2019 CVE Vulnerabilities

17,620 CVEs published in 2019.

CVE IDSeverityCVSSDescription
CVE-2019-18829HIGH7.8Barco ClickShare Button R9861500D01 devices before 1.10.0.13 have Missing Support for Integrity Check. The Barco signed ...
CVE-2019-18825HIGH7.5Barco ClickShare Huddle CS-100 devices before 1.9.0 and CSE-200 devices before 1.9.0 have incorrect Credentials Manageme...
CVE-2019-18824MEDIUM6.6Barco ClickShare Button R9861500D01 devices before 1.10.0.13 have Missing Support for Integrity Check. The ClickShare Bu...
CVE-2019-19815MEDIUM5.5In the Linux kernel 5.0.21, mounting a crafted f2fs filesystem image can cause a NULL pointer dereference in f2fs_recove...
CVE-2019-19816HIGH7.8In the Linux kernel 5.0.21, mounting a crafted btrfs filesystem image and performing some operations can cause slab-out-...
CVE-2019-19814HIGH7.8In the Linux kernel 5.0.21, mounting a crafted f2fs filesystem image can cause __remove_dirty_segment slab-out-of-bounds...
CVE-2019-19813MEDIUM5.5In the Linux kernel 5.0.21, mounting a crafted btrfs filesystem image, performing some operations, and then making a syn...
CVE-2019-19830MEDIUM6.5_core_/plugins/medias in SPIP 3.2.x before 3.2.7 allows remote authenticated authors to inject content into the database...
CVE-2019-15011MEDIUM4.3The ListEntityLinksServlet resource in Application Links before version 5.0.12, from version 5.1.0 before version 5.2.11...
CVE-2019-19826CRITICAL9.8The Views Dynamic Fields module through 7.x-1.0-alpha4 for Drupal makes insecure unserialize calls in handlers/views_han...
CVE-2019-5259MEDIUM6.5There is an information leakage vulnerability on some Huawei products(AR120-S;AR1200;AR1200-S;AR150;AR150-S;AR160;AR200;...
CVE-2019-12414MEDIUM5.3In Apache Incubator Superset before 0.32, a user can view database names that he has no access to on a dropdown list in ...
CVE-2019-12413MEDIUM5.3In Apache Incubator Superset before 0.31 user could query database metadata information from a database he has no access...
CVE-2019-19818MEDIUM5.5The JBIG2Decode library in npdf.dll in Nitro Free PDF Reader 12.0.0.112 has a CAPPDAnnotHandlerUtils::PDAnnotHandlerDest...
CVE-2019-18191HIGH8.8A privilege escalation vulnerability in the Trend Micro Deep Security as a Service Quick Setup cloud formation template ...
CVE-2019-16778CRITICAL9.8In TensorFlow before 1.15, a heap buffer overflow in UnsortedSegmentSum can be produced when the Index template argument...
CVE-2019-13182MEDIUM5.4A stored cross-site scripting (XSS) vulnerability exists in the web UI of SolarWinds Serv-U FTP Server 15.1.7.
CVE-2019-13181MEDIUM6.5A CSV injection vulnerability exists in the web UI of SolarWinds Serv-U FTP Server v15.1.7.
CVE-2019-18579MEDIUM6.8Settings for the Dell XPS 13 2-in-1 (7390) BIOS versions prior to 1.1.3 contain a configuration vulnerability. The BIOS ...
CVE-2019-18269CRITICAL9.8Omron’s CS and CJ series PLCs have an unrestricted externally accessible lock vulnerability.
CVE-2019-18261CRITICAL9.8In Omron PLC CS series, all versions, Omron PLC CJ series, all versions, and Omron PLC NJ series, all versions, the soft...
CVE-2019-18259CRITICAL9.8In Omron PLC CJ series, all versions and Omron PLC CS series, all versions, an attacker could spoof arbitrary messages o...
CVE-2019-16779MEDIUM5.9In RubyGem excon before 0.71.0, there was a race condition around persistent connections, where a connection which is in...
CVE-2019-14612MEDIUM6.7Out of bounds write in firmware for Intel(R) NUC(R) may allow a privileged user to potentially enable escalation of priv...
CVE-2019-14611MEDIUM6.7Integer overflow in firmware for Intel(R) NUC(R) may allow a privileged user to potentially enable escalation of privile...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now