2019 CVE Vulnerabilities

17,618 CVEs published in 2019.

CVE IDSeverityCVSSDescription
CVE-2019-25763CRITICAL9.3WordPress Ultimate Addons for Beaver Builder 1.2.4.1 contains an authentication bypass vulnerability that allows attacke...
CVE-2019-25762HIGH8.7Joomla! Component JoomProject 1.1.3.2 contains an information disclosure vulnerability that allows unauthenticated attac...
CVE-2019-25761HIGH7.1Joomla! Component JoomCRM 1.1.1 contains an SQL injection vulnerability that allows authenticated attackers to execute a...
CVE-2019-25760MEDIUM6.9Joomla! Component Easy Shop 1.2.3 contains a local file inclusion vulnerability that allows unauthenticated attackers to...
CVE-2019-25759HIGH7.1Joomla! Component vBizz 1.0.7 contains an SQL injection vulnerability that allows authenticated attackers to execute arb...
CVE-2019-25758HIGH8.7Joomla! Component vBizz 1.0.7 contains an unrestricted file upload vulnerability that allows authenticated attackers to ...
CVE-2019-25757HIGH7.1Joomla vWishlist 1.0.1 contains an SQL injection vulnerability that allows authenticated attackers to execute arbitrary ...
CVE-2019-25756HIGH8.8Joomla! Component vAccount 2.0.2 contains an SQL injection vulnerability that allows unauthenticated attackers to execut...
CVE-2019-25755HIGH8.8Joomla Component vReview 1.9.11 contains an SQL injection vulnerability that allows unauthenticated attackers to execute...
CVE-2019-25754HIGH8.8Joomla Component vRestaurant 1.9.4 contains an SQL injection vulnerability that allows unauthenticated attackers to exec...
CVE-2019-25753HIGH8.8Joomla! Component VMap 1.9.6 contains an SQL injection vulnerability that allows unauthenticated attackers to execute ar...
CVE-2019-25752HIGH8.8Joomla! Component J-BusinessDirectory 4.9.7 contains an SQL injection vulnerability that allows unauthenticated attacker...
CVE-2019-25751HIGH8.8Joomla Component J-ClassifiedsManager 3.0.5 contains an SQL injection vulnerability that allows unauthenticated attacker...
CVE-2019-25750HIGH8.8Joomla Component J-MultipleHotelReservation 6.0.7 contains an SQL injection vulnerability that allows unauthenticated at...
CVE-2019-25749HIGH7.1Joomla J-CruisePortal 6.0.4 contains an SQL injection vulnerability that allows authenticated attackers to execute arbit...
CVE-2019-25748HIGH8.8Joomla JHotelReservation 6.0.7 contains an SQL injection vulnerability that allows unauthenticated attackers to execute ...
CVE-2019-25747HIGH8.5Network Inventory Advisor 5.0.26.0 installs the niaservice service with an unquoted binary path that allows local attack...
CVE-2019-25746HIGH7.1WordPress Sliced Invoices 3.8.2 contains an authenticated SQL injection vulnerability that allows authenticated attacker...
CVE-2019-25745HIGH8.8WordPress Plugin Google Review Slider 6.1 contains a time-based blind SQL injection vulnerability that allows unauthenti...
CVE-2019-25744MEDIUM5.1WordPress Popup Builder 3.49 contains a persistent cross-site scripting vulnerability that allows authenticated attacker...
CVE-2019-25743MEDIUM5.1WordPress Soliloquy Lite 2.5.6 contains a persistent cross-site scripting vulnerability that allows authenticated attack...
CVE-2019-25742MEDIUM5.1WordPress Theme Zoner Real Estate 4.1.1 contains a persistent cross-site scripting vulnerability that allows authenticat...
CVE-2019-25741CRITICAL9.3Mobatek MobaXterm 12.1 contains a structured exception handling (SEH) based buffer overflow vulnerability in the usernam...
CVE-2019-25740HIGH7.1Joomla com_jsjobs 1.2.6 contains an arbitrary file deletion vulnerability that allows authenticated attackers to delete ...
CVE-2019-25739MEDIUM5.1GigToDo 1.3 contains a persistent cross-site scripting vulnerability that allows authenticated attackers to inject malic...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now