2019 CVE Vulnerabilities

17,624 CVEs published in 2019.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2019-9775CRITICAL9.1An issue was discovered in GNU LibreDWG 0.7 and 0.7.1645. There is an out-of-bounds read in the function dwg_dxf_BLOCK_C...
CVE-2019-9774CRITICAL9.1An issue was discovered in GNU LibreDWG 0.7 and 0.7.1645. There is an out-of-bounds read in the function bit_read_B at b...
CVE-2019-1723CRITICAL9.8A vulnerability in the Cisco Common Services Platform Collector (CSPC) could allow an unauthenticated, remote attacker t...
CVE-2019-9641CRITICAL9.8An issue was discovered in the EXIF component in PHP before 7.1.27, 7.2.x before 7.2.16, and 7.3.x before 7.3.3. There i...
CVE-2019-8275CRITICAL9.8UltraVNC revision 1211 has multiple improper null termination vulnerabilities in VNC server code, which result in out-of...
CVE-2019-8274CRITICAL9.8UltraVNC revision 1211 has a heap buffer overflow vulnerability in VNC server code inside file transfer offer handler, w...
CVE-2019-8273CRITICAL9.8UltraVNC revision 1211 has a heap buffer overflow vulnerability in VNC server code inside file transfer request handler,...
CVE-2019-8272CRITICAL9.8UltraVNC revision 1211 has multiple off-by-one vulnerabilities in VNC server code, which can potentially result in code ...
CVE-2019-8271CRITICAL9.8UltraVNC revision 1211 has a heap buffer overflow vulnerability in VNC server code inside file transfer handler, which c...
CVE-2019-8268CRITICAL9.8UltraVNC revision 1206 has multiple off-by-one vulnerabilities in VNC client code connected with improper usage of Clien...
CVE-2019-9636CRITICAL9.8Python 2.7.x through 2.7.16 and 3.x through 3.7.2 is affected by: Improper Handling of Unicode Encoding (with an incorre...
CVE-2019-1003034CRITICAL9.9A sandbox bypass vulnerability exists in Jenkins Job DSL Plugin 1.71 and earlier in job-dsl-core/src/main/groovy/javapos...
CVE-2019-1003032CRITICAL9.9A sandbox bypass vulnerability exists in Jenkins Email Extension Plugin 2.64 and earlier in pom.xml, src/main/java/hudso...
CVE-2019-1003031CRITICAL9.9A sandbox bypass vulnerability exists in Jenkins Matrix Project Plugin 1.13 and earlier in pom.xml, src/main/java/hudson...
CVE-2019-1003030CRITICAL9.9A sandbox bypass vulnerability exists in Jenkins Pipeline: Groovy Plugin 2.63 and earlier in pom.xml, src/main/java/org/...
CVE-2019-1003029CRITICAL9.9A sandbox bypass vulnerability exists in Jenkins Script Security Plugin 1.53 and earlier in src/main/java/org/jenkinsci/...
CVE-2019-5019CRITICAL9.8A heap-based overflow vulnerability exists in the PowerPoint document conversion function of Rainbow PDF Office Server D...
CVE-2019-0604CRITICAL9.8A remote code execution vulnerability exists in Microsoft SharePoint when the software fails to check the source markup ...
CVE-2019-3922CRITICAL9.8The Alcatel Lucent I-240W-Q GPON ONT using firmware version 3FE54567BOZJ19 is vulnerable to a stack buffer overflow via ...
CVE-2019-3918CRITICAL9.8The Alcatel Lucent I-240W-Q GPON ONT using firmware version 3FE54567BOZJ19 contains multiple hard coded credentials for ...
CVE-2019-6563CRITICAL9.8Moxa IKS and EDS generate a predictable cookie calculated with an MD5 hash, allowing an attacker to capture the administ...
CVE-2019-6557CRITICAL9.8Several buffer overflow vulnerabilities have been identified in Moxa IKS and EDS, which may allow remote code execution.
CVE-2019-6524CRITICAL9.8Moxa IKS and EDS do not implement sufficient measures to prevent multiple failed authentication attempts, which may allo...
CVE-2019-6522CRITICAL9.1Moxa IKS and EDS fails to properly check array bounds which may allow an attacker to read device memory on arbitrary add...
CVE-2019-4032CRITICAL9.8IBM Financial Transaction Manager for Digital Payments for Multi-Platform 3.1.0 is vulnerable to SQL injection. A remote...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now