2019 CVE Vulnerabilities

17,623 CVEs published in 2019.

CVE IDSeverityCVSSDescription
CVE-2019-0680A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Internet ...
CVE-2019-0678An elevation of privilege vulnerability exists when Microsoft Edge does not properly enforce cross-domain policies, whic...
CVE-2019-11026MEDIUM6.5FontInfoScanner::scanFonts in FontInfo.cc in Poppler 0.75.0 has infinite recursion, leading to a call to the error funct...
CVE-2019-11025MEDIUM5.4In clearFilter() in utilities.php in Cacti before 1.2.3, no escaping occurs before printing out the value of the SNMP co...
CVE-2019-11024The load_pnm function in frompnm.c in libsixel.a in libsixel 1.8.2 has infinite recursion.
CVE-2019-11023The agroot() function in cgraph\obj.c in libcgraph.a in Graphviz 2.39.20160612.1140 has a NULL pointer dereference, as d...
CVE-2019-0667A remote code execution vulnerability exists in the way that the VBScript engine handles objects in memory, aka 'Windows...
CVE-2019-0666A remote code execution vulnerability exists in the way that the VBScript engine handles objects in memory, aka 'Windows...
CVE-2019-0665A remote code execution vulnerability exists in the way that the VBScript engine handles objects in memory, aka 'Windows...
CVE-2019-0639A remote code execution vulnerability exists in the way that the ChakraCore scripting engine handles objects in memory, ...
CVE-2019-0617A remote code execution vulnerability exists when the Windows Jet Database Engine improperly handles objects in memory, ...
CVE-2019-0614An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its m...
CVE-2019-0612A security feature bypass vulnerability exists when Click2Play protection in Microsoft Edge improperly handles flash obj...
CVE-2019-0611A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Mi...
CVE-2019-0609A remote code execution vulnerability exists in the way the scripting engine handles objects in memory in Microsoft brow...
CVE-2019-0603A remote code execution vulnerability exists in the way that Windows Deployment Services TFTP Server handles objects in ...
CVE-2019-0592A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Mi...
CVE-2019-0211HIGH7.8In Apache HTTP Server 2.4 releases 2.4.17 to 2.4.38, with MPM event, worker or prefork, code executing in less-privilege...
CVE-2019-11018application\admin\controller\User.php in ThinkAdmin V4.0 does not prevent continued use of an administrator's cookie-bas...
CVE-2019-11016Elgg before 1.12.18 and 2.3.x before 2.3.11 has an open redirect.
CVE-2019-0217HIGH7.5In Apache HTTP Server 2.4 release 2.4.38 and prior, a race condition in mod_auth_digest when running in a threaded serve...
CVE-2019-1798MEDIUM5.5A vulnerability in the Portable Executable (PE) file scanning functionality of Clam AntiVirus (ClamAV) Software versions...
CVE-2019-1788MEDIUM5.5A vulnerability in the Object Linking & Embedding (OLE2) file scanning functionality of Clam AntiVirus (ClamAV) Software...
CVE-2019-11014The VStarCam vstc.vscam.client library and vstc.vscam shared object, as used in the Eye4 application (for Android, iOS, ...
CVE-2019-0215In Apache HTTP Server 2.4 releases 2.4.37 and 2.4.38, a bug in mod_ssl when using per-location client certificate verifi...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now