2019 CVE Vulnerabilities

17,623 CVEs published in 2019.

CVE IDSeverityCVSSDescription
CVE-2019-13544HIGH7.8Delta Electronics TPEditor, Versions 1.94 and prior. Multiple out-of-bounds write vulnerabilities may be exploited by pr...
CVE-2019-13540HIGH7.8Delta Electronics TPEditor, Versions 1.94 and prior. Multiple stack-based buffer overflow vulnerabilities may be exploit...
CVE-2019-13536HIGH7.8Delta Electronics TPEditor, Versions 1.94 and prior. Multiple heap-based buffer overflow vulnerabilities may be exploite...
CVE-2019-10074CRITICAL9.8An RCE is possible by entering Freemarker markup in an Apache OFBiz Form Widget textarea field when encoding has been di...
CVE-2019-10073MEDIUM6.1The "Blog", "Forum", "Contact Us" screens of the template "ecommerce" application bundled in Apache OFBiz are weak to St...
CVE-2019-0189CRITICAL9.8The java.io.ObjectInputStream is known to cause Java serialisation issues. This issue here is exposed by the "webtools/c...
CVE-2019-3763HIGH7.8The RSA Identity Governance and Lifecycle software and RSA Via Lifecycle and Governance products prior to 7.1.0 P08 cont...
CVE-2019-3761MEDIUM5.4The RSA Identity Governance and Lifecycle software and RSA Via Lifecycle and Governance products prior to 7.1.0 P08 cont...
CVE-2019-3760HIGH8.8The RSA Identity Governance and Lifecycle software and RSA Via Lifecycle and Governance products prior to 7.1.0 P08 cont...
CVE-2019-3759HIGH8.1The RSA Identity Governance and Lifecycle software and RSA Via Lifecycle and Governance products prior to 7.1.0 P08 cont...
CVE-2019-11769HIGH7.8An issue was discovered in TeamViewer 14.2.2558. Updating the product as a non-administrative user requires entering adm...
CVE-2019-16237HIGH7.5Dino before 2019-09-10 does not properly check the source of an MAM message in module/xep/0313_message_archive_managemen...
CVE-2019-16236HIGH7.5Dino before 2019-09-10 does not check roster push authorization in module/roster/module.vala.
CVE-2019-16235HIGH7.5Dino before 2019-09-10 does not properly check the source of a carbons message in module/xep/0280_message_carbons.vala.
CVE-2019-14936MEDIUM5.3Easy!Appointments 1.3.2 plugin for WordPress allows Sensitive Information Disclosure (Username and Password Hash).
CVE-2019-13473CRITICAL9.8TELESTAR Bobs Rock Radio, Dabman D10, Dabman i30 Stereo, Imperial i110, Imperial i150, Imperial i200, Imperial i200-cd, ...
CVE-2019-9488MEDIUM4.9Trend Micro Deep Security Manager (10.x, 11.x) and Vulnerability Protection (2.0) are vulnerable to a XML External Entit...
CVE-2019-11777HIGH7.5In the Eclipse Paho Java client library version 1.2.0, when connecting to an MQTT server using TLS and setting a host na...
CVE-2019-16098HIGH7.8The driver in Micro-Star MSI Afterburner 4.6.2.15658 (aka RTCore64.sys and RTCore32.sys) allows any authenticated user t...
CVE-2019-16234MEDIUM4.7drivers/net/wireless/intel/iwlwifi/pcie/trans.c in the Linux kernel 5.2.14 does not check the alloc_workqueue return val...
CVE-2019-16233MEDIUM4.1drivers/scsi/qla2xxx/qla_os.c in the Linux kernel 5.2.14 does not check the alloc_workqueue return value, leading to a N...
CVE-2019-16232MEDIUM4.1drivers/net/wireless/marvell/libertas/if_sdio.c in the Linux kernel 5.2.14 does not check the alloc_workqueue return val...
CVE-2019-16231MEDIUM4.1drivers/net/fjes/fjes_main.c in the Linux kernel 5.2.14 does not check the alloc_workqueue return value, leading to a NU...
CVE-2019-16230MEDIUM4.7drivers/gpu/drm/radeon/radeon_display.c in the Linux kernel 5.2.14 does not check the alloc_workqueue return value, lead...
CVE-2019-16229MEDIUM4.1drivers/gpu/drm/amd/amdkfd/kfd_interrupt.c in the Linux kernel 5.2.14 does not check the alloc_workqueue return value, l...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now