2019 CVE Vulnerabilities

17,620 CVEs published in 2019.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2019-12482HIGH7.5An issue was discovered in GPAC 0.7.1. There is a NULL pointer dereference in the function gf_isom_get_original_format_t...
CVE-2019-11896HIGH7.1A potential incorrect privilege assignment vulnerability exists in the 3rd party pairing mechanism of the Bosch Smart Ho...
CVE-2019-11893HIGH8A potential incorrect privilege assignment vulnerability exists in the app permission update API of the Bosch Smart Home...
CVE-2019-11892HIGH8A potential improper access control vulnerability exists in the JSON-RPC interface of the Bosch Smart Home Controller (S...
CVE-2019-11891HIGH8A potential incorrect privilege assignment vulnerability exists in the app pairing mechanism of the Bosch Smart Home Con...
CVE-2019-11872HIGH8.8The Hustle (aka wordpress-popup) plugin 6.0.7 for WordPress is vulnerable to CSV Injection as it allows for injecting ma...
CVE-2019-9858HIGH8.8Remote code execution was discovered in Horde Groupware Webmail 5.2.22 and 5.2.17. Horde/Form/Type.php contains a vulner...
CVE-2019-12447HIGH7.3An issue was discovered in GNOME gvfs 1.29.4 through 1.41.2. daemon/gvfsbackendadmin.c mishandles file ownership because...
CVE-2019-4256HIGH7.5IBM API Connect 5.0.0.0 through 5.0.8.6 uses weaker than expected cryptographic algorithms that could allow an attacker ...
CVE-2019-12439HIGH7.4bubblewrap.c in Bubblewrap before 0.3.3 misuses temporary directories in /tmp as a mount point. In some particular confi...
CVE-2019-10967HIGH8.8In Emerson Ovation OCR400 Controller 3.3.1 and earlier, a stack-based buffer overflow vulnerability in the embedded thir...
CVE-2019-10965HIGH8.8In Emerson Ovation OCR400 Controller 3.3.1 and earlier, a heap-based buffer overflow vulnerability in the embedded third...
CVE-2019-7394HIGH8.8A privilege escalation vulnerability in the administrative user interface of CA Technologies CA Strong Authentication 9....
CVE-2019-5436HIGH7.8A heap buffer overflow in the TFTP receiving code allows for DoS or arbitrary code execution in libcurl versions 7.19.4 ...
CVE-2019-0188HIGH7.5Apache Camel prior to 2.24.0 contains an XML external entity injection (XXE) vulnerability (CWE-611) due to using an out...
CVE-2019-10143HIGH7It was discovered freeradius up to and including version 3.0.19 does not correctly configure logrotate, allowing a local...
CVE-2019-5796HIGH7.5Data race in extensions guest view in Google Chrome prior to 73.0.3683.75 allowed a remote attacker to potentially explo...
CVE-2019-5795HIGH8.8Integer overflow in PDFium in Google Chrome prior to 73.0.3683.75 allowed a remote attacker to potentially perform out o...
CVE-2019-5792HIGH8.8Integer overflow in PDFium in Google Chrome prior to 73.0.3683.75 allowed a remote attacker to potentially perform out o...
CVE-2019-5791HIGH8.8Inappropriate optimization in V8 in Google Chrome prior to 73.0.3683.75 allowed a remote attacker to perform an out of b...
CVE-2019-5790HIGH8.8An integer overflow leading to an incorrect capacity of a buffer in JavaScript in Google Chrome prior to 73.0.3683.75 al...
CVE-2019-5789HIGH8.8An integer overflow that leads to a use-after-free in WebMIDI in Google Chrome on Windows prior to 73.0.3683.75 allowed ...
CVE-2019-5788HIGH8.8An integer overflow that leads to a use-after-free in Blink Storage in Google Chrome on Linux prior to 73.0.3683.75 allo...
CVE-2019-5787HIGH8.8Use-after-garbage-collection in Blink in Google Chrome prior to 73.0.3683.75 allowed a remote attacker to potentially ex...
CVE-2019-7061HIGH7.5Adobe Acrobat and Reader versions 2019.010.20098 and earlier, 2019.010.20098 and earlier, 2017.011.30127 and earlier ver...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now