2019 CVE Vulnerabilities
17,620 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-5805 | MEDIUM | 6.5 | 1.5% | Jun 27, 2019 | Use-after-free in PDFium in Google Chrome prior to 74.0.3729.108 allowed a remote attacker to potentially exploit heap c... |
| CVE-2019-5786 | MEDIUM | 6.5 | 61.5% | Jun 27, 2019 | Object lifetime issue in Blink in Google Chrome prior to 72.0.3626.121 allowed a remote attacker to potentially perform ... |
| CVE-2019-4250 | MEDIUM | 5.4 | 0.7% | Jun 27, 2019 | IBM Jazz Foundation products (IBM Rational Collaborative Lifecycle Management 6.0 through 6.0.6.1) is vulnerable to cros... |
| CVE-2019-4249 | MEDIUM | 5.4 | 0.7% | Jun 27, 2019 | IBM Rational Collaborative Lifecycle Management 6.0 through 6.0.6.1 is vulnerable to cross-site scripting. This vulnerab... |
| CVE-2019-4084 | MEDIUM | 4.3 | 1.0% | Jun 27, 2019 | IBM Jazz Foundation products (IBM Rational Collaborative Lifecycle Management 6.0 through 6.0.6.1) could allow an authen... |
| CVE-2019-4083 | MEDIUM | 5.4 | 0.7% | Jun 27, 2019 | IBM Jazz Foundation products (IBM Rational Collaborative Lifecycle Management 6.0 through 6.0.6.1) is vulnerable to cros... |
| CVE-2019-1622 | MEDIUM | 5.3 | 78.9% | Jun 27, 2019 | A vulnerability in the web-based management interface of Cisco Data Center Network Manager (DCNM) could allow an unauthe... |
| CVE-2019-12982 | MEDIUM | 6.5 | 1.4% | Jun 26, 2019 | Ming (aka libming) 0.4.8 has a heap buffer overflow and underflow in the decompileCAST function in util/decompile.c in l... |
| CVE-2019-12980 | MEDIUM | 6.5 | 1.4% | Jun 26, 2019 | In Ming (aka libming) 0.4.8, there is an integer overflow (caused by an out-of-range left shift) in the SWFInput_readSBi... |
| CVE-2019-12976 | MEDIUM | 5.5 | 2.4% | Jun 26, 2019 | ImageMagick 7.0.8-34 has a memory leak in the ReadPCLImage function in coders/pcl.c. |
| CVE-2019-12975 | MEDIUM | 5.5 | 2.3% | Jun 26, 2019 | ImageMagick 7.0.8-34 has a memory leak vulnerability in the WriteDPXImage function in coders/dpx.c. |
| CVE-2019-12973 | MEDIUM | 5.5 | 2.6% | Jun 26, 2019 | In OpenJPEG 2.3.1, there is excessive iteration in the opj_t1_encode_cblks function of openjp2/t1.c. Remote attackers co... |
| CVE-2019-4234 | MEDIUM | 4.3 | 0.9% | Jun 26, 2019 | IBM PureApplication System 2.2.3.0 through 2.2.5.3 weakness in the implementation of locking feature in pattern editor. ... |
| CVE-2019-4225 | MEDIUM | 4.4 | 0.4% | Jun 26, 2019 | IBM PureApplication System 2.2.3.0 through 2.2.5.3 stores potentially sensitive information in log files that could be r... |
| CVE-2019-6163 | MEDIUM | 5.5 | 0.8% | Jun 26, 2019 | A denial of service vulnerability was reported in Lenovo System Update before version 5.07.0084 that could allow service... |
| CVE-2019-12972 | MEDIUM | 5.5 | 1.8% | Jun 26, 2019 | An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.32. T... |
| CVE-2019-9836 | MEDIUM | 5.3 | 1.6% | Jun 25, 2019 | Secure Encrypted Virtualization (SEV) on Advanced Micro Devices (AMD) Platform Security Processor (PSP; aka AMD Secure P... |
| CVE-2019-4382 | MEDIUM | 5.3 | 7.8% | Jun 25, 2019 | IBM API Connect 5.0.0.0 through 5.0.8.6 could allow an unauthorized user to obtain sensitive information about the syste... |
| CVE-2019-4377 | MEDIUM | 4.3 | 1.3% | Jun 25, 2019 | IBM Sterling B2B Integrator 6.0.0.0 and 6.0.0.1 reveals sensitive information from a stack trace that could be used in f... |
| CVE-2019-4158 | MEDIUM | 5.4 | 0.7% | Jun 25, 2019 | IBM Security Access Manager 9.0.1 through 9.0.6 does not prove that a user's identity is correct which can lead to the e... |
| CVE-2019-4157 | MEDIUM | 6.1 | 0.9% | Jun 25, 2019 | IBM Security Access Manager 9.0.1 through 9.0.6 is vulnerable to cross-site scripting. This vulnerability allows users t... |
| CVE-2019-4156 | MEDIUM | 5.9 | 0.9% | Jun 25, 2019 | IBM Security Access Manager 9.0.1 through 9.0.6 uses weaker than expected cryptographic algorithms that could allow an a... |
| CVE-2019-4153 | MEDIUM | 6.8 | 1.0% | Jun 25, 2019 | IBM Security Access Manager 9.0.1 through 9.0.6 could allow a remote attacker to conduct phishing attacks, using an open... |
| CVE-2019-4152 | MEDIUM | 4.4 | 0.3% | Jun 25, 2019 | IBM Security Access Manager 9.0.1 through 9.0.6 does not invalidate session tokens in a timely manner. The lack of prope... |
| CVE-2019-4151 | MEDIUM | 5.9 | 0.9% | Jun 25, 2019 | IBM Security Access Manager 9.0.1 through 9.0.6 uses weaker than expected cryptographic algorithms that could allow an a... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now