019-12164——ubuntu-server.js in Status React Native Desktop before v0.57.8_mobile_ui allows Remote Code Execution.
CVE-2019-1010201——Jeesite 1.2.7 is affected by: SQL Injection. The impact is: sensitive information disclosure. The component is: updatePr...
CVE-2019-1010200——Voice Builder Prior to commit c145d4604df67e6fc625992412eef0bf9a85e26b and f6660e6d8f0d1d931359d591dbdec580fef36d36 is a...
CVE-2019-1010199——ServiceStack ServiceStack Framework 4.5.14 is affected by: Cross Site Scripting (XSS). The impact is: JavaScrpit is refl...
CVE-2019-13570——The AJdG AdRotate plugin before 5.3 for WordPress allows SQL Injection.
CVE-2019-12162——Upwork Time Tracker 5.2.2.716 doesn't verify the SHA256 hash of the downloaded program update before running it, which c...
CVE-2019-1010173——Jsish 2.4.84 2.0484 is affected by: Reachable Assertion. The impact is: denial of service. The component is: function Js...
CVE-2019-9821——A use-after-free vulnerability can occur in AssertWorkerThread due to a race condition with shared workers. This results...
CVE-2019-9820——A use-after-free vulnerability can occur in the chrome event handler when it is freed while still in use. This results i...
CVE-2019-9819——A vulnerability where a JavaScript compartment mismatch can occur while working with the fetch API, resulting in a poten...
CVE-2019-9817——Images from a different domain can be read using a canvas object in some circumstances. This could be used to steal imag...
CVE-2019-9816——A possible vulnerability exists where type confusion can occur when manipulating JavaScript objects in object groups, al...
CVE-2019-9815——If hyperthreading is not disabled, a timing attack vulnerability exists, similar to previous Spectre attacks. Apple has ...
CVE-2019-9814——Mozilla developers and community members reported memory safety bugs present in Firefox 66. Some of these bugs showed ev...
CVE-2019-9800——Mozilla developers and community members reported memory safety bugs present in Firefox 66, Firefox ESR 60.6, and Thunde...
CVE-2019-11729——Empty or malformed p256-ECDH public keys may trigger a segmentation fault due values being improperly sanitized before b...
CVE-2019-11727——A vulnerability exists where it possible to force Network Security Services (NSS) to sign CertificateVerify with PKCS#1 ...
CVE-2019-11719——When importing a curve25519 private key in PKCS#8format with leading 0x00 bytes, it is possible to trigger an out-of-bou...
CVE-2019-11716——Until explicitly accessed by script, window.globalThis is not enumerable and, as a result, is not visible to code such a...
CVE-2019-11715——Due to an error while parsing page content, it is possible for properly sanitized user input to be misinterpreted and le...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now