2019 CVE Vulnerabilities

17,619 CVEs published in 2019.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2019-16786HIGH7.5Waitress through version 1.3.1 would parse the Transfer-Encoding header and only look for a single string value, if that...
CVE-2019-16785HIGH7.5Waitress through version 1.3.1 implemented a "MAY" part of the RFC7230 which states: "Although the line terminator for t...
CVE-2019-19231HIGH7.8An insecure file access vulnerability exists in CA Client Automation 14.0, 14.1, 14.2, and 14.3 Agent for Windows that c...
CVE-2019-19918HIGH7.8Lout 3.40 has a heap-based buffer overflow in the srcnext() function in z02.c.
CVE-2019-19917HIGH7.8Lout 3.40 has a buffer overflow in the StringQuotedWord() function in z39.c.
CVE-2019-15915HIGH7.5An issue was discovered on Xiaomi DGNWG03LM, ZNCZ03LM, MCCGQ01LM, RTCGQ01LM devices. Attackers can utilize the "discover...
CVE-2019-15914HIGH7.5An issue was discovered on Xiaomi DGNWG03LM, ZNCZ03LM, MCCGQ01LM, WSDCGQ01LM, RTCGQ01LM devices. Attackers can use the Z...
CVE-2019-15912HIGH7.5An issue was discovered on ASUS HG100, MW100, WS-101, TS-101, AS-101, MS-101, DL-101 devices using ZigBee PRO. Attackers...
CVE-2019-15910HIGH7.5An issue was discovered on ASUS HG100, MW100, WS-101, TS-101, AS-101, MS-101, DL-101 devices using ZigBee PRO. Attackers...
CVE-2019-19693HIGH7.1The Trend Micro Security 2020 consumer family of products contains a vulnerability that could allow a local attacker to ...
CVE-2019-19141HIGH8.8The Camera Upload functionality in Plex Media Server through 1.18.2.2029 allows remote authenticated users to write file...
CVE-2019-19340HIGH8.2A flaw was found in Ansible Tower, versions 3.6.x before 3.6.2 and 3.5.x before 3.5.3, where enabling RabbitMQ manager b...
CVE-2019-19234HIGH7.5In Sudo through 1.8.29, the fact that a user has been blocked (e.g., by using the ! character in the shadow file instead...
CVE-2019-19232HIGH7.5In Sudo through 1.8.29, an attacker with access to a Runas ALL sudoer account can impersonate a nonexistent user by invo...
CVE-2019-8254HIGH7.8Adobe Photoshop CC versions before 20.0.8 and 21.0.x before 21.0.2 have a memory corruption vulnerability. Successful ex...
CVE-2019-8253HIGH7.8Adobe Photoshop CC versions before 20.0.8 and 21.0.x before 21.0.2 have a memory corruption vulnerability. Successful ex...
CVE-2019-19909HIGH8.8An issue was discovered in Public Knowledge Project (PKP) pkp-lib before 3.1.2-2, as used in Open Journal Systems (OJS) ...
CVE-2019-18181HIGH7.8In CloudVision Portal all releases in the 2018.1 and 2018.2 Code train allows users with read-only permissions to bypass...
CVE-2019-19906HIGH7.5cyrus-sasl (aka Cyrus SASL) 2.1.27 has an out-of-bounds write leading to unauthenticated remote denial-of-service in Ope...
CVE-2019-17633HIGH8.8For Eclipse Che versions 6.16 to 7.3.0, with both authentication and TLS disabled, visiting a malicious web site could t...
CVE-2019-16465HIGH7.5Adobe Acrobat and Reader versions , 2019.021.20056 and earlier, 2017.011.30152 and earlier, 2017.011.30155 and earlier v...
CVE-2019-11780HIGH8.1Improper access control in the computed fields system of the framework of Odoo Community 13.0 and Odoo Enterprise 13.0 a...
CVE-2019-16461HIGH7.5Adobe Acrobat and Reader versions , 2019.021.20056 and earlier, 2017.011.30152 and earlier, 2017.011.30155 and earlier v...
CVE-2019-16458HIGH7.5Adobe Acrobat and Reader versions , 2019.021.20056 and earlier, 2017.011.30152 and earlier, 2017.011.30155 and earlier v...
CVE-2019-16457HIGH7.5Adobe Acrobat and Reader versions , 2019.021.20056 and earlier, 2017.011.30152 and earlier, 2017.011.30155 and earlier v...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now