2019 CVE Vulnerabilities

17,619 CVEs published in 2019.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2019-14860MEDIUM6.5It was found that the Syndesis configuration for Cross-Origin Resource Sharing was set to allow all origins. An attacker...
CVE-2019-14824MEDIUM6.5A flaw was found in the 'deref' plugin of 389-ds-base where it could use the 'search' permission to display attribute va...
CVE-2019-10219MEDIUM6.1A vulnerability was found in Hibernate-Validator. The SafeHtml validator annotation fails to properly sanitize payloads ...
CVE-2019-15005MEDIUM4.3The Atlassian Troubleshooting and Support Tools plugin prior to version 1.17.2 allows an unprivileged user to initiate p...
CVE-2019-18821MEDIUM5.5Eximious Logo Designer 3.82 has a User Mode Write AV starting at ExiCustomPathLib!ExiCustomPathLib::CGradientColorsProfi...
CVE-2019-18820MEDIUM5.5Eximious Logo Designer 3.82 has Heap Corruption starting at ntdll!RtlpNtMakeTemporaryKey+0x0000000000001a78.
CVE-2019-18819MEDIUM5.5Eximious Logo Designer 3.82 has a User Mode Write AV starting at ExiVectorRender!StrokeText_Blend+0x00000000000003a7.
CVE-2019-3422MEDIUM6.2The Sec Consult Security Lab reported an information disclosure vulnerability in MF910S product to ZTE PSIRT in October ...
CVE-2019-3764MEDIUM4.3Dell EMC iDRAC7 versions prior to 2.65.65.65, iDRAC8 versions prior to 2.70.70.70 and iDRAC9 versions prior to 3.36.36.3...
CVE-2019-18816MEDIUM6.1po-admin/route.php?mod=post&act=edit in PopojiCMS 2.0.1 allows post[1][content]= stored XSS.
CVE-2019-18815MEDIUM6.1PopojiCMS 2.0.1 allows refer= Open Redirection.
CVE-2019-18811MEDIUM5.5A memory leak in the sof_set_get_large_ctrl_data() function in sound/soc/sof/ipc.c in the Linux kernel through 5.3.9 all...
CVE-2019-18809MEDIUM4.6A memory leak in the af9005_identify_state() function in drivers/media/usb/dvb-usb/af9005.c in the Linux kernel through ...
CVE-2019-18808MEDIUM5.5A memory leak in the ccp_run_sha_cmd() function in drivers/crypto/ccp/ccp-ops.c in the Linux kernel through 5.3.9 allows...
CVE-2019-18806MEDIUM5.5A memory leak in the ql_alloc_large_buffers() function in drivers/net/ethernet/qlogic/qla3xxx.c in the Linux kernel befo...
CVE-2019-17604MEDIUM4.3An Insecure Direct Object Reference (IDOR) vulnerability in eyecomms eyeCMS through 2019-10-15 allows any candidate to c...
CVE-2019-17222MEDIUM6.1An issue was discovered on Intelbras WRN 150 1.0.17 devices. There is stored XSS in the Service Name tab of the WAN conf...
CVE-2019-16878MEDIUM5.4Portainer before 1.22.1 has XSS (issue 2 of 2).
CVE-2019-6337MEDIUM5.2For the printers listed a maliciously crafted print file might cause certain HP Inkjet printers to assert. Under certain...
CVE-2019-16874MEDIUM6.5Portainer before 1.22.1 has Incorrect Access Control (issue 2 of 4).
CVE-2019-16873MEDIUM5.4Portainer before 1.22.1 has XSS (issue 1 of 2).
CVE-2019-15003MEDIUM5.3The Customer Context Filter in Atlassian Jira Service Desk Server and Jira Service Desk Data Center before 3.9.17, from ...
CVE-2019-16401MEDIUM6.5Samsung Galaxy S8 plus (Android version: 8.0.0, Build Number: R16NW.G955USQU5CRG3, Baseband Vendor: Qualcomm Snapdragon ...
CVE-2019-16400MEDIUM6.5Samsung Galaxy S8 plus (Android version: 8.0.0, Build Number: R16NW.G955USQU5CRG3, Baseband Vendor: Qualcomm Snapdragon ...
CVE-2019-12406MEDIUM6.5Apache CXF before 3.3.4 and 3.2.11 does not restrict the number of message attachments present in a given message. This ...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now