2019 CVE Vulnerabilities
17,619 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-16994 | MEDIUM | 4.7 | 0.5% | Sep 30, 2019 | In the Linux kernel before 5.0, a memory leak exists in sit_init_net() in net/ipv6/sit.c when register_netdev() fails to... |
| CVE-2019-16414 | MEDIUM | 6.1 | 1.6% | Sep 30, 2019 | A DOM based XSS in GFI Kerio Control v9.3.0 allows embedding of malicious code and manipulating the login page to send b... |
| CVE-2019-14752 | MEDIUM | 6.1 | 0.6% | Sep 30, 2019 | SuiteCRM 7.10.x and 7.11.x before 7.10.20 and 7.11.8 has XSS. |
| CVE-2019-16930 | MEDIUM | 5.3 | 1.6% | Sep 28, 2019 | Zcashd in Zcash before 2.0.7-3 allows discovery of the IP address of a full node that owns a shielded address, related t... |
| CVE-2019-16935 | MEDIUM | 6.1 | 4.7% | Sep 28, 2019 | The documentation XML-RPC server in Python through 2.7.16, 3.x through 3.6.9, and 3.7.x through 3.7.4 has XSS via the se... |
| CVE-2019-16926 | MEDIUM | 6.1 | 0.8% | Sep 28, 2019 | Flower 0.9.3 has XSS via a crafted worker name. NOTE: The project author stated that he doesn't think this is a valid vu... |
| CVE-2019-16925 | MEDIUM | 6.1 | 0.8% | Sep 28, 2019 | Flower 0.9.3 has XSS via the name parameter in an @app.task call. NOTE: The project author stated that he doesn't think ... |
| CVE-2019-3747 | MEDIUM | 4.8 | 0.8% | Sep 27, 2019 | Dell EMC Integrated Data Protection Appliance versions prior to 2.3 contain a stored cross-site scripting vulnerability.... |
| CVE-2019-16927 | MEDIUM | 5.5 | 0.9% | Sep 27, 2019 | Xpdf 4.01.01 has an out-of-bounds write in the vertProfile part of the TextPage::findGaps function in TextOutputDev.cc, ... |
| CVE-2019-16688 | MEDIUM | 5.4 | 0.8% | Sep 27, 2019 | Dolibarr 9.0.5 has stored XSS in an Email Template section to mails_templates.php. A user with no privileges can inject ... |
| CVE-2019-16687 | MEDIUM | 5.4 | 0.8% | Sep 27, 2019 | Dolibarr 9.0.5 has stored XSS in a User Profile in a Signature section to card.php. A user with the "Create/modify other... |
| CVE-2019-16686 | MEDIUM | 5.4 | 0.8% | Sep 27, 2019 | Dolibarr 9.0.5 has stored XSS in a User Note section to note.php. A user with no privileges can inject script to attack ... |
| CVE-2019-16685 | MEDIUM | 5.4 | 0.8% | Sep 27, 2019 | Dolibarr 9.0.5 has stored XSS vulnerability via a User Group Description section to card.php. A user with the "Create/mo... |
| CVE-2019-9435 | MEDIUM | 5.5 | 0.1% | Sep 27, 2019 | In Bluetooth, there is a possible out of bounds read due to a missing bounds check. This could lead to local information... |
| CVE-2019-9434 | MEDIUM | 4.9 | 0.7% | Sep 27, 2019 | In Bluetooth, there is a possible out of bounds read due to a missing bounds check. This could lead to remote informatio... |
| CVE-2019-9433 | MEDIUM | 6.5 | 3.1% | Sep 27, 2019 | In libvpx, there is a possible information disclosure due to improper input validation. This could lead to remote inform... |
| CVE-2019-9431 | MEDIUM | 4.9 | 0.7% | Sep 27, 2019 | In Bluetooth, there is a possible out of bounds read due to a use after free. This could lead to remote information disc... |
| CVE-2019-9428 | MEDIUM | 6.5 | 0.9% | Sep 27, 2019 | In the Framework, it is possible to set up BROWSEABLE intents to take over certain URLs. This could lead to remote infor... |
| CVE-2019-9427 | MEDIUM | 5.5 | 0.1% | Sep 27, 2019 | In Bluetooth, there is a possible information disclosure due to a use after free. This could lead to local information d... |
| CVE-2019-9421 | MEDIUM | 5 | 0.1% | Sep 27, 2019 | In libandroidfw, there is a possible OOB read due to an integer overflow. This could lead to local information disclosur... |
| CVE-2019-9420 | MEDIUM | 6.5 | 0.6% | Sep 27, 2019 | In libhevc, there is a possible out of bounds read due to an integer overflow. This could lead to remote denial of servi... |
| CVE-2019-9418 | MEDIUM | 6.5 | 0.7% | Sep 27, 2019 | In libstagefright, there is a possible resource exhaustion due to a missing bounds check. This could lead to remote deni... |
| CVE-2019-9417 | MEDIUM | 5.5 | 0.1% | Sep 27, 2019 | In Bluetooth, there is a possible out of bounds read due to a missing bounds check. This could lead to local information... |
| CVE-2019-9416 | MEDIUM | 6.5 | 0.7% | Sep 27, 2019 | In libstagefright there is a possible information disclosure due to uninitialized data. This could lead to remote inform... |
| CVE-2019-9415 | MEDIUM | 6.5 | 0.7% | Sep 27, 2019 | In libstagefright there is a possible information disclosure due to uninitialized data. This could lead to remote inform... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now