2019 CVE Vulnerabilities

17,619 CVEs published in 2019.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2019-1229An elevation of privilege vulnerability exists in Dynamics On-Premise v9. An attacker who successfully exploited the vul...
CVE-2019-1218A spoofing vulnerability exists in the way Microsoft Outlook iOS software parses specifically crafted email messages. An...
CVE-2019-1211An elevation of privilege vulnerability exists in Git for Visual Studio when it improperly parses configuration files. A...
CVE-2019-1204An elevation of privilege vulnerability exists when Microsoft Outlook initiates processing of incoming messages without ...
CVE-2019-1203A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a speciall...
CVE-2019-1202An information disclosure vulnerability exists in the way Microsoft SharePoint handles session objects. An authenticated...
CVE-2019-1201A remote code execution vulnerability exists in Microsoft Word software when it fails to properly handle objects in memo...
CVE-2019-1200A remote code execution vulnerability exists in Microsoft Outlook software when it fails to properly handle objects in m...
CVE-2019-1199A remote code execution vulnerability exists in Microsoft Outlook when the software fails to properly handle objects in ...
CVE-2019-1183This information is being revised to indicate that this CVE (CVE-2019-1183) is fully mitigated by the security updates f...
CVE-2019-15058stb_image.h (aka the stb image loader) 2.23 has a heap-based buffer over-read in stbi__tga_load, leading to Information ...
CVE-2019-14527An issue was discovered on NETGEAR Nighthawk M1 (MR1100) devices before 12.06.03. System commands can be executed, via t...
CVE-2019-14526An issue was discovered on NETGEAR Nighthawk M1 (MR1100) devices before 12.06.03. The web-interface Cross-Site Request F...
CVE-2019-14216An issue was discovered in the svg-vector-icon-plugin (aka WP SVG Icons) plugin through 3.2.1 for WordPress. wp-admin/ad...
CVE-2019-12104The web-based configuration interface of the TP-Link M7350 V3 with firmware before 190531 is affected by several post-au...
CVE-2019-12103The web-based configuration interface of the TP-Link M7350 V3 with firmware before 190531 is affected by a pre-authentic...
CVE-2019-9582eQ-3 Homematic CCU2 outdated base software packages allows Denial of Service. CCU2 affected versions: 2.35.16, 2.41.5, 2...
CVE-2019-15053The "HTML Include and replace macro" plugin before 1.5.0 for Confluence Server allows a bypass of the includeScripts=fal...
CVE-2019-15050An issue was discovered in Bento4 1.5.1.0. There is a heap-based buffer over-read in the AP4_AvccAtom class at Core/Ap4A...
CVE-2019-15049An issue was discovered in Bento4 1.5.1.0. There is a heap-based buffer over-read in the AP4_Dec3Atom class at Core/Ap4D...
CVE-2019-15048An issue was discovered in Bento4 1.5.1.0. There is a heap-based buffer overflow in the AP4_RtpAtom class at Core/Ap4Rtp...
CVE-2019-15047An issue was discovered in Bento4 1.5.1.0. There is a heap-based buffer over-read in the function AP4_BitReader::SkipBit...
CVE-2019-14974SugarCRM Enterprise 9.0.0 allows mobile/error-not-supported-platform.html?desktop_url= XSS.
CVE-2019-11652A potential authorization bypass issue was found in Micro Focus Self Service Password Reset (SSPR) versions prior to: 4....
CVE-2019-7961Adobe Prelude CC versions 8.1 and earlier have an insecure library loading (dll hijacking) vulnerability. Successful exp...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now