2019 CVE Vulnerabilities

17,619 CVEs published in 2019.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2019-17636HIGH8.1In Eclipse Theia versions 0.3.9 through 0.15.0, one of the default pre-packaged Theia extensions is "Mini-Browser", publ...
CVE-2019-13003HIGH7.5An issue was discovered in GitLab Community and Enterprise Edition before 12.0.3. One of the parsers used by Gilab CI wa...
CVE-2019-12446HIGH7.5An issue was discovered in GitLab Community and Enterprise Edition 8.3 through 11.11. It allows Information Exposure thr...
CVE-2019-12441HIGH7.5An issue was discovered in GitLab Community and Enterprise Edition 8.4 through 11.11. The protected branches feature con...
CVE-2019-10705HIGH7.5Western Digital SanDisk X600 devices in certain configurations, a vulnerability in the access control mechanism of the d...
CVE-2019-12430HIGH8.8An issue was discovered in GitLab Community and Enterprise Edition 11.11. A specially crafted payload would allow an aut...
CVE-2019-9859HIGH8.8Vesta Control Panel (VestaCP) 0.9.7 through 0.9.8-23 is vulnerable to an authenticated command execution that can result...
CVE-2019-19614HIGH7.5An issue was discovered in Halvotec RAQuest 10.23.10801.0. The login page is vulnerable to wildcard injection, allowing ...
CVE-2019-20502HIGH7.5An issue was discovered in EFS Easy Chat Server 3.1. There is a buffer overflow via a long body2.ghp message parameter.
CVE-2019-17646HIGH7.5An issue was discovered in Centreon before 18.10.8, 19.04.5, and 19.10.2. It provides sensitive information via an unaut...
CVE-2019-17645HIGH7.5An issue was discovered in Centreon before 2.8.31, 18.10.9, 19.04.6, and 19.10.3. It provides sensitive information via ...
CVE-2019-17642HIGH8.8An issue was discovered in Centreon before 18.10.8, 19.10.1, and 19.04.2. It allows CSRF with resultant remote command e...
CVE-2019-20501HIGH7.8D-Link DWL-2600AP 4.2.0.15 Rev A devices have an authenticated OS command injection vulnerability via the Upgrade Firmwa...
CVE-2019-20500HIGH7.8D-Link DWL-2600AP 4.2.0.15 Rev A devices have an authenticated OS command injection vulnerability via the Save Configura...
CVE-2019-20499HIGH7.8D-Link DWL-2600AP 4.2.0.15 Rev A devices have an authenticated OS command injection vulnerability via the Restore Config...
CVE-2019-20107HIGH8.8Multiple SQL injection vulnerabilities in TestLink through 1.9.19 allows remote authenticated users to execute arbitrary...
CVE-2019-14085HIGH7.8Possible Integer underflow in WLAN function due to lack of check of data received from user side in Snapdragon Auto, Sna...
CVE-2019-14081HIGH7.1Buffer Over-read when WLAN module gets a WMI message for SAR limits with invalid number of limits to be enforced in Snap...
CVE-2019-14079HIGH7.8Access to the uninitialized variable when the driver tries to unmap the dma buffer of a request which was never mapped i...
CVE-2019-14072HIGH7Unhandled paging request is observed due to dereferencing an already freed object because of race condition between spar...
CVE-2019-14071HIGH7.8Compromised reset handler may bypass access control due to AC config is being reset if debug path is enabled to collect ...
CVE-2019-14068HIGH7.8Out of bound access in msm routing due to lack of check of size before accessing in Snapdragon Auto, Snapdragon Compute,...
CVE-2019-14061HIGH7.5Null-pointer dereference can occur while accessing the segment element info when it is not allocated and assigned in Sna...
CVE-2019-14050HIGH7.8Out-of-bound writes occurs due to lack of check of buffer size will cause buffer overflow only in 32bit architecture. in...
CVE-2019-14048HIGH7.8Possible out of bound memory access while playing a crafted clip in media player in Snapdragon Auto, Snapdragon Compute,...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now