17,305 vulnerabilities published in 2019
An Unprotected Storage of Credentials vulnerability in the identity and access management certificate generation procedu
Norton App Lock, prior to 1.4.0.503, may be susceptible to a bypass exploit. In this type of circumstance, the exploit c
A NULL pointer dereference was discovered in elf_link_add_object_symbols in elflink.c in the Binary File Descriptor (BFD
In libsixel v1.8.2, there is an infinite loop in the function sixel_decode_raw_impl() in the file fromsixel.c, as demons
In Artifex Ghostscript before 9.26, a carefully crafted PDF file can trigger an extremely long running computation when
A non-secure user may be able to access certain registers in snapdragon automobile, snapdragon mobile and snapdragon wea
Information leak in UIM API debug messages in snapdragon mobile and snapdragon wear in versions MDM9206, MDM9607, MDM961
Security keys used by the terminal and NW for a session could be leaked in snapdragon mobile in versions MDM9650, MDM965
Cryptographic key material leaked in WCDMA debug messages in snapdragon mobile and snapdragon wear in versions MDM9206,
Cryptographic key material leaked in TDSCDMA RRC debug messages in snapdragon automobile, snapdragon mobile and snapdrag
Cryptographic key material leaked in debug messages - GERAN in snapdragon mobile and snapdragon wear in versions MDM9206
Cryptographic keys are printed in modem debug messages in snapdragon mobile and snapdragon wear in versions MDM9607, MDM
Security keys are logged when any WCDMA call is configured or reconfigured in snapdragon automobile, snapdragon mobile a
DriverAgent 2.2015.7.14, which includes DrvAgent64.sys 1.0.0.1, allows a user to send an IOCTL (0x80002068) with a user
An exploitable information disclosure vulnerability exists in the "Secret Chats" functionality of the Telegram Android m
An issue was discovered in Foxit Reader and PhantomPDF before 9.4 on Windows. They allowed Denial of Service (applicatio
An issue was discovered in Foxit Reader and PhantomPDF before 9.4 on Windows. It is a NULL pointer dereference during PD
load_specific_debug_section in objdump.c in GNU Binutils through 2.31.1 contains an integer overflow vulnerability that
The demangle_template function in cplus-dem.c in GNU libiberty, as distributed in GNU Binutils 2.31.1, contains an integ
The mincore() implementation in mm/mincore.c in the Linux kernel through 4.19.13 allowed local attackers to observe page
An information disclosure vulnerability exists when the Windows kernel improperly handles objects in memory, aka "Window
An information disclosure vulnerability exists when Visual Studio improperly discloses arbitrary file contents if the vi
An information disclosure vulnerability exists when the Windows kernel improperly handles objects in memory, aka "Window
An information disclosure vulnerability exists when Windows Subsystem for Linux improperly handles objects in memory, ak
An information disclosure vulnerability exists when the Windows kernel improperly handles objects in memory, aka "Window
An information disclosure vulnerability exists when Microsoft Office improperly discloses the contents of its memory, ak
An information disclosure vulnerability exists when Microsoft Word macro buttons are used improperly, aka "Microsoft Wor
An information disclosure vulnerability exists when the Windows kernel improperly handles objects in memory, aka "Window
In Wireshark 2.6.0 to 2.6.5, the 6LoWPAN dissector could crash. This was addressed in epan/dissectors/packet-6lowpan.c b
In Wireshark 2.6.0 to 2.6.5 and 2.4.0 to 2.4.11, the P_MUL dissector could crash. This was addressed in epan/dissectors/
In Wireshark 2.6.0 to 2.6.5 and 2.4.0 to 2.4.11, the RTSE dissector and other ASN.1 dissectors could crash. This was add
In Wireshark 2.6.0 to 2.6.5 and 2.4.0 to 2.4.11, the ISAKMP dissector could crash. This was addressed in epan/dissectors
In Wireshark 2.4.0 to 2.4.11, the ENIP dissector could crash. This was addressed in epan/dissectors/packet-enip.c by cha
Lack of secure text entry mode in Browser UI in Google Chrome on Mac prior to 67.0.3396.62 allowed a local attacker to o
An exploitable privilege escalation vulnerability exists in the way the CleanMyMac X software improperly validates input
The CleanMyMac X software contains an exploitable privilege escalation vulnerability due to improper input validation. A
The CleanMyMac X software contains an exploitable privilege escalation vulnerability that exists due to improper input v
The CleanMyMac X software contains an exploitable privilege escalation vulnerability that exists due to improper input v
The CleanMyMac X software contains an exploitable privilege escalation vulnerability due to improper input validation. A
The CleanMyMac X software contains an exploitable privilege escalation vulnerability due to improper input validation. A
An exploitable privilege escalation vulnerability exists in the helper service of Clean My Mac X, version 4.04, due to i
An exploitable privilege escalation vulnerability exists in the helper service of Clean My Mac X, version 4.04, due to i
An exploitable privilege escalation vulnerability exists in the Clean My Mac X, version 4.04, helper service due to impr
An exploitable privilege escalation vulnerability exists in the helper service of Clean My Mac X, version 4.04, due to i
An exploitable privilege escalation vulnerability exists in the helper service of Clean My Mac X, version 4.04, due to i
An exploitable denial-of-service vulnerability exists in the helper service of Clean My Mac X, version 4.04, due to impr
An exploitable privilege escalation vulnerability exists in the helper service of Clean My Mac X, version 4.04, due to i
Artifex MuPDF 1.14.0 has a SEGV in the function fz_load_page of the fitz/document.c file, as demonstrated by mutool. Thi
svg-run.c in Artifex MuPDF 1.14.0 has infinite recursion with stack consumption in svg_run_use_symbol, svg_run_element,
In macOS High Sierra before 10.13.4, there was an issue with the handling of smartcard PINs. This issue was addressed wi
Scan for 2019 Vulnerabilities
CyberStrike detects these CVEs across your infrastructure automatically.
Get Started