2019 CVE Vulnerabilities
17,619 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-19286 | HIGH | 7.2 | 0.9% | Dec 14, 2020 | A vulnerability has been identified in XHQ (All Versions < 6.1). The web interface could allow SQL injection attacks if ... |
| CVE-2019-19878 | HIGH | 7.5 | 1.2% | Nov 27, 2020 | An issue was discovered in B&R Industrial Automation APROL before R4.2 V7.08. An attacker can get access to historical d... |
| CVE-2019-19873 | HIGH | 7.5 | 1.2% | Nov 27, 2020 | An issue was discovered in B&R Industrial Automation APROL before R4.2 V7.08. An attacker can get information from the A... |
| CVE-2019-19869 | HIGH | 7.5 | 0.9% | Nov 27, 2020 | An issue was discovered in B&R Industrial Automation APROL before R4.2 V7.08. PVs could be changed (unencrypted) by usin... |
| CVE-2019-20925 | HIGH | 7.5 | 1.7% | Nov 24, 2020 | An unauthenticated client can trigger denial of service by issuing specially crafted wire protocol messages, which cause... |
| CVE-2019-14586 | HIGH | 8 | 0.7% | Nov 23, 2020 | Use after free vulnerability in EDK II may allow an authenticated user to potentially enable escalation of privilege, in... |
| CVE-2019-14575 | HIGH | 7.8 | 0.4% | Nov 23, 2020 | Logic issue in DxeImageVerificationHandler() for EDK II may allow an authenticated user to potentially enable escalation... |
| CVE-2019-14563 | HIGH | 7.8 | 0.4% | Nov 23, 2020 | Integer truncation in EDK II may allow an authenticated user to potentially enable escalation of privilege via local acc... |
| CVE-2019-14559 | HIGH | 7.5 | 1.3% | Nov 23, 2020 | Uncontrolled resource consumption in EDK II may allow an unauthenticated user to potentially enable denial of service vi... |
| CVE-2019-12412 | HIGH | 7.5 | 3.9% | Nov 19, 2020 | A flaw in the libapreq2 v2.07 to v2.13 multipart parser can deference a null pointer leading to a process crash. A remot... |
| CVE-2019-17566 | HIGH | 7.5 | 10.7% | Nov 12, 2020 | Apache Batik is vulnerable to server-side request forgery, caused by improper input validation by the "xlink:href" attri... |
| CVE-2019-11121 | HIGH | 7.8 | 0.3% | Nov 12, 2020 | Improper file permissions in the installer for the Intel(R) Media SDK for Windows before version 2019 R1 may allow an au... |
| CVE-2019-7357 | HIGH | 8.8 | 1.4% | Nov 10, 2020 | Subrion CMS 4.2.1 has CSRF in panel/modules/plugins/. The attacker can remotely activate/deactivate the plugins. |
| CVE-2019-8854 | HIGH | 7.5 | 1.2% | Oct 27, 2020 | A user privacy issue was addressed by removing the broadcast MAC address. This issue is fixed in macOS Catalina 10.15, w... |
| CVE-2019-8852 | HIGH | 7.8 | 2.8% | Oct 27, 2020 | A memory corruption issue was addressed with improved memory handling. This issue is fixed in macOS Catalina 10.15.2, Se... |
| CVE-2019-8848 | HIGH | 7.8 | 1.0% | Oct 27, 2020 | This issue was addressed with improved checks. This issue is fixed in tvOS 13.3, watchOS 6.1.1, iCloud for Windows 10.9,... |
| CVE-2019-8847 | HIGH | 7.8 | 1.3% | Oct 27, 2020 | A memory corruption issue was addressed with improved memory handling. This issue is fixed in macOS Catalina 10.15.2, Se... |
| CVE-2019-8846 | HIGH | 8.8 | 2.3% | Oct 27, 2020 | A use after free issue was addressed with improved memory management. This issue is fixed in tvOS 13.3, iCloud for Windo... |
| CVE-2019-8851 | HIGH | 7.5 | 1.0% | Oct 27, 2020 | A logic issue was addressed with improved state management. This issue is fixed in macOS Catalina 10.15.2, Security Upda... |
| CVE-2019-8844 | HIGH | 8.8 | 2.1% | Oct 27, 2020 | Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed in tvOS 13.3, watchO... |
| CVE-2019-8841 | HIGH | 7.8 | 0.4% | Oct 27, 2020 | An information disclosure issue was addressed by removing the vulnerable code. This issue is fixed in iOS 13.3 and iPadO... |
| CVE-2019-8840 | HIGH | 8.8 | 1.3% | Oct 27, 2020 | An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in Xcode 11.3. Compiling with unt... |
| CVE-2019-8838 | HIGH | 7.8 | 1.3% | Oct 27, 2020 | A memory corruption issue was addressed with improved memory handling. This issue is fixed in iOS 13.3 and iPadOS 13.3, ... |
| CVE-2019-8837 | HIGH | 7.8 | 1.1% | Oct 27, 2020 | A logic issue was addressed with improved restrictions. This issue is fixed in macOS Catalina 10.15.2, Security Update 2... |
| CVE-2019-8836 | HIGH | 7.8 | 1.3% | Oct 27, 2020 | A memory corruption issue was addressed with improved memory handling. This issue is fixed in watchOS 6.1.2, iOS 13.3.1 ... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now