2019 CVE Vulnerabilities

17,621 CVEs published in 2019.

CVE IDSeverityCVSSDescription
CVE-2019-17515MEDIUM6.1The CleanTalk cleantalk-spam-protect plugin before 5.127.4 for WordPress is affected by: Cross Site Scripting (XSS). The...
CVE-2019-9467MEDIUM6.7In the Bootloader, there is a possible kernel command injection due to missing command sanitization. This could lead to ...
CVE-2019-9466Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2019-9503. Reason: This candidate is a duplicate of C...
CVE-2019-2210HIGH7.8In load_logging_config of qmi_vs_service.cc, there is a possible out of bounds write due to a heap buffer overflow. This...
CVE-2019-18884HIGH8.8index.php/team_members/add_team_member in RISE Ultimate Project Manager 2.3 has CSRF for adding authorized users.
CVE-2019-18883MEDIUM6.1XSS exists in Lavalite CMS 5.7 via the admin/profile name or designation field.
CVE-2019-18844HIGH7.5The Device Model in ACRN before 2019w25.5-140000p relies on assert calls in devicemodel/hw/pci/core.c and devicemodel/in...
CVE-2019-18837HIGH8.6An issue was discovered in crun before 0.10.5. With a crafted image, it doesn't correctly check whether a target is a sy...
CVE-2019-18793MEDIUM6.1Parallels Plesk Panel 9.5 allows XSS in target/locales/tr-TR/help/index.htm? via the "fileName" parameter.
CVE-2019-16951MEDIUM5.3A remote file include (RFI) issue was discovered in Enghouse Web Chat 6.2.284.34. One can replace the localhost attribut...
CVE-2019-16950MEDIUM6.1An XSS issue was discovered in Enghouse Web Chat 6.1.300.31 and 6.2.284.34. The QueueName parameter of a GET request all...
CVE-2019-2233MEDIUM6.8In getUserCount and getCount of UserSwitcherController.java, there is possible new user creation due to a logic error. T...
CVE-2019-2214HIGH7.8In binder_transaction of binder.c, there is a possible out of bounds write due to a missing bounds check. This could lea...
CVE-2019-2213HIGH7.4In binder_free_transaction of binder.c, there is a possible use-after-free due to a race condition. This could lead to l...
CVE-2019-2212MEDIUM5.5In poisson_distribution of random, there is an out of bounds read. This could lead to local information disclosure with ...
CVE-2019-2211HIGH7.5In createProjectionMapForQuery of TvProvider.java, there is possible SQL injection. This could lead to local information...
CVE-2019-2209MEDIUM5.5In BTA_DmPinReply of bta_dm_api.cc, there is a possible out of bounds read due to an incorrect bounds check. This could ...
CVE-2019-2208HIGH7.5In PromiseBuiltinsAssembler::NewPromiseCapability of builtins-promise.cc, there is a possible out of bounds read in v8 J...
CVE-2019-2207HIGH7.8In nfa_hci_handle_admin_gate_rsp of nfa_hci_act.cc, there is a possible out of bound write due to missing bounds checks....
CVE-2019-2206HIGH8.8In rw_i93_sm_set_read_only of rw_i93.cc, there is a possible out of bounds write due to a missing bounds check. This cou...
CVE-2019-2205CRITICAL9.8In ProxyResolverV8::SetPacScript of proxy_resolver_v8.cc, there is a possible memory corruption due to a use after free....
CVE-2019-2204CRITICAL9.8In FindSharedFunctionInfo of objects.cc, there is a possible out of bounds read due to a mistake in AST traversal. This ...
CVE-2019-2203HIGH7.8In CryptoPlugin::decrypt of CryptoPlugin.cpp, there is a possible out of bounds write due to a heap buffer overflow. Thi...
CVE-2019-2202HIGH7.8In CryptoPlugin::decrypt of CryptoPlugin.cpp, there is a possible out of bounds write due to a heap buffer overflow. Thi...
CVE-2019-2201HIGH7.8In generate_jsimd_ycc_rgb_convert_neon of jsimd_arm64_neon.S, there is a possible out of bounds write due to a missing b...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now