2019 CVE Vulnerabilities

17,619 CVEs published in 2019.

CVE IDSeverityCVSSDescription
CVE-2019-8539HIGH7.8A memory initialization issue was addressed with improved memory handling. This issue is fixed in macOS Mojave 10.14.6, ...
CVE-2019-8538MEDIUM5.5A denial of service issue was addressed with improved validation. This issue is fixed in watchOS 5.2, macOS Mojave 10.14...
CVE-2019-8534MEDIUM6.7A logic issue existed resulting in memory corruption. This was addressed with improved state management. This issue is f...
CVE-2019-8532MEDIUM5.5A permissions issue was addressed by removing vulnerable code and adding additional checks. This issue is fixed in watch...
CVE-2019-8528MEDIUM6.7A use after free issue was addressed with improved memory management. This issue is fixed in watchOS 5.2, macOS Mojave 1...
CVE-2019-8525MEDIUM6.7A memory corruption issue was addressed with improved state management. This issue is fixed in macOS Mojave 10.14.5, Sec...
CVE-2019-8509HIGH7.8This issue was addressed by removing the vulnerable code. This issue is fixed in macOS Catalina 10.15.1, Security Update...
CVE-2019-7291MEDIUM6.5A denial of service issue was addressed with improved memory handling. This issue is fixed in AirPort Base Station Firmw...
CVE-2019-7288CRITICAL9.8The issue was addressed with improved validation on the FaceTime server. This issue is fixed in macOS Mojave 10.14.3 Sup...
CVE-2019-6238HIGH7.8A validation issue existed in the handling of symlinks. This issue was addressed with improved validation of symlinks. T...
CVE-2019-14719HIGH7.8Verifone MX900 series Pinpad Payment Terminals with OS 30251000 allow multiple arbitrary command injections, as demonstr...
CVE-2019-14718MEDIUM6.7Verifone MX900 series Pinpad Payment Terminals with OS 30251000 have Insecure Permissions, with resultant svc_netcontrol...
CVE-2019-14717HIGH7.8Verifone Verix OS on VerixV Pinpad Payment Terminals with QT000530 have a Buffer Overflow via the Run system call.
CVE-2019-14716MEDIUM6.6Verifone VerixV Pinpad Payment Terminals with QT000530 have an undocumented physical access mode (aka VerixV shell.out).
CVE-2019-14715MEDIUM6.8Verifone Pinpad Payment Terminals allow undocumented physical access to the system via an SBI bootloader memory write op...
CVE-2019-14713MEDIUM5.5Verifone MX900 series Pinpad Payment Terminals with OS 30251000 allow installation of unsigned packages.
CVE-2019-14712HIGH7.8Verifone VerixV Pinpad Payment Terminals with QT000530 allow bypass of integrity and origin control for S1G file generat...
CVE-2019-14711HIGH7Verifone MX900 series Pinpad Payment Terminals with OS 30251000 have a race condition for RBAC bypass.
CVE-2019-17007HIGH7.5In Network Security Services before 3.44, a malformed Netscape Certificate Sequence can cause NSS to crash, resulting in...
CVE-2019-17006CRITICAL9.8In Network Security Services (NSS) before 3.46, several cryptographic primitives had missing length checks. In cases whe...
CVE-2019-16128MEDIUM6.8Microchip CryptoAuthentication Library CryptoAuthLib prior to 20191122 has a Buffer Overflow (issue 1 of 2).
CVE-2019-16129MEDIUM6.8Microchip CryptoAuthentication Library CryptoAuthLib prior to 20191122 has a Buffer Overflow (issue 2 of 2).
CVE-2019-16127CRITICAL9.1Atmel Advanced Software Framework (ASF) 4 has an Integer Overflow.
CVE-2019-9080HIGH7.5DomainMOD before 4.14.0 uses MD5 without a salt for password storage.
CVE-2019-4680HIGH8.8IBM Sterling B2B Integrator Standard Edition 5.2.0.0 through 6.0.2.2 is vulnerable to SQL injection. A remote attacker c...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now