2019 CVE Vulnerabilities

17,623 CVEs published in 2019.

CVE IDSeverityCVSSDescription
CVE-2019-1787MEDIUM5.5A vulnerability in the Portable Document Format (PDF) scanning functionality of Clam AntiVirus (ClamAV) Software version...
CVE-2019-1786MEDIUM5.5A vulnerability in the Portable Document Format (PDF) scanning functionality of Clam AntiVirus (ClamAV) Software version...
CVE-2019-1785HIGH7.8A vulnerability in the RAR file scanning functionality of Clam AntiVirus (ClamAV) Software versions 0.101.1 and 0.101.0 ...
CVE-2019-11010In GraphicsMagick 1.4 snapshot-20190322 Q8, there is a memory leak in the function ReadMPCImage of coders/mpc.c, which a...
CVE-2019-11009In GraphicsMagick 1.4 snapshot-20190322 Q8, there is a heap-based buffer over-read in the function ReadXWDImage of coder...
CVE-2019-11008HIGH8.8In GraphicsMagick 1.4 snapshot-20190322 Q8, there is a heap-based buffer overflow in the function WriteXWDImage of coder...
CVE-2019-11007HIGH8.1In GraphicsMagick 1.4 snapshot-20190322 Q8, there is a heap-based buffer over-read in the ReadMNGImage function of coder...
CVE-2019-11006In GraphicsMagick 1.4 snapshot-20190322 Q8, there is a heap-based buffer over-read in the function ReadMIFFImage of code...
CVE-2019-11005In GraphicsMagick 1.4 snapshot-20190322 Q8, there is a stack-based buffer overflow in the function SVGStartElement of co...
CVE-2019-11004In Materialize through 1.0.0, XSS is possible via the Toast feature.
CVE-2019-11003In Materialize through 1.0.0, XSS is possible via the Autocomplete feature.
CVE-2019-11002In Materialize through 1.0.0, XSS is possible via the Tooltip feature.
CVE-2019-10845An issue was discovered in Uniqkey Password Manager 1.14. When entering new credentials to a site that isn't registered ...
CVE-2019-11001HIGH7.2On Reolink RLC-410W, C1 Pro, C2 Pro, RLC-422W, and RLC-511W devices through 1.0.227, an authenticated admin can use the ...
CVE-2019-10676An issue was discovered in Uniqkey Password Manager 1.14. Upon entering new credentials to a site that is not registered...
CVE-2019-4210HIGH8.1IBM QRadar SIEM 7.3.2 could allow a user to bypass authentication exposing certain functionality which could lead to inf...
CVE-2019-4155HIGH8.8IBM API Connect's Developer Portal 2018.1 and 2018.4.1.3 is impacted by a privilege escalation vulnerability when integr...
CVE-2019-4143MEDIUM5.5The IBM Cloud Private Key Management Service (IBM Cloud Private 3.1.1 and 3.1.2) could allow a local user to obtain sens...
CVE-2019-4051MEDIUM5.3Some URIs in IBM API Connect 2018.1 and 2018.4.1.3 disclose system specification information like the machine id, system...
CVE-2019-4045MEDIUM4.3IBM Business Automation Workflow and IBM Business Process Manager 18.0.0.0, 18.0.0.1, and 18.0.0.2 provide embedded docu...
CVE-2019-10914pubRsaDecryptSignedElementExt in MatrixSSL 4.0.1 Open, as used in Inside Secure TLS Toolkit, has a stack-based buffer ov...
CVE-2019-10741MEDIUM4.3K-9 Mail v5.600 can include the original quoted HTML code of a specially crafted, benign looking, email within (digitall...
CVE-2019-10740MEDIUM4.3In Roundcube Webmail before 1.3.10, an attacker in possession of S/MIME or PGP encrypted emails can wrap them as sub-par...
CVE-2019-10735In Claws Mail 3.14.1, an attacker in possession of S/MIME or PGP encrypted emails can wrap them as sub-parts within a cr...
CVE-2019-10734In KDE Trojita 0.7, an attacker in possession of S/MIME or PGP encrypted emails can wrap them as sub-parts within a craf...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now