2019 CVE Vulnerabilities

17,620 CVEs published in 2019.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2019-6538MEDIUM6.5The Conexus telemetry protocol utilized within Medtronic MyCareLink Monitor versions 24950 and 24952, CareLink Monitor v...
CVE-2019-3874MEDIUM6.5The SCTP socket buffer used by a userspace application is not accounted by the cgroups subsystem. An attacker can use th...
CVE-2019-3861MEDIUM5An out of bounds read flaw was discovered in libssh2 before 1.8.1 in the way SSH packets with a padding length value gre...
CVE-2019-3860MEDIUM5An out of bounds read flaw was discovered in libssh2 before 1.8.1 in the way SFTP packets with empty payloads are parsed...
CVE-2019-3838MEDIUM5.5It was found that the forceput operator could be extracted from the DefineResource method in ghostscript before 9.27. A ...
CVE-2019-3835MEDIUM5.5It was found that the superexec operator was available in the internal dictionary in ghostscript before 9.27. A speciall...
CVE-2019-3831MEDIUM6.7A vulnerability was discovered in vdsm, version 4.19 through 4.30.3 and 4.30.5 through 4.30.8. The systemd_run function ...
CVE-2019-3810MEDIUM6.1A flaw was found in moodle versions 3.6 to 3.6.1, 3.5 to 3.5.3, 3.4 to 3.4.6, 3.1 to 3.1.15 and earlier unsupported vers...
CVE-2019-3809MEDIUM6.5A flaw was found in Moodle versions 3.1 to 3.1.15 and earlier unsupported versions. The mybackpack functionality allowed...
CVE-2019-3808MEDIUM5.4A flaw was found in Moodle versions 3.6 to 3.6.1, 3.5 to 3.5.3, 3.4 to 3.4.6, 3.1 to 3.1.15 and earlier unsupported vers...
CVE-2019-10018MEDIUM5.5An issue was discovered in Xpdf 4.01.01. There is an FPE in the function PostScriptFunction::exec at Function.cc for the...
CVE-2019-9978MEDIUM6.1The social-warfare plugin before 3.5.3 for WordPress has stored XSS via the wp-admin/admin-post.php?swp_debug=load_optio...
CVE-2019-9947MEDIUM6.1An issue was discovered in urllib2 in Python 2.x through 2.7.16 and urllib in Python 3.x through 3.7.3. CRLF injection i...
CVE-2019-4035MEDIUM5.4IBM Content Navigator 3.0CD could allow attackers to direct web traffic to a malicious site. If attackers make a fake IB...
CVE-2019-9912MEDIUM6.1The wp-google-maps plugin before 7.10.43 for WordPress has XSS via the wp-admin/admin.php PATH_INFO.
CVE-2019-9911MEDIUM6.1The social-networks-auto-poster-facebook-twitter-g plugin before 4.2.8 for WordPress has wp-admin/admin.php?page=nxssnap...
CVE-2019-3871MEDIUM6.5A vulnerability was found in PowerDNS Authoritative Server before 4.0.7 and before 4.1.7. An insufficient validation of ...
CVE-2019-3858MEDIUM5An out of bounds read flaw was discovered in libssh2 before 1.8.1 when a specially crafted SFTP packet is received from ...
CVE-2019-9904MEDIUM6.5An issue was discovered in lib\cdt\dttree.c in libcdt.a in graphviz 2.40.1. Stack consumption occurs because of recursiv...
CVE-2019-9903MEDIUM6.5PDFDoc::markObject in PDFDoc.cc in Poppler 0.74.0 mishandles dict marking, leading to stack consumption in the function ...
CVE-2019-7425MEDIUM6.1XSS exists in Zoho ManageEngine Netflow Analyzer Professional v7.0.0.2 in the Administration zone "/netflow/jspui/linkdo...
CVE-2019-7222MEDIUM5.5The KVM implementation in the Linux kernel through 4.20.5 has an Information Leak.
CVE-2019-6735MEDIUM6.5This vulnerability allows remote attackers to disclose sensitive information on vulnerable installations of Foxit Reader...
CVE-2019-6734MEDIUM6.5This vulnerability allows remote attackers to disclose sensitive information on vulnerable installations of Foxit Phanto...
CVE-2019-6733MEDIUM6.5This vulnerability allows remote attackers to disclose sensitive information on vulnerable installations of Foxit Phanto...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now