2019 CVE Vulnerabilities

17,623 CVEs published in 2019.

CVE IDSeverityCVSSDescription
CVE-2019-4212HIGH8.8IBM QRadar SIEM 7.2 and 7.3 is vulnerable to cross-site request forgery which could allow an attacker to execute malicio...
CVE-2019-4116MEDIUM5.5IBM Cloud Private 2.1.0, 3.1.0, and 3.1.1 could disclose highly sensitive information in installer logs that could be us...
CVE-2019-3486MEDIUM4.6Mitigates a stored cross site scripting issue in ArcSight Security Management Center versions prior to 2.9.1
CVE-2019-1010182yaml-rust 0.4.0 and earlier is affected by: Uncontrolled Recursion. The impact is: Denial of service by impossible to ca...
CVE-2019-1010176JerryScript commit 4e58ccf68070671e1fff5cd6673f0c1d5b80b166 is affected by: Buffer Overflow. The impact is: denial of se...
CVE-2019-1010174CRITICAL9.8CImg The CImg Library v.2.3.3 and earlier is affected by: command injection. The impact is: RCE. The component is: load_...
CVE-2019-1010172Jsish 2.4.84 2.0484 is affected by: Uncontrolled Resource Consumption. The impact is: denial of service. The component i...
CVE-2019-1010161perl-CRYPT-JWT 0.022 and earlier is affected by: Incorrect Access Control. The impact is: bypass authentication. The com...
CVE-2019-1010183serde serde_yaml 0.6.0 to 0.8.3 is affected by: Uncontrolled Recursion. The impact is: Denial of service by aborting. Th...
CVE-2019-14262MetadataExtractor 2.1.0 allows stack consumption.
CVE-2019-3622HIGH8.2Files or Directories Accessible to External Parties in McAfee Data Loss Prevention (DLPe) for Windows 11.x prior to 11.3...
CVE-2019-3485MEDIUM4.6Mitigates a stored cross site scripting issue in ArcSight Logger versions prior to 6.7.1
CVE-2019-3595MEDIUM6.5Improper Neutralization of Special Elements used in a Command ('Command Injection') in ePO extension in McAfee Data Loss...
CVE-2019-3591LOW3.9Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in ePO extension in McAfee Data Los...
CVE-2019-10992Delta Electronics CNCSoft ScreenEditor, Versions 1.00.89 and prior. Multiple out-of-bounds read vulnerabilities may caus...
CVE-2019-10982HIGH7.8Delta Electronics CNCSoft ScreenEditor, Versions 1.00.89 and prior. Multiple heap-based buffer overflow vulnerabilities ...
CVE-2019-10968MEDIUM4.4Philips Holter 2010 Plus, all versions. A vulnerability has been identified that may allow system options that were not ...
CVE-2019-1010191marginalia < 1.6 is affected by: SQL Injection. The impact is: The impact is a injection of any SQL queries when a user ...
CVE-2019-1010189mgetty prior to version 1.2.1 is affected by: Infinite Loop. The impact is: DoS, the program does never terminates. The ...
CVE-2019-1010179PHKP including commit 88fd9cfdf14ea4b6ac3e3967feea7bcaabb6f03b is affected by: Improper Neutralization of Special Elemen...
CVE-2019-1010178CRITICAL9.8Fred MODX Revolution < 1.0.0-beta5 is affected by: Incorrect Access Control - CWE-648. The impact is: Remote Code Execut...
CVE-2019-1010193hisiphp 1.0.8 is affected by: Cross Site Scripting (XSS).
CVE-2019-1010190mgetty prior to 1.2.1 is affected by: out-of-bounds read. The impact is: DoS, the program may crash if the memory is not...
CVE-2019-1010180HIGH7.8GNU gdb All versions is affected by: Buffer Overflow - Out of bound memory access. The impact is: Deny of Service, Memor...
CVE-2019-1010177Jsish 2.4.70 2.047 is affected by: Use After Free. The impact is: denial of service and possibly arbitrary code executio...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now