17,305 vulnerabilities published in 2019
A memory corruption vulnerability was addressed with improved locking. This issue is fixed in watchOS 6.1. An applicatio
A memory corruption issue was addressed with improved memory handling. This issue is fixed in macOS Catalina 10.15. An a
A logic issue was addressed with improved restrictions. This issue is fixed in macOS Catalina 10.15. A malicious applica
A memory corruption issue was addressed with improved memory handling. This issue is fixed in macOS Catalina 10.15. An a
A memory corruption issue was addressed with improved state management. This issue is fixed in macOS Catalina 10.15. An
A memory corruption issue was addressed with improved memory handling. This issue is fixed in iOS 13.2 and iPadOS 13.2,
A memory corruption issue was addressed with improved memory handling. This issue is fixed in iOS 13.2 and iPadOS 13.2,
A memory corruption issue was addressed with improved memory handling. This issue is fixed in iOS 13.2 and iPadOS 13.2,
A memory corruption issue was addressed with improved memory handling. This issue is fixed in iOS 13.2 and iPadOS 13.2,
A memory corruption issue was addressed with improved memory handling. This issue is fixed in iOS 13.2 and iPadOS 13.2,
A memory corruption issue was addressed with improved validation. This issue is fixed in Xcode 11.2. Processing a malici
A dynamic library loading issue existed in iTunes setup. This was addressed with improved path searching. This issue is
A validation issue was addressed with improved logic. This issue is fixed in macOS Catalina 10.15.1. A malicious applica
A validation issue existed in the entitlement verification. This issue was addressed with improved validation of the pro
A memory corruption issue was addressed with improved validation. This issue is fixed in Xcode 11.2. Processing a malici
A memory corruption issue was addressed with improved memory handling. This issue is fixed in macOS Catalina 10.15.1. An
A privilege escalation vulnerability in Trend Micro HouseCall for Home Networks (versions below 5.3.0.1063) could be exp
Trend Micro HouseCall for Home Networks (versions below 5.3.0.1063) could be exploited via a DLL Hijack related to a vul
Improper directory permissions in the installer for Intel(R) Management Engine Consumer Driver for Windows before versio
Insufficient input validation in firmware update software for Intel(R) CSME before versions 12.0.45,13.0.10 and 14.0.10
Insufficient input validation in MEInfo software for Intel(R) CSME before versions 11.8.70, 11.11.70, 11.22.70, 12.0.45,
Insufficient access control in hardware abstraction driver for MEInfo software for Intel(R) CSME before versions 11.8.70
An issue was discovered in the Outlook add-in in Pronestor Planner before 8.1.77. There is local privilege escalation in
Installation of the SonicOS SSLVPN NACagent 3.5 on the Windows operating system, an autorun value is created does not pu
In CloudVision Portal all releases in the 2018.1 and 2018.2 Code train allows users with read-only permissions to bypass
Adobe Photoshop CC versions before 20.0.8 and 21.0.x before 21.0.2 have a memory corruption vulnerability. Successful ex
Adobe Photoshop CC versions before 20.0.8 and 21.0.x before 21.0.2 have a memory corruption vulnerability. Successful ex
ecryptfs-utils: suid helper does not restrict mounting filesystems with nosuid,nodev which creates a possible privilege
Lout 3.40 has a buffer overflow in the StringQuotedWord() function in z39.c.
Lout 3.40 has a heap-based buffer overflow in the srcnext() function in z02.c.
An Untrusted Search Path vulnerability in Malwarebytes AdwCleaner before 8.0.1 could cause arbitrary code execution with
A heap-based buffer overflow in the vrend_renderer_transfer_write_iov function in vrend_renderer.c in virglrenderer thro
On BIG-IP versions 15.0.0-15.0.1.1, 14.1.0-14.1.2.2, 14.0.0-14.0.1, 13.1.0-13.1.3.1, 12.1.0-12.1.5, and 11.5.2-11.6.5.1,
Debian-edu-config all versions < 2.11.10, a set of configuration files used for Debian Edu, and debian-lan-config < 0.26
Multiple buffer overflow vulnerabilities exist when the PLC Editor Version 1.3.5_20190129 processes project files. An at
VMware Workstation (15.x prior to 15.5.1) and Horizon View Agent (7.10.x prior to 7.10.1 and 7.5.x prior to 7.5.4) conta
NVIDIA GeForce Experience, all versions prior to 3.20.2, contains a vulnerability when GameStream is enabled in which an
An unquoted search path vulnerability in Multiple Yokogawa products for Windows (Exaopc (R1.01.00 ? R3.77.00), Exaplog (
Untrusted search path vulnerability in STAMP Workbench installer all versions allows an attacker to gain privileges via
Privilege escalation vulnerability in Multiple MOTEX products (LanScope Cat client program (MR) and LanScope Cat client
Winamp 5.63: Invalid Pointer Dereference leading to Arbitrary Code Execution
In K7 Ultimate Security 16.0.0117, the module K7BKCExt.dll (aka the backup module) improperly validates the administrati
Multiple stack-based buffer overflows in CFProfile.exe in Toshiba ConfigFree Utility 8.0.38 allow user-assisted attacker
The autocmd feature in window.c in Vim before 8.1.2136 accesses freed memory.
GoPro GPMF-parser 1.2.3 has a heap-based buffer over-read in GetPayload in GPMF_mp4reader.c.
GoPro GPMF-parser 1.2.3 has an heap-based buffer over-read in GPMF_SeekToSamples in GPMF_parse.c for the size calculatio
An issue was discovered in Bento4 1.5.1.0. There is a use-after-free in AP4_Sample::GetOffset in Core/Ap4Sample.h when c
Unsafe usage of .NET deserialization in Named Pipe message processing allows privilege escalation to NT AUTHORITY\SYSTEM
A flaw was found in the way qemu v1.3.0 and later (virtio-rng) validates addresses when guest accesses the config space
Kernel/VM/MemoryManager.cpp in SerenityOS before 2019-12-30 does not reject syscalls with pointers into the kernel-only
Scan for 2019 Vulnerabilities
CyberStrike detects these CVEs across your infrastructure automatically.
Get Started