2019 CVE Vulnerabilities
17,619 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-15296 | — | — | 1.3% | Aug 21, 2019 | An issue was discovered in Freeware Advanced Audio Decoder 2 (FAAD2) 2.8.8. The faad_resetbits function in libfaad/bits.... |
| CVE-2019-15293 | — | — | 0.5% | Aug 21, 2019 | An issue was discovered in ACDSee Photo Studio Standard 22.1 Build 1159. There is a User Mode Write AV starting at IDE_A... |
| CVE-2019-2137 | — | — | 0.2% | Aug 20, 2019 | In the endCall() function of TelecomManager.java, there is a possible Denial of Service due to a missing permission chec... |
| CVE-2019-2136 | — | — | 0.2% | Aug 20, 2019 | In Status::readFromParcel of Status.cpp, there is a possible out of bounds read due to improper input validation. This c... |
| CVE-2019-2135 | — | — | 0.5% | Aug 20, 2019 | In Mfc_Transceive of phNxpExtns_MifareStd.cpp, there is a possible out of bounds read due to a missing bounds check. Thi... |
| CVE-2019-2134 | — | — | 0.5% | Aug 20, 2019 | In phFriNfc_ExtnsTransceive of phNxpExtns_MifareStd.cpp, there is a possible out of bounds write due to an integer overf... |
| CVE-2019-2133 | — | — | 0.5% | Aug 20, 2019 | In Mfc_Transceive of phNxpExtns_MifareStd.cpp, there is a possible out of bounds write due to a heap buffer overflow. Th... |
| CVE-2019-2132 | — | — | 0.5% | Aug 20, 2019 | It is possible to overlay the VPN dialog by a malicious application. This could lead to local escalation of privilege wi... |
| CVE-2019-2131 | — | — | 0.5% | Aug 20, 2019 | An application with overlay permission can display overlays on top of settings UI. This could lead to local escalation o... |
| CVE-2019-2130 | — | — | 1.7% | Aug 20, 2019 | In CompilationJob::FinalizeJob of compiler.cc, there is a possible remote code execution due to type confusion. This cou... |
| CVE-2019-2129 | — | — | 0.7% | Aug 20, 2019 | In extract3GPPGlobalDescriptions of TextDescriptions.cpp, there is a possible out of bounds read due to a missing bounds... |
| CVE-2019-2128 | — | — | 0.2% | Aug 20, 2019 | In ACELP_4t64_fx of c4t64fx.c, there is a possible out of bounds write due to a missing bounds check. This could lead to... |
| CVE-2019-2127 | — | — | 0.2% | Aug 20, 2019 | In AudioInputDescriptor::setClientActive of AudioInputDescriptor.cpp, there is possible memory corruption due to a use a... |
| CVE-2019-2125 | — | — | 0.1% | Aug 20, 2019 | In ChangeDefaultDialerDialog.java, there is a possible escalation of privilege due to an overlay attack. This could lead... |
| CVE-2019-2122 | — | — | 0.2% | Aug 20, 2019 | In LockTaskController.lockKeyguardIfNeeded of the LockTaskController.java, there was a difference in the handling of the... |
| CVE-2019-2121 | — | — | 0.1% | Aug 20, 2019 | In ActivityManagerService.attachApplication of ActivityManagerService, there is a possible race condition. This could le... |
| CVE-2019-2120 | — | — | 0.2% | Aug 20, 2019 | In OatFileAssistant::GenerateOatFile of oat_file_assistant.cc, there is a possible file corruption issue due to an insec... |
| CVE-2019-11924 | — | — | 2.4% | Aug 20, 2019 | A peer could send empty handshake fragments containing only padding which would be kept in memory until a full handshake... |
| CVE-2019-3968 | — | — | 9.6% | Aug 20, 2019 | In OpenEMR 5.0.1 and earlier, an authenticated attacker can execute arbitrary commands on the host system via the Scanne... |
| CVE-2019-3967 | — | — | 30.3% | Aug 20, 2019 | In OpenEMR 5.0.1 and earlier, the patient file download interface contains a directory traversal flaw that allows authen... |
| CVE-2019-3966 | — | — | 1.3% | Aug 20, 2019 | In OpenEMR 5.0.1 and earlier, controller.php contains a reflected XSS vulnerability in the foreign_id parameter. This co... |
| CVE-2019-3965 | — | — | 1.3% | Aug 20, 2019 | In OpenEMR 5.0.1 and earlier, controller.php contains a reflected XSS vulnerability in the document_id parameter. This c... |
| CVE-2019-3964 | — | — | 53.5% | Aug 20, 2019 | In OpenEMR 5.0.1 and earlier, controller.php contains a reflected XSS vulnerability in the doc_id parameter. This could ... |
| CVE-2019-3963 | — | — | 53.7% | Aug 20, 2019 | In OpenEMR 5.0.1 and earlier, controller.php contains a reflected XSS vulnerability in the patient_id parameter. This co... |
| CVE-2019-15238 | — | — | 0.7% | Aug 20, 2019 | The cforms2 plugin before 15.0.2 for WordPress has CSRF related to the IP address field. |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now