2019 CVE Vulnerabilities
17,619 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-12983 | — | — | — | Jun 26, 2019 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2019-11884. Reason: This candidate is a reservation d... |
| CVE-2019-12978 | — | — | 1.9% | Jun 26, 2019 | ImageMagick 7.0.8-34 has a "use of uninitialized value" vulnerability in the ReadPANGOImage function in coders/pango.c. |
| CVE-2019-12977 | — | — | 1.9% | Jun 26, 2019 | ImageMagick 7.0.8-34 has a "use of uninitialized value" vulnerability in the WriteJP2Image function in coders/jp2.c. |
| CVE-2019-12974 | — | — | 2.3% | Jun 26, 2019 | A NULL pointer dereference in the function ReadPANGOImage in coders/pango.c and the function ReadVIDImage in coders/vid.... |
| CVE-2019-11583 | — | — | 1.5% | Jun 26, 2019 | The issue searching component in Jira before version 8.1.0 allows remote attackers to deny access to Jira service via de... |
| CVE-2019-12968 | — | — | 2.6% | Jun 26, 2019 | A vulnerability was found in the Sonic Robo Blast 2 (SRB2) plugin (EP_Versions 9 to 11 inclusive) distributed with Dooms... |
| CVE-2019-12966 | — | — | 2.4% | Jun 26, 2019 | FeHelper through 2019-06-19 allows arbitrary code execution during a JSON format operation, as demonstrated by the {"a":... |
| CVE-2019-12888 | — | — | — | Jun 26, 2019 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2019-12887. Reason: This candidate is a reservation d... |
| CVE-2019-3961 | — | — | 1.5% | Jun 25, 2019 | Nessus versions 8.4.0 and earlier were found to contain a reflected XSS vulnerability due to improper validation of user... |
| CVE-2019-12280 | — | — | 2.1% | Jun 25, 2019 | PC-Doctor Toolbox before 7.3 has an Uncontrolled Search Path Element. |
| CVE-2019-6328 | — | — | 0.7% | Jun 25, 2019 | HP Support Assistant 8.7.50 and earlier allows a user to gain system privilege and allows unauthorized modification of d... |
| CVE-2019-12964 | — | — | 0.8% | Jun 25, 2019 | LiveZilla Server before 8.0.1.1 is vulnerable to XSS in the ticket.php Subject. |
| CVE-2019-12963 | — | — | 0.8% | Jun 25, 2019 | LiveZilla Server before 8.0.1.1 is vulnerable to XSS in the chat.php Create Ticket Action. |
| CVE-2019-12961 | — | — | 1.4% | Jun 25, 2019 | LiveZilla Server before 8.0.1.1 is vulnerable to CSV Injection in the Export Function. |
| CVE-2019-12960 | — | — | 1.4% | Jun 25, 2019 | LiveZilla Server before 8.0.1.1 is vulnerable to SQL Injection in functions.internal.build.inc.php via the parameter p_d... |
| CVE-2019-12949 | — | — | 3.0% | Jun 25, 2019 | In pfSense 2.4.4-p2 and 2.4.4-p3, if it is possible to trick an authenticated administrator into clicking on a button on... |
| CVE-2019-12958 | — | — | 1.2% | Jun 25, 2019 | In Xpdf 4.01.01, a heap-based buffer over-read could be triggered in FoFiType1C::convertToType0 in fofi/FoFiType1C.cc wh... |
| CVE-2019-12951 | — | — | 2.0% | Jun 24, 2019 | An issue was discovered in Mongoose before 6.15. The parse_mqtt() function in mg_mqtt.c has a critical heap-based buffer... |
| CVE-2019-10689 | — | — | 0.7% | Jun 24, 2019 | VVX products using UCS software version 5.9.2 and earlier with Better Together over Ethernet Connector (BToE) applicatio... |
| CVE-2019-12346 | — | — | 1.1% | Jun 24, 2019 | In the miniOrange SAML SP Single Sign On plugin before 4.8.73 for WordPress, the SAML Login Endpoint is vulnerable to XS... |
| CVE-2019-9958 | — | — | 0.8% | Jun 24, 2019 | CSRF within the admin panel in Quadbase EspressReport ES (ERES) v7.0 update 7 allows remote attackers to escalate privil... |
| CVE-2019-9957 | — | — | 0.8% | Jun 24, 2019 | Stored XSS within Quadbase EspressReport ES (ERES) v7.0 update 7 allows remote attackers to execute malicious JavaScript... |
| CVE-2019-12880 | — | — | 1.4% | Jun 24, 2019 | BCN Quark Quarking Password Manager 3.1.84 suffers from a clickjacking vulnerability caused by allowing * within web_acc... |
| CVE-2019-9085 | — | — | 2.0% | Jun 24, 2019 | Hoteldruid before v2.3.1 allows remote authenticated users to cause a denial of service (invoice-creation outage) via th... |
| CVE-2019-12940 | — | — | 1.1% | Jun 24, 2019 | LiveZilla Server before 8.0.1.1 is vulnerable to Denial Of Service (memory consumption) in knowledgebase.php via a large... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now