2019 CVE Vulnerabilities
17,619 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-15149 | — | — | 1.6% | Aug 18, 2019 | core.py in Mitogen before 0.2.8 has a typo that drops the unidirectional-routing protection mechanism in the case of a c... |
| CVE-2019-15148 | — | — | 1.1% | Aug 18, 2019 | GoPro GPMF-parser 1.2.2 has an out-of-bounds write in OpenMP4Source in demo/GPMF_mp4reader.c. |
| CVE-2019-15147 | — | — | 1.1% | Aug 18, 2019 | GoPro GPMF-parser 1.2.2 has an out-of-bounds read and SEGV in GPMF_Next in GPMF_parser.c. |
| CVE-2019-15146 | — | — | 1.1% | Aug 18, 2019 | GoPro GPMF-parser 1.2.2 has a heap-based buffer over-read (4 bytes) in GPMF_Next in GPMF_parser.c. |
| CVE-2019-15140 | — | — | 4.1% | Aug 18, 2019 | coders/mat.c in ImageMagick 7.0.8-43 Q16 allows remote attackers to cause a denial of service (use-after-free and applic... |
| CVE-2019-15139 | — | — | 3.5% | Aug 18, 2019 | The XWD image (X Window System window dumping file) parsing component in ImageMagick 7.0.8-41 Q16 allows attackers to ca... |
| CVE-2019-15130 | — | — | 2.4% | Aug 18, 2019 | The Recruitment module in Humanica Humatrix 7 1.0.0.203 and 1.0.0.681 allows an unauthenticated attacker to upload any f... |
| CVE-2019-15129 | — | — | 1.3% | Aug 18, 2019 | The Recruitment module in Humanica Humatrix 7 1.0.0.203 and 1.0.0.681 allows an unauthenticated attacker to access all c... |
| CVE-2019-15137 | — | — | 1.3% | Aug 18, 2019 | The Access Control plugin in eProsima Fast RTPS through 1.9.0 allows fnmatch pattern matches with topic name strings (in... |
| CVE-2019-15136 | — | — | 1.4% | Aug 18, 2019 | The Access Control plugin in eProsima Fast RTPS through 1.9.0 does not check partition permissions from remote participa... |
| CVE-2019-15135 | — | — | 2.0% | Aug 18, 2019 | The handshake protocol in Object Management Group (OMG) DDS Security 1.1 sends cleartext information about all of the ca... |
| CVE-2019-15134 | — | — | 1.5% | Aug 17, 2019 | RIOT through 2019.07 contains a memory leak in the TCP implementation (gnrc_tcp), allowing an attacker to consume all me... |
| CVE-2019-14937 | — | — | 1.4% | Aug 17, 2019 | REDCap before 9.3.0 allows time-based SQL injection in the edit calendar event via the cal_id parameter, such as cal_id=... |
| CVE-2019-13069 | — | — | 1.2% | Aug 17, 2019 | extenua SilverSHielD 6.x fails to secure its ProgramData folder, leading to a Local Privilege Escalation to SYSTEM. The ... |
| CVE-2019-15115 | — | — | 0.7% | Aug 16, 2019 | The peters-login-redirect plugin before 2.9.2 for WordPress has CSRF. |
| CVE-2019-15114 | — | — | 0.7% | Aug 16, 2019 | The formcraft-form-builder plugin before 1.2.2 for WordPress has CSRF. |
| CVE-2019-15113 | — | — | 0.7% | Aug 16, 2019 | The companion-sitemap-generator plugin before 3.7.0 for WordPress has CSRF. |
| CVE-2019-8063 | — | — | 3.7% | Aug 16, 2019 | Creative Cloud Desktop Application 4.6.1 and earlier versions have an insecure transmission of sensitive data vulnerabil... |
| CVE-2019-7964 | — | — | 10.2% | Aug 16, 2019 | Adobe Experience Manager versions 6.5, and 6.4 have an authentication bypass vulnerability. Successful exploitation coul... |
| CVE-2019-7959 | — | — | 6.5% | Aug 16, 2019 | Creative Cloud Desktop Application versions 4.6.1 and earlier have a using components with known vulnerabilities vulnera... |
| CVE-2019-7958 | — | — | 4.4% | Aug 16, 2019 | Creative Cloud Desktop Application versions 4.6.1 and earlier have an insecure inherited permissions vulnerability. Succ... |
| CVE-2019-7957 | — | — | 3.7% | Aug 16, 2019 | Creative Cloud Desktop Application versions 4.6.1 and earlier have a security bypass vulnerability. Successful exploitat... |
| CVE-2019-15117 | — | — | 0.6% | Aug 16, 2019 | parse_audio_mixer_unit in sound/usb/mixer.c in the Linux kernel through 5.2.9 mishandles a short descriptor, leading to ... |
| CVE-2019-15091 | — | — | 1.6% | Aug 16, 2019 | filemgr.php in Artica Integria IMS 5.0.86 allows index.php?sec=wiki&sec2=operation/wiki/wiki&action=upload arbitrary fil... |
| CVE-2019-14923 | — | — | 4.3% | Aug 16, 2019 | EyesOfNetwork 5.1 allows Remote Command Execution via shell metacharacters in the module/tool_all/ host field. |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now