2019 CVE Vulnerabilities
17,620 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-11276 | MEDIUM | 5.4 | 0.3% | Aug 19, 2019 | Pivotal Apps Manager, included in Pivotal Application Service versions 2.3.x prior to 2.3.16, 2.4.x prior to 2.4.12, 2.5... |
| CVE-2019-15145 | MEDIUM | 5.5 | 1.6% | Aug 18, 2019 | DjVuLibre 3.5.27 allows attackers to cause a denial-of-service attack (application crash via an out-of-bounds read) by c... |
| CVE-2019-15144 | MEDIUM | 5.5 | 1.8% | Aug 18, 2019 | In DjVuLibre 3.5.27, the sorting functionality (aka GArrayTemplate<TYPE>::sort) allows attackers to cause a denial-of-se... |
| CVE-2019-15143 | MEDIUM | 5.5 | 1.7% | Aug 18, 2019 | In DjVuLibre 3.5.27, the bitmap reader component allows attackers to cause a denial-of-service error (resource exhaustio... |
| CVE-2019-15142 | MEDIUM | 5.5 | 1.8% | Aug 18, 2019 | In DjVuLibre 3.5.27, DjVmDir.cpp in the DJVU reader component allows attackers to cause a denial-of-service (application... |
| CVE-2019-15141 | MEDIUM | 6.5 | 2.2% | Aug 18, 2019 | WriteTIFFImage in coders/tiff.c in ImageMagick 7.0.8-43 Q16 allows attackers to cause a denial-of-service (application c... |
| CVE-2019-15133 | MEDIUM | 6.5 | 1.5% | Aug 17, 2019 | In GIFLIB before 2019-02-16, a malformed GIF file triggers a divide-by-zero exception in the decoder function DGifSlurp ... |
| CVE-2019-15132 | MEDIUM | 5.3 | 2.0% | Aug 17, 2019 | Zabbix through 4.4.0alpha1 allows User Enumeration. With login requests, it is possible to enumerate application usernam... |
| CVE-2019-15116 | MEDIUM | 6.1 | 1.0% | Aug 16, 2019 | The easy-digital-downloads plugin before 2.9.16 for WordPress has XSS related to IP address logging. |
| CVE-2019-15120 | MEDIUM | 5.4 | 1.4% | Aug 16, 2019 | The Kunena extension before 5.1.14 for Joomla! allows XSS via BBCode. |
| CVE-2019-15119 | MEDIUM | 5.5 | 1.0% | Aug 16, 2019 | lib/install/install.go in cnlh nps through 0.23.2 uses 0777 permissions for /usr/local/bin/nps and/or /usr/bin/nps, lead... |
| CVE-2019-15118 | MEDIUM | 5.5 | 0.8% | Aug 16, 2019 | check_input_term in sound/usb/mixer.c in the Linux kernel through 5.2.9 mishandles recursion, leading to kernel stack ex... |
| CVE-2019-15108 | MEDIUM | 4.8 | 0.6% | Aug 16, 2019 | An issue was discovered in WSO2 API Manager 2.6.0 before WSO2-CARBON-PATCH-4.4.0-4457. There is XSS via a crafted filena... |
| CVE-2019-15098 | MEDIUM | 4.6 | 0.7% | Aug 16, 2019 | drivers/net/wireless/ath/ath6kl/usb.c in the Linux kernel through 5.2.9 has a NULL pointer dereference via an incomplete... |
| CVE-2019-15090 | MEDIUM | 6.7 | 0.5% | Aug 16, 2019 | An issue was discovered in drivers/scsi/qedi/qedi_dbg.c in the Linux kernel before 5.1.12. In the qedi_dbg_* family of f... |
| CVE-2019-13377 | MEDIUM | 5.9 | 2.2% | Aug 15, 2019 | The implementations of SAE and EAP-pwd in hostapd and wpa_supplicant 2.x through 2.8 are vulnerable to side-channel atta... |
| CVE-2019-13223 | MEDIUM | 5.5 | 1.0% | Aug 15, 2019 | A reachable assertion in the lookup1_values function in stb_vorbis through 2019-03-04 allows an attacker to cause a deni... |
| CVE-2019-13219 | MEDIUM | 5.5 | 1.0% | Aug 15, 2019 | A NULL pointer dereference in the get_window function in stb_vorbis through 2019-03-04 allows an attacker to cause a den... |
| CVE-2019-13218 | MEDIUM | 5.5 | 1.0% | Aug 15, 2019 | Division by zero in the predict_point function in stb_vorbis through 2019-03-04 allows an attacker to cause a denial of ... |
| CVE-2019-10140 | MEDIUM | 5.5 | 0.3% | Aug 15, 2019 | A vulnerability was found in Linux kernel's, versions up to 3.10, implementation of overlayfs. An attacker with local ac... |
| CVE-2019-14786 | MEDIUM | 6.5 | 1.4% | Aug 15, 2019 | The Rank Math SEO plugin 1.0.27 for WordPress allows non-admin users to reset the settings via the wp-admin/admin-post.p... |
| CVE-2019-3418 | MEDIUM | 5.4 | 0.7% | Aug 15, 2019 | All versions up to V1.1.10P3T18 of ZTE ZXHN F670 product are impacted by cross-site scripting vulnerability (XSS). Due t... |
| CVE-2019-15081 | MEDIUM | 4.8 | 2.0% | Aug 15, 2019 | OpenCart 3.x, when the attacker has login access to the admin panel, allows stored XSS within the Source/HTML editing fe... |
| CVE-2019-1228 | MEDIUM | 5.5 | 1.7% | Aug 14, 2019 | An information disclosure vulnerability exists when the Windows kernel improperly handles objects in memory. An attacker... |
| CVE-2019-1227 | MEDIUM | 5.5 | 1.7% | Aug 14, 2019 | An information disclosure vulnerability exists when the Windows kernel improperly handles objects in memory. An attacker... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now