2019 CVE Vulnerabilities

17,623 CVEs published in 2019.

CVE IDSeverityCVSSDescription
CVE-2019-3728HIGH7.5RSA BSAFE Crypto-C Micro Edition versions from 4.0.0.0 before 4.0.5.4 and from 4.1.0 before 4.1.4, RSA BSAFE Micro Editi...
CVE-2019-16760HIGH7.5Cargo prior to Rust 1.26.0 may download the wrong dependency if your package.toml file uses the `package` configuration ...
CVE-2019-17051HIGH7.8Evernote before 7.13 GA on macOS allows code execution because the com.apple.quarantine attribute is not used for attach...
CVE-2019-13124HIGH7.5Foxit Reader 9.6.0.25114 and earlier has two unique RecursiveCall bugs involving 3 functions exhausting available stack ...
CVE-2019-13123HIGH7.5Foxit Reader 9.6.0.25114 and earlier has two unique RecursiveCall bugs involving 3 functions exhausting available stack ...
CVE-2019-17050HIGH7.2An issue was discovered in the Voyager package through 1.2.7 for Laravel. An attacker with admin privileges and Compass ...
CVE-2019-17049HIGH7.5NETGEAR SRX5308 4.3.5-3 devices allow SQL Injection, as exploited in the wild in September 2019 to add a new user accoun...
CVE-2019-16276HIGH7.5Go before 1.12.10 and 1.13.x before 1.13.1 allow HTTP Request Smuggling.
CVE-2019-13467MEDIUM5.9Description: Western Digital SSD Dashboard before 2.5.1.0 and SanDisk SSD Dashboard before 2.5.1.0 applications are pote...
CVE-2019-13466HIGH7.5Western Digital SSD Dashboard before 2.5.1.0 and SanDisk SSD Dashboard before 2.5.1.0 have Incorrect Access Control. The...
CVE-2019-15810MEDIUM6.1Insufficient sanitization during device search in Netdisco 2.042010 allows for reflected XSS via manipulation of a URL p...
CVE-2019-4423MEDIUM5.3IBM Sterling File Gateway 2.2.0.0 through 6.0.1.0 could allow a remote attacker to traverse directories on the system. A...
CVE-2019-4305MEDIUM5.3IBM WebSphere Application Server Liberty could allow a remote attacker to obtain sensitive information caused by the imp...
CVE-2019-4304MEDIUM6.3IBM WebSphere Application Server - Liberty could allow a remote attacker to bypass security restrictions caused by impro...
CVE-2019-4280MEDIUM5.3IBM Sterling File Gateway 2.2.0.0 through 6.0.1.0 displays sensitive information in HTTP requests which could be used in...
CVE-2019-4115MEDIUM5.4IBM WebSphere eXtreme Scale 8.6 Admin API is vulnerable to cross-site scripting. This vulnerability allows users to embe...
CVE-2019-4112LOW3.3IBM WebSphere eXtreme Scale 8.6 Admin Console allows web pages to be stored locally which can be read by another user on...
CVE-2019-4109MEDIUM6.1IBM WebSphere eXtreme Scale 8.6 Admin Console could allow a remote attacker to hijack the clicking action of the victim....
CVE-2019-4106MEDIUM4.8IBM WebSphere eXtreme Scale 8.6 Admin Console is vulnerable to cross-site scripting. This vulnerability allows users to ...
CVE-2019-2341HIGH7.8Buffer overflow when the audio buffer size provided by user is larger than the maximum allowable audio buffer size. in S...
CVE-2019-2333HIGH7.8Buffer overflow due to improper validation of buffer size while IPA driver processing to perform read operation in Snapd...
CVE-2019-2294CRITICAL9.8Usage of hard-coded magic number for calculating heap guard bytes can allow users to corrupt heap blocks without heap al...
CVE-2019-2284HIGH7Possible use-after-free issue due to a race condition while calling camera ioctl concurrently in Snapdragon Compute, Sna...
CVE-2019-2252CRITICAL9.8Classic buffer overflow vulnerability while playing the specific video whose Decode picture buffer size is more than 16 ...
CVE-2019-16932CRITICAL10A blind SSRF vulnerability exists in the Visualizer plugin before 3.3.1 for WordPress via wp-json/visualizer/v1/upload-d...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now