Skip to main content

Over 150 LLM Providers · Over 5,300 Models The most extensible AI-powered pentesting platform. Open source. Star on GitHub

17,305 results · Page 325/347
4.7
CVE-2019-6588

In Liferay Portal before 7.1 CE GA4, an XSS vulnerability exists in the SimpleCaptcha API when custom code passes unsani

4.7
CVE-2018-13380

A Cross-site Scripting (XSS) vulnerability in Fortinet FortiOS 6.0.0 to 6.0.4, 5.6.0 to 5.6.7, 5.4.0 to 5.4.12, 5.2 and

4.7
CVE-2019-1881

A vulnerability in the web-based management interface of Cisco Industrial Network Director (IND) could allow an unauthen

4.7
CVE-2019-12732

The Chartkick gem through 3.1.0 for Ruby allows XSS.

4.7
CVE-2019-11881

A vulnerability exists in Rancher before 2.2.4 in the login component, where the errorMsg parameter can be tampered to d

4.7
CVE-2019-0948

An information disclosure vulnerability exists in the Windows Event Viewer (eventvwr.msc) when it improperly parses XML

4.7
CVE-2019-0977

An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its m

4.7
CVE-2019-1009

An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its m

4.7
CVE-2019-1010

An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its m

4.7
CVE-2019-1011

An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its m

4.7
CVE-2019-1012

An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its m

4.7
CVE-2019-1013

An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its m

4.7
CVE-2019-1015

An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its m

4.7
CVE-2019-10157

It was found that Keycloak's Node.js adapter before version 4.8.3 did not properly verify the web token received from th

4.7
CVE-2019-1016

An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its m

4.7
CVE-2019-1046

An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its m

4.7
CVE-2019-1047

An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its m

4.7
CVE-2019-1048

An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its m

4.7
CVE-2019-1049

An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its m

4.7
CVE-2019-1050

An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its m

4.7
CVE-2018-16514

A cross-site scripting (XSS) vulnerability in the View Filters page (view_filters_page.php) and Edit Filter page (manage

4.7
CVE-2019-13228

deepin-clone before 1.1.3 uses a fixed path /tmp/repo.iso in the BootDoctor::fix() function to download an ISO file, and

4.7
CVE-2019-1943

A vulnerability in the web interface of Cisco Small Business 200, 300, and 500 Series Switches software could allow an u

4.7
CVE-2019-11728

The HTTP Alternative Services header, Alt-Svc, can be used by a malicious site to scan all TCP ports of any host that th

4.7
CVE-2017-18430

In cPanel before 66.0.2, user and group ownership may be incorrectly set when using reassign_post_terminate_cruft (SEC-2

4.7
CVE-2019-15292

An issue was discovered in the Linux kernel before 5.0.9. There is a use-after-free in atalk_proc_exit, related to net/a

4.7
CVE-2019-14694

A use-after-free flaw in the sandbox container implemented in cmdguard.sys in Comodo Antivirus 12.0.0.6870 can be trigge

4.7
CVE-2019-15807

In the Linux kernel before 5.1.13, there is a memory leak in drivers/scsi/libsas/sas_expander.c when SAS expander discov

4.7
CVE-2019-3754

Dell EMC Unity Operating Environment versions prior to 5.0.0.0.5.116, Dell EMC UnityVSA versions prior to 5.0.0.0.5.116

4.7
CVE-2019-15921

An issue was discovered in the Linux kernel before 5.0.6. There is a memory leak issue when idr_alloc() fails in genl_re

4.7
CVE-2019-1547

Normally in OpenSSL EC groups always have a co-factor present and this is used in side channel resistant code paths. How

4.7
CVE-2019-16230

drivers/gpu/drm/radeon/radeon_display.c in the Linux kernel 5.2.14 does not check the alloc_workqueue return value, lead

4.7
CVE-2019-16234

drivers/net/wireless/intel/iwlwifi/pcie/trans.c in the Linux kernel 5.2.14 does not check the alloc_workqueue return val

4.7
CVE-2019-16354

The File Session Manager in Beego 1.10.0 allows local users to read session files because there is a race condition invo

4.7
CVE-2019-16681

The Traveloka application 3.14.0 for Android exports com.traveloka.android.activity.common.WebViewActivity, leading to t

4.7
CVE-2019-16994

In the Linux kernel before 5.0, a memory leak exists in sit_init_net() in net/ipv6/sit.c when register_netdev() fails to

4.7
CVE-2019-13628

wolfSSL and wolfCrypt 4.0.0 and earlier (when configured without --enable-fpecc, --enable-sp, or --enable-sp-math) conta

4.7
CVE-2019-15809

Smart cards from the Athena SCS manufacturer, based on the Atmel Toolbox 00.03.11.05 and the AT90SC chip, contain a timi

4.7
CVE-2019-5535

VMware Workstation and Fusion contain a network denial-of-service vulnerability due to improper handling of certain IPv6

4.7
CVE-2019-2930

Vulnerability in the Oracle Field Service product of Oracle E-Business Suite (component: Wireless). Supported versions t

4.7
CVE-2019-2999

Vulnerability in the Java SE product of Oracle Java SE (component: Javadoc). Supported versions that are affected are Ja

4.7
CVE-2019-3023

Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: Stylesheet). Supported v

4.7
CVE-2019-3024

Vulnerability in the Oracle Installed Base product of Oracle E-Business Suite (component: Engineering Change Order). Sup

4.7
CVE-2010-3095

mailscanner before 4.79.11-2.1 might allow local users to overwrite arbitrary files via a symlink attack on certain temp

4.7
CVE-2011-1136

In tesseract 2.03 and 2.04, an attacker can rewrite an arbitrary user file by guessing the PID and creating a link to th

4.7
CVE-2019-19054

A memory leak in the cx23888_ir_probe() function in drivers/media/pci/cx23885/cx23888-ir.c in the Linux kernel through 5

4.7
CVE-2019-19056

A memory leak in the mwifiex_pcie_alloc_cmdrsp_buf() function in drivers/net/wireless/marvell/mwifiex/pcie.c in the Linu

4.7
CVE-2019-19058

A memory leak in the alloc_sgtable() function in drivers/net/wireless/intel/iwlwifi/fw/dbg.c in the Linux kernel through

4.7
CVE-2019-19059

Multiple memory leaks in the iwl_pcie_ctxt_info_gen3_init() function in drivers/net/wireless/intel/iwlwifi/pcie/ctxt-inf

4.7
CVE-2019-19062

A memory leak in the crypto_report() function in crypto/crypto_user_base.c in the Linux kernel through 5.3.11 allows att

Scan for 2019 Vulnerabilities

CyberStrike detects these CVEs across your infrastructure automatically.

Get Started