2019 CVE Vulnerabilities
17,621 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-17515 | MEDIUM | 6.1 | 1.3% | Nov 13, 2019 | The CleanTalk cleantalk-spam-protect plugin before 5.127.4 for WordPress is affected by: Cross Site Scripting (XSS). The... |
| CVE-2019-9467 | MEDIUM | 6.7 | 0.3% | Nov 13, 2019 | In the Bootloader, there is a possible kernel command injection due to missing command sanitization. This could lead to ... |
| CVE-2019-9466 | — | — | — | Nov 13, 2019 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2019-9503. Reason: This candidate is a duplicate of C... |
| CVE-2019-2210 | HIGH | 7.8 | 0.2% | Nov 13, 2019 | In load_logging_config of qmi_vs_service.cc, there is a possible out of bounds write due to a heap buffer overflow. This... |
| CVE-2019-18884 | HIGH | 8.8 | 0.7% | Nov 13, 2019 | index.php/team_members/add_team_member in RISE Ultimate Project Manager 2.3 has CSRF for adding authorized users. |
| CVE-2019-18883 | MEDIUM | 6.1 | 0.9% | Nov 13, 2019 | XSS exists in Lavalite CMS 5.7 via the admin/profile name or designation field. |
| CVE-2019-18844 | HIGH | 7.5 | 1.7% | Nov 13, 2019 | The Device Model in ACRN before 2019w25.5-140000p relies on assert calls in devicemodel/hw/pci/core.c and devicemodel/in... |
| CVE-2019-18837 | HIGH | 8.6 | 1.4% | Nov 13, 2019 | An issue was discovered in crun before 0.10.5. With a crafted image, it doesn't correctly check whether a target is a sy... |
| CVE-2019-18793 | MEDIUM | 6.1 | 0.8% | Nov 13, 2019 | Parallels Plesk Panel 9.5 allows XSS in target/locales/tr-TR/help/index.htm? via the "fileName" parameter. |
| CVE-2019-16951 | MEDIUM | 5.3 | 1.0% | Nov 13, 2019 | A remote file include (RFI) issue was discovered in Enghouse Web Chat 6.2.284.34. One can replace the localhost attribut... |
| CVE-2019-16950 | MEDIUM | 6.1 | 0.7% | Nov 13, 2019 | An XSS issue was discovered in Enghouse Web Chat 6.1.300.31 and 6.2.284.34. The QueueName parameter of a GET request all... |
| CVE-2019-2233 | MEDIUM | 6.8 | 0.2% | Nov 13, 2019 | In getUserCount and getCount of UserSwitcherController.java, there is possible new user creation due to a logic error. T... |
| CVE-2019-2214 | HIGH | 7.8 | 0.3% | Nov 13, 2019 | In binder_transaction of binder.c, there is a possible out of bounds write due to a missing bounds check. This could lea... |
| CVE-2019-2213 | HIGH | 7.4 | 0.1% | Nov 13, 2019 | In binder_free_transaction of binder.c, there is a possible use-after-free due to a race condition. This could lead to l... |
| CVE-2019-2212 | MEDIUM | 5.5 | 0.2% | Nov 13, 2019 | In poisson_distribution of random, there is an out of bounds read. This could lead to local information disclosure with ... |
| CVE-2019-2211 | HIGH | 7.5 | 0.7% | Nov 13, 2019 | In createProjectionMapForQuery of TvProvider.java, there is possible SQL injection. This could lead to local information... |
| CVE-2019-2209 | MEDIUM | 5.5 | 0.1% | Nov 13, 2019 | In BTA_DmPinReply of bta_dm_api.cc, there is a possible out of bounds read due to an incorrect bounds check. This could ... |
| CVE-2019-2208 | HIGH | 7.5 | 1.0% | Nov 13, 2019 | In PromiseBuiltinsAssembler::NewPromiseCapability of builtins-promise.cc, there is a possible out of bounds read in v8 J... |
| CVE-2019-2207 | HIGH | 7.8 | 0.2% | Nov 13, 2019 | In nfa_hci_handle_admin_gate_rsp of nfa_hci_act.cc, there is a possible out of bound write due to missing bounds checks.... |
| CVE-2019-2206 | HIGH | 8.8 | 1.2% | Nov 13, 2019 | In rw_i93_sm_set_read_only of rw_i93.cc, there is a possible out of bounds write due to a missing bounds check. This cou... |
| CVE-2019-2205 | CRITICAL | 9.8 | 2.9% | Nov 13, 2019 | In ProxyResolverV8::SetPacScript of proxy_resolver_v8.cc, there is a possible memory corruption due to a use after free.... |
| CVE-2019-2204 | CRITICAL | 9.8 | 1.3% | Nov 13, 2019 | In FindSharedFunctionInfo of objects.cc, there is a possible out of bounds read due to a mistake in AST traversal. This ... |
| CVE-2019-2203 | HIGH | 7.8 | 0.2% | Nov 13, 2019 | In CryptoPlugin::decrypt of CryptoPlugin.cpp, there is a possible out of bounds write due to a heap buffer overflow. Thi... |
| CVE-2019-2202 | HIGH | 7.8 | 0.2% | Nov 13, 2019 | In CryptoPlugin::decrypt of CryptoPlugin.cpp, there is a possible out of bounds write due to a heap buffer overflow. Thi... |
| CVE-2019-2201 | HIGH | 7.8 | 2.7% | Nov 13, 2019 | In generate_jsimd_ycc_rgb_convert_neon of jsimd_arm64_neon.S, there is a possible out of bounds write due to a missing b... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now