2019 CVE Vulnerabilities
17,620 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-0682 | — | — | 0.9% | Apr 9, 2019 | An elevation of privilege vulnerability exists due to an integer overflow in Windows Subsystem for Linux, aka 'Windows S... |
| CVE-2019-0680 | — | — | 8.1% | Apr 9, 2019 | A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Internet ... |
| CVE-2019-0678 | — | — | 6.1% | Apr 9, 2019 | An elevation of privilege vulnerability exists when Microsoft Edge does not properly enforce cross-domain policies, whic... |
| CVE-2019-11024 | — | — | 1.0% | Apr 8, 2019 | The load_pnm function in frompnm.c in libsixel.a in libsixel 1.8.2 has infinite recursion. |
| CVE-2019-11023 | — | — | 5.0% | Apr 8, 2019 | The agroot() function in cgraph\obj.c in libcgraph.a in Graphviz 2.39.20160612.1140 has a NULL pointer dereference, as d... |
| CVE-2019-0667 | — | — | 31.3% | Apr 8, 2019 | A remote code execution vulnerability exists in the way that the VBScript engine handles objects in memory, aka 'Windows... |
| CVE-2019-0666 | — | — | 20.4% | Apr 8, 2019 | A remote code execution vulnerability exists in the way that the VBScript engine handles objects in memory, aka 'Windows... |
| CVE-2019-0665 | — | — | 8.3% | Apr 8, 2019 | A remote code execution vulnerability exists in the way that the VBScript engine handles objects in memory, aka 'Windows... |
| CVE-2019-0639 | — | — | 12.0% | Apr 8, 2019 | A remote code execution vulnerability exists in the way that the ChakraCore scripting engine handles objects in memory, ... |
| CVE-2019-0617 | — | — | 19.6% | Apr 8, 2019 | A remote code execution vulnerability exists when the Windows Jet Database Engine improperly handles objects in memory, ... |
| CVE-2019-0614 | — | — | 6.6% | Apr 8, 2019 | An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its m... |
| CVE-2019-0612 | — | — | 10.5% | Apr 8, 2019 | A security feature bypass vulnerability exists when Click2Play protection in Microsoft Edge improperly handles flash obj... |
| CVE-2019-0611 | — | — | 9.2% | Apr 8, 2019 | A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Mi... |
| CVE-2019-0609 | — | — | 9.8% | Apr 8, 2019 | A remote code execution vulnerability exists in the way the scripting engine handles objects in memory in Microsoft brow... |
| CVE-2019-0603 | — | — | 34.2% | Apr 8, 2019 | A remote code execution vulnerability exists in the way that Windows Deployment Services TFTP Server handles objects in ... |
| CVE-2019-0592 | — | — | 22.9% | Apr 8, 2019 | A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Mi... |
| CVE-2019-11018 | — | — | 1.4% | Apr 8, 2019 | application\admin\controller\User.php in ThinkAdmin V4.0 does not prevent continued use of an administrator's cookie-bas... |
| CVE-2019-11016 | — | — | 1.2% | Apr 8, 2019 | Elgg before 1.12.18 and 2.3.x before 2.3.11 has an open redirect. |
| CVE-2019-11014 | — | — | 2.3% | Apr 8, 2019 | The VStarCam vstc.vscam.client library and vstc.vscam shared object, as used in the Eye4 application (for Android, iOS, ... |
| CVE-2019-0215 | — | — | 10.5% | Apr 8, 2019 | In Apache HTTP Server 2.4 releases 2.4.37 and 2.4.38, a bug in mod_ssl when using per-location client certificate verifi... |
| CVE-2019-11010 | — | — | 1.8% | Apr 8, 2019 | In GraphicsMagick 1.4 snapshot-20190322 Q8, there is a memory leak in the function ReadMPCImage of coders/mpc.c, which a... |
| CVE-2019-11009 | — | — | 2.4% | Apr 8, 2019 | In GraphicsMagick 1.4 snapshot-20190322 Q8, there is a heap-based buffer over-read in the function ReadXWDImage of coder... |
| CVE-2019-11006 | — | — | 2.9% | Apr 8, 2019 | In GraphicsMagick 1.4 snapshot-20190322 Q8, there is a heap-based buffer over-read in the function ReadMIFFImage of code... |
| CVE-2019-11005 | — | — | 3.5% | Apr 8, 2019 | In GraphicsMagick 1.4 snapshot-20190322 Q8, there is a stack-based buffer overflow in the function SVGStartElement of co... |
| CVE-2019-11004 | — | — | 0.8% | Apr 8, 2019 | In Materialize through 1.0.0, XSS is possible via the Toast feature. |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now