2019 CVE Vulnerabilities

17,619 CVEs published in 2019.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2019-9851CRITICAL9.8LibreOffice is typically bundled with LibreLogo, a programmable turtle vector graphics script, which can execute arbitra...
CVE-2019-9850CRITICAL9.8LibreOffice is typically bundled with LibreLogo, a programmable turtle vector graphics script, which can execute arbitra...
CVE-2019-9010CRITICAL9.8An issue was discovered in 3S-Smart CODESYS V3 products. The CODESYS Gateway does not correctly verify the ownership of ...
CVE-2019-13578CRITICAL9.8A SQL injection vulnerability exists in the Impress GiveWP Give plugin through 2.5.0 for WordPress. Successful exploitat...
CVE-2019-1226CRITICAL9.8A remote code execution vulnerability exists in Remote Desktop Services – formerly known as Terminal Services – when an ...
CVE-2019-1222CRITICAL9.8A remote code execution vulnerability exists in Remote Desktop Services – formerly known as Terminal Services – when an ...
CVE-2019-1213CRITICAL9.8A memory corruption vulnerability exists in the Windows Server DHCP service when an attacker sends specially crafted pac...
CVE-2019-1212CRITICAL9.8A memory corruption vulnerability exists in the Windows Server DHCP service when processing specially crafted packets. A...
CVE-2019-1205CRITICAL9.8A remote code execution vulnerability exists in Microsoft Word software when it fails to properly handle objects in memo...
CVE-2019-1182CRITICAL9.8A remote code execution vulnerability exists in Remote Desktop Services – formerly known as Terminal Services – when an ...
CVE-2019-1181CRITICAL9.8A remote code execution vulnerability exists in Remote Desktop Services – formerly known as Terminal Services – when an ...
CVE-2019-0736CRITICAL9.8A memory corruption vulnerability exists in the Windows DHCP client when an attacker sends specially crafted DHCP respon...
CVE-2019-15052CRITICAL9.8The HTTP client in Gradle before 5.6 sends authentication credentials originally destined for the configured host. If th...
CVE-2019-12262CRITICAL9.8Wind River VxWorks 6.6, 6.7, 6.8, 6.9 and 7 has Incorrect Access Control in the RARP client component. IPNET security vu...
CVE-2019-0344CRITICAL9.8Due to unsafe deserialization used in SAP Commerce Cloud (virtualjdbc extension), versions 6.4, 6.5, 6.6, 6.7, 1808, 181...
CVE-2019-12261CRITICAL9.8Wind River VxWorks 6.7 though 6.9 and vx7 has a Buffer Overflow in the TCP component (issue 3 of 4). This is an IPNET se...
CVE-2019-12260CRITICAL9.8Wind River VxWorks 6.9 and vx7 has a Buffer Overflow in the TCP component (issue 2 of 4). This is an IPNET security vuln...
CVE-2019-12255CRITICAL9.8Wind River VxWorks has a Buffer Overflow in the TCP component (issue 1 of 4). This is a IPNET security vulnerability: TC...
CVE-2019-11581CRITICAL9.8There was a server-side template injection vulnerability in Jira Server and Data Center, in the ContactAdministrators an...
CVE-2019-12256CRITICAL9.8Wind River VxWorks 6.9 and vx7 has a Buffer Overflow in the IPv4 component. There is an IPNET security vulnerability: St...
CVE-2019-11208CRITICAL9.9The authorization component of TIBCO Software Inc.'s TIBCO API Exchange Gateway, and TIBCO API Exchange Gateway Distribu...
CVE-2019-13101CRITICAL9.8An issue was discovered on D-Link DIR-600M 3.02, 3.03, 3.04, and 3.06 devices. wan.htm can be accessed directly without ...
CVE-2019-1971CRITICAL9.8A vulnerability in the web portal of Cisco Enterprise NFV Infrastructure Software (NFVIS) could allow an unauthenticated...
CVE-2019-1895CRITICAL9.8A vulnerability in the Virtual Network Computing (VNC) console implementation of Cisco Enterprise NFV Infrastructure Sof...
CVE-2019-5476CRITICAL9.8An SQL Injection in the Nextcloud Lookup-Server < v0.3.0 (running on https://lookup.nextcloud.com) caused unauthenticate...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now