2019 CVE Vulnerabilities
17,623 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-1787 | MEDIUM | 5.5 | 1.7% | Apr 8, 2019 | A vulnerability in the Portable Document Format (PDF) scanning functionality of Clam AntiVirus (ClamAV) Software version... |
| CVE-2019-1786 | MEDIUM | 5.5 | 1.5% | Apr 8, 2019 | A vulnerability in the Portable Document Format (PDF) scanning functionality of Clam AntiVirus (ClamAV) Software version... |
| CVE-2019-1785 | HIGH | 7.8 | 1.8% | Apr 8, 2019 | A vulnerability in the RAR file scanning functionality of Clam AntiVirus (ClamAV) Software versions 0.101.1 and 0.101.0 ... |
| CVE-2019-11010 | — | — | 1.8% | Apr 8, 2019 | In GraphicsMagick 1.4 snapshot-20190322 Q8, there is a memory leak in the function ReadMPCImage of coders/mpc.c, which a... |
| CVE-2019-11009 | — | — | 2.4% | Apr 8, 2019 | In GraphicsMagick 1.4 snapshot-20190322 Q8, there is a heap-based buffer over-read in the function ReadXWDImage of coder... |
| CVE-2019-11008 | HIGH | 8.8 | 3.8% | Apr 8, 2019 | In GraphicsMagick 1.4 snapshot-20190322 Q8, there is a heap-based buffer overflow in the function WriteXWDImage of coder... |
| CVE-2019-11007 | HIGH | 8.1 | 2.0% | Apr 8, 2019 | In GraphicsMagick 1.4 snapshot-20190322 Q8, there is a heap-based buffer over-read in the ReadMNGImage function of coder... |
| CVE-2019-11006 | — | — | 2.9% | Apr 8, 2019 | In GraphicsMagick 1.4 snapshot-20190322 Q8, there is a heap-based buffer over-read in the function ReadMIFFImage of code... |
| CVE-2019-11005 | — | — | 3.5% | Apr 8, 2019 | In GraphicsMagick 1.4 snapshot-20190322 Q8, there is a stack-based buffer overflow in the function SVGStartElement of co... |
| CVE-2019-11004 | — | — | 0.8% | Apr 8, 2019 | In Materialize through 1.0.0, XSS is possible via the Toast feature. |
| CVE-2019-11003 | — | — | 0.8% | Apr 8, 2019 | In Materialize through 1.0.0, XSS is possible via the Autocomplete feature. |
| CVE-2019-11002 | — | — | 0.8% | Apr 8, 2019 | In Materialize through 1.0.0, XSS is possible via the Tooltip feature. |
| CVE-2019-10845 | — | — | 2.5% | Apr 8, 2019 | An issue was discovered in Uniqkey Password Manager 1.14. When entering new credentials to a site that isn't registered ... |
| CVE-2019-11001 | HIGH | 7.2 | 38.4% | Apr 8, 2019 | On Reolink RLC-410W, C1 Pro, C2 Pro, RLC-422W, and RLC-511W devices through 1.0.227, an authenticated admin can use the ... |
| CVE-2019-10676 | — | — | 2.7% | Apr 8, 2019 | An issue was discovered in Uniqkey Password Manager 1.14. Upon entering new credentials to a site that is not registered... |
| CVE-2019-4210 | HIGH | 8.1 | 2.3% | Apr 8, 2019 | IBM QRadar SIEM 7.3.2 could allow a user to bypass authentication exposing certain functionality which could lead to inf... |
| CVE-2019-4155 | HIGH | 8.8 | 2.6% | Apr 8, 2019 | IBM API Connect's Developer Portal 2018.1 and 2018.4.1.3 is impacted by a privilege escalation vulnerability when integr... |
| CVE-2019-4143 | MEDIUM | 5.5 | 0.4% | Apr 8, 2019 | The IBM Cloud Private Key Management Service (IBM Cloud Private 3.1.1 and 3.1.2) could allow a local user to obtain sens... |
| CVE-2019-4051 | MEDIUM | 5.3 | 1.7% | Apr 8, 2019 | Some URIs in IBM API Connect 2018.1 and 2018.4.1.3 disclose system specification information like the machine id, system... |
| CVE-2019-4045 | MEDIUM | 4.3 | 0.9% | Apr 8, 2019 | IBM Business Automation Workflow and IBM Business Process Manager 18.0.0.0, 18.0.0.1, and 18.0.0.2 provide embedded docu... |
| CVE-2019-10914 | — | — | 1.4% | Apr 8, 2019 | pubRsaDecryptSignedElementExt in MatrixSSL 4.0.1 Open, as used in Inside Secure TLS Toolkit, has a stack-based buffer ov... |
| CVE-2019-10741 | MEDIUM | 4.3 | 0.9% | Apr 7, 2019 | K-9 Mail v5.600 can include the original quoted HTML code of a specially crafted, benign looking, email within (digitall... |
| CVE-2019-10740 | MEDIUM | 4.3 | 0.8% | Apr 7, 2019 | In Roundcube Webmail before 1.3.10, an attacker in possession of S/MIME or PGP encrypted emails can wrap them as sub-par... |
| CVE-2019-10735 | — | — | 0.6% | Apr 7, 2019 | In Claws Mail 3.14.1, an attacker in possession of S/MIME or PGP encrypted emails can wrap them as sub-parts within a cr... |
| CVE-2019-10734 | — | — | 0.7% | Apr 7, 2019 | In KDE Trojita 0.7, an attacker in possession of S/MIME or PGP encrypted emails can wrap them as sub-parts within a craf... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now