2019 CVE Vulnerabilities

17,620 CVEs published in 2019.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2019-5963HIGH8.8Cross-site request forgery (CSRF) vulnerability in Zoho SalesIQ 1.0.8 and earlier allows remote attackers to hijack the ...
CVE-2019-13313HIGH7.8libosinfo 1.5.0 allows local users to discover credentials by listing a process, because credentials are passed to osinf...
CVE-2019-13308HIGH8.8ImageMagick 7.0.8-50 Q16 has a heap-based buffer overflow in MagickCore/fourier.c in ComplexImage.
CVE-2019-13307HIGH7.8ImageMagick 7.0.8-50 Q16 has a heap-based buffer overflow at MagickCore/statistic.c in EvaluateImages because of mishand...
CVE-2019-13306HIGH7.8ImageMagick 7.0.8-50 Q16 has a stack-based buffer overflow at coders/pnm.c in WritePNMImage because of off-by-one errors...
CVE-2019-13305HIGH7.8ImageMagick 7.0.8-50 Q16 has a stack-based buffer overflow at coders/pnm.c in WritePNMImage because of a misplaced strnc...
CVE-2019-13304HIGH7.8ImageMagick 7.0.8-50 Q16 has a stack-based buffer overflow at coders/pnm.c in WritePNMImage because of a misplaced assig...
CVE-2019-13303HIGH8.8ImageMagick 7.0.8-50 Q16 has a heap-based buffer over-read in MagickCore/composite.c in CompositeImage.
CVE-2019-13302HIGH8.8ImageMagick 7.0.8-50 Q16 has a heap-based buffer over-read in MagickCore/fourier.c in ComplexImages.
CVE-2019-13300HIGH8.8ImageMagick 7.0.8-50 Q16 has a heap-based buffer overflow at MagickCore/statistic.c in EvaluateImages because of mishand...
CVE-2019-13299HIGH8.8ImageMagick 7.0.8-50 Q16 has a heap-based buffer over-read at MagickCore/pixel-accessor.h in GetPixelChannel.
CVE-2019-13298HIGH8.8ImageMagick 7.0.8-50 Q16 has a heap-based buffer overflow at MagickCore/pixel-accessor.h in SetPixelViaPixelInfo because...
CVE-2019-13297HIGH8.8ImageMagick 7.0.8-50 Q16 has a heap-based buffer over-read at MagickCore/threshold.c in AdaptiveThresholdImage because a...
CVE-2019-13295HIGH8.8ImageMagick 7.0.8-50 Q16 has a heap-based buffer over-read at MagickCore/threshold.c in AdaptiveThresholdImage because a...
CVE-2019-1889HIGH7.2A vulnerability in the REST API for software device management in Cisco Application Policy Infrastructure Controller (AP...
CVE-2019-1886HIGH8.6A vulnerability in the HTTPS decryption feature of Cisco Web Security Appliance (WSA) could allow an unauthenticated, re...
CVE-2019-1884HIGH7.7A vulnerability in the web proxy functionality of Cisco AsyncOS Software for Cisco Web Security Appliance (WSA) could al...
CVE-2019-1855HIGH7.3A vulnerability in the loading mechanism of specific dynamic link libraries in Cisco Jabber for Windows could allow an a...
CVE-2019-13283HIGH7.8In Xpdf 4.01.01, a heap-based buffer over-read could be triggered in strncpy from FoFiType1::parse in fofi/FoFiType1.cc ...
CVE-2019-13282HIGH7.8In Xpdf 4.01.01, a heap-based buffer over-read could be triggered in SampledFunction::transform in Function.cc when usin...
CVE-2019-13281HIGH7.8In Xpdf 4.01.01, a heap-based buffer overflow could be triggered in DCTStream::decodeImage() in Stream.cc when writing t...
CVE-2019-13241HIGH7.8FlightCrew v0.9.2 and older are vulnerable to a directory traversal, allowing attackers to write arbitrary files via a ....
CVE-2019-13226HIGH7deepin-clone before 1.1.3 uses a predictable path /tmp/.deepin-clone/mount/<block-dev-basename> in the Helper::temporary...
CVE-2019-10101HIGH8.1JetBrains Kotlin versions before 1.3.30 were resolving artifacts using an http connection during the build process, pote...
CVE-2019-5052HIGH8.8An exploitable integer overflow vulnerability exists when loading a PCX file in SDL2_image 2.0.4. A specially crafted fi...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now