2019 CVE Vulnerabilities

17,619 CVEs published in 2019.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2019-16764MEDIUM5.5The use of `String.to_atom/1` in PowAssent is susceptible to denial of service attacks. In `PowAssent.Phoenix.Authorizat...
CVE-2019-17406MEDIUM5.3Nokia IMPACT < 18A has path traversal that may lead to RCE if chained with CVE-2019-1743
CVE-2019-15684MEDIUM4.3Kaspersky Protection extension for web browser Google Chrome prior to 30.112.62.0 was vulnerable to unauthorized access ...
CVE-2019-10224MEDIUM4.6A flaw has been found in 389-ds-base versions 1.4.x.x before 1.4.1.3. When executed in verbose mode, the dscreate and ds...
CVE-2019-10217MEDIUM6.5A flaw was found in ansible 2.8.0 before 2.8.4. Fields managing sensitive data should be set as such by no_log feature. ...
CVE-2019-5879MEDIUM6.5Insufficient policy enforcement in extensions in Google Chrome prior to 77.0.3865.75 allowed an attacker who convinced a...
CVE-2019-5875MEDIUM4.3Insufficient data validation in downloads in Google Chrome prior to 77.0.3865.75 allowed a remote attacker to spoof the ...
CVE-2019-5873MEDIUM4.3Insufficient policy validation in navigation in Google Chrome on iOS prior to 77.0.3865.75 allowed a remote attacker to ...
CVE-2019-5872MEDIUM6.5Use after free in Mojo in Google Chrome prior to 77.0.3865.75 allowed a remote attacker to potentially exploit heap corr...
CVE-2019-5869MEDIUM6.5Use after free in Blink in Google Chrome prior to 76.0.3809.132 allowed a remote attacker to potentially exploit heap co...
CVE-2019-5868MEDIUM5.5Use after free in PDFium in Google Chrome prior to 76.0.3809.100 allowed a remote attacker to potentially exploit heap c...
CVE-2019-5867MEDIUM6.5Out of bounds read in JavaScript in Google Chrome prior to 76.0.3809.100 allowed a remote attacker to potentially exploi...
CVE-2019-5865MEDIUM6.5Insufficient policy enforcement in navigations in Google Chrome prior to 76.0.3809.87 allowed a remote attacker who had ...
CVE-2019-5864MEDIUM4.3Insufficient data validation in CORS in Google Chrome prior to 76.0.3809.87 allowed an attacker who convinced a user to ...
CVE-2019-5862MEDIUM6.5Insufficient data validation in AppCache in Google Chrome prior to 76.0.3809.87 allowed a remote attacker who had compro...
CVE-2019-5861MEDIUM4.3Insufficient data validation in Blink in Google Chrome prior to 76.0.3809.87 allowed a remote attacker to bypass anti-cl...
CVE-2019-5860MEDIUM5.5Use after free in PDFium in Google Chrome prior to 76.0.3809.87 allowed a remote attacker to potentially exploit heap co...
CVE-2019-5857MEDIUM6.5Inappropriate implementation in JavaScript in Google Chrome prior to 76.0.3809.87 allowed a remote attacker to potential...
CVE-2019-5855MEDIUM6.5Integer overflow in PDFium in Google Chrome prior to 76.0.3809.87 allowed a remote attacker to potentially exploit heap ...
CVE-2019-5852MEDIUM6.5Inappropriate implementation in JavaScript in Google Chrome prior to 76.0.3809.87 allowed a remote attacker to obtain po...
CVE-2019-5848MEDIUM6.5Incorrect font handling in autofill in Google Chrome prior to 75.0.3770.142 allowed a remote attacker to obtain potentia...
CVE-2019-5847MEDIUM6.5Inappropriate implementation in JavaScript in Google Chrome prior to 75.0.3770.142 allowed a remote attacker to potentia...
CVE-2019-5842MEDIUM6.5Use after free in Blink in Google Chrome prior to 75.0.3770.90 allowed a remote attacker to potentially exploit heap cor...
CVE-2019-17405MEDIUM6.1Nokia IMPACT < 18A: has Reflected self XSS
CVE-2019-17404MEDIUM4.3Nokia IMPACT < 18A: allows full path disclosure

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now