2019 CVE Vulnerabilities

17,619 CVEs published in 2019.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2019-5072HIGH7.8An exploitable command injection vulnerability exists in the /goform/WanParameterSetting functionality of Tenda AC9 Rout...
CVE-2019-5071HIGH7.8An exploitable command injection vulnerability exists in the /goform/WanParameterSetting functionality of Tenda AC9 Rout...
CVE-2019-10767HIGH7.5An attacker can include file contents from outside the `/adapter/xxx/` directory, where `xxx` is the name of an existent...
CVE-2019-5087HIGH8.8An exploitable integer overflow vulnerability exists in the flattenIncrementally function in the xcf2png and xcf2pnm bin...
CVE-2019-5086HIGH8.8An exploitable integer overflow vulnerability exists in the flattenIncrementally function in the xcf2png and xcf2pnm bin...
CVE-2019-17650HIGH7.8An Improper Neutralization of Special Elements used in a Command vulnerability in one of FortiClient for Mac OS root pro...
CVE-2019-17272HIGH7.2All versions of ONTAP Select Deploy administration utility are susceptible to a vulnerability which when successfully ex...
CVE-2019-2339HIGH7.8Out of bound access due to lack of check of whiltelist array size while reading the image elf segments. in Snapdragon Au...
CVE-2019-2335HIGH7.5While processing Attach Reject message, Valid exit condition is not met resulting into an infinite loop in Snapdragon Au...
CVE-2019-2329HIGH7.8Use after free issue in cleanup routine due to missing pointer sanitization for a failed start of a trusted application....
CVE-2019-2315HIGH7.8While invoking the API to copy from fd or local buffer to the secure buffer, Parameters being populated are from non sec...
CVE-2019-2297HIGH7.8Buffer overflow can occur while processing non-standard NAN message from user space. in Snapdragon Auto, Snapdragon Cons...
CVE-2019-2266HIGH7.8Possible double free issue in kernel while handling the camera sensor and its sub modules power sequence in Snapdragon A...
CVE-2019-2251HIGH7.8If a bitmap file is loaded from any un-authenticated source, there is a possibility that the bitmap can potentially caus...
CVE-2019-18958HIGH7.8Nitro Pro before 13.2 creates a debug.log file in the directory where a .pdf file is located, if the .pdf document was p...
CVE-2019-17421HIGH7.8Incorrect file permissions on the packaged Nipper executable file in Zoho ManageEngine OpManager 12.4.072 and Firewall A...
CVE-2019-16548HIGH8.8A cross-site request forgery vulnerability in Jenkins Google Compute Engine Plugin 4.1.1 and earlier in ComputeEngineClo...
CVE-2019-16544HIGH8.8Jenkins QMetry for JIRA - Test Management Plugin 1.12 and earlier stores credentials unencrypted in job config.xml files...
CVE-2019-16538HIGH8.8A sandbox bypass vulnerability in Jenkins Script Security Plugin 1.67 and earlier related to the handling of default par...
CVE-2019-10617HIGH7.8Low privilege users can access service configuration which contains registry data that admins uses to create or delete e...
CVE-2019-10566HIGH7.8Buffer overflow can occur in wlan module if supported rates or extended rates element length is greater than max rate se...
CVE-2019-10563HIGH7.8Buffer over-read can occur in fast message handler due to improper input validation while processing a message from firm...
CVE-2019-10503HIGH7.8Out-of-bounds access can occur in camera driver due to improper validation of array index in Snapdragon Auto, Snapdragon...
CVE-2019-10486HIGH7Race condition due to the lack of resource lock which will be concurrently modified in the memcpy statement leads to out...
CVE-2019-6852HIGH7.5A CWE-200: Information Exposure vulnerability exists in Modicon Controllers (M340 CPUs, M340 communication modules, Prem...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now