2019 CVE Vulnerabilities

17,623 CVEs published in 2019.

CVE IDSeverityCVSSDescription
CVE-2019-2565Vulnerability in the JD Edwards World Technical Foundation component of Oracle JD Edwards Products (subcomponent: Servic...
CVE-2019-2564Vulnerability in the JD Edwards EnterpriseOne Tools component of Oracle JD Edwards Products (subcomponent: Web Runtime)....
CVE-2019-2558Vulnerability in the Oracle Retail Point-of-Service component of Oracle Retail Applications (subcomponent: Infrastructur...
CVE-2019-2557Vulnerability in the Oracle Application Testing Suite component of Oracle Enterprise Manager Products Suite (subcomponen...
CVE-2019-2551Vulnerability in the Oracle One-to-One Fulfillment component of Oracle E-Business Suite (subcomponent: Print Server). Su...
CVE-2019-2518Vulnerability in the Java VM component of Oracle Database Server. Supported versions that are affected are 11.2.0.4, 12....
CVE-2019-2517Vulnerability in the Core RDBMS component of Oracle Database Server. Supported versions that are affected are 12.2.0.1 a...
CVE-2019-2516Vulnerability in the Portable Clusterware component of Oracle Database Server. Supported versions that are affected are ...
CVE-2019-2424Vulnerability in the Oracle Retail Convenience Store Back Office component of Oracle Retail Applications (subcomponent: ...
CVE-2019-11076Cribl UI 1.5.0 allows remote attackers to run arbitrary commands via an unauthenticated web request.
CVE-2019-10864The WP Statistics plugin through 12.6.2 for WordPress has XSS, allowing a remote attacker to inject arbitrary web script...
CVE-2019-7304CRITICAL9.8Canonical snapd before version 2.37.1 incorrectly performed socket owner validation, allowing an attacker to run arbitra...
CVE-2019-7303HIGH7.5A vulnerability in the seccomp filters of Canonical snapd before version 2.37.4 allows a strict mode snap to insert char...
CVE-2019-0223HIGH7.4While investigating bug PROTON-2014, we discovered that under some circumstances Apache Qpid Proton versions 0.9 to 0.27...
CVE-2019-11474MEDIUM6.5coders/xwd.c in GraphicsMagick 1.3.31 allows attackers to cause a denial of service (floating-point exception and applic...
CVE-2019-11473coders/xwd.c in GraphicsMagick 1.3.31 allows attackers to cause a denial of service (out-of-bounds read and application ...
CVE-2019-11472ReadXWDImage in coders/xwd.c in the XWD image parsing component of ImageMagick 7.0.8-41 Q16 allows attackers to cause a ...
CVE-2019-11471libheif 1.4.0 has a use-after-free in heif::HeifContext::Image::set_alpha_channel in heif_context.h because heif_context...
CVE-2019-11470The cineon parsing component in ImageMagick 7.0.8-26 Q16 allows attackers to cause a denial-of-service (uncontrolled res...
CVE-2019-11469Zoho ManageEngine Applications Manager 12 through 14 allows FaultTemplateOptions.jsp resourceid SQL injection. Subsequen...
CVE-2019-11463MEDIUM5.5A memory leak in archive_read_format_zip_cleanup in archive_read_support_format_zip.c in libarchive 3.3.4-dev allows rem...
CVE-2019-8452HIGH7.8A hard-link created from log file archive of Check Point ZoneAlarm up to 15.4.062 or Check Point Endpoint Security clien...
CVE-2019-11460An issue was discovered in GNOME gnome-desktop 3.26, 3.28, and 3.30 prior to 3.30.2.2, and 3.32 prior to 3.32.1.1. A com...
CVE-2019-11459MEDIUM5.5The tiff_document_render() and tiff_document_get_thumbnail() functions in the TIFF document backend in GNOME Evince thro...
CVE-2019-11383An issue was discovered in the Medha WiFi FTP Server application 1.8.3 for Android. An attacker can read the username/pa...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now