2019 CVE Vulnerabilities
17,619 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-25058 | HIGH | 7.8 | 0.4% | Feb 24, 2022 | An issue was discovered in USBGuard before 1.1.0. On systems with the usbguard-dbus daemon running, an unprivileged user... |
| CVE-2019-25057 | HIGH | 7.5 | 0.8% | Feb 14, 2022 | In Corda before 4.1, the meaning of serialized data can be modified via an attacker-controlled CustomSerializer. |
| CVE-2019-16864 | HIGH | 8.8 | 7.2% | Feb 14, 2022 | CompleteFTPService.exe in the server in EnterpriseDT CompleteFTP before 12.1.4 allows Remote Code Execution by leveragin... |
| CVE-2019-25055 | HIGH | 7.5 | 1.2% | Dec 27, 2021 | An issue was discovered in the libpulse-binding crate before 2.6.0 for Rust. It mishandles a panic that crosses a Foreig... |
| CVE-2019-25054 | HIGH | 7.5 | 1.0% | Dec 27, 2021 | An issue was discovered in the pnet crate before 0.27.2 for Rust. There is a segmentation fault (upon attempted derefere... |
| CVE-2019-19138 | HIGH | 7.5 | 2.1% | Dec 15, 2021 | Ivanti Workspace Control before 10.4.50.0 allows attackers to degrade integrity. |
| CVE-2019-8922 | HIGH | 8.8 | 1.4% | Nov 29, 2021 | A heap-based buffer overflow was discovered in bluetoothd in BlueZ through 5.48. There isn't any check on whether there ... |
| CVE-2019-18912 | HIGH | 7.8 | 0.3% | Nov 9, 2021 | A potential security vulnerability has been identified for certain HP printers and MFPs with Troy solutions. For affecte... |
| CVE-2019-18916 | HIGH | 7.8 | 0.2% | Nov 9, 2021 | A potential security vulnerability has been identified for HP LaserJet Solution Software (for certain HP LaserJet Printe... |
| CVE-2019-3556 | HIGH | 8.1 | 1.7% | Oct 26, 2021 | HHVM supports the use of an "admin" server which accepts administrative requests over HTTP. One of those request handler... |
| CVE-2019-9060 | HIGH | 7.5 | 1.5% | Sep 17, 2021 | An issue was discovered in CMS Made Simple 2.2.8. It is possible to achieve unauthenticated path traversal in the CGExte... |
| CVE-2019-14453 | HIGH | 8.8 | 1.2% | Aug 3, 2021 | An issue was discovered in Comelit "App lejos de casa (web)" 2.8.0. It allows privilege escalation via modified domus an... |
| CVE-2019-25051 | HIGH | 7.8 | 0.5% | Jul 20, 2021 | objstack in GNU Aspell 0.60.8 has a heap-based buffer overflow in acommon::ObjStack::dup_top (called from acommon::Strin... |
| CVE-2019-25050 | HIGH | 7.8 | 0.4% | Jul 20, 2021 | netCDF in GDAL 2.4.2 through 3.0.4 has a stack-based buffer overflow in nc4_get_att (called from nc4_get_att_tc and nc_g... |
| CVE-2019-3752 | HIGH | 8.2 | 1.0% | Jul 16, 2021 | Dell EMC Avamar Server versions 7.4.1, 7.5.0, 7.5.1, 18.2 and 19.1 and Dell EMC Integrated Data Protection Appliance (ID... |
| CVE-2019-25049 | HIGH | 7.1 | 0.9% | Jul 1, 2021 | LibreSSL 2.9.1 through 3.2.1 has an out-of-bounds read in asn1_item_print_ctx (called from asn1_template_print_ctx). |
| CVE-2019-25048 | HIGH | 7.1 | 0.9% | Jul 1, 2021 | LibreSSL 2.9.1 through 3.2.1 has a heap-based buffer over-read in do_print_ex (called from asn1_item_print_ctx and ASN1_... |
| CVE-2019-25045 | HIGH | 7.8 | 0.5% | Jun 7, 2021 | An issue was discovered in the Linux kernel before 5.0.19. The XFRM subsystem has a use-after-free, related to an xfrm_s... |
| CVE-2019-14584 | HIGH | 7.8 | 0.3% | Jun 3, 2021 | Null pointer dereference in Tianocore EDK2 may allow an authenticated user to potentially enable escalation of privilege... |
| CVE-2019-4730 | HIGH | 7.1 | 2.0% | Jun 1, 2021 | IBM Cognos Analytics 11.0 and 11.1 is vulnerable to an XML External Entity Injection (XXE) attack when processing XML da... |
| CVE-2019-4724 | HIGH | 7.5 | 2.4% | Jun 1, 2021 | IBM Cognos Analytics 11.0 and 11.1 could allow a remote attacker to obtain credentials from a user's browser via incorre... |
| CVE-2019-4723 | HIGH | 7.5 | 2.4% | Jun 1, 2021 | IBM Cognos Analytics 11.0 and 11.1 could allow a remote attacker to obtain credentials from a user's browser via incorre... |
| CVE-2019-4588 | HIGH | 7.8 | 0.3% | May 26, 2021 | IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 9.7, 10.1, 10.5, 11.1, and 11.5 could allow a local us... |
| CVE-2019-14836 | HIGH | 8.8 | 0.6% | May 26, 2021 | A vulnerability was found that the 3scale dev portal does not employ mechanisms for protection against login CSRF. An at... |
| CVE-2019-25044 | HIGH | 7.8 | 0.6% | May 14, 2021 | The block subsystem in the Linux kernel before 5.2 has a use-after-free that can lead to arbitrary code execution in the... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now