2019 CVE Vulnerabilities
17,623 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-4212 | HIGH | 8.8 | 0.5% | Jul 25, 2019 | IBM QRadar SIEM 7.2 and 7.3 is vulnerable to cross-site request forgery which could allow an attacker to execute malicio... |
| CVE-2019-4116 | MEDIUM | 5.5 | 0.4% | Jul 25, 2019 | IBM Cloud Private 2.1.0, 3.1.0, and 3.1.1 could disclose highly sensitive information in installer logs that could be us... |
| CVE-2019-3486 | MEDIUM | 4.6 | 1.0% | Jul 25, 2019 | Mitigates a stored cross site scripting issue in ArcSight Security Management Center versions prior to 2.9.1 |
| CVE-2019-1010182 | — | — | 1.1% | Jul 25, 2019 | yaml-rust 0.4.0 and earlier is affected by: Uncontrolled Recursion. The impact is: Denial of service by impossible to ca... |
| CVE-2019-1010176 | — | — | 2.5% | Jul 25, 2019 | JerryScript commit 4e58ccf68070671e1fff5cd6673f0c1d5b80b166 is affected by: Buffer Overflow. The impact is: denial of se... |
| CVE-2019-1010174 | CRITICAL | 9.8 | 4.9% | Jul 25, 2019 | CImg The CImg Library v.2.3.3 and earlier is affected by: command injection. The impact is: RCE. The component is: load_... |
| CVE-2019-1010172 | — | — | 1.3% | Jul 25, 2019 | Jsish 2.4.84 2.0484 is affected by: Uncontrolled Resource Consumption. The impact is: denial of service. The component i... |
| CVE-2019-1010161 | — | — | 1.1% | Jul 25, 2019 | perl-CRYPT-JWT 0.022 and earlier is affected by: Incorrect Access Control. The impact is: bypass authentication. The com... |
| CVE-2019-1010183 | — | — | 1.1% | Jul 25, 2019 | serde serde_yaml 0.6.0 to 0.8.3 is affected by: Uncontrolled Recursion. The impact is: Denial of service by aborting. Th... |
| CVE-2019-14262 | — | — | 1.5% | Jul 25, 2019 | MetadataExtractor 2.1.0 allows stack consumption. |
| CVE-2019-3622 | HIGH | 8.2 | 0.3% | Jul 24, 2019 | Files or Directories Accessible to External Parties in McAfee Data Loss Prevention (DLPe) for Windows 11.x prior to 11.3... |
| CVE-2019-3485 | MEDIUM | 4.6 | 1.1% | Jul 24, 2019 | Mitigates a stored cross site scripting issue in ArcSight Logger versions prior to 6.7.1 |
| CVE-2019-3595 | MEDIUM | 6.5 | 0.7% | Jul 24, 2019 | Improper Neutralization of Special Elements used in a Command ('Command Injection') in ePO extension in McAfee Data Loss... |
| CVE-2019-3591 | LOW | 3.9 | 0.8% | Jul 24, 2019 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in ePO extension in McAfee Data Los... |
| CVE-2019-10992 | — | — | 1.0% | Jul 24, 2019 | Delta Electronics CNCSoft ScreenEditor, Versions 1.00.89 and prior. Multiple out-of-bounds read vulnerabilities may caus... |
| CVE-2019-10982 | HIGH | 7.8 | 1.4% | Jul 24, 2019 | Delta Electronics CNCSoft ScreenEditor, Versions 1.00.89 and prior. Multiple heap-based buffer overflow vulnerabilities ... |
| CVE-2019-10968 | MEDIUM | 4.4 | 0.3% | Jul 24, 2019 | Philips Holter 2010 Plus, all versions. A vulnerability has been identified that may allow system options that were not ... |
| CVE-2019-1010191 | — | — | 1.4% | Jul 24, 2019 | marginalia < 1.6 is affected by: SQL Injection. The impact is: The impact is a injection of any SQL queries when a user ... |
| CVE-2019-1010189 | — | — | 0.8% | Jul 24, 2019 | mgetty prior to version 1.2.1 is affected by: Infinite Loop. The impact is: DoS, the program does never terminates. The ... |
| CVE-2019-1010179 | — | — | 2.5% | Jul 24, 2019 | PHKP including commit 88fd9cfdf14ea4b6ac3e3967feea7bcaabb6f03b is affected by: Improper Neutralization of Special Elemen... |
| CVE-2019-1010178 | CRITICAL | 9.8 | 4.6% | Jul 24, 2019 | Fred MODX Revolution < 1.0.0-beta5 is affected by: Incorrect Access Control - CWE-648. The impact is: Remote Code Execut... |
| CVE-2019-1010193 | — | — | 0.9% | Jul 24, 2019 | hisiphp 1.0.8 is affected by: Cross Site Scripting (XSS). |
| CVE-2019-1010190 | — | — | 0.8% | Jul 24, 2019 | mgetty prior to 1.2.1 is affected by: out-of-bounds read. The impact is: DoS, the program may crash if the memory is not... |
| CVE-2019-1010180 | HIGH | 7.8 | 2.6% | Jul 24, 2019 | GNU gdb All versions is affected by: Buffer Overflow - Out of bound memory access. The impact is: Deny of Service, Memor... |
| CVE-2019-1010177 | — | — | 2.1% | Jul 24, 2019 | Jsish 2.4.70 2.047 is affected by: Use After Free. The impact is: denial of service and possibly arbitrary code executio... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now