2019 CVE Vulnerabilities

17,619 CVEs published in 2019.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2019-19047MEDIUM5.5A memory leak in the mlx5_fw_fatal_reporter_dump() function in drivers/net/ethernet/mellanox/mlx5/core/health.c in the L...
CVE-2019-19046MEDIUM6.5A memory leak in the __ipmi_bmc_register() function in drivers/char/ipmi/ipmi_msghandler.c in the Linux kernel through 5...
CVE-2019-19045MEDIUM4.4A memory leak in the mlx5_fpga_conn_create_cq() function in drivers/net/ethernet/mellanox/mlx5/core/fpga/conn.c in the L...
CVE-2019-19043MEDIUM5.5A memory leak in the i40e_setup_macvlans() function in drivers/net/ethernet/intel/i40e/i40e_main.c in the Linux kernel t...
CVE-2019-19040MEDIUM6.1KairosDB through 1.2.2 has XSS in view.html because of showErrorMessage in js/graph.js, as demonstrated by view.html?q= ...
CVE-2019-19035MEDIUM5.5jhead 3.03 is affected by: heap-based buffer over-read. The impact is: Denial of service. The component is: ReadJpegSect...
CVE-2019-16762MEDIUM6.1A specially crafted Bitcoin script can cause a discrepancy between the specified SLP consensus rules and the validation ...
CVE-2019-16761MEDIUM6.1A specially crafted Bitcoin script can cause a discrepancy between the specified SLP consensus rules and the validation ...
CVE-2019-6663MEDIUM5.5The BIG-IP 15.0.0-15.0.1, 14.0.0-14.1.2.2, 13.1.0-13.1.3.1, 12.1.0-12.1.5, and 11.5.1-11.6.5.1, BIG-IQ 7.0.0, 6.0.0-6.1....
CVE-2019-6662MEDIUM6.5On BIG-IP 13.1.0-13.1.1.4, sensitive information is logged into the local log files and/or remote logging targets when r...
CVE-2019-12758MEDIUM6.7Symantec Endpoint Protection, prior to 14.2 RU2, may be susceptible to an unsigned code execution vulnerability, which m...
CVE-2019-14343MEDIUM5.4TemaTres 3.0 has stored XSS via the value parameter to the vocab/admin.php?vocabulario_id=list URI.
CVE-2019-18987MEDIUM5.3An issue was discovered in the AbuseFilter extension through 1.34 for MediaWiki. Once a specific abuse filter has (accid...
CVE-2019-18982MEDIUM6.1bundles/AdminBundle/Controller/Admin/EmailController.php in Pimcore before 6.3.0 allows script execution in the Email Lo...
CVE-2019-18978MEDIUM5.3An issue was discovered in the rack-cors (aka Rack CORS Middleware) gem before 1.0.4 for Ruby. It allows ../ directory t...
CVE-2019-18651MEDIUM6.5A cross-site request forgery (CSRF) vulnerability in 3xLogic Infinias Access Control through 6.6.9586.0 allows remote at...
CVE-2019-17391MEDIUM4.6An issue was discovered in the Espressif ESP32 mask ROM code 2016-06-08 0 through 2. Lack of anti-glitch mitigations in ...
CVE-2019-15802MEDIUM5.9An issue was discovered on Zyxel GS1900 devices with firmware before 2.50(AAHH.0)C0. The firmware hashes and encrypts pa...
CVE-2019-14591MEDIUM5.5Improper input validation in the API for Intel(R) Graphics Driver versions before 26.20.100.7209 may allow an authentica...
CVE-2019-14590MEDIUM5.5Improper access control in the API for the Intel(R) Graphics Driver versions before 26.20.100.7209 may allow an authenti...
CVE-2019-14574MEDIUM5.5Out of bounds read in a subsystem for Intel(R) Graphics Driver versions before 26.20.100.7209 may allow an authenticated...
CVE-2019-11113MEDIUM4.4Buffer overflow in Kernel Mode module for Intel(R) Graphics Driver before version 25.20.100.6618 (DCH) or 21.20.x.5077 (...
CVE-2019-11089MEDIUM5.5Insufficient input validation in Kernel Mode module for Intel(R) Graphics Driver before version 25.20.100.6519 may allow...
CVE-2019-0184MEDIUM5.5Insufficient access control in protected memory subsystem for Intel(R) TXT for 6th, 7th, 8th and 9th Generation Intel(R)...
CVE-2019-0152MEDIUM6.7Insufficient memory protection in System Management Mode (SMM) and Intel(R) TXT for certain Intel(R) Xeon(R) Processors ...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now