2019 CVE Vulnerabilities
17,620 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-8504 | MEDIUM | 5.5 | 0.3% | Dec 18, 2019 | A memory initialization issue was addressed with improved memory handling. This issue is fixed in iOS 12.2, macOS Mojave... |
| CVE-2019-8503 | HIGH | 8.8 | 1.8% | Dec 18, 2019 | A logic issue was addressed with improved validation. This issue is fixed in iOS 12.2, tvOS 12.2, Safari 12.1, iTunes 12... |
| CVE-2019-8502 | LOW | 3.3 | 0.8% | Dec 18, 2019 | An API issue existed in the handling of dictation requests. This issue was addressed with improved validation. This issu... |
| CVE-2019-7293 | MEDIUM | 5.5 | 0.3% | Dec 18, 2019 | A memory corruption issue was addressed with improved memory handling. This issue is fixed in iOS 12.2, macOS Mojave 10.... |
| CVE-2019-7292 | MEDIUM | 6.5 | 1.3% | Dec 18, 2019 | A validation issue was addressed with improved logic. This issue is fixed in iOS 12.2, tvOS 12.2, watchOS 5.2, Safari 12... |
| CVE-2019-7290 | CRITICAL | 10 | 1.0% | Dec 18, 2019 | An access issue was addressed with additional sandbox restrictions. This issue is fixed in Shortcuts 2.1.3 for iOS. A sa... |
| CVE-2019-7289 | MEDIUM | 5.5 | 0.3% | Dec 18, 2019 | A parsing issue in the handling of directory paths was addressed with improved path validation. This issue is fixed in S... |
| CVE-2019-7287 | HIGH | 7.8 | 4.6% | Dec 18, 2019 | A memory corruption issue was addressed with improved input validation. This issue is fixed in iOS 12.1.4. An applicatio... |
| CVE-2019-7286 | HIGH | 7.8 | 15.7% | Dec 18, 2019 | A memory corruption issue was addressed with improved input validation. This issue is fixed in iOS 12.1.4, macOS Mojave ... |
| CVE-2019-7285 | HIGH | 8.8 | 2.0% | Dec 18, 2019 | A use after free issue was addressed with improved memory management. This issue is fixed in iOS 12.2, tvOS 12.2, Safari... |
| CVE-2019-7284 | MEDIUM | 4.3 | 0.8% | Dec 18, 2019 | This issue was addressed with improved checks. This issue is fixed in iOS 12.2. Processing a maliciously crafted mail me... |
| CVE-2019-6239 | HIGH | 7.8 | 0.3% | Dec 18, 2019 | This issue was addressed with improved handling of file metadata. This issue is fixed in macOS Mojave 10.14.4. A malicio... |
| CVE-2019-6237 | HIGH | 8.8 | 1.8% | Dec 18, 2019 | Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed in iOS 12.3, macOS M... |
| CVE-2019-6236 | HIGH | 7.5 | 1.2% | Dec 18, 2019 | A race condition existed during the installation of iCloud for Windows. This was addressed with improved state handling.... |
| CVE-2019-6232 | HIGH | 7.5 | 1.2% | Dec 18, 2019 | A race condition existed during the installation of iTunes for Windows. This was addressed with improved state handling.... |
| CVE-2019-6222 | MEDIUM | 4.3 | 0.9% | Dec 18, 2019 | A consistency issue was addressed with improved state handling. This issue is fixed in iOS 12.2. A website may be able t... |
| CVE-2019-6207 | MEDIUM | 5.5 | 0.7% | Dec 18, 2019 | An out-of-bounds read issue existed that led to the disclosure of kernel memory. This was addressed with improved input ... |
| CVE-2019-6204 | MEDIUM | 6.1 | 0.7% | Dec 18, 2019 | A logic issue was addressed with improved validation. This issue is fixed in iOS 12.2, Safari 12.1. Enabling the Safari ... |
| CVE-2019-6201 | HIGH | 8.8 | 2.0% | Dec 18, 2019 | Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed in iOS 12.2, tvOS 12... |
| CVE-2019-19833 | MEDIUM | 6.5 | 14.7% | Dec 18, 2019 | In Tautulli 2.1.9, CSRF in the /shutdown URI allows an attacker to shut down the remote media server. (Also, anonymous a... |
| CVE-2019-19832 | HIGH | 8.8 | 0.7% | Dec 18, 2019 | Xerox AltaLink C8035 printers allow CSRF. A request to add users is made in the Device User Database form field to the x... |
| CVE-2019-19829 | MEDIUM | 5.4 | 2.3% | Dec 18, 2019 | A cross-site scripting (XSS) vulnerability exists in SolarWinds Serv-U FTP Server 15.1.7 in the email parameter, a diffe... |
| CVE-2019-4716 | CRITICAL | 9.8 | 86.4% | Dec 18, 2019 | IBM Planning Analytics 2.0.0 through 2.0.8 is vulnerable to a configuration overwrite that allows an unauthenticated use... |
| CVE-2019-4609 | HIGH | 7.5 | 0.8% | Dec 18, 2019 | IBM API Connect 2018.4.1.7 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt hi... |
| CVE-2019-19882 | HIGH | 7.8 | 0.5% | Dec 18, 2019 | shadow 4.8, in certain circumstances affecting at least Gentoo, Arch Linux, and Void Linux, allows local users to obtain... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now