2019 CVE Vulnerabilities

17,619 CVEs published in 2019.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2019-5643MEDIUM5.3Computing For Good's Basic Laboratory Information System (also known as C4G BLIS) version 3.5 and earlier suffers from a...
CVE-2019-2275MEDIUM5.5While deserializing any key blob during key operations, buffer overflow could occur exposing partial key information if ...
CVE-2019-10515MEDIUM5.5DCI client which might be preemptively freed up might be accessed for transferring packets leading to kernel error in Sn...
CVE-2019-10504MEDIUM6.5Firmware not able to send EXT scan response to host within 1 sec due to resource consumption issue in Snapdragon Auto, S...
CVE-2019-18799MEDIUM6.5LibSass before 3.6.3 allows a NULL pointer dereference in Sass::Parser::parseCompoundSelector in parser_selectors.cpp.
CVE-2019-18798MEDIUM6.5LibSass before 3.6.3 allows a heap-based buffer over-read in Sass::weaveParents in ast_sel_weave.cpp.
CVE-2019-18797MEDIUM6.5LibSass 3.6.1 has uncontrolled recursion in Sass::Eval::operator()(Sass::Binary_Expression*) in eval.cpp.
CVE-2019-13081MEDIUM5.4Quest KACE Systems Management Appliance Server Center 9.1.317 has an XSS vulnerability (via the title field in the /comm...
CVE-2019-13080MEDIUM5.4Quest KACE Systems Management Appliance Server Center 9.1.317 has an XSS vulnerability (via an SVG image and HTML file) ...
CVE-2019-13077MEDIUM6.1Quest KACE Systems Management Appliance Server Center 9.1.317 has an XSS vulnerability (via the sam_detail_titled.php SA...
CVE-2019-12917MEDIUM6.1A reflected XSS vulnerability exists in Quest KACE Systems Management Appliance Server Center 9.1.317 affecting the user...
CVE-2019-14847MEDIUM4.9A flaw was found in samba 4.0.0 before samba 4.9.15 and samba 4.10.x before 4.10.10. An attacker can crash AD DC LDAP se...
CVE-2019-14833MEDIUM5.4A flaw was found in Samba, all versions starting samba 4.5.0 before samba 4.9.15, samba 4.10.10, samba 4.11.2, in the wa...
CVE-2019-10218MEDIUM6.5A flaw was found in the samba client, all samba versions before samba 4.11.2, 4.10.10 and 4.9.15, where a malicious serv...
CVE-2019-18786MEDIUM5.5In the Linux kernel through 5.3.8, f->fmt.sdr.reserved is uninitialized in rcar_drif_g_fmt_sdr_cap in drivers/media/plat...
CVE-2019-18674MEDIUM5.3An issue was discovered in Joomla! before 3.9.13. A missing access check in the phputf8 mapping files could lead to a pa...
CVE-2019-8157MEDIUM5.4A stored cross-site scripting (XSS) vulnerability exists in Magento 2.2 prior to 2.2.10, Magento 2.3 prior to 2.3.3 or 2...
CVE-2019-8145MEDIUM5.4A stored cross-site scripting (XSS) vulnerability exists in Magento 2.2 prior to 2.2.10, Magento 2.3 prior to 2.3.3 or 2...
CVE-2019-8132MEDIUM5.4A stored cross-site scripting (XSS) vulnerability exists in Magento 2.2 prior to 2.2.10, Magento 2.3 prior to 2.3.3 or 2...
CVE-2019-8233MEDIUM6.1In Magento 2.2 prior to 2.2.10, Magento 2.3 prior to 2.3.3 or 2.3.2-p1, an unauthenticated user can inject arbitrary Jav...
CVE-2019-8232MEDIUM6.6In Magento prior to 1.9.4.3, Magento prior to 1.14.4.3, Magento 2.2 prior to 2.2.10, and Magento 2.3 prior to 2.3.3 or 2...
CVE-2019-8228MEDIUM4.8in Magento prior to 1.9.4.3 and Magento prior to 1.14.4.3, an authenticated user with limited administrative privileges ...
CVE-2019-8227MEDIUM4.8In Magento prior to 1.9.4.3 and Magento prior to 1.14.4.3, an authenticated user with limited administrative privileges ...
CVE-2019-8153MEDIUM6.1A mitigation bypass to prevent cross-site scripting (XSS) exists in Magento 2.2 prior to 2.2.10, Magento 2.3 prior to 2....
CVE-2019-8152MEDIUM5.4A stored cross-site scripting (XSS) vulnerability exists in in Magento 1 prior to 1.9.4.3 and 1.14.4.3, Magento 2.2 prio...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now