2019 CVE Vulnerabilities
17,620 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-10980 | HIGH | 7.8 | 1.0% | Aug 5, 2019 | A type confusion vulnerability may be exploited when LAquis SCADA 4.3.1.71 processes a specially crafted project file. T... |
| CVE-2019-12264 | HIGH | 7.1 | 8.3% | Aug 5, 2019 | Wind River VxWorks 6.6, 6.7, 6.8, 6.9.3, 6.9.4, and Vx7 has Incorrect Access Control in IPv4 assignment by the ipdhcpc D... |
| CVE-2019-11270 | HIGH | 7.5 | 1.1% | Aug 5, 2019 | Cloud Foundry UAA versions prior to v73.4.0 contain a vulnerability where a malicious client possessing the 'clients.wri... |
| CVE-2019-4473 | HIGH | 7.8 | 0.4% | Aug 5, 2019 | Multiple binaries in IBM SDK, Java Technology Edition 7, 7R, and 8 on the AIX platform use insecure absolute RPATHs, whi... |
| CVE-2019-6969 | HIGH | 7.5 | 2.6% | Aug 2, 2019 | The web interface of the D-Link DVA-5592 20180823 is vulnerable to an authentication bypass that allows an unauthenticat... |
| CVE-2019-10961 | HIGH | 8.8 | 4.1% | Aug 2, 2019 | In Advantech WebAccess HMI Designer Version 2.1.9.23 and prior, processing specially crafted MCR files lacking proper va... |
| CVE-2019-14232 | HIGH | 7.5 | 3.5% | Aug 2, 2019 | An issue was discovered in Django 1.11.x before 1.11.23, 2.1.x before 2.1.11, and 2.2.x before 2.2.4. If django.utils.te... |
| CVE-2019-10171 | HIGH | 7.5 | 1.4% | Aug 2, 2019 | It was found that the fix for CVE-2018-14648 in 389-ds-base, versions 1.4.0.x before 1.4.0.17, was incorrectly applied i... |
| CVE-2019-10168 | HIGH | 7.8 | 0.5% | Aug 2, 2019 | The virConnectBaselineHypervisorCPU() and virConnectCompareHypervisorCPU() libvirt APIs, 4.x.x before 4.10.1 and 5.x.x b... |
| CVE-2019-10167 | HIGH | 7.8 | 0.5% | Aug 2, 2019 | The virConnectGetDomainCapabilities() libvirt API, versions 4.x.x before 4.10.1 and 5.x.x before 5.4.1, accepts an "emul... |
| CVE-2019-10166 | HIGH | 7.8 | 0.5% | Aug 2, 2019 | It was discovered that libvirtd, versions 4.x.x before 4.10.1 and 5.x.x before 5.4.1, would permit readonly clients to u... |
| CVE-2019-14524 | HIGH | 7.8 | 1.3% | Aug 2, 2019 | An issue was discovered in Schism Tracker through 20190722. There is a heap-based buffer overflow via a large number of ... |
| CVE-2019-14523 | HIGH | 7.8 | 1.2% | Aug 2, 2019 | An issue was discovered in Schism Tracker through 20190722. There is an integer underflow via a large plen in fmt_okt_lo... |
| CVE-2019-14513 | HIGH | 7.5 | 1.7% | Aug 1, 2019 | Improper bounds checking in Dnsmasq before 2.76 allows an attacker controlled DNS server to send large DNS packets that ... |
| CVE-2019-14497 | HIGH | 7.8 | 1.4% | Aug 1, 2019 | ModuleEditor::convertInstrument in tracker/ModuleEditor.cpp in MilkyTracker 1.02.00 has a heap-based buffer overflow. |
| CVE-2019-14496 | HIGH | 7.8 | 1.4% | Aug 1, 2019 | LoaderXM::load in LoaderXM.cpp in milkyplay in MilkyTracker 1.02.00 has a stack-based buffer overflow. |
| CVE-2019-9140 | HIGH | 8.1 | 1.2% | Aug 1, 2019 | When processing Deeplink scheme, Happypoint mobile app 6.3.19 and earlier versions doesn't check Deeplink URL correctly.... |
| CVE-2019-14494 | HIGH | 7.5 | 2.7% | Aug 1, 2019 | An issue was discovered in Poppler through 0.78.0. There is a divide-by-zero error in the function SplashOutputDev::tili... |
| CVE-2019-14493 | HIGH | 7.5 | 3.4% | Aug 1, 2019 | An issue was discovered in OpenCV before 4.1.1. There is a NULL pointer dereference in the function cv::XMLParser::parse... |
| CVE-2019-14492 | HIGH | 7.5 | 2.8% | Aug 1, 2019 | An issue was discovered in OpenCV before 3.4.7 and 4.x before 4.1.1. There is an out of bounds read/write in the functio... |
| CVE-2019-3890 | HIGH | 8.1 | 1.0% | Aug 1, 2019 | It was discovered evolution-ews before 3.31.3 does not check the validity of SSL certificates. An attacker could abuse t... |
| CVE-2019-0193 | HIGH | 7.2 | 83.5% | Aug 1, 2019 | In Apache Solr, the DataImportHandler, an optional but popular module to pull in data from databases and other sources, ... |
| CVE-2019-14332 | HIGH | 7.8 | 1.4% | Aug 1, 2019 | An issue was discovered on D-Link 6600-AP and DWL-3600AP Ax 4.2.0.14 21/03/2019 devices. There is use of weak ciphers fo... |
| CVE-2019-14465 | HIGH | 7.8 | 1.2% | Jul 31, 2019 | fmt_mtm_load_song in fmt/mtm.c in Schism Tracker 20190722 has a heap-based buffer overflow. |
| CVE-2019-10185 | HIGH | 8.6 | 4.0% | Jul 31, 2019 | It was found that icedtea-web up to and including 1.7.2 and 1.8.2 was vulnerable to a zip-slip attack during auto-extrac... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now