2019 CVE Vulnerabilities

17,624 CVEs published in 2019.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2019-15110——The wp-front-end-profile plugin before 0.2.2 for WordPress has XSS.
CVE-2019-15109——The the-events-calendar plugin before 4.8.2 for WordPress has XSS via the tribe_paged URL parameter.
CVE-2019-15296——An issue was discovered in Freeware Advanced Audio Decoder 2 (FAAD2) 2.8.8. The faad_resetbits function in libfaad/bits....
CVE-2019-15293——An issue was discovered in ACDSee Photo Studio Standard 22.1 Build 1159. There is a User Mode Write AV starting at IDE_A...
CVE-2019-2137——In the endCall() function of TelecomManager.java, there is a possible Denial of Service due to a missing permission chec...
CVE-2019-2136——In Status::readFromParcel of Status.cpp, there is a possible out of bounds read due to improper input validation. This c...
CVE-2019-2135——In Mfc_Transceive of phNxpExtns_MifareStd.cpp, there is a possible out of bounds read due to a missing bounds check. Thi...
CVE-2019-2134——In phFriNfc_ExtnsTransceive of phNxpExtns_MifareStd.cpp, there is a possible out of bounds write due to an integer overf...
CVE-2019-2133——In Mfc_Transceive of phNxpExtns_MifareStd.cpp, there is a possible out of bounds write due to a heap buffer overflow. Th...
CVE-2019-2132——It is possible to overlay the VPN dialog by a malicious application. This could lead to local escalation of privilege wi...
CVE-2019-2131——An application with overlay permission can display overlays on top of settings UI. This could lead to local escalation o...
CVE-2019-2130——In CompilationJob::FinalizeJob of compiler.cc, there is a possible remote code execution due to type confusion. This cou...
CVE-2019-2129——In extract3GPPGlobalDescriptions of TextDescriptions.cpp, there is a possible out of bounds read due to a missing bounds...
CVE-2019-2128——In ACELP_4t64_fx of c4t64fx.c, there is a possible out of bounds write due to a missing bounds check. This could lead to...
CVE-2019-2127——In AudioInputDescriptor::setClientActive of AudioInputDescriptor.cpp, there is possible memory corruption due to a use a...
CVE-2019-2125——In ChangeDefaultDialerDialog.java, there is a possible escalation of privilege due to an overlay attack. This could lead...
CVE-2019-2122——In LockTaskController.lockKeyguardIfNeeded of the LockTaskController.java, there was a difference in the handling of the...
CVE-2019-2121——In ActivityManagerService.attachApplication of ActivityManagerService, there is a possible race condition. This could le...
CVE-2019-2120——In OatFileAssistant::GenerateOatFile of oat_file_assistant.cc, there is a possible file corruption issue due to an insec...
CVE-2019-11924——A peer could send empty handshake fragments containing only padding which would be kept in memory until a full handshake...
CVE-2019-3968——In OpenEMR 5.0.1 and earlier, an authenticated attacker can execute arbitrary commands on the host system via the Scanne...
CVE-2019-3967——In OpenEMR 5.0.1 and earlier, the patient file download interface contains a directory traversal flaw that allows authen...
CVE-2019-3966——In OpenEMR 5.0.1 and earlier, controller.php contains a reflected XSS vulnerability in the foreign_id parameter. This co...
CVE-2019-3965——In OpenEMR 5.0.1 and earlier, controller.php contains a reflected XSS vulnerability in the document_id parameter. This c...
CVE-2019-3964——In OpenEMR 5.0.1 and earlier, controller.php contains a reflected XSS vulnerability in the doc_id parameter. This could ...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now