2019 CVE Vulnerabilities

17,620 CVEs published in 2019.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2019-15890HIGH7.5libslirp 4.0.0, as used in QEMU 4.1.0, has a use-after-free in ip_reass in ip_input.c.
CVE-2019-5069HIGH8.8A code execution vulnerability exists in Epignosis eFront LMS v5.2.12. A specially crafted web request can cause unsafe ...
CVE-2019-15949HIGH8.8Nagios XI before 5.6.6 allows remote command execution as root. The exploit requires access to the server as the nagios ...
CVE-2019-15947HIGH7.5In Bitcoin Core 0.18.0, bitcoin-qt stores wallet.dat data unencrypted in memory. Upon a crash, it may dump a core file. ...
CVE-2019-15942HIGH8.8FFmpeg through 4.2 has a "Conditional jump or move depends on uninitialised value" issue in h2645_parse because alloc_rb...
CVE-2019-4321HIGH7.5IBM Intelligent Operations Center V5.1.0 - V5.2.0, IBM Intelligent Operations Center for Emergency Management V5.1.0 - V...
CVE-2019-1939HIGH8.8A vulnerability in the Cisco Webex Teams client for Windows could allow an unauthenticated, remote attacker to execute a...
CVE-2019-12645HIGH7.8A vulnerability in Cisco Jabber Client Framework (JCF) for Mac Software, installed as part of the Cisco Jabber for Mac c...
CVE-2019-12633HIGH7.5A vulnerability in Cisco Unified Contact Center Express (Unified CCX) could allow an unauthenticated, remote attacker to...
CVE-2019-12632HIGH7.5A vulnerability in Cisco Finesse could allow an unauthenticated, remote attacker to bypass access controls and conduct a...
CVE-2019-15927HIGH7.8An issue was discovered in the Linux kernel before 4.20.2. An out-of-bounds access exists in the function build_audio_pr...
CVE-2019-15925HIGH7.8An issue was discovered in the Linux kernel before 5.2.3. An out of bounds access exists in the function hclge_tm_schd_m...
CVE-2019-15918HIGH7.8An issue was discovered in the Linux kernel before 5.0.10. SMB2_negotiate in fs/cifs/smb2pdu.c has an out-of-bounds read...
CVE-2019-15917HIGH7An issue was discovered in the Linux kernel before 5.0.5. There is a use-after-free issue when hci_uart_register_dev() f...
CVE-2019-6643HIGH7.5On versions 14.1.0-14.1.0.5, 14.0.0-14.0.0.4, 13.0.0-13.1.2, 12.1.0-12.1.4.1, and 11.5.2-11.6.4, an attacker sending spe...
CVE-2019-6645HIGH7.5On BIG-IP 14.0.0-14.1.0.5, 13.0.0-13.1.2, 12.1.0-12.1.4.1, 11.5.2-11.6.4, FTP traffic passing through a Virtual Server w...
CVE-2019-15916HIGH7.5An issue was discovered in the Linux kernel before 5.0.1. There is a memory leak in register_queue_kobjects() in net/cor...
CVE-2019-13522HIGH7.8An attacker could use a specially crafted project file to corrupt the memory and execute code under the privileges of th...
CVE-2019-15813HIGH8.8Multiple file upload restriction bypass vulnerabilities in Sentrifugo 3.2 could allow authenticated users to execute arb...
CVE-2019-15903HIGH7.5In libexpat before 2.2.8, crafted XML input could fool the parser into changing from DTD parsing to document parsing too...
CVE-2019-5479HIGH7.5An unintended require vulnerability in <v0.5.5 larvitbase-api may allow an attacker to load arbitrary non-production cod...
CVE-2019-6179HIGH7.5An XML External Entity (XXE) processing vulnerability was reported in Lenovo XClarity Administrator (LXCA) prior to vers...
CVE-2019-14817HIGH7.8A flaw was found in, ghostscript versions prior to 9.50, in the .pdfexectoken and other procedures where it did not prop...
CVE-2019-14811HIGH7.8A flaw was found in, ghostscript versions prior to 9.50, in the .pdf_hook_DSC_Creator procedure where it did not properl...
CVE-2019-13156HIGH7.5NDrive(1.2.2).sys in Naver Cloud Explorer has a stack-based buffer overflow, which allows attackers to cause a denial of...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now