2019 CVE Vulnerabilities

17,624 CVEs published in 2019.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2019-14691HIGH8.8AdPlug 2.3.1 has a heap-based buffer overflow in CdtmLoader::load() in dtm.cpp.
CVE-2019-14690HIGH8.8AdPlug 2.3.1 has a heap-based buffer overflow in CxadbmfPlayer::__bmf_convert_stream() in bmf.cpp.
CVE-2019-10980HIGH7.8A type confusion vulnerability may be exploited when LAquis SCADA 4.3.1.71 processes a specially crafted project file. T...
CVE-2019-12264HIGH7.1Wind River VxWorks 6.6, 6.7, 6.8, 6.9.3, 6.9.4, and Vx7 has Incorrect Access Control in IPv4 assignment by the ipdhcpc D...
CVE-2019-11270HIGH7.5Cloud Foundry UAA versions prior to v73.4.0 contain a vulnerability where a malicious client possessing the 'clients.wri...
CVE-2019-4473HIGH7.8Multiple binaries in IBM SDK, Java Technology Edition 7, 7R, and 8 on the AIX platform use insecure absolute RPATHs, whi...
CVE-2019-6969HIGH7.5The web interface of the D-Link DVA-5592 20180823 is vulnerable to an authentication bypass that allows an unauthenticat...
CVE-2019-10961HIGH8.8In Advantech WebAccess HMI Designer Version 2.1.9.23 and prior, processing specially crafted MCR files lacking proper va...
CVE-2019-14232HIGH7.5An issue was discovered in Django 1.11.x before 1.11.23, 2.1.x before 2.1.11, and 2.2.x before 2.2.4. If django.utils.te...
CVE-2019-10171HIGH7.5It was found that the fix for CVE-2018-14648 in 389-ds-base, versions 1.4.0.x before 1.4.0.17, was incorrectly applied i...
CVE-2019-10168HIGH7.8The virConnectBaselineHypervisorCPU() and virConnectCompareHypervisorCPU() libvirt APIs, 4.x.x before 4.10.1 and 5.x.x b...
CVE-2019-10167HIGH7.8The virConnectGetDomainCapabilities() libvirt API, versions 4.x.x before 4.10.1 and 5.x.x before 5.4.1, accepts an "emul...
CVE-2019-10166HIGH7.8It was discovered that libvirtd, versions 4.x.x before 4.10.1 and 5.x.x before 5.4.1, would permit readonly clients to u...
CVE-2019-14524HIGH7.8An issue was discovered in Schism Tracker through 20190722. There is a heap-based buffer overflow via a large number of ...
CVE-2019-14523HIGH7.8An issue was discovered in Schism Tracker through 20190722. There is an integer underflow via a large plen in fmt_okt_lo...
CVE-2019-14513HIGH7.5Improper bounds checking in Dnsmasq before 2.76 allows an attacker controlled DNS server to send large DNS packets that ...
CVE-2019-14497HIGH7.8ModuleEditor::convertInstrument in tracker/ModuleEditor.cpp in MilkyTracker 1.02.00 has a heap-based buffer overflow.
CVE-2019-14496HIGH7.8LoaderXM::load in LoaderXM.cpp in milkyplay in MilkyTracker 1.02.00 has a stack-based buffer overflow.
CVE-2019-9140HIGH8.1When processing Deeplink scheme, Happypoint mobile app 6.3.19 and earlier versions doesn't check Deeplink URL correctly....
CVE-2019-14494HIGH7.5An issue was discovered in Poppler through 0.78.0. There is a divide-by-zero error in the function SplashOutputDev::tili...
CVE-2019-14493HIGH7.5An issue was discovered in OpenCV before 4.1.1. There is a NULL pointer dereference in the function cv::XMLParser::parse...
CVE-2019-14492HIGH7.5An issue was discovered in OpenCV before 3.4.7 and 4.x before 4.1.1. There is an out of bounds read/write in the functio...
CVE-2019-3890HIGH8.1It was discovered evolution-ews before 3.31.3 does not check the validity of SSL certificates. An attacker could abuse t...
CVE-2019-0193HIGH7.2In Apache Solr, the DataImportHandler, an optional but popular module to pull in data from databases and other sources, ...
CVE-2019-14332HIGH7.8An issue was discovered on D-Link 6600-AP and DWL-3600AP Ax 4.2.0.14 21/03/2019 devices. There is use of weak ciphers fo...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now