2019 CVE Vulnerabilities

17,623 CVEs published in 2019.

CVE IDSeverityCVSSDescription
CVE-2019-0010HIGH7.5An SRX Series Service Gateway configured for Unified Threat Management (UTM) may experience a system crash with the erro...
CVE-2019-0009MEDIUM5.5On EX2300 and EX3400 series, high disk I/O operations may disrupt the communication between the routing engine (RE) and ...
CVE-2019-0007CRITICAL9.3The vMX Series software uses a predictable IP ID Sequence Number. This leaves the system as well as clients connecting t...
CVE-2019-0006CRITICAL9.8A certain crafted HTTP packet can trigger an uninitialized function pointer deference vulnerability in the Packet Forwar...
CVE-2019-0005MEDIUM5.3On EX2300, EX3400, EX4600, QFX3K and QFX5K series, firewall filter configuration cannot perform packet matching on any I...
CVE-2019-0004MEDIUM5.5On Juniper ATP, the API key and the device key are logged in a file readable by authenticated local users. These keys ar...
CVE-2019-0003MEDIUM5.9When a specific BGP flowspec configuration is enabled and upon receipt of a specific matching BGP packet meeting a speci...
CVE-2019-0002CRITICAL9.8On EX2300 and EX3400 series, stateless firewall filter configuration that uses the action 'policer' in combination with ...
CVE-2019-0001HIGH7.5Receipt of a malformed packet on MX Series devices with dynamic vlan configuration can trigger an uncontrolled recursion...
CVE-2019-3811MEDIUM5.2A vulnerability was found in sssd. If a user was configured with no home directory set, sssd would return '/' (the root ...
CVE-2019-6296Cleanto 5.0 has SQL Injection via the assets/lib/export_ajax.php id parameter.
CVE-2019-6295Cleanto 5.0 has SQL Injection via the assets/lib/service_method_ajax.php service_id parameter.
CVE-2019-6294An issue was discovered in EasyCMS 1.5. There is CSRF via the index.php?s=/admin/articlem/insert/navTabId/listarticle/ca...
CVE-2019-6289uploads/include/dialog/select_soft.php in DedeCMS V57_UTF8_SP2 allows remote attackers to execute arbitrary PHP code by ...
CVE-2019-6293An issue was discovered in the function mark_beginning_as_normal in nfa.c in flex 2.6.4. There is a stack exhaustion pro...
CVE-2019-6292An issue was discovered in singledocparser.cpp in yaml-cpp (aka LibYaml-C++) 0.6.2. Stack Exhaustion occurs in YAML::Sin...
CVE-2019-6291An issue was discovered in the function expr6 in eval.c in Netwide Assembler (NASM) through 2.14.02. There is a stack ex...
CVE-2019-6290An infinite recursion issue was discovered in eval.c in Netwide Assembler (NASM) through 2.14.02. There is a stack exhau...
CVE-2019-6267The Premium WP Suite Easy Redirect Manager plugin 28.07-17 for WordPress has XSS via a crafted GET request that is misha...
CVE-2019-6286In LibSass 3.5.5, a heap-based buffer over-read exists in Sass::Prelexer::skip_over_scopes in prelexer.hpp when called f...
CVE-2019-6285The SingleDocParser::HandleFlowSequence function in yaml-cpp (aka LibYaml-C++) 0.6.2 allows remote attackers to cause a ...
CVE-2019-6284MEDIUM6.5In LibSass 3.5.5, a heap-based buffer over-read exists in Sass::Prelexer::alternatives in prelexer.hpp.
CVE-2019-6283MEDIUM6.5In LibSass 3.5.5, a heap-based buffer over-read exists in Sass::Prelexer::parenthese_scope in prelexer.hpp.
CVE-2019-6278XSS exists in JPress v1.0.4 via Markdown input, or Markdown input with the code input option.
CVE-2019-6259An issue was discovered in idreamsoft iCMS V7.0.13. There is SQL Injection via the app/article/article.admincp.php _data...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now