2019 CVE Vulnerabilities

17,624 CVEs published in 2019.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2019-6120HIGH7.5An issue was discovered in NiceHash Miner before 2.0.3.0. A missing rate limit while adding a wallet via Email address a...
CVE-2019-2246HIGH7.8Thread start can cause invalid memory writes to arbitrary memory location since the argument is passed by user to kernel...
CVE-2019-10529HIGH8.1Possible use after free issue due to race condition while attempting to mark the entry pages as dirty using function set...
CVE-2019-10524HIGH7.8Lack of check for a negative value returned for get_clk is wrongly interpreted as valid pointer and lead to use after fr...
CVE-2019-10512HIGH7.8Payload size is not checked before using it as array index in audio in Snapdragon Auto, Snapdragon Compute, Snapdragon C...
CVE-2019-10502HIGH7.8Possible stack overflow when an index equal to io buffer size is accessed in camera module in Snapdragon Compute, Snapdr...
CVE-2019-10496HIGH7.8Lack of checking a variable received from driver and populating in Firmware data structure leads to buffer overflow in S...
CVE-2019-10495HIGH7.3Arbitrary buffer write issue while processing sequence header during HEVC or AVC encoding. in Snapdragon Auto, Snapdrago...
CVE-2019-10491HIGH7.8ADSP can be compromised since it`s a general-purpose CPU processing untrusted data in Snapdragon Auto, Snapdragon Comput...
CVE-2019-10488HIGH7.5Null pointer dereference can occur while parsing invalid chunks while playing the nonstandard clip in Snapdragon Auto, S...
CVE-2019-18800HIGH8.8Viber through 11.7.0.5 allows a remote attacker who can capture a victim's internet traffic to steal their Viber account...
CVE-2019-13079HIGH8.8Quest KACE Systems Management Appliance Server Center 9.1.317 is vulnerable to SQL injection. An authenticated user has ...
CVE-2019-13078HIGH8.8Quest KACE Systems Management Appliance Server Center 9.1.317 is vulnerable to SQL injection. An authenticated user has ...
CVE-2019-13076HIGH8.8Quest KACE Systems Management Appliance Server Center 9.1.317 is vulnerable to SQL injection. An authenticated user has ...
CVE-2019-18650HIGH8.8An issue was discovered in Joomla! before 3.9.13. A missing token check in com_template causes a CSRF vulnerability.
CVE-2019-8156HIGH7.2A server-side request forgery (SSRF) vulnerability exists in Magento 2.2 prior to 2.2.10, Magento 2.3 prior to 2.3.3 or ...
CVE-2019-8231HIGH7.2In Magento to 1.9.4.3 and Magento prior to 1.14.4.3, an authenticated user with administrative privileges for editing at...
CVE-2019-8230HIGH7.2In Magentoprior to 1.9.4.3, and Magento prior to 1.14.4.3, an authenticated user with administrative privileges to edit ...
CVE-2019-8229HIGH7.2In Magento prior to 1.9.4.3, and Magento prior to 1.14.4.3, an authenticated user with administrative privileges to edit...
CVE-2019-8159HIGH8.8A remote code execution vulnerability exists in Magento 2.2 prior to 2.2.10, Magento 2.3 prior to 2.3.3 or 2.3.2-p1. An ...
CVE-2019-8155HIGH7.5Magento prior to 1.9.4.3 and prior to 1.14.4.3 included a user's CSRF token in the URL of a GET request. This could be e...
CVE-2019-8154HIGH8.8A remote code execution vulnerability exists in Magento 2.2 prior to 2.2.10, Magento 2.3 prior to 2.3.3 or 2.3.2-p1. An ...
CVE-2019-8151HIGH7.2A remote code execution vulnerability exists in Magento 2.2 prior to 2.2.10, Magento 2.3 prior to 2.3.3 or 2.3.2-p1. An ...
CVE-2019-8150HIGH8.8A remote code execution vulnerability exists in Magento 2.2 prior to 2.2.10, Magento 2.3 prior to 2.3.3 or 2.3.2-p1. An ...
CVE-2019-8141HIGH7.2A remote code execution vulnerability exists in Magento 2.1 prior to 2.1.19, Magento 2.2 prior to 2.2.10, Magento 2.3 pr...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now