2019 CVE Vulnerabilities
17,619 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-5643 | MEDIUM | 5.3 | 0.9% | Nov 6, 2019 | Computing For Good's Basic Laboratory Information System (also known as C4G BLIS) version 3.5 and earlier suffers from a... |
| CVE-2019-2275 | MEDIUM | 5.5 | 0.2% | Nov 6, 2019 | While deserializing any key blob during key operations, buffer overflow could occur exposing partial key information if ... |
| CVE-2019-10515 | MEDIUM | 5.5 | 0.2% | Nov 6, 2019 | DCI client which might be preemptively freed up might be accessed for transferring packets leading to kernel error in Sn... |
| CVE-2019-10504 | MEDIUM | 6.5 | 0.5% | Nov 6, 2019 | Firmware not able to send EXT scan response to host within 1 sec due to resource consumption issue in Snapdragon Auto, S... |
| CVE-2019-18799 | MEDIUM | 6.5 | 1.3% | Nov 6, 2019 | LibSass before 3.6.3 allows a NULL pointer dereference in Sass::Parser::parseCompoundSelector in parser_selectors.cpp. |
| CVE-2019-18798 | MEDIUM | 6.5 | 1.1% | Nov 6, 2019 | LibSass before 3.6.3 allows a heap-based buffer over-read in Sass::weaveParents in ast_sel_weave.cpp. |
| CVE-2019-18797 | MEDIUM | 6.5 | 1.5% | Nov 6, 2019 | LibSass 3.6.1 has uncontrolled recursion in Sass::Eval::operator()(Sass::Binary_Expression*) in eval.cpp. |
| CVE-2019-13081 | MEDIUM | 5.4 | 0.8% | Nov 6, 2019 | Quest KACE Systems Management Appliance Server Center 9.1.317 has an XSS vulnerability (via the title field in the /comm... |
| CVE-2019-13080 | MEDIUM | 5.4 | 0.8% | Nov 6, 2019 | Quest KACE Systems Management Appliance Server Center 9.1.317 has an XSS vulnerability (via an SVG image and HTML file) ... |
| CVE-2019-13077 | MEDIUM | 6.1 | 1.0% | Nov 6, 2019 | Quest KACE Systems Management Appliance Server Center 9.1.317 has an XSS vulnerability (via the sam_detail_titled.php SA... |
| CVE-2019-12917 | MEDIUM | 6.1 | 1.0% | Nov 6, 2019 | A reflected XSS vulnerability exists in Quest KACE Systems Management Appliance Server Center 9.1.317 affecting the user... |
| CVE-2019-14847 | MEDIUM | 4.9 | 2.4% | Nov 6, 2019 | A flaw was found in samba 4.0.0 before samba 4.9.15 and samba 4.10.x before 4.10.10. An attacker can crash AD DC LDAP se... |
| CVE-2019-14833 | MEDIUM | 5.4 | 2.1% | Nov 6, 2019 | A flaw was found in Samba, all versions starting samba 4.5.0 before samba 4.9.15, samba 4.10.10, samba 4.11.2, in the wa... |
| CVE-2019-10218 | MEDIUM | 6.5 | 3.5% | Nov 6, 2019 | A flaw was found in the samba client, all samba versions before samba 4.11.2, 4.10.10 and 4.9.15, where a malicious serv... |
| CVE-2019-18786 | MEDIUM | 5.5 | 0.3% | Nov 6, 2019 | In the Linux kernel through 5.3.8, f->fmt.sdr.reserved is uninitialized in rcar_drif_g_fmt_sdr_cap in drivers/media/plat... |
| CVE-2019-18674 | MEDIUM | 5.3 | 1.1% | Nov 6, 2019 | An issue was discovered in Joomla! before 3.9.13. A missing access check in the phputf8 mapping files could lead to a pa... |
| CVE-2019-8157 | MEDIUM | 5.4 | 0.6% | Nov 6, 2019 | A stored cross-site scripting (XSS) vulnerability exists in Magento 2.2 prior to 2.2.10, Magento 2.3 prior to 2.3.3 or 2... |
| CVE-2019-8145 | MEDIUM | 5.4 | 0.6% | Nov 6, 2019 | A stored cross-site scripting (XSS) vulnerability exists in Magento 2.2 prior to 2.2.10, Magento 2.3 prior to 2.3.3 or 2... |
| CVE-2019-8132 | MEDIUM | 5.4 | 0.6% | Nov 6, 2019 | A stored cross-site scripting (XSS) vulnerability exists in Magento 2.2 prior to 2.2.10, Magento 2.3 prior to 2.3.3 or 2... |
| CVE-2019-8233 | MEDIUM | 6.1 | 0.7% | Nov 6, 2019 | In Magento 2.2 prior to 2.2.10, Magento 2.3 prior to 2.3.3 or 2.3.2-p1, an unauthenticated user can inject arbitrary Jav... |
| CVE-2019-8232 | MEDIUM | 6.6 | 0.9% | Nov 6, 2019 | In Magento prior to 1.9.4.3, Magento prior to 1.14.4.3, Magento 2.2 prior to 2.2.10, and Magento 2.3 prior to 2.3.3 or 2... |
| CVE-2019-8228 | MEDIUM | 4.8 | 0.5% | Nov 6, 2019 | in Magento prior to 1.9.4.3 and Magento prior to 1.14.4.3, an authenticated user with limited administrative privileges ... |
| CVE-2019-8227 | MEDIUM | 4.8 | 0.5% | Nov 6, 2019 | In Magento prior to 1.9.4.3 and Magento prior to 1.14.4.3, an authenticated user with limited administrative privileges ... |
| CVE-2019-8153 | MEDIUM | 6.1 | 1.5% | Nov 6, 2019 | A mitigation bypass to prevent cross-site scripting (XSS) exists in Magento 2.2 prior to 2.2.10, Magento 2.3 prior to 2.... |
| CVE-2019-8152 | MEDIUM | 5.4 | 0.6% | Nov 6, 2019 | A stored cross-site scripting (XSS) vulnerability exists in in Magento 1 prior to 1.9.4.3 and 1.14.4.3, Magento 2.2 prio... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now