[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"repo-stars":3,"vuln-CVE-2019-9936":6},{"stargazers_count":4,"fetched_at":5},7,"2026-06-05T20:55:33.689Z",{"id":7,"descriptions":8,"cisa":9,"weaknesses":10,"exploits":23,"aliases":24,"duplicate_of":9,"upstream":25,"downstream":26,"duplicates":43,"related":44,"reserved_at":9,"published_at":49,"modified_at":50,"state":51,"summary":52,"references_raw":61,"kevs":128,"epss":129,"epss_history":132,"metrics":389,"affected":399},"CVE-2019-9936","In SQLite 3.27.2, running fts5 prefix queries inside a transaction could trigger a heap-based buffer over-read in fts5HashEntrySort in sqlite3.c, which may lead to an information leak. This is related to ext/fts5/fts5_hash.c.",null,[11],{"_key":12,"id":12,"name":13,"description":14,"type":15,"status":16,"abstraction":17,"likelihood_of_exploit":9,"capec":18},"CWE-125","Out-of-bounds Read","The product reads data past the end, or before the beginning, of the intended buffer.","weakness","Draft","Base",[19],{"id":20,"name":21,"techniques":22},"CAPEC-540","Overread Buffers",[],[],[],[],[27,29,31,33,35,37,39,41],{"_key":28},"SUSE-SU-2019:1127-1",{"_key":30},"OPENSUSE-SU-2019:1372-1",{"_key":32},"OPENSUSE-SU-2024:11400-1",{"_key":34},"DLA-2340-1",{"_key":36},"MGASA-2019-0240",{"_key":38},"UBUNTU-CVE-2019-9936",{"_key":40},"USN-4019-1",{"_key":42},"DEBIAN-CVE-2019-9936",[],[45,46,47,48],{"_key":28},{"_key":30},{"_key":32},{"_key":36},"2019-03-22T07:07:04.000Z","2024-08-04T22:01:55.188Z","Modified",{"cisa_kev":53,"cisa_ransomware":53,"cisa_vendor":9,"epss_severity":54,"epss_score":55,"severity":56,"severity_score":57,"severity_version":58,"severity_source":59,"severity_vector":60,"severity_status":51},false,"low",0.05055,"high",7.5,"v3.0","nvd","CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N",[62,68,72,78,85,90,95,100,104,109,114,118,122],{"url":63,"sources":64,"tags":66},"https://www.mail-archive.com/sqlite-users%40mailinglists.sqlite.org/msg114382.html",[65,59],"cve.org",[67],"X Refsource MISC",{"url":69,"sources":70,"tags":71},"https://www.mail-archive.com/sqlite-users%40mailinglists.sqlite.org/msg114394.html",[65,59],[67],{"url":73,"sources":74,"tags":75},"https://sqlite.org/src/info/b3fa58dd7403dbd4",[65,59],[67,76,77],"Patch","Vendor Advisory",{"url":79,"sources":80,"tags":81},"http://www.securityfocus.com/bid/107562",[65,59],[82,83,84],"VDB Entry","X Refsource BID","Third Party Advisory",{"url":86,"sources":87,"tags":88},"https://security.netapp.com/advisory/ntap-20190416-0005/",[65,59],[89,84],"X Refsource CONFIRM",{"url":91,"sources":92,"tags":93},"http://lists.opensuse.org/opensuse-security-announce/2019-05/msg00026.html",[65,59],[77,94],"X Refsource SUSE",{"url":96,"sources":97,"tags":98},"https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/EXD2GYJVTDGEQPUNMMMC5TB7MQXOBBMO/",[65,59],[77,99],"X Refsource FEDORA",{"url":101,"sources":102,"tags":103},"https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/N66U5PY5UJU4XBFZJH7QNKIDNAVIB4OP/",[65,59],[77,99],{"url":105,"sources":106,"tags":107},"https://usn.ubuntu.com/4019-1/",[65,59],[77,108],"X Refsource UBUNTU",{"url":110,"sources":111,"tags":112},"https://security.gentoo.org/glsa/201908-09",[65,59],[77,113],"X Refsource GENTOO",{"url":115,"sources":116,"tags":117},"https://www.oracle.com/technetwork/security-advisory/cpuoct2019-5072832.html",[65,59],[67],{"url":119,"sources":120,"tags":121},"https://www.oracle.com/security-alerts/cpujan2020.html",[65,59],[67],{"url":123,"sources":124,"tags":125},"https://lists.debian.org/debian-lts-announce/2020/08/msg00037.html",[65,59],[126,127],"Mailing List","X Refsource MLIST",[],{"date":130,"score":55,"percentile":131},"2026-06-04",0.89946,[133,137,139,142,145,148,150,154,157,160,163,166,169,172,174,178,181,184,187,190,192,195,198,200,203,206,209,212,215,218,220,222,225,228,231,233,236,239,242,245,248,251,254,256,259,262,265,267,270,272,275,278,281,284,287,290,293,296,299,302,305,308,311,315,318,321,324,327,330,332,335,337,339,341,344,347,349,352,355,357,360,362,365,368,371,373,376,380,383,386],{"date":134,"score":135,"percentile":136},"2025-11-04",0.04579,0.88703,{"date":138,"score":135,"percentile":136},"2025-11-05",{"date":140,"score":135,"percentile":141},"2025-11-06",0.88695,{"date":143,"score":135,"percentile":144},"2025-11-07",0.88702,{"date":146,"score":135,"percentile":147},"2025-11-08",0.88705,{"date":149,"score":135,"percentile":144},"2025-11-09",{"date":151,"score":152,"percentile":153},"2025-11-10",0.04797,0.88976,{"date":155,"score":152,"percentile":156},"2025-11-11",0.88978,{"date":158,"score":152,"percentile":159},"2025-11-12",0.88984,{"date":161,"score":152,"percentile":162},"2025-11-13",0.8899,{"date":164,"score":152,"percentile":165},"2025-11-14",0.88993,{"date":167,"score":152,"percentile":168},"2025-11-15",0.88989,{"date":170,"score":152,"percentile":171},"2025-11-16",0.88992,{"date":173,"score":152,"percentile":162},"2025-11-17",{"date":175,"score":176,"percentile":177},"2025-11-18",0.03684,0.86742,{"date":179,"score":176,"percentile":180},"2025-11-19",0.86743,{"date":182,"score":176,"percentile":183},"2025-11-20",0.86744,{"date":185,"score":152,"percentile":186},"2025-11-21",0.89005,{"date":188,"score":152,"percentile":189},"2025-11-22",0.89006,{"date":191,"score":152,"percentile":186},"2025-11-23",{"date":193,"score":152,"percentile":194},"2025-11-24",0.89008,{"date":196,"score":152,"percentile":197},"2025-11-25",0.89011,{"date":199,"score":152,"percentile":194},"2025-11-26",{"date":201,"score":152,"percentile":202},"2025-11-27",0.8901,{"date":204,"score":152,"percentile":205},"2025-11-28",0.89003,{"date":207,"score":152,"percentile":208},"2025-11-29",0.89074,{"date":210,"score":152,"percentile":211},"2025-11-30",0.89071,{"date":213,"score":152,"percentile":214},"2025-12-01",0.8913,{"date":216,"score":152,"percentile":217},"2025-12-02",0.89132,{"date":219,"score":152,"percentile":214},"2025-12-03",{"date":221,"score":152,"percentile":211},"2025-12-04",{"date":223,"score":152,"percentile":224},"2025-12-05",0.8907,{"date":226,"score":152,"percentile":227},"2025-12-06",0.89069,{"date":229,"score":152,"percentile":230},"2025-12-07",0.89068,{"date":232,"score":152,"percentile":230},"2025-12-08",{"date":234,"score":152,"percentile":235},"2025-12-09",0.89075,{"date":237,"score":152,"percentile":238},"2025-12-10",0.89091,{"date":240,"score":152,"percentile":241},"2025-12-11",0.89093,{"date":243,"score":152,"percentile":244},"2025-12-12",0.89095,{"date":246,"score":152,"percentile":247},"2025-12-13",0.89096,{"date":249,"score":152,"percentile":250},"2025-12-14",0.89097,{"date":252,"score":152,"percentile":253},"2025-12-15",0.89099,{"date":255,"score":152,"percentile":253},"2025-12-16",{"date":257,"score":152,"percentile":258},"2025-12-17",0.89104,{"date":260,"score":152,"percentile":261},"2025-12-18",0.89112,{"date":263,"score":152,"percentile":264},"2025-12-19",0.89114,{"date":266,"score":152,"percentile":261},"2025-12-20",{"date":268,"score":152,"percentile":269},"2025-12-21",0.8912,{"date":271,"score":152,"percentile":269},"2025-12-22",{"date":273,"score":152,"percentile":274},"2025-12-23",0.89121,{"date":276,"score":152,"percentile":277},"2025-12-24",0.89129,{"date":279,"score":152,"percentile":280},"2025-12-25",0.8914,{"date":282,"score":152,"percentile":283},"2025-12-26",0.89138,{"date":285,"score":152,"percentile":286},"2025-12-27",0.89187,{"date":288,"score":152,"percentile":289},"2025-12-28",0.89131,{"date":291,"score":152,"percentile":292},"2025-12-29",0.89128,{"date":294,"score":152,"percentile":295},"2025-12-30",0.89135,{"date":297,"score":152,"percentile":298},"2025-12-31",0.89142,{"date":300,"score":152,"percentile":301},"2026-01-01",0.8921,{"date":303,"score":152,"percentile":304},"2026-01-02",0.89205,{"date":306,"score":152,"percentile":307},"2026-01-03",0.89203,{"date":309,"score":152,"percentile":310},"2026-01-04",0.89143,{"date":312,"score":313,"percentile":314},"2026-01-05",0.0471,0.89024,{"date":316,"score":313,"percentile":317},"2026-01-06",0.89029,{"date":319,"score":313,"percentile":320},"2026-01-07",0.89031,{"date":322,"score":313,"percentile":323},"2026-01-08",0.89037,{"date":325,"score":313,"percentile":326},"2026-01-09",0.89043,{"date":328,"score":313,"percentile":329},"2026-01-10",0.89044,{"date":331,"score":313,"percentile":323},"2026-01-11",{"date":333,"score":313,"percentile":334},"2026-01-12",0.89034,{"date":336,"score":313,"percentile":320},"2026-01-13",{"date":338,"score":313,"percentile":329},"2026-01-14",{"date":340,"score":313,"percentile":329},"2026-01-15",{"date":342,"score":313,"percentile":343},"2026-01-16",0.8905,{"date":345,"score":313,"percentile":346},"2026-01-17",0.89053,{"date":348,"score":313,"percentile":343},"2026-01-18",{"date":350,"score":313,"percentile":351},"2026-01-19",0.89045,{"date":353,"score":313,"percentile":354},"2026-01-20",0.89047,{"date":356,"score":313,"percentile":346},"2026-01-21",{"date":358,"score":313,"percentile":359},"2026-01-22",0.89057,{"date":361,"score":313,"percentile":211},"2026-01-23",{"date":363,"score":313,"percentile":364},"2026-01-24",0.89078,{"date":366,"score":313,"percentile":367},"2026-01-25",0.8908,{"date":369,"score":313,"percentile":370},"2026-01-26",0.89081,{"date":372,"score":313,"percentile":367},"2026-01-27",{"date":374,"score":313,"percentile":375},"2026-01-28",0.89083,{"date":377,"score":378,"percentile":379},"2026-01-29",0.04543,0.88886,{"date":381,"score":378,"percentile":382},"2026-01-30",0.88887,{"date":384,"score":378,"percentile":385},"2026-01-31",0.88882,{"date":387,"score":378,"percentile":388},"2026-02-01",0.88946,[390],{"source":59,"cvss_v2_0":391,"cvss_v3_0":396,"cvss_v3_1":9,"cvss_v4_0":9},{"baseScore":392,"baseSeverity":9,"vectorString":393,"impactScore":394,"exploitabilityScore":395},5,"AV:N/AC:L/Au:N/C:P/I:N/A:N",2.9,10,{"baseScore":57,"baseSeverity":397,"vectorString":60,"impactScore":398,"exploitabilityScore":395},"HIGH",6,[400],{"ecosystem":9,"name":401,"vendor":401,"product":401,"cpe_part":402,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":403},"sqlite","a",[404],{"version":405,"is_range":53,"range_type":406,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"3.27.2","cpe"]