2019 CVE Vulnerabilities

17,619 CVEs published in 2019.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2019-16994MEDIUM4.7In the Linux kernel before 5.0, a memory leak exists in sit_init_net() in net/ipv6/sit.c when register_netdev() fails to...
CVE-2019-16414MEDIUM6.1A DOM based XSS in GFI Kerio Control v9.3.0 allows embedding of malicious code and manipulating the login page to send b...
CVE-2019-14752MEDIUM6.1SuiteCRM 7.10.x and 7.11.x before 7.10.20 and 7.11.8 has XSS.
CVE-2019-16930MEDIUM5.3Zcashd in Zcash before 2.0.7-3 allows discovery of the IP address of a full node that owns a shielded address, related t...
CVE-2019-16935MEDIUM6.1The documentation XML-RPC server in Python through 2.7.16, 3.x through 3.6.9, and 3.7.x through 3.7.4 has XSS via the se...
CVE-2019-16926MEDIUM6.1Flower 0.9.3 has XSS via a crafted worker name. NOTE: The project author stated that he doesn't think this is a valid vu...
CVE-2019-16925MEDIUM6.1Flower 0.9.3 has XSS via the name parameter in an @app.task call. NOTE: The project author stated that he doesn't think ...
CVE-2019-3747MEDIUM4.8Dell EMC Integrated Data Protection Appliance versions prior to 2.3 contain a stored cross-site scripting vulnerability....
CVE-2019-16927MEDIUM5.5Xpdf 4.01.01 has an out-of-bounds write in the vertProfile part of the TextPage::findGaps function in TextOutputDev.cc, ...
CVE-2019-16688MEDIUM5.4Dolibarr 9.0.5 has stored XSS in an Email Template section to mails_templates.php. A user with no privileges can inject ...
CVE-2019-16687MEDIUM5.4Dolibarr 9.0.5 has stored XSS in a User Profile in a Signature section to card.php. A user with the "Create/modify other...
CVE-2019-16686MEDIUM5.4Dolibarr 9.0.5 has stored XSS in a User Note section to note.php. A user with no privileges can inject script to attack ...
CVE-2019-16685MEDIUM5.4Dolibarr 9.0.5 has stored XSS vulnerability via a User Group Description section to card.php. A user with the "Create/mo...
CVE-2019-9435MEDIUM5.5In Bluetooth, there is a possible out of bounds read due to a missing bounds check. This could lead to local information...
CVE-2019-9434MEDIUM4.9In Bluetooth, there is a possible out of bounds read due to a missing bounds check. This could lead to remote informatio...
CVE-2019-9433MEDIUM6.5In libvpx, there is a possible information disclosure due to improper input validation. This could lead to remote inform...
CVE-2019-9431MEDIUM4.9In Bluetooth, there is a possible out of bounds read due to a use after free. This could lead to remote information disc...
CVE-2019-9428MEDIUM6.5In the Framework, it is possible to set up BROWSEABLE intents to take over certain URLs. This could lead to remote infor...
CVE-2019-9427MEDIUM5.5In Bluetooth, there is a possible information disclosure due to a use after free. This could lead to local information d...
CVE-2019-9421MEDIUM5In libandroidfw, there is a possible OOB read due to an integer overflow. This could lead to local information disclosur...
CVE-2019-9420MEDIUM6.5In libhevc, there is a possible out of bounds read due to an integer overflow. This could lead to remote denial of servi...
CVE-2019-9418MEDIUM6.5In libstagefright, there is a possible resource exhaustion due to a missing bounds check. This could lead to remote deni...
CVE-2019-9417MEDIUM5.5In Bluetooth, there is a possible out of bounds read due to a missing bounds check. This could lead to local information...
CVE-2019-9416MEDIUM6.5In libstagefright there is a possible information disclosure due to uninitialized data. This could lead to remote inform...
CVE-2019-9415MEDIUM6.5In libstagefright there is a possible information disclosure due to uninitialized data. This could lead to remote inform...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now