2019 CVE Vulnerabilities

17,620 CVEs published in 2019.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2019-9773HIGH7.5An issue was discovered in GNU LibreDWG 0.7 and 0.7.1645. There is a heap-based buffer overflow in the function dwg_deco...
CVE-2019-9772HIGH7.5An issue was discovered in GNU LibreDWG 0.7 and 0.7.1645. There is a NULL pointer dereference in the function dwg_dxf_LE...
CVE-2019-9771HIGH7.5An issue was discovered in GNU LibreDWG 0.7 and 0.7.1645. There is a NULL pointer dereference in the function bit_conver...
CVE-2019-9770HIGH7.5An issue was discovered in GNU LibreDWG 0.7 and 0.7.1645. There is a heap-based buffer overflow in the function dwg_deco...
CVE-2019-3785HIGH8.1Cloud Foundry Cloud Controller, versions prior to 1.78.0, contain an endpoint with improper authorization. A remote auth...
CVE-2019-3716HIGH7.8RSA Archer versions, prior to 6.5 SP2, contain an information exposure vulnerability. The database connection password m...
CVE-2019-3715HIGH7.8RSA Archer versions, prior to 6.5 SP1, contain an information exposure vulnerability. Users' session information is logg...
CVE-2019-9749HIGH7.5An issue was discovered in the MQTT input plugin in Fluent Bit through 1.0.4. When this plugin acts as an MQTT broker (s...
CVE-2019-5924HIGH8.8Cross-site request forgery (CSRF) vulnerability in Smart Forms 2.6.15 and earlier allows remote attackers to hijack the ...
CVE-2019-4016HIGH7.8IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 9.7, 10.1, 10.5, and 11.1 is vulnerable to a buffer ov...
CVE-2019-4015HIGH7.8IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 9.7, 10.1, 10.5, and 11.1 is vulnerable to a buffer ov...
CVE-2019-1618HIGH7.8A vulnerability in the Tetration Analytics agent for Cisco Nexus 9000 Series Switches in standalone NX-OS mode could all...
CVE-2019-1617HIGH7.4A vulnerability in the Fibre Channel over Ethernet (FCoE) N-port Virtualization (NPV) protocol implementation in Cisco N...
CVE-2019-1616HIGH8.6A vulnerability in the Cisco Fabric Services component of Cisco NX-OS Software could allow an unauthenticated, remote at...
CVE-2019-1614HIGH8.8A vulnerability in the NX-API feature of Cisco NX-OS Software could allow an authenticated, remote attacker to execute a...
CVE-2019-9686HIGH8.8pacman before 5.1.3 allows directory traversal when installing a remote package via a specified URL "pacman -U <url>" du...
CVE-2019-9656HIGH8.8An issue was discovered in LibOFX 0.9.14. There is a NULL pointer dereference in the function OFXApplication::startEleme...
CVE-2019-9640HIGH7.5An issue was discovered in the EXIF component in PHP before 7.1.27, 7.2.x before 7.2.16, and 7.3.x before 7.3.3. There i...
CVE-2019-9639HIGH7.5An issue was discovered in the EXIF component in PHP before 7.1.27, 7.2.x before 7.2.16, and 7.3.x before 7.3.3. There i...
CVE-2019-9638HIGH7.5An issue was discovered in the EXIF component in PHP before 7.1.27, 7.2.x before 7.2.16, and 7.3.x before 7.3.3. There i...
CVE-2019-8277HIGH7.5UltraVNC revision 1211 contains multiple memory leaks (CWE-665) in VNC server code, which allows an attacker to read sta...
CVE-2019-8276HIGH7.5UltraVNC revision 1211 has a stack buffer overflow vulnerability in VNC server code inside file transfer request handler...
CVE-2019-8269HIGH7.5UltraVNC revision 1206 has stack-based Buffer overflow vulnerability in VNC client code inside FileTransfer module, whic...
CVE-2019-1003039HIGH8.8An insufficiently protected credentials vulnerability exists in JenkinsAppDynamics Dashboard Plugin 1.0.14 and earlier i...
CVE-2019-1003038HIGH7.8An insufficiently protected credentials vulnerability exists in Jenkins Repository Connector Plugin 1.2.4 and earlier in...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now