2019 CVE Vulnerabilities
17,623 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-13307 | HIGH | 7.8 | 2.1% | Jul 5, 2019 | ImageMagick 7.0.8-50 Q16 has a heap-based buffer overflow at MagickCore/statistic.c in EvaluateImages because of mishand... |
| CVE-2019-13306 | HIGH | 7.8 | 2.1% | Jul 5, 2019 | ImageMagick 7.0.8-50 Q16 has a stack-based buffer overflow at coders/pnm.c in WritePNMImage because of off-by-one errors... |
| CVE-2019-13305 | HIGH | 7.8 | 2.1% | Jul 5, 2019 | ImageMagick 7.0.8-50 Q16 has a stack-based buffer overflow at coders/pnm.c in WritePNMImage because of a misplaced strnc... |
| CVE-2019-13304 | HIGH | 7.8 | 2.1% | Jul 5, 2019 | ImageMagick 7.0.8-50 Q16 has a stack-based buffer overflow at coders/pnm.c in WritePNMImage because of a misplaced assig... |
| CVE-2019-13303 | HIGH | 8.8 | 2.2% | Jul 5, 2019 | ImageMagick 7.0.8-50 Q16 has a heap-based buffer over-read in MagickCore/composite.c in CompositeImage. |
| CVE-2019-13302 | HIGH | 8.8 | 2.1% | Jul 5, 2019 | ImageMagick 7.0.8-50 Q16 has a heap-based buffer over-read in MagickCore/fourier.c in ComplexImages. |
| CVE-2019-13301 | MEDIUM | 6.5 | 2.7% | Jul 5, 2019 | ImageMagick 7.0.8-50 Q16 has memory leaks in AcquireMagickMemory because of an AnnotateImage error. |
| CVE-2019-13300 | HIGH | 8.8 | 3.2% | Jul 5, 2019 | ImageMagick 7.0.8-50 Q16 has a heap-based buffer overflow at MagickCore/statistic.c in EvaluateImages because of mishand... |
| CVE-2019-13299 | HIGH | 8.8 | 2.3% | Jul 5, 2019 | ImageMagick 7.0.8-50 Q16 has a heap-based buffer over-read at MagickCore/pixel-accessor.h in GetPixelChannel. |
| CVE-2019-13298 | HIGH | 8.8 | 2.4% | Jul 5, 2019 | ImageMagick 7.0.8-50 Q16 has a heap-based buffer overflow at MagickCore/pixel-accessor.h in SetPixelViaPixelInfo because... |
| CVE-2019-13297 | HIGH | 8.8 | 3.1% | Jul 5, 2019 | ImageMagick 7.0.8-50 Q16 has a heap-based buffer over-read at MagickCore/threshold.c in AdaptiveThresholdImage because a... |
| CVE-2019-13296 | MEDIUM | 6.5 | 2.1% | Jul 5, 2019 | ImageMagick 7.0.8-50 Q16 has direct memory leaks in AcquireMagickMemory because of an error in CLIListOperatorImages in ... |
| CVE-2019-13295 | HIGH | 8.8 | 3.1% | Jul 5, 2019 | ImageMagick 7.0.8-50 Q16 has a heap-based buffer over-read at MagickCore/threshold.c in AdaptiveThresholdImage because a... |
| CVE-2019-13294 | — | — | 18.8% | Jul 4, 2019 | AROX School-ERP Pro has a command execution vulnerability. import_stud.php and upload_fille.php do not have session cont... |
| CVE-2019-13292 | — | — | 6.5% | Jul 4, 2019 | A SQL Injection issue was discovered in webERP 4.15. Payments.php accepts payment data in base64 format. After this is d... |
| CVE-2019-13291 | — | — | 1.1% | Jul 4, 2019 | In Xpdf 4.01.01, there is a heap-based buffer over-read in the function DCTStream::readScan() located at Stream.cc. It c... |
| CVE-2019-13290 | — | — | 3.0% | Jul 4, 2019 | Artifex MuPDF 1.15.0 has a heap-based buffer overflow in fz_append_display_node located at fitz/list-device.c, allowing ... |
| CVE-2019-13289 | — | — | 1.1% | Jul 4, 2019 | In Xpdf 4.01.01, there is a use-after-free vulnerability in the function JBIG2Stream::close() located at JBIG2Stream.cc.... |
| CVE-2019-13288 | — | — | 4.6% | Jul 4, 2019 | In Xpdf 4.01.01, the Parser::getObj() function in Parser.cc may cause infinite recursion via a crafted file. A remote at... |
| CVE-2019-13287 | — | — | 1.2% | Jul 4, 2019 | In Xpdf 4.01.01, there is an out-of-bounds read vulnerability in the function SplashXPath::strokeAdjust() located at spl... |
| CVE-2019-13286 | MEDIUM | 5.5 | 1.1% | Jul 4, 2019 | In Xpdf 4.01.01, there is a heap-based buffer over-read in the function JBIG2Stream::readTextRegionSeg() located at JBIG... |
| CVE-2019-1890 | MEDIUM | 6.5 | 0.6% | Jul 4, 2019 | A vulnerability in the fabric infrastructure VLAN connection establishment of the Cisco Nexus 9000 Series Application Ce... |
| CVE-2019-1889 | HIGH | 7.2 | 2.8% | Jul 4, 2019 | A vulnerability in the REST API for software device management in Cisco Application Policy Infrastructure Controller (AP... |
| CVE-2019-1886 | HIGH | 8.6 | 1.3% | Jul 4, 2019 | A vulnerability in the HTTPS decryption feature of Cisco Web Security Appliance (WSA) could allow an unauthenticated, re... |
| CVE-2019-1884 | HIGH | 7.7 | 1.5% | Jul 4, 2019 | A vulnerability in the web proxy functionality of Cisco AsyncOS Software for Cisco Web Security Appliance (WSA) could al... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now