2019 CVE Vulnerabilities
17,619 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-19489 | MEDIUM | 5.5 | 0.9% | Dec 2, 2019 | SMPlayer 19.5.0 has a buffer overflow via a long .m3u file. |
| CVE-2019-19481 | MEDIUM | 4.6 | 0.2% | Dec 1, 2019 | An issue was discovered in OpenSC through 0.19.0 and 0.20.x through 0.20.0-rc3. libopensc/card-cac1.c mishandles buffer ... |
| CVE-2019-19480 | MEDIUM | 4.6 | 0.6% | Dec 1, 2019 | An issue was discovered in OpenSC through 0.19.0 and 0.20.x through 0.20.0-rc3. libopensc/pkcs15-prkey.c has an incorrec... |
| CVE-2019-19479 | MEDIUM | 5.5 | 0.4% | Dec 1, 2019 | An issue was discovered in OpenSC through 0.19.0 and 0.20.x through 0.20.0-rc3. libopensc/card-setcos.c has an incorrect... |
| CVE-2019-19269 | MEDIUM | 4.9 | 1.6% | Nov 30, 2019 | An issue was discovered in tls_verify_crl in ProFTPD through 1.3.6b. A dereference of a NULL pointer may occur. This poi... |
| CVE-2019-19464 | MEDIUM | 5.3 | 0.5% | Nov 30, 2019 | The CBC Gem application before 9.24.1 for Android and before 9.26.0 for iOS has Unencrypted Analytics. |
| CVE-2019-19463 | MEDIUM | 5.3 | 0.5% | Nov 30, 2019 | The Anhui Huami Mi Fit application before 4.0.11 for Android has an Unencrypted Update Check. |
| CVE-2019-19462 | MEDIUM | 5.5 | 0.5% | Nov 30, 2019 | relay_open in kernel/relay.c in the Linux kernel through 5.4.1 allows local users to cause a denial of service (such as ... |
| CVE-2019-19451 | MEDIUM | 5.5 | 0.4% | Nov 29, 2019 | When GNOME Dia before 2019-11-27 is launched with a filename argument that is not a valid codepoint in the current encod... |
| CVE-2019-5309 | MEDIUM | 4.6 | 0.2% | Nov 29, 2019 | Honor play smartphones with versions earlier than 9.1.0.333(C00E333R1P1T8) have an information disclosure vulnerability ... |
| CVE-2019-5271 | MEDIUM | 5.4 | 0.3% | Nov 29, 2019 | There is an information leak vulnerability in Huawei smart speaker Myna. When the smart speaker is paired with the cloud... |
| CVE-2019-5247 | MEDIUM | 5.5 | 0.2% | Nov 29, 2019 | Huawei Atlas 300, Atlas 500 have a buffer overflow vulnerability. A local, authenticated attacker may craft specific par... |
| CVE-2019-5263 | MEDIUM | 5.5 | 0.3% | Nov 29, 2019 | HiSuite with 9.1.0.305 and earlier versions and 9.1.0.305(MAC) and earlier versions and HwBackup with earlier versions b... |
| CVE-2019-5227 | MEDIUM | 5.5 | 0.2% | Nov 29, 2019 | P30, P30 Pro, Mate 20 smartphones with software of versions earlier than ELLE-AL00B 9.1.0.193(C00E190R2P1), versions ear... |
| CVE-2019-5224 | MEDIUM | 5.5 | 0.6% | Nov 29, 2019 | P30 smartphones with versions earlier than ELLE-AL00B 9.1.0.193(C00E190R1P21) have an out of bounds read vulnerability. ... |
| CVE-2019-5212 | MEDIUM | 5.5 | 0.5% | Nov 29, 2019 | There is an improper access control vulnerability in Huawei Share. The software does not properly restrict access to cer... |
| CVE-2019-5211 | MEDIUM | 5.7 | 0.3% | Nov 29, 2019 | The Huawei Share function of P20 phones with versions earlier than Emily-L29C 9.1.0.311 has an improper file management ... |
| CVE-2019-5226 | MEDIUM | 5.5 | 0.2% | Nov 29, 2019 | P30, P30 Pro, Mate 20 smartphones with software of versions earlier than ELLE-AL00B 9.1.0.193(C00E190R2P1), versions ear... |
| CVE-2019-14865 | MEDIUM | 5.9 | 0.3% | Nov 29, 2019 | A flaw was found in the grub2-set-bootflag utility of grub2. A local attacker could run this utility under resource pres... |
| CVE-2019-19388 | MEDIUM | 6.1 | 0.9% | Nov 29, 2019 | A cross-site scripting (XSS) vulnerability in app/dialplans/dialplan_detail_edit.php in FusionPBX 4.4.1 allows remote at... |
| CVE-2019-19387 | MEDIUM | 6.1 | 0.9% | Nov 29, 2019 | A cross-site scripting (XSS) vulnerability in app/fifo_list/fifo_interactive.php in FusionPBX 4.4.1 allows remote attack... |
| CVE-2019-19386 | MEDIUM | 6.1 | 0.9% | Nov 29, 2019 | A cross-site scripting (XSS) vulnerability in app/voicemail_greetings/voicemail_greeting_edit.php in FusionPBX 4.4.1 all... |
| CVE-2019-19385 | MEDIUM | 6.1 | 0.9% | Nov 29, 2019 | A cross-site scripting (XSS) vulnerability in app/dialplans/dialplans.php in FusionPBX 4.4.1 allows remote attackers to ... |
| CVE-2019-19384 | MEDIUM | 6.1 | 0.9% | Nov 29, 2019 | A cross-site scripting (XSS) vulnerability in app/fax/fax_log_view.php in FusionPBX 4.4.1 allows remote attackers to inj... |
| CVE-2019-19379 | MEDIUM | 5.3 | 1.1% | Nov 28, 2019 | In app/Controller/TagsController.php in MISP 2.4.118, users can bypass intended restrictions on tagging data. |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now