2019 CVE Vulnerabilities
17,619 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-19230 | CRITICAL | 9.8 | 3.8% | Dec 9, 2019 | An unsafe deserialization vulnerability exists in CA Release Automation (Nolio) 6.6 with the DataManagement component th... |
| CVE-2019-19646 | CRITICAL | 9.8 | 5.4% | Dec 9, 2019 | pragma.c in SQLite through 3.30.1 mishandles NOT NULL in an integrity_check PRAGMA command in certain cases of generated... |
| CVE-2019-18190 | CRITICAL | 9.8 | 2.7% | Dec 9, 2019 | Trend Micro Security (Consumer) 2020 (v16.x) is affected by a vulnerability in where null pointer dereference errors res... |
| CVE-2019-19683 | CRITICAL | 9.1 | 1.8% | Dec 9, 2019 | RoxyFileman, as shipped with nopCommerce v4.2.0, is vulnerable to ../ path traversal via d or f to Admin/RoxyFileman/Pro... |
| CVE-2019-19638 | CRITICAL | 9.8 | 1.2% | Dec 8, 2019 | An issue was discovered in libsixel 1.8.2. There is a heap-based buffer overflow in the function load_pnm at frompnm.c, ... |
| CVE-2019-19637 | CRITICAL | 9.8 | 1.2% | Dec 8, 2019 | An issue was discovered in libsixel 1.8.2. There is an integer overflow in the function sixel_decode_raw_impl at fromsix... |
| CVE-2019-19636 | CRITICAL | 9.8 | 1.2% | Dec 8, 2019 | An issue was discovered in libsixel 1.8.2. There is an integer overflow in the function sixel_encode_body at tosixel.c. |
| CVE-2019-19635 | CRITICAL | 9.8 | 1.2% | Dec 8, 2019 | An issue was discovered in libsixel 1.8.2. There is a heap-based buffer overflow in the function sixel_decode_raw_impl a... |
| CVE-2019-10769 | CRITICAL | 9.8 | 2.6% | Dec 6, 2019 | safer-eval is a npm package to sandbox the he evaluation of code used within the eval function. Affected versions of thi... |
| CVE-2019-18671 | CRITICAL | 9.8 | 3.3% | Dec 6, 2019 | Insufficient checks in the USB packet handling of the ShapeShift KeepKey hardware wallet before firmware 6.2.2 allow out... |
| CVE-2019-16674 | CRITICAL | 9.8 | 1.9% | Dec 6, 2019 | An issue was discovered on Weidmueller IE-SW-VL05M 3.6.6 Build 16102415, IE-SW-VL08MT 3.5.2 Build 16102415, and IE-SW-PL... |
| CVE-2019-16672 | CRITICAL | 9.8 | 1.3% | Dec 6, 2019 | An issue was discovered on Weidmueller IE-SW-VL05M 3.6.6 Build 16102415, IE-SW-VL08MT 3.5.2 Build 16102415, and IE-SW-PL... |
| CVE-2019-16670 | CRITICAL | 9.8 | 2.0% | Dec 6, 2019 | An issue was discovered on Weidmueller IE-SW-VL05M 3.6.6 Build 16102415, IE-SW-VL08MT 3.5.2 Build 16102415, and IE-SW-PL... |
| CVE-2019-5544 | CRITICAL | 9.8 | 96.8% | Dec 6, 2019 | OpenSLP as used in ESXi and the Horizon DaaS appliances has a heap overwrite issue. VMware has evaluated the severity of... |
| CVE-2019-19334 | CRITICAL | 9.8 | 3.9% | Dec 6, 2019 | In all versions of libyang before 1.0-r5, a stack-based buffer overflow was discovered in the way libyang parses YANG fi... |
| CVE-2019-19333 | CRITICAL | 9.8 | 3.6% | Dec 6, 2019 | In all versions of libyang before 1.0-r5, a stack-based buffer overflow was discovered in the way libyang parses YANG fi... |
| CVE-2019-19617 | CRITICAL | 9.8 | 2.6% | Dec 6, 2019 | phpMyAdmin before 4.9.2 does not escape certain Git information, related to libraries/classes/Display/GitRevision.php an... |
| CVE-2019-7195 | CRITICAL | 9.8 | 89.7% | Dec 5, 2019 | This external control of file name or path vulnerability allows remote attackers to access or modify system files. To fi... |
| CVE-2019-7194 | CRITICAL | 9.8 | 83.0% | Dec 5, 2019 | This external control of file name or path vulnerability allows remote attackers to access or modify system files. To fi... |
| CVE-2019-7193 | CRITICAL | 9.8 | 14.4% | Dec 5, 2019 | This improper input validation vulnerability allows remote attackers to inject arbitrary code to the system. To fix the ... |
| CVE-2019-7192 | CRITICAL | 9.8 | 88.2% | Dec 5, 2019 | This improper access control vulnerability allows remote attackers to gain unauthorized access to the system. To fix the... |
| CVE-2019-7183 | CRITICAL | 9.8 | 1.6% | Dec 5, 2019 | This improper link resolution vulnerability allows remote attackers to access system files. To fix this vulnerability, Q... |
| CVE-2019-19595 | CRITICAL | 9.8 | 4.0% | Dec 5, 2019 | reset/modules/advanced_form_maker_edit/multiupload/upload.php in the RESET.PRO Adobe Stock API integration 4.8 for Prest... |
| CVE-2019-19594 | CRITICAL | 9.8 | 4.0% | Dec 5, 2019 | reset/modules/fotoliaFoto/multi_upload.php in the RESET.PRO Adobe Stock API Integration for PrestaShop 1.6 and 1.7 allow... |
| CVE-2019-15897 | CRITICAL | 9.6 | 3.0% | Dec 5, 2019 | beegfs-ctl in ThinkParQ BeeGFS through 7.1.3 allows Authentication Bypass via communication with a BeeGFS metadata serve... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now