2019 CVE Vulnerabilities
17,619 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-19047 | MEDIUM | 5.5 | 0.5% | Nov 18, 2019 | A memory leak in the mlx5_fw_fatal_reporter_dump() function in drivers/net/ethernet/mellanox/mlx5/core/health.c in the L... |
| CVE-2019-19046 | MEDIUM | 6.5 | 2.7% | Nov 18, 2019 | A memory leak in the __ipmi_bmc_register() function in drivers/char/ipmi/ipmi_msghandler.c in the Linux kernel through 5... |
| CVE-2019-19045 | MEDIUM | 4.4 | 0.6% | Nov 18, 2019 | A memory leak in the mlx5_fpga_conn_create_cq() function in drivers/net/ethernet/mellanox/mlx5/core/fpga/conn.c in the L... |
| CVE-2019-19043 | MEDIUM | 5.5 | 0.4% | Nov 18, 2019 | A memory leak in the i40e_setup_macvlans() function in drivers/net/ethernet/intel/i40e/i40e_main.c in the Linux kernel t... |
| CVE-2019-19040 | MEDIUM | 6.1 | 0.9% | Nov 17, 2019 | KairosDB through 1.2.2 has XSS in view.html because of showErrorMessage in js/graph.js, as demonstrated by view.html?q= ... |
| CVE-2019-19035 | MEDIUM | 5.5 | 1.0% | Nov 17, 2019 | jhead 3.03 is affected by: heap-based buffer over-read. The impact is: Denial of service. The component is: ReadJpegSect... |
| CVE-2019-16762 | MEDIUM | 6.1 | 1.1% | Nov 15, 2019 | A specially crafted Bitcoin script can cause a discrepancy between the specified SLP consensus rules and the validation ... |
| CVE-2019-16761 | MEDIUM | 6.1 | 1.0% | Nov 15, 2019 | A specially crafted Bitcoin script can cause a discrepancy between the specified SLP consensus rules and the validation ... |
| CVE-2019-6663 | MEDIUM | 5.5 | 0.6% | Nov 15, 2019 | The BIG-IP 15.0.0-15.0.1, 14.0.0-14.1.2.2, 13.1.0-13.1.3.1, 12.1.0-12.1.5, and 11.5.1-11.6.5.1, BIG-IQ 7.0.0, 6.0.0-6.1.... |
| CVE-2019-6662 | MEDIUM | 6.5 | 0.9% | Nov 15, 2019 | On BIG-IP 13.1.0-13.1.1.4, sensitive information is logged into the local log files and/or remote logging targets when r... |
| CVE-2019-12758 | MEDIUM | 6.7 | 0.7% | Nov 15, 2019 | Symantec Endpoint Protection, prior to 14.2 RU2, may be susceptible to an unsigned code execution vulnerability, which m... |
| CVE-2019-14343 | MEDIUM | 5.4 | 0.9% | Nov 15, 2019 | TemaTres 3.0 has stored XSS via the value parameter to the vocab/admin.php?vocabulario_id=list URI. |
| CVE-2019-18987 | MEDIUM | 5.3 | 1.1% | Nov 15, 2019 | An issue was discovered in the AbuseFilter extension through 1.34 for MediaWiki. Once a specific abuse filter has (accid... |
| CVE-2019-18982 | MEDIUM | 6.1 | 1.1% | Nov 15, 2019 | bundles/AdminBundle/Controller/Admin/EmailController.php in Pimcore before 6.3.0 allows script execution in the Email Lo... |
| CVE-2019-18978 | MEDIUM | 5.3 | 2.5% | Nov 14, 2019 | An issue was discovered in the rack-cors (aka Rack CORS Middleware) gem before 1.0.4 for Ruby. It allows ../ directory t... |
| CVE-2019-18651 | MEDIUM | 6.5 | 0.7% | Nov 14, 2019 | A cross-site request forgery (CSRF) vulnerability in 3xLogic Infinias Access Control through 6.6.9586.0 allows remote at... |
| CVE-2019-17391 | MEDIUM | 4.6 | 0.2% | Nov 14, 2019 | An issue was discovered in the Espressif ESP32 mask ROM code 2016-06-08 0 through 2. Lack of anti-glitch mitigations in ... |
| CVE-2019-15802 | MEDIUM | 5.9 | 1.5% | Nov 14, 2019 | An issue was discovered on Zyxel GS1900 devices with firmware before 2.50(AAHH.0)C0. The firmware hashes and encrypts pa... |
| CVE-2019-14591 | MEDIUM | 5.5 | 0.3% | Nov 14, 2019 | Improper input validation in the API for Intel(R) Graphics Driver versions before 26.20.100.7209 may allow an authentica... |
| CVE-2019-14590 | MEDIUM | 5.5 | 0.3% | Nov 14, 2019 | Improper access control in the API for the Intel(R) Graphics Driver versions before 26.20.100.7209 may allow an authenti... |
| CVE-2019-14574 | MEDIUM | 5.5 | 0.3% | Nov 14, 2019 | Out of bounds read in a subsystem for Intel(R) Graphics Driver versions before 26.20.100.7209 may allow an authenticated... |
| CVE-2019-11113 | MEDIUM | 4.4 | 0.4% | Nov 14, 2019 | Buffer overflow in Kernel Mode module for Intel(R) Graphics Driver before version 25.20.100.6618 (DCH) or 21.20.x.5077 (... |
| CVE-2019-11089 | MEDIUM | 5.5 | 0.3% | Nov 14, 2019 | Insufficient input validation in Kernel Mode module for Intel(R) Graphics Driver before version 25.20.100.6519 may allow... |
| CVE-2019-0184 | MEDIUM | 5.5 | 0.3% | Nov 14, 2019 | Insufficient access control in protected memory subsystem for Intel(R) TXT for 6th, 7th, 8th and 9th Generation Intel(R)... |
| CVE-2019-0152 | MEDIUM | 6.7 | 0.4% | Nov 14, 2019 | Insufficient memory protection in System Management Mode (SMM) and Intel(R) TXT for certain Intel(R) Xeon(R) Processors ... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now