2019 CVE Vulnerabilities

17,620 CVEs published in 2019.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2019-7577HIGH8.8SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a buffer over-read in SDL_LoadWAV_RW in audio/SD...
CVE-2019-7576HIGH8.8SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer over-read in InitMS_ADPCM in...
CVE-2019-7575HIGH8.8SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer overflow in MS_ADPCM_decode ...
CVE-2019-7574HIGH8.8SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer over-read in IMA_ADPCM_decod...
CVE-2019-7573HIGH8.8SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer over-read in InitMS_ADPCM in...
CVE-2019-7572HIGH8.8SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a buffer over-read in IMA_ADPCM_nibble in audio/...
CVE-2019-7548HIGH7.8SQLAlchemy 1.2.17 has SQL Injection when the group_by parameter can be controlled.
CVE-2019-1003011HIGH8.1An information exposure and denial of service vulnerability exists in Jenkins Token Macro Plugin 2.5 and earlier in src/...
CVE-2019-1003006HIGH8.8A sandbox bypass vulnerability exists in Jenkins Groovy Plugin 2.0 and earlier in src/main/java/hudson/plugins/groovy/St...
CVE-2019-1003005HIGH8.8A sandbox bypass vulnerability exists in Jenkins Script Security Plugin 1.50 and earlier in src/main/java/org/jenkinsci/...
CVE-2019-6535HIGH7.5Mitsubishi Electric Q03/04/06/13/26UDVCPU: serial number 20081 and prior, Q04/06/13/26UDPVCPU: serial number 20081 and p...
CVE-2019-3818HIGH7.5The kube-rbac-proxy container before version 0.4.1 as used in Red Hat OpenShift Container Platform does not honor TLS co...
CVE-2019-7398HIGH7.5In ImageMagick before 7.0.8-25, a memory leak exists in WriteDIBImage in coders/dib.c.
CVE-2019-7397HIGH7.5In ImageMagick before 7.0.8-25 and GraphicsMagick through 1.3.31, several memory leaks exist in WritePDFImage in coders/...
CVE-2019-7396HIGH7.5In ImageMagick before 7.0.8-25, a memory leak exists in ReadSIXELImage in coders/sixel.c.
CVE-2019-7395HIGH7.5In ImageMagick before 7.0.8-25, a memory leak exists in WritePSDChannel in coders/psd.c.
CVE-2019-1000018HIGH7.8rssh version 2.3.4 contains a CWE-77: Improper Neutralization of Special Elements used in a Command ('Command Injection'...
CVE-2019-3813HIGH7.5Spice, versions 0.5.2 through 0.14.1, are vulnerable to an out-of-bounds read due to an off-by-one error in memslot_get_...
CVE-2019-7310HIGH7.8In Poppler 0.73.0, a heap-based buffer over-read (due to an integer signedness error in the XRef::getEntry function in X...
CVE-2019-7283HIGH7.4An issue was discovered in rcp in NetKit through 0.17. For an rcp operation, the server chooses which files/directories ...
CVE-2019-0190HIGH7.5A bug exists in the way mod_ssl handled client renegotiations. A remote attacker could send a carefully crafted request ...
CVE-2019-3806HIGH8.1An issue has been found in PowerDNS Recursor versions after 4.1.3 before 4.1.9 where Lua hooks are not properly applied ...
CVE-2019-3462HIGH8.1Incorrect sanitation of the 302 redirect field in HTTP transport method of apt versions 1.4.8 and earlier can lead to co...
CVE-2019-3593HIGH7.5Exploitation of Privilege/Trust vulnerability in Microsoft Windows client in McAfee Total Protection (MTP) Prior to 16.0...
CVE-2019-6956HIGH7.1An issue was discovered in Freeware Advanced Audio Decoder 2 (FAAD2) 2.8.8. It is a buffer over-read in ps_mix_phase in ...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now