2019 CVE Vulnerabilities

17,623 CVEs published in 2019.

CVE IDSeverityCVSSDescription
CVE-2019-8062HIGH7.8Adobe After Effects versions 16 and earlier have an insecure library loading (dll hijacking) vulnerability. Successful e...
CVE-2019-7961Adobe Prelude CC versions 8.1 and earlier have an insecure library loading (dll hijacking) vulnerability. Successful exp...
CVE-2019-7931Adobe Premiere Pro CC versions 13.1.2 and earlier have an insecure library loading (dll hijacking) vulnerability. Succes...
CVE-2019-7870Adobe Character Animator versions 2.1 and earlier have an insecure library loading (dll hijacking) vulnerability. Succes...
CVE-2019-15046HIGH7.5Zoho ManageEngine ServiceDesk Plus 10 before 10509 allows unauthenticated sensitive information leakage during Fail Over...
CVE-2019-15025The ninja-forms plugin before 3.3.21.2 for WordPress has SQL injection in the search filter on the submissions page.
CVE-2019-0349SAP Kernel (ABAP Debugger), versions KRNL32NUC 7.21, 7.21EXT, 7.22, 7.22EXT, KRNL32UC 7.21, 7.21EXT, 7.22, 7.22EXT, KRNL...
CVE-2019-0351A remote code execution vulnerability exists in the SAP NetWeaver UDDI Server (Services Registry), versions 7.10, 7.20, ...
CVE-2019-0348SAP BusinessObjects Business Intelligence Platform (Web Intelligence), versions 4.1, 4.2, can access database with unenc...
CVE-2019-0346Unencrypted communication error in SAP Business Objects Business Intelligence Platform (Central Management Console), ver...
CVE-2019-0345A remote unauthenticated attacker can abuse a web service in SAP NetWeaver Application Server for Java (Administrator Sy...
CVE-2019-0344CRITICAL9.8Due to unsafe deserialization used in SAP Commerce Cloud (virtualjdbc extension), versions 6.4, 6.5, 6.6, 6.7, 1808, 181...
CVE-2019-0343SAP Commerce Cloud (Mediaconversion Extension), versions 6.4, 6.5, 6.6, 6.7, 1808, 1811, 1905, allows an authenticated B...
CVE-2019-0341The session cookie used by SAP Enable Now, version 1902, does not have the HttpOnly flag set. If an attacker runs script...
CVE-2019-0340The XML parser, which is being used by SAP Enable Now, before version 1902, has not been hardened correctly, leading to ...
CVE-2019-0338During an OData V2/V4 request in SAP Gateway, versions 750, 751, 752, 753, the HTTP Header attributes cache-control and ...
CVE-2019-0337Java Proxy Runtime of SAP NetWeaver Process Integration, versions 7.10, 7.11, 7.30, 7.31, 7.40, 7.50, does not sufficien...
CVE-2019-0335Under certain conditions SAP BusinessObjects Business Intelligence Platform (Central Management Console), versions 4.1, ...
CVE-2019-0334When creating a module in SAP BusinessObjects Business Intelligence Platform (BI Workspace), versions 4.1, 4.2, 4.3, it ...
CVE-2019-0333In some situations, when a client cancels a query in SAP BusinessObjects Business Intelligence Platform (Web Intelligenc...
CVE-2019-0332SAP BusinessObjects Business Intelligence Platform (Info View), versions 4.1, 4.2, 4.3, allows an attacker to give some ...
CVE-2019-0331Under certain conditions, SAP BusinessObjects Business Intelligence Platform (BI Workspace), versions 4.1, 4.2, 4.3, all...
CVE-2019-15027The MediaTek Embedded Multimedia Card (eMMC) subsystem for Android on MT65xx, MT66xx, and MT8163 SoC devices allows atta...
CVE-2019-14975Artifex MuPDF before 1.16.0 has a heap-based buffer over-read in fz_chartorune in fitz/string.c because pdf/pdf-op-filte...
CVE-2019-14973MEDIUM6.5_TIFFCheckMalloc and _TIFFCheckRealloc in tif_aux.c in LibTIFF through 4.0.10 mishandle Integer Overflow checks because ...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now