2019 CVE Vulnerabilities

17,620 CVEs published in 2019.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2019-5631HIGH7.8The Rapid7 InsightAppSec broker suffers from a DLL injection vulnerability in the 'prunsrv.exe' component of the product...
CVE-2019-15150HIGH8.8In the OAuth2 Client extension before 0.4 for MediaWiki, a CSRF vulnerability exists due to the OAuth2 state parameter n...
CVE-2019-15099HIGH7.5drivers/net/wireless/ath/ath10k/usb.c in the Linux kernel through 5.2.8 has a NULL pointer dereference via an incomplete...
CVE-2019-9852HIGH7.8LibreOffice has a feature where documents can specify that pre-installed macros can be executed on various script events...
CVE-2019-13516HIGH8.8In OSIsoft PI Web API and prior, the affected product is vulnerable to a direct attack due to a cross-site request forge...
CVE-2019-13514HIGH7.8In Delta Industrial Automation DOPSoft, Version 4.00.06.15 and prior, processing a specially crafted project file may tr...
CVE-2019-13513HIGH7.8In Delta Industrial Automation DOPSoft, Version 4.00.06.15 and prior, processing a specially crafted project file may tr...
CVE-2019-12809HIGH8.8Yes24ViewerX ActiveX Control 1.0.327.50126 and earlier versions contains a vulnerability that could allow remote attacke...
CVE-2019-9012HIGH7.5An issue was discovered in 3S-Smart CODESYS V3 products. A crafted communication request may cause uncontrolled memory a...
CVE-2019-9013HIGH8.8An issue was discovered in 3S-Smart CODESYS V3 products. The application may utilize non-TLS based encryption, which res...
CVE-2019-13222HIGH7.1An out-of-bounds read of a global buffer in the draw_line function in stb_vorbis through 2019-03-04 allows an attacker t...
CVE-2019-13221HIGH7.8A stack buffer overflow in the compute_codewords function in stb_vorbis through 2019-03-04 allows an attacker to cause a...
CVE-2019-13220HIGH7.1Use of uninitialized stack variables in the start_decoder function in stb_vorbis through 2019-03-04 allows an attacker t...
CVE-2019-13217HIGH7.8A heap buffer overflow in the start_decoder function in stb_vorbis through 2019-03-04 allows an attacker to cause a deni...
CVE-2019-12854HIGH7.5Due to incorrect string termination, Squid cachemgr.cgi 4.0 through 4.7 may access unallocated memory. On systems with m...
CVE-2019-14788HIGH8.8wp-admin/admin-ajax.php?action=newsletters_exportmultiple in the Tribulant Newsletters plugin before 4.6.19 for WordPres...
CVE-2019-3417HIGH8.8All versions up to V1.1.10P3T18 of ZTE ZXHN F670 product are impacted by command injection vulnerability. Due to insuffi...
CVE-2019-1225HIGH7.5An information disclosure vulnerability exists when the Windows RDP server improperly discloses the contents of its memo...
CVE-2019-1224HIGH7.5An information disclosure vulnerability exists when the Windows RDP server improperly discloses the contents of its memo...
CVE-2019-1223HIGH7.5A denial of service vulnerability exists in Remote Desktop Protocol (RDP) when an attacker connects to the target system...
CVE-2019-1206HIGH7.5A memory corruption vulnerability exists in the Windows Server DHCP service when an attacker sends specially crafted pac...
CVE-2019-1194HIGH7.5A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Internet ...
CVE-2019-1190HIGH7.8An elevation of privilege vulnerability exists in the way that the Windows kernel image handles objects in memory. An at...
CVE-2019-1188HIGH7.5A remote code execution vulnerability exists in Microsoft Windows that could allow remote code execution if a .LNK file ...
CVE-2019-1186HIGH7An elevation of privilege vulnerability exists in the way that the wcmsvc.dll handles objects in memory. An attacker who...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now