2019 CVE Vulnerabilities
17,620 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-18829 | HIGH | 7.8 | 0.3% | Dec 17, 2019 | Barco ClickShare Button R9861500D01 devices before 1.10.0.13 have Missing Support for Integrity Check. The Barco signed ... |
| CVE-2019-18825 | HIGH | 7.5 | 0.6% | Dec 17, 2019 | Barco ClickShare Huddle CS-100 devices before 1.9.0 and CSE-200 devices before 1.9.0 have incorrect Credentials Manageme... |
| CVE-2019-18824 | MEDIUM | 6.6 | 0.3% | Dec 17, 2019 | Barco ClickShare Button R9861500D01 devices before 1.10.0.13 have Missing Support for Integrity Check. The ClickShare Bu... |
| CVE-2019-19815 | MEDIUM | 5.5 | 2.1% | Dec 17, 2019 | In the Linux kernel 5.0.21, mounting a crafted f2fs filesystem image can cause a NULL pointer dereference in f2fs_recove... |
| CVE-2019-19816 | HIGH | 7.8 | 3.3% | Dec 17, 2019 | In the Linux kernel 5.0.21, mounting a crafted btrfs filesystem image and performing some operations can cause slab-out-... |
| CVE-2019-19814 | HIGH | 7.8 | 3.3% | Dec 17, 2019 | In the Linux kernel 5.0.21, mounting a crafted f2fs filesystem image can cause __remove_dirty_segment slab-out-of-bounds... |
| CVE-2019-19813 | MEDIUM | 5.5 | 2.2% | Dec 17, 2019 | In the Linux kernel 5.0.21, mounting a crafted btrfs filesystem image, performing some operations, and then making a syn... |
| CVE-2019-19830 | MEDIUM | 6.5 | 1.3% | Dec 17, 2019 | _core_/plugins/medias in SPIP 3.2.x before 3.2.7 allows remote authenticated authors to inject content into the database... |
| CVE-2019-15011 | MEDIUM | 4.3 | 0.9% | Dec 17, 2019 | The ListEntityLinksServlet resource in Application Links before version 5.0.12, from version 5.1.0 before version 5.2.11... |
| CVE-2019-19826 | CRITICAL | 9.8 | 1.8% | Dec 16, 2019 | The Views Dynamic Fields module through 7.x-1.0-alpha4 for Drupal makes insecure unserialize calls in handlers/views_han... |
| CVE-2019-5259 | MEDIUM | 6.5 | 0.6% | Dec 16, 2019 | There is an information leakage vulnerability on some Huawei products(AR120-S;AR1200;AR1200-S;AR150;AR150-S;AR160;AR200;... |
| CVE-2019-12414 | MEDIUM | 5.3 | 2.7% | Dec 16, 2019 | In Apache Incubator Superset before 0.32, a user can view database names that he has no access to on a dropdown list in ... |
| CVE-2019-12413 | MEDIUM | 5.3 | 2.8% | Dec 16, 2019 | In Apache Incubator Superset before 0.31 user could query database metadata information from a database he has no access... |
| CVE-2019-19818 | MEDIUM | 5.5 | 1.2% | Dec 16, 2019 | The JBIG2Decode library in npdf.dll in Nitro Free PDF Reader 12.0.0.112 has a CAPPDAnnotHandlerUtils::PDAnnotHandlerDest... |
| CVE-2019-18191 | HIGH | 8.8 | 2.2% | Dec 16, 2019 | A privilege escalation vulnerability in the Trend Micro Deep Security as a Service Quick Setup cloud formation template ... |
| CVE-2019-16778 | CRITICAL | 9.8 | 0.8% | Dec 16, 2019 | In TensorFlow before 1.15, a heap buffer overflow in UnsortedSegmentSum can be produced when the Index template argument... |
| CVE-2019-13182 | MEDIUM | 5.4 | 6.4% | Dec 16, 2019 | A stored cross-site scripting (XSS) vulnerability exists in the web UI of SolarWinds Serv-U FTP Server 15.1.7. |
| CVE-2019-13181 | MEDIUM | 6.5 | 3.2% | Dec 16, 2019 | A CSV injection vulnerability exists in the web UI of SolarWinds Serv-U FTP Server v15.1.7. |
| CVE-2019-18579 | MEDIUM | 6.8 | 0.3% | Dec 16, 2019 | Settings for the Dell XPS 13 2-in-1 (7390) BIOS versions prior to 1.1.3 contain a configuration vulnerability. The BIOS ... |
| CVE-2019-18269 | CRITICAL | 9.8 | 1.0% | Dec 16, 2019 | Omron’s CS and CJ series PLCs have an unrestricted externally accessible lock vulnerability. |
| CVE-2019-18261 | CRITICAL | 9.8 | 1.3% | Dec 16, 2019 | In Omron PLC CS series, all versions, Omron PLC CJ series, all versions, and Omron PLC NJ series, all versions, the soft... |
| CVE-2019-18259 | CRITICAL | 9.8 | 2.1% | Dec 16, 2019 | In Omron PLC CJ series, all versions and Omron PLC CS series, all versions, an attacker could spoof arbitrary messages o... |
| CVE-2019-16779 | MEDIUM | 5.9 | 1.4% | Dec 16, 2019 | In RubyGem excon before 0.71.0, there was a race condition around persistent connections, where a connection which is in... |
| CVE-2019-14612 | MEDIUM | 6.7 | 0.3% | Dec 16, 2019 | Out of bounds write in firmware for Intel(R) NUC(R) may allow a privileged user to potentially enable escalation of priv... |
| CVE-2019-14611 | MEDIUM | 6.7 | 0.3% | Dec 16, 2019 | Integer overflow in firmware for Intel(R) NUC(R) may allow a privileged user to potentially enable escalation of privile... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now