2019 CVE Vulnerabilities
17,620 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-12482 | HIGH | 7.5 | 1.7% | May 30, 2019 | An issue was discovered in GPAC 0.7.1. There is a NULL pointer dereference in the function gf_isom_get_original_format_t... |
| CVE-2019-11896 | HIGH | 7.1 | 0.7% | May 29, 2019 | A potential incorrect privilege assignment vulnerability exists in the 3rd party pairing mechanism of the Bosch Smart Ho... |
| CVE-2019-11893 | HIGH | 8 | 0.5% | May 29, 2019 | A potential incorrect privilege assignment vulnerability exists in the app permission update API of the Bosch Smart Home... |
| CVE-2019-11892 | HIGH | 8 | 1.0% | May 29, 2019 | A potential improper access control vulnerability exists in the JSON-RPC interface of the Bosch Smart Home Controller (S... |
| CVE-2019-11891 | HIGH | 8 | 0.5% | May 29, 2019 | A potential incorrect privilege assignment vulnerability exists in the app pairing mechanism of the Bosch Smart Home Con... |
| CVE-2019-11872 | HIGH | 8.8 | 2.2% | May 29, 2019 | The Hustle (aka wordpress-popup) plugin 6.0.7 for WordPress is vulnerable to CSV Injection as it allows for injecting ma... |
| CVE-2019-9858 | HIGH | 8.8 | 19.2% | May 29, 2019 | Remote code execution was discovered in Horde Groupware Webmail 5.2.22 and 5.2.17. Horde/Form/Type.php contains a vulner... |
| CVE-2019-12447 | HIGH | 7.3 | 1.8% | May 29, 2019 | An issue was discovered in GNOME gvfs 1.29.4 through 1.41.2. daemon/gvfsbackendadmin.c mishandles file ownership because... |
| CVE-2019-4256 | HIGH | 7.5 | 1.3% | May 29, 2019 | IBM API Connect 5.0.0.0 through 5.0.8.6 uses weaker than expected cryptographic algorithms that could allow an attacker ... |
| CVE-2019-12439 | HIGH | 7.4 | 0.5% | May 29, 2019 | bubblewrap.c in Bubblewrap before 0.3.3 misuses temporary directories in /tmp as a mount point. In some particular confi... |
| CVE-2019-10967 | HIGH | 8.8 | 3.8% | May 28, 2019 | In Emerson Ovation OCR400 Controller 3.3.1 and earlier, a stack-based buffer overflow vulnerability in the embedded thir... |
| CVE-2019-10965 | HIGH | 8.8 | 3.7% | May 28, 2019 | In Emerson Ovation OCR400 Controller 3.3.1 and earlier, a heap-based buffer overflow vulnerability in the embedded third... |
| CVE-2019-7394 | HIGH | 8.8 | 2.9% | May 28, 2019 | A privilege escalation vulnerability in the administrative user interface of CA Technologies CA Strong Authentication 9.... |
| CVE-2019-5436 | HIGH | 7.8 | 49.7% | May 28, 2019 | A heap buffer overflow in the TFTP receiving code allows for DoS or arbitrary code execution in libcurl versions 7.19.4 ... |
| CVE-2019-0188 | HIGH | 7.5 | 8.5% | May 28, 2019 | Apache Camel prior to 2.24.0 contains an XML external entity injection (XXE) vulnerability (CWE-611) due to using an out... |
| CVE-2019-10143 | HIGH | 7 | 0.3% | May 24, 2019 | It was discovered freeradius up to and including version 3.0.19 does not correctly configure logrotate, allowing a local... |
| CVE-2019-5796 | HIGH | 7.5 | 4.7% | May 23, 2019 | Data race in extensions guest view in Google Chrome prior to 73.0.3683.75 allowed a remote attacker to potentially explo... |
| CVE-2019-5795 | HIGH | 8.8 | 1.2% | May 23, 2019 | Integer overflow in PDFium in Google Chrome prior to 73.0.3683.75 allowed a remote attacker to potentially perform out o... |
| CVE-2019-5792 | HIGH | 8.8 | 1.2% | May 23, 2019 | Integer overflow in PDFium in Google Chrome prior to 73.0.3683.75 allowed a remote attacker to potentially perform out o... |
| CVE-2019-5791 | HIGH | 8.8 | 1.6% | May 23, 2019 | Inappropriate optimization in V8 in Google Chrome prior to 73.0.3683.75 allowed a remote attacker to perform an out of b... |
| CVE-2019-5790 | HIGH | 8.8 | 1.8% | May 23, 2019 | An integer overflow leading to an incorrect capacity of a buffer in JavaScript in Google Chrome prior to 73.0.3683.75 al... |
| CVE-2019-5789 | HIGH | 8.8 | 7.3% | May 23, 2019 | An integer overflow that leads to a use-after-free in WebMIDI in Google Chrome on Windows prior to 73.0.3683.75 allowed ... |
| CVE-2019-5788 | HIGH | 8.8 | 7.2% | May 23, 2019 | An integer overflow that leads to a use-after-free in Blink Storage in Google Chrome on Linux prior to 73.0.3683.75 allo... |
| CVE-2019-5787 | HIGH | 8.8 | 2.0% | May 23, 2019 | Use-after-garbage-collection in Blink in Google Chrome prior to 73.0.3683.75 allowed a remote attacker to potentially ex... |
| CVE-2019-7061 | HIGH | 7.5 | 4.8% | May 23, 2019 | Adobe Acrobat and Reader versions 2019.010.20098 and earlier, 2019.010.20098 and earlier, 2017.011.30127 and earlier ver... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now