2019 CVE Vulnerabilities
17,619 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-10524 | HIGH | 7.8 | 0.2% | Nov 6, 2019 | Lack of check for a negative value returned for get_clk is wrongly interpreted as valid pointer and lead to use after fr... |
| CVE-2019-10512 | HIGH | 7.8 | 0.2% | Nov 6, 2019 | Payload size is not checked before using it as array index in audio in Snapdragon Auto, Snapdragon Compute, Snapdragon C... |
| CVE-2019-10502 | HIGH | 7.8 | 0.2% | Nov 6, 2019 | Possible stack overflow when an index equal to io buffer size is accessed in camera module in Snapdragon Compute, Snapdr... |
| CVE-2019-10496 | HIGH | 7.8 | 0.2% | Nov 6, 2019 | Lack of checking a variable received from driver and populating in Firmware data structure leads to buffer overflow in S... |
| CVE-2019-10495 | HIGH | 7.3 | 0.2% | Nov 6, 2019 | Arbitrary buffer write issue while processing sequence header during HEVC or AVC encoding. in Snapdragon Auto, Snapdrago... |
| CVE-2019-10491 | HIGH | 7.8 | 0.2% | Nov 6, 2019 | ADSP can be compromised since it`s a general-purpose CPU processing untrusted data in Snapdragon Auto, Snapdragon Comput... |
| CVE-2019-10488 | HIGH | 7.5 | 0.8% | Nov 6, 2019 | Null pointer dereference can occur while parsing invalid chunks while playing the nonstandard clip in Snapdragon Auto, S... |
| CVE-2019-18800 | HIGH | 8.8 | 1.4% | Nov 6, 2019 | Viber through 11.7.0.5 allows a remote attacker who can capture a victim's internet traffic to steal their Viber account... |
| CVE-2019-13079 | HIGH | 8.8 | 1.2% | Nov 6, 2019 | Quest KACE Systems Management Appliance Server Center 9.1.317 is vulnerable to SQL injection. An authenticated user has ... |
| CVE-2019-13078 | HIGH | 8.8 | 1.2% | Nov 6, 2019 | Quest KACE Systems Management Appliance Server Center 9.1.317 is vulnerable to SQL injection. An authenticated user has ... |
| CVE-2019-13076 | HIGH | 8.8 | 1.2% | Nov 6, 2019 | Quest KACE Systems Management Appliance Server Center 9.1.317 is vulnerable to SQL injection. An authenticated user has ... |
| CVE-2019-18650 | HIGH | 8.8 | 0.5% | Nov 6, 2019 | An issue was discovered in Joomla! before 3.9.13. A missing token check in com_template causes a CSRF vulnerability. |
| CVE-2019-8156 | HIGH | 7.2 | 1.7% | Nov 6, 2019 | A server-side request forgery (SSRF) vulnerability exists in Magento 2.2 prior to 2.2.10, Magento 2.3 prior to 2.3.3 or ... |
| CVE-2019-8231 | HIGH | 7.2 | 1.4% | Nov 6, 2019 | In Magento to 1.9.4.3 and Magento prior to 1.14.4.3, an authenticated user with administrative privileges for editing at... |
| CVE-2019-8230 | HIGH | 7.2 | 1.4% | Nov 6, 2019 | In Magentoprior to 1.9.4.3, and Magento prior to 1.14.4.3, an authenticated user with administrative privileges to edit ... |
| CVE-2019-8229 | HIGH | 7.2 | 1.4% | Nov 6, 2019 | In Magento prior to 1.9.4.3, and Magento prior to 1.14.4.3, an authenticated user with administrative privileges to edit... |
| CVE-2019-8159 | HIGH | 8.8 | 3.3% | Nov 6, 2019 | A remote code execution vulnerability exists in Magento 2.2 prior to 2.2.10, Magento 2.3 prior to 2.3.3 or 2.3.2-p1. An ... |
| CVE-2019-8155 | HIGH | 7.5 | 0.5% | Nov 6, 2019 | Magento prior to 1.9.4.3 and prior to 1.14.4.3 included a user's CSRF token in the URL of a GET request. This could be e... |
| CVE-2019-8154 | HIGH | 8.8 | 1.9% | Nov 6, 2019 | A remote code execution vulnerability exists in Magento 2.2 prior to 2.2.10, Magento 2.3 prior to 2.3.3 or 2.3.2-p1. An ... |
| CVE-2019-8151 | HIGH | 7.2 | 1.7% | Nov 6, 2019 | A remote code execution vulnerability exists in Magento 2.2 prior to 2.2.10, Magento 2.3 prior to 2.3.3 or 2.3.2-p1. An ... |
| CVE-2019-8150 | HIGH | 8.8 | 1.9% | Nov 6, 2019 | A remote code execution vulnerability exists in Magento 2.2 prior to 2.2.10, Magento 2.3 prior to 2.3.3 or 2.3.2-p1. An ... |
| CVE-2019-8141 | HIGH | 7.2 | 2.4% | Nov 6, 2019 | A remote code execution vulnerability exists in Magento 2.1 prior to 2.1.19, Magento 2.2 prior to 2.2.10, Magento 2.3 pr... |
| CVE-2019-8137 | HIGH | 8.8 | 1.9% | Nov 6, 2019 | A remote code execution vulnerability exists in Magento 2.2 prior to 2.2.10, Magento 2.3 prior to 2.3.3 or 2.3.2-p1. An ... |
| CVE-2019-8134 | HIGH | 8.8 | 1.0% | Nov 6, 2019 | A SQL injection vulnerability exists in Magento 2.2 prior to 2.2.10, Magento 2.3 prior to 2.3.3 or 2.3.2-p1. A user with... |
| CVE-2019-8130 | HIGH | 8.8 | 1.0% | Nov 6, 2019 | A SQL injection vulnerability exists in Magento 2.2 prior to 2.2.10, Magento 2.3 prior to 2.3.3 or 2.3.2-p1. A user with... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now