2019 CVE Vulnerabilities
17,620 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-7478 | CRITICAL | 9.8 | 1.1% | Dec 31, 2019 | A vulnerability in GMS allow unauthenticated user to SQL injection in Webservice module. This vulnerability affected GMS... |
| CVE-2019-20171 | MEDIUM | 5.5 | 1.2% | Dec 31, 2019 | An issue was discovered in GPAC version 0.5.2 and 0.9.0-development-20191109. There are memory leaks in metx_New in isom... |
| CVE-2019-20170 | MEDIUM | 5.5 | 0.9% | Dec 31, 2019 | An issue was discovered in GPAC version 0.8.0 and 0.9.0-development-20191109. There is an invalid pointer dereference in... |
| CVE-2019-20169 | MEDIUM | 5.5 | 0.9% | Dec 31, 2019 | An issue was discovered in GPAC version 0.8.0 and 0.9.0-development-20191109. There is a use-after-free in the function ... |
| CVE-2019-20168 | MEDIUM | 5.5 | 0.8% | Dec 31, 2019 | An issue was discovered in GPAC version 0.8.0 and 0.9.0-development-20191109. There is a use-after-free in the function ... |
| CVE-2019-20167 | MEDIUM | 5.5 | 0.8% | Dec 31, 2019 | An issue was discovered in GPAC version 0.8.0 and 0.9.0-development-20191109. There is a NULL pointer dereference in the... |
| CVE-2019-20166 | MEDIUM | 5.5 | 0.9% | Dec 31, 2019 | An issue was discovered in GPAC version 0.8.0 and 0.9.0-development-20191109. There is a NULL pointer dereference in the... |
| CVE-2019-20165 | MEDIUM | 5.5 | 0.9% | Dec 31, 2019 | An issue was discovered in GPAC version 0.8.0 and 0.9.0-development-20191109. There is a NULL pointer dereference in the... |
| CVE-2019-20164 | MEDIUM | 5.5 | 0.9% | Dec 31, 2019 | An issue was discovered in GPAC version 0.8.0 and 0.9.0-development-20191109. There is a NULL pointer dereference in the... |
| CVE-2019-20163 | MEDIUM | 5.5 | 0.9% | Dec 31, 2019 | An issue was discovered in GPAC version 0.8.0 and 0.9.0-development-20191109. There is a NULL pointer dereference in the... |
| CVE-2019-20162 | MEDIUM | 5.5 | 0.9% | Dec 31, 2019 | An issue was discovered in GPAC version 0.8.0 and 0.9.0-development-20191109. There is heap-based buffer overflow in the... |
| CVE-2019-20161 | MEDIUM | 5.5 | 0.9% | Dec 31, 2019 | An issue was discovered in GPAC version 0.8.0 and 0.9.0-development-20191109. There is heap-based buffer overflow in the... |
| CVE-2019-20160 | MEDIUM | 5.5 | 0.7% | Dec 31, 2019 | An issue was discovered in GPAC version 0.8.0 and 0.9.0-development-20191109. There is a stack-based buffer overflow in ... |
| CVE-2019-20159 | MEDIUM | 5.5 | 0.7% | Dec 31, 2019 | An issue was discovered in GPAC version 0.8.0 and 0.9.0-development-20191109. There is a memory leak in dinf_New() in is... |
| CVE-2019-19032 | HIGH | 8.1 | 4.5% | Dec 30, 2019 | XMLBlueprint through 16.191112 is affected by XML External Entity Injection. The impact is: Arbitrary File Read when an ... |
| CVE-2019-19031 | HIGH | 8.1 | 5.2% | Dec 30, 2019 | Easy XML Editor through v1.7.8 is affected by: XML External Entity Injection. The impact is: Arbitrary File Read and DoS... |
| CVE-2019-16790 | HIGH | 8.8 | 1.2% | Dec 30, 2019 | In Tiny File Manager before 2.3.9, there is a remote code execution via Upload from URL and Edit/Rename files. Only auth... |
| CVE-2019-20149 | HIGH | 7.5 | 2.3% | Dec 30, 2019 | ctorName in index.js in kind-of v6.0.2 allows external user input to overwrite certain internal attributes via a conflic... |
| CVE-2019-20141 | MEDIUM | 6.1 | 4.3% | Dec 30, 2019 | An XSS issue was discovered in the Laborator Neon theme 2.0 for WordPress via the data/autosuggest-remote.php q paramete... |
| CVE-2019-19806 | MEDIUM | 5.3 | 1.0% | Dec 30, 2019 | _account_forgot_password.ajax.php in MFScripts YetiShare 3.5.2 through 4.5.3 displays a message indicating whether an em... |
| CVE-2019-19805 | MEDIUM | 5.3 | 1.0% | Dec 30, 2019 | _account_forgot_password.ajax.php in MFScripts YetiShare 3.5.2 through 4.5.3 takes a different amount of time to return ... |
| CVE-2019-19470 | HIGH | 7.8 | 0.9% | Dec 30, 2019 | Unsafe usage of .NET deserialization in Named Pipe message processing allows privilege escalation to NT AUTHORITY\SYSTEM... |
| CVE-2019-13465 | HIGH | 8.6 | 1.1% | Dec 30, 2019 | An issue was discovered in the ROS communications-related packages (aka ros_comm or ros-melodic-ros-comm) through 1.14.3... |
| CVE-2019-13445 | CRITICAL | 9.8 | 2.2% | Dec 30, 2019 | An issue was discovered in the ROS communications-related packages (aka ros_comm or ros-melodic-ros-comm) through 1.14.3... |
| CVE-2019-5003 | — | — | — | Dec 30, 2019 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now