2019 CVE Vulnerabilities

17,620 CVEs published in 2019.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2019-10980HIGH7.8A type confusion vulnerability may be exploited when LAquis SCADA 4.3.1.71 processes a specially crafted project file. T...
CVE-2019-12264HIGH7.1Wind River VxWorks 6.6, 6.7, 6.8, 6.9.3, 6.9.4, and Vx7 has Incorrect Access Control in IPv4 assignment by the ipdhcpc D...
CVE-2019-11270HIGH7.5Cloud Foundry UAA versions prior to v73.4.0 contain a vulnerability where a malicious client possessing the 'clients.wri...
CVE-2019-4473HIGH7.8Multiple binaries in IBM SDK, Java Technology Edition 7, 7R, and 8 on the AIX platform use insecure absolute RPATHs, whi...
CVE-2019-6969HIGH7.5The web interface of the D-Link DVA-5592 20180823 is vulnerable to an authentication bypass that allows an unauthenticat...
CVE-2019-10961HIGH8.8In Advantech WebAccess HMI Designer Version 2.1.9.23 and prior, processing specially crafted MCR files lacking proper va...
CVE-2019-14232HIGH7.5An issue was discovered in Django 1.11.x before 1.11.23, 2.1.x before 2.1.11, and 2.2.x before 2.2.4. If django.utils.te...
CVE-2019-10171HIGH7.5It was found that the fix for CVE-2018-14648 in 389-ds-base, versions 1.4.0.x before 1.4.0.17, was incorrectly applied i...
CVE-2019-10168HIGH7.8The virConnectBaselineHypervisorCPU() and virConnectCompareHypervisorCPU() libvirt APIs, 4.x.x before 4.10.1 and 5.x.x b...
CVE-2019-10167HIGH7.8The virConnectGetDomainCapabilities() libvirt API, versions 4.x.x before 4.10.1 and 5.x.x before 5.4.1, accepts an "emul...
CVE-2019-10166HIGH7.8It was discovered that libvirtd, versions 4.x.x before 4.10.1 and 5.x.x before 5.4.1, would permit readonly clients to u...
CVE-2019-14524HIGH7.8An issue was discovered in Schism Tracker through 20190722. There is a heap-based buffer overflow via a large number of ...
CVE-2019-14523HIGH7.8An issue was discovered in Schism Tracker through 20190722. There is an integer underflow via a large plen in fmt_okt_lo...
CVE-2019-14513HIGH7.5Improper bounds checking in Dnsmasq before 2.76 allows an attacker controlled DNS server to send large DNS packets that ...
CVE-2019-14497HIGH7.8ModuleEditor::convertInstrument in tracker/ModuleEditor.cpp in MilkyTracker 1.02.00 has a heap-based buffer overflow.
CVE-2019-14496HIGH7.8LoaderXM::load in LoaderXM.cpp in milkyplay in MilkyTracker 1.02.00 has a stack-based buffer overflow.
CVE-2019-9140HIGH8.1When processing Deeplink scheme, Happypoint mobile app 6.3.19 and earlier versions doesn't check Deeplink URL correctly....
CVE-2019-14494HIGH7.5An issue was discovered in Poppler through 0.78.0. There is a divide-by-zero error in the function SplashOutputDev::tili...
CVE-2019-14493HIGH7.5An issue was discovered in OpenCV before 4.1.1. There is a NULL pointer dereference in the function cv::XMLParser::parse...
CVE-2019-14492HIGH7.5An issue was discovered in OpenCV before 3.4.7 and 4.x before 4.1.1. There is an out of bounds read/write in the functio...
CVE-2019-3890HIGH8.1It was discovered evolution-ews before 3.31.3 does not check the validity of SSL certificates. An attacker could abuse t...
CVE-2019-0193HIGH7.2In Apache Solr, the DataImportHandler, an optional but popular module to pull in data from databases and other sources, ...
CVE-2019-14332HIGH7.8An issue was discovered on D-Link 6600-AP and DWL-3600AP Ax 4.2.0.14 21/03/2019 devices. There is use of weak ciphers fo...
CVE-2019-14465HIGH7.8fmt_mtm_load_song in fmt/mtm.c in Schism Tracker 20190722 has a heap-based buffer overflow.
CVE-2019-10185HIGH8.6It was found that icedtea-web up to and including 1.7.2 and 1.8.2 was vulnerable to a zip-slip attack during auto-extrac...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now