2019 CVE Vulnerabilities
17,620 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-13147 | MEDIUM | 6.5 | 1.9% | Jul 2, 2019 | In Audio File Library (aka audiofile) 0.3.6, there exists one NULL pointer dereference bug in ulaw2linear_buf in G711.cp... |
| CVE-2019-7272 | MEDIUM | 5.3 | 10.5% | Jul 1, 2019 | Optergy Proton/Enterprise devices allow Username Disclosure. |
| CVE-2019-7275 | MEDIUM | 6.1 | 9.1% | Jul 1, 2019 | Optergy Proton/Enterprise devices allow Open Redirect. |
| CVE-2019-13137 | MEDIUM | 6.5 | 1.9% | Jul 1, 2019 | ImageMagick before 7.0.8-50 has a memory leak vulnerability in the function ReadPSImage in coders/ps.c. |
| CVE-2019-13134 | MEDIUM | 5.5 | 1.1% | Jul 1, 2019 | ImageMagick before 7.0.8-50 has a memory leak vulnerability in the function ReadVIFFImage in coders/viff.c. |
| CVE-2019-13133 | MEDIUM | 5.5 | 1.1% | Jul 1, 2019 | ImageMagick before 7.0.8-50 has a memory leak vulnerability in the function ReadBMPImage in coders/bmp.c. |
| CVE-2019-4410 | MEDIUM | 5.4 | 1.0% | Jul 1, 2019 | IBM Business Automation Workflow 18.0.0.0, 18.0.0.1, 18.0.0.2, and 19.0.0.1 is vulnerable to cross-site scripting. This ... |
| CVE-2019-4386 | MEDIUM | 6.5 | 2.1% | Jul 1, 2019 | IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 11.1 could allow an authenticated user to execute a fu... |
| CVE-2019-4383 | MEDIUM | 6.7 | 0.4% | Jul 1, 2019 | When using IBM Spectrum Protect Plus 10.1.0, 10.1.2, and 10.1.3 to protect Oracle or MongoDB databases, a redirected res... |
| CVE-2019-4357 | MEDIUM | 6.7 | 0.5% | Jul 1, 2019 | When using IBM Spectrum Protect Plus 10.1.0, 10.1.2, and 10.1.3 to protect Oracle, DB2 or MongoDB databases, a redirecte... |
| CVE-2019-4337 | MEDIUM | 5.3 | 1.4% | Jul 1, 2019 | IBM Robotic Process Automation with Automation Anywhere 11 could allow an attacker to obtain sensitive information due t... |
| CVE-2019-4299 | MEDIUM | 5.5 | 0.3% | Jul 1, 2019 | IBM Robotic Process Automation with Automation Anywhere 11 could allow a local user to obtain highly sensitive informati... |
| CVE-2019-4297 | MEDIUM | 5.4 | 1.1% | Jul 1, 2019 | IBM Robotic Process Automation with Automation Anywhere 11 could allow a remote authenticated attacker to conduct an LDA... |
| CVE-2019-4295 | MEDIUM | 4.9 | 1.1% | Jul 1, 2019 | IBM Robotic Process Automation with Automation Anywhere 11 could allow an attacker with specialized access to obtain hig... |
| CVE-2019-4237 | MEDIUM | 5.4 | 0.7% | Jul 1, 2019 | A Cross-Frame Scripting vulnerability in IBM InfoSphere Information Server 11.3, 11.5, and 11.7 can allow an attacker to... |
| CVE-2019-4102 | MEDIUM | 5.9 | 1.2% | Jul 1, 2019 | IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 9.7, 10.1, 10.5, and 11.0 uses weaker than expected cr... |
| CVE-2019-4101 | MEDIUM | 5.5 | 0.4% | Jul 1, 2019 | IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 10.1, 10.5, and 11.1 is vulnerable to a denial of serv... |
| CVE-2019-4057 | MEDIUM | 6.7 | 0.5% | Jul 1, 2019 | IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 9.7, 10.1, 10.5, and 11.1 could allow malicious user w... |
| CVE-2019-13118 | MEDIUM | 5.3 | 5.1% | Jul 1, 2019 | In numbers.c in libxslt 1.1.33, a type holding grouping characters of an xsl:number instruction was too narrow and an in... |
| CVE-2019-13117 | MEDIUM | 5.3 | 6.5% | Jul 1, 2019 | In numbers.c in libxslt 1.1.33, an xsl:number with certain format strings could lead to a uninitialized read in xsltNumb... |
| CVE-2019-13114 | MEDIUM | 6.5 | 2.1% | Jun 30, 2019 | http.c in Exiv2 through 0.27.1 allows a malicious http server to cause a denial of service (crash due to a NULL pointer ... |
| CVE-2019-13113 | MEDIUM | 6.5 | 2.1% | Jun 30, 2019 | Exiv2 through 0.27.1 allows an attacker to cause a denial of service (crash due to assertion failure) via an invalid dat... |
| CVE-2019-13112 | MEDIUM | 6.5 | 2.0% | Jun 30, 2019 | A PngChunk::parseChunkContent uncontrolled memory allocation in Exiv2 through 0.27.1 allows an attacker to cause a denia... |
| CVE-2019-13111 | MEDIUM | 5.5 | 0.8% | Jun 30, 2019 | A WebPImage::decodeChunks integer overflow in Exiv2 through 0.27.1 allows an attacker to cause a denial of service (larg... |
| CVE-2019-13110 | MEDIUM | 6.5 | 1.9% | Jun 30, 2019 | A CiffDirectory::readDirectory integer overflow and out-of-bounds read in Exiv2 through 0.27.1 allows an attacker to cau... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now