17,305 vulnerabilities published in 2019
An information disclosure vulnerability exists when the Windows Print Spooler does not properly handle objects in memory
An information disclosure vulnerability exists when the Windows kernel improperly initializes objects in memory.To explo
An information disclosure vulnerability exists when the win32k component improperly provides kernel information, aka 'Wi
An information disclosure vulnerability exists when the Windows kernel fails to properly initialize a memory address, ak
When processing subtitles format media file, KMPlayer version 2018.12.24.14 or lower doesn't check object size correctly
An elevation of privilege vulnerability exists when Windows improperly handles calls to the LUAFV driver (luafv.sys), ak
An information disclosure vulnerability exists when the win32k component improperly provides kernel information, aka 'Wi
An information disclosure vulnerability exists when DirectX improperly handles objects in memory, aka 'DirectX Informati
An information disclosure vulnerability exists when the Windows kernel improperly handles objects in memory, aka 'Window
An information disclosure vulnerability exists when the Windows kernel improperly handles objects in memory, aka 'Window
An information disclosure vulnerability exists when the win32k component improperly provides kernel information, aka 'Wi
An information disclosure vulnerability exists when affected Open Enclave SDK versions improperly handle objects in memo
The nscd daemon in the GNU C Library (glibc) before version 2.5 does not close incoming client sockets if they cannot be
SmartDefragDriver.sys (2.0) in IObit Smart Defrag 6 never frees an executable kernel pool that is allocated with user de
NVIDIA Jetson TX2 contains a vulnerability by means of speculative execution where local and unprivileged code may acces
An exploitable privilege escalation vulnerability exists in the Shimo VPN 4.1.5.1 helper service in the disconnectServic
Delta Industrial Automation CNCSoft, CNCSoft ScreenEditor Version 1.00.88 and prior. Multiple out-of-bounds read vulnera
Some of the DLLs loaded by Check Point ZoneAlarm up to 15.4.062 are taken from directories where all users have write pe
A vulnerability in the local management CLI implementation for specific commands on the Cisco UCS B-Series Blade Servers
A flaw was found in pacemaker up to and including version 2.0.1. An insufficient verification inflicted preference of un
In rw_i93_process_sys_info of rw_i93.cc, there is a possible out-of-bound read due to a missing bounds check. This could
The SeaMicro provisioning of Ubuntu MAAS logs credentials, including username and password, for the management interface
The tiff_document_render() and tiff_document_get_thumbnail() functions in the TIFF document backend in GNOME Evince thro
A memory leak in archive_read_format_zip_cleanup in archive_read_support_format_zip.c in libarchive 3.3.4-dev allows rem
read_ujpg in jpgcoder.cc in Dropbox Lepton 1.2.1 allows attackers to cause a denial-of-service (application runtime cras
Vulnerability in the Oracle Retail Customer Engagement component of Oracle Retail Applications (subcomponent: Segment).
Vulnerability in the Oracle WebLogic Server component of Oracle Fusion Middleware (subcomponent: WLS Core Components). S
A flaw was found in the Linux kernel's vfio interface implementation that permits violation of the user's locked memory
The Sony Xperia L1 Android device with a build fingerprint of Sony/G3313/G3313:7.0/43.0.A.6.49/2867558199:user/release-k
The Leagoo P1 Android device with a build fingerprint of sp7731c_1h10_32v4_bird:6.0/MRA58K/android.20170629.214736:user/
The print_binder_ref_olocked function in drivers/android/binder.c in the Linux kernel 4.14.90 allows local users to obta
The print_binder_transaction_ilocked function in drivers/android/binder.c in the Linux kernel 4.14.90 allows local users
When HOST sends a Special command ID packet, Controller triggers a RAM Dump and FW reset in Snapdragon Mobile in version
A new account can be inserted into simContacts service using Android command line tool in Snapdragon Automobile, Snapdra
In wnm_parse_neighbor_report_elem of wnm_sta.c, there is a possible out-of-bounds read due to missing bounds check. This
Symantec AV Engine, prior to 13.0.9r17, may be susceptible to an arbitrary file deletion issue, which is a type of vulne
Information exposure through process environment vulnerability in Synology Calendar before 2.3.3-0620 allows local users
The WEBrick gem 1.4.2 for Ruby allows directory traversal if the attacker once had local access to create a symlink to a
NVIDIA Windows GPU Display driver software for Windows (all versions) contains a vulnerability in the kernel mode layer
A security vulnerability has been identified in IBM Spectrum Scale 4.1.1, 4.2.0, 4.2.1, 4.2.2, 4.2.3, and 5.0.0 with CES
Samsung S9+, S10, and XCover 4 P(9.0) devices can become temporarily inoperable because of an unprotected intent in the
vcodec2_hls_filter in libvoipCodec_v7a.so in the WeChat application through 7.0.3 for Android allows attackers to cause
A vulnerability has been identified in SIMATIC PCS 7 V8.0 and earlier (All versions), SIMATIC PCS 7 V8.1 (All versions <
Under certain conditions Solution Manager, version 7.2, allows an attacker to access information which would otherwise b
fs/ext4/extents.c in the Linux kernel through 5.1.2 does not zero out the unused memory region in the extent tree block,
Capstone 3.0.4 has an out-of-bounds vulnerability (SEGV caused by a read memory access) in X86_insn_reg_intel in arch/X8
A denial of service vulnerability exists when .NET Framework improperly handles objects in heap memory, aka '.NET Framew
An elevation of privilege vulnerability exists in the Unified Write Filter (UWF) feature for Windows 10 when it improper
A tampering vulnerability exists in the NuGet Package Manager for Linux and Mac that could allow an authenticated attack
In the tun subsystem in the Linux kernel before 4.13.14, dev_get_valid_name is not called before register_netdevice. Thi
Scan for 2019 Vulnerabilities
CyberStrike detects these CVEs across your infrastructure automatically.
Get Started