2019 CVE Vulnerabilities
17,620 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-5759 | — | — | 1.5% | Feb 19, 2019 | Incorrect lifetime handling in HTML select elements in Google Chrome on Android and Mac prior to 72.0.3626.81 allowed a ... |
| CVE-2019-5758 | — | — | 1.7% | Feb 19, 2019 | Incorrect object lifecycle management in Blink in Google Chrome prior to 72.0.3626.81 allowed a remote attacker to poten... |
| CVE-2019-5757 | — | — | 1.8% | Feb 19, 2019 | An incorrect object type assumption in SVG in Google Chrome prior to 72.0.3626.81 allowed a remote attacker to potential... |
| CVE-2019-5756 | — | — | 2.7% | Feb 19, 2019 | Inappropriate memory management when caching in PDFium in Google Chrome prior to 72.0.3626.81 allowed a remote attacker ... |
| CVE-2019-5755 | — | — | 1.9% | Feb 19, 2019 | Incorrect handling of negative zero in V8 in Google Chrome prior to 72.0.3626.81 allowed a remote attacker to perform ar... |
| CVE-2019-5754 | — | — | 0.6% | Feb 19, 2019 | Implementation error in QUIC Networking in Google Chrome prior to 72.0.3626.81 allowed an attacker running or able to ca... |
| CVE-2019-8939 | — | — | 1.1% | Feb 19, 2019 | data/interfaces/default/history.html in Tautulli 2.1.26 has XSS via a crafted Plex username that is mishandled when cons... |
| CVE-2019-8935 | — | — | 0.7% | Feb 19, 2019 | Collabtive 3.1 allows XSS via the manageuser.php?action=profile id parameter. |
| CVE-2019-8933 | — | — | 3.4% | Feb 19, 2019 | In DedeCMS 5.7SP2, attackers can upload a .php file to the uploads/ directory (without being blocked by the Web Applicat... |
| CVE-2019-8919 | — | — | 1.4% | Feb 18, 2019 | The seadroid (aka Seafile Android Client) application through 2.2.13 for Android always uses the same Initialization Vec... |
| CVE-2019-7629 | — | — | 5.4% | Feb 18, 2019 | Stack-based buffer overflow in the strip_vt102_codes function in TinTin++ 2.01.6 and WinTin++ 2.01.6 allows remote attac... |
| CVE-2019-8917 | — | — | 36.4% | Feb 18, 2019 | SolarWinds Orion NPM before 12.4 suffers from a SYSTEM remote code execution vulnerability in the OrionModuleEngine serv... |
| CVE-2019-8911 | — | — | 0.8% | Feb 18, 2019 | An issue was discovered in WTCMS 1.0. It has stored XSS via the third text box (for the website statistics code). |
| CVE-2019-8910 | — | — | 0.6% | Feb 18, 2019 | An issue was discovered in WTCMS 1.0. It allows index.php?g=admin&m=setting&a=site_post CSRF. |
| CVE-2019-8909 | — | — | 1.8% | Feb 18, 2019 | An issue was discovered in WTCMS 1.0. It allows remote attackers to cause a denial of service (resource consumption) via... |
| CVE-2019-8908 | — | — | 2.3% | Feb 18, 2019 | An issue was discovered in WTCMS 1.0. It allows remote attackers to execute arbitrary PHP code by going to the "Setting ... |
| CVE-2019-8907 | — | — | 3.5% | Feb 18, 2019 | do_core_note in readelf.c in libmagic.a in file 5.35 allows remote attackers to cause a denial of service (stack corrupt... |
| CVE-2019-8904 | — | — | 2.5% | Feb 18, 2019 | do_bid_note in readelf.c in libmagic.a in file 5.35 has a stack-based buffer over-read, related to file_printf and file_... |
| CVE-2019-0127 | — | — | 0.4% | Feb 18, 2019 | Logic error in the installer for Intel(R) OpenVINO(TM) 2018 R3 and before for Linux may allow a privileged user to poten... |
| CVE-2019-0112 | — | — | 0.4% | Feb 18, 2019 | Improper flow control in crypto routines for Intel(R) Data Center Manager SDK before version 5.0.2 may allow a privilege... |
| CVE-2019-0111 | — | — | 0.4% | Feb 18, 2019 | Improper file permissions for Intel(R) Data Center Manager SDK before version 5.0.2 may allow an authenticated user to p... |
| CVE-2019-0110 | — | — | 0.5% | Feb 18, 2019 | Insufficient key management for Intel(R) Data Center Manager SDK before version 5.0.2 may allow an authenticated user to... |
| CVE-2019-0109 | — | — | 0.5% | Feb 18, 2019 | Improper folder permissions in Intel(R) Data Center Manager SDK before version 5.0.2 may allow an authenticated user to ... |
| CVE-2019-0108 | — | — | 0.4% | Feb 18, 2019 | Improper file permissions for Intel(R) Data Center Manager SDK before version 5.0.2 may allow an authenticated user to p... |
| CVE-2019-0107 | — | — | 0.5% | Feb 18, 2019 | Insufficient user prompt in install routine for Intel(R) Data Center Manager SDK before version 5.0.2 may allow a privil... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now