2019 CVE Vulnerabilities

17,624 CVEs published in 2019.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2019-14206HIGH7.5An Arbitrary File Deletion vulnerability in the Nevma Adaptive Images plugin before 0.6.67 for WordPress allows remote a...
CVE-2019-14205HIGH7.5A Local File Inclusion vulnerability in the Nevma Adaptive Images plugin before 0.6.67 for WordPress allows remote attac...
CVE-2019-1579HIGH8.1Remote Code Execution in PAN-OS 7.1.18 and earlier, PAN-OS 8.0.11-h1 and earlier, and PAN-OS 8.1.2 and earlier with Glob...
CVE-2019-13989HIGH7.8dpic 2019.06.20 has a Stack-based Buffer Overflow in the wfloat() function in main.c.
CVE-2019-1010239HIGH7.5DaveGamble/cJSON cJSON 1.7.8 is affected by: Improper Check for Unusual or Exceptional Conditions. The impact is: Null d...
CVE-2019-1010142HIGH7.5scapy 2.4.0 is affected by: Denial of Service. The impact is: infinite loop, resource consumption and program unresponsi...
CVE-2019-11552HIGH7Code42 Enterprise and Crashplan for Small Business Client version 6.7 before 6.7.5, 6.8 before 6.8.8, and 6.9 before 6.9...
CVE-2019-3592HIGH7.2Privilege escalation vulnerability in McAfee Agent (MA) before 5.6.1 HF3, allows local administrator users to potentiall...
CVE-2019-3741HIGH7.8Dell EMC Unity and UnityVSA versions prior to 5.0.0.0.5.116 contain a plain-text password storage vulnerability. A Unisp...
CVE-2019-1920HIGH7.4A vulnerability in the 802.11r Fast Transition (FT) implementation for Cisco IOS Access Points (APs) Software could allo...
CVE-2019-1919HIGH8.4A vulnerability in the Cisco FindIT Network Management Software virtual machine (VM) images could allow an unauthenticat...
CVE-2019-11771HIGH7.8AIX builds of Eclipse OpenJ9 before 0.15.0 contain unused RPATHs which may facilitate code injection and privilege eleva...
CVE-2019-1010283HIGH7.5Univention Corporate Server univention-directory-notifier 12.0.1-3 and earlier is affected by: CWE-213: Intentional Info...
CVE-2019-13619HIGH7.5In Wireshark 3.0.0 to 3.0.2, 2.6.0 to 2.6.9, and 2.4.0 to 2.4.15, the ASN.1 BER dissector and related dissectors could c...
CVE-2019-4430HIGH7.5IBM Maximo Asset Management 7.6 could allow a remote attacker to traverse directories on the system. An attacker could s...
CVE-2019-13272HIGH7.8In the Linux kernel before 5.1.17, ptrace_link in kernel/ptrace.c mishandles the recording of the credentials of a proce...
CVE-2019-6160HIGH8.8A vulnerability in various versions of Iomega and LenovoEMC NAS products could allow an unauthenticated user to access f...
CVE-2019-13115HIGH8.1In libssh2 before 1.9.0, kex_method_diffie_hellman_group_exchange_sha256_key_exchange in kex.c has an integer overflow t...
CVE-2019-12991HIGH8.8Citrix SD-WAN 10.2.x before 10.2.3 and NetScaler SD-WAN 10.0.x before 10.0.8 have Improper Input Validation (issue 5 of ...
CVE-2019-12834HIGH7.3In HT2 Labs Learning Locker 3.15.1, it's possible to inject malicious HTML and JavaScript code into the DOM of the websi...
CVE-2019-10191HIGH7.5A vulnerability was discovered in DNS resolver of knot resolver before version 4.1.0 which allows remote attackers to do...
CVE-2019-10190HIGH7.5A vulnerability was discovered in DNS resolver component of knot resolver through version 3.2.0 before 4.1.0 which allow...
CVE-2019-13616HIGH8.1SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer over-read in BlitNtoN in vid...
CVE-2019-1576HIGH8.8Command injection in PAN-0S 9.0.2 and earlier may allow an authenticated attacker to gain access to a remote shell in PA...
CVE-2019-1575HIGH8.8Information disclosure in PAN-OS 7.1.23 and earlier, PAN-OS 8.0.18 and earlier, PAN-OS 8.1.8-h4 and earlier, and PAN-OS ...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now