2019 CVE Vulnerabilities

17,619 CVEs published in 2019.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2019-25763CRITICAL9.8WordPress Ultimate Addons for Beaver Builder 1.2.4.1 contains an authentication bypass vulnerability that allows attacke...
CVE-2019-25741CRITICAL9.8Mobatek MobaXterm 12.1 contains a structured exception handling (SEH) based buffer overflow vulnerability in the usernam...
CVE-2019-25738CRITICAL9.8WordPress Hybrid Composer 1.4.6 contains an unauthenticated settings change vulnerability that allows unauthenticated at...
CVE-2019-25729CRITICAL9.8PDF Signer 3.0 contains a server-side template injection vulnerability that allows unauthenticated attackers to execute ...
CVE-2019-25727CRITICAL9.8WordPress Plugin ad manager wd 1.0.11 contains an arbitrary file download vulnerability that allows unauthenticated atta...
CVE-2019-25714CRITICAL9.3Seeyon OA A8 contains an unauthenticated arbitrary file write vulnerability in the /seeyon/htmlofficeservlet endpoint th...
CVE-2019-25710CRITICAL9.1Dolibarr ERP-CRM 8.0.4 contains an SQL injection vulnerability in the rowid parameter of the admin dict.php endpoint tha...
CVE-2019-25709CRITICAL9.8CF Image Hosting Script 1.6.5 allows unauthenticated attackers to download and decode the application database by access...
CVE-2019-25697CRITICAL9.8CMSsite 1.0 contains an SQL injection vulnerability that allows unauthenticated attackers to manipulate database queries...
CVE-2019-25704CRITICAL9.1Kados R10 GreenBee contains an SQL injection vulnerability that allows attackers to manipulate database queries by injec...
CVE-2019-25702CRITICAL9.1Kados R10 GreenBee contains an SQL injection vulnerability that allows attackers to manipulate database queries by injec...
CVE-2019-25700CRITICAL9.1Kados R10 GreenBee contains an SQL injection vulnerability that allows attackers to manipulate database queries by injec...
CVE-2019-25698CRITICAL9.1Kados R10 GreenBee contains an SQL injection vulnerability that allows attackers to manipulate database queries by injec...
CVE-2019-25696CRITICAL9.1Kados R10 GreenBee contains an SQL injection vulnerability that allows attackers to manipulate database queries by injec...
CVE-2019-25694CRITICAL9.1Kados R10 GreenBee contains an SQL injection vulnerability that allows unauthenticated attackers to manipulate database ...
CVE-2019-25692CRITICAL9.1Kados R10 GreenBee contains an SQL injection vulnerability that allows attackers to manipulate database queries by injec...
CVE-2019-25688CRITICAL9.1Kados R10 GreenBee contains an SQL injection vulnerability that allows unauthenticated attackers to manipulate database ...
CVE-2019-25687CRITICAL9.8Pegasus CMS 1.0 contains a remote code execution vulnerability in the extra_fields.php plugin that allows unauthenticate...
CVE-2019-25680CRITICAL9.8Advance Gift Shop Pro Script 2.0.3 contains an SQL injection vulnerability that allows unauthenticated attackers to exec...
CVE-2019-25676CRITICAL9.8Ask Expert Script 3.0.5 contains cross-site scripting and SQL injection vulnerabilities that allow unauthenticated attac...
CVE-2019-25674CRITICAL9.8CMSsite 1.0 contains an SQL injection vulnerability that allows unauthenticated attackers to manipulate database queries...
CVE-2019-25651CRITICAL9Ubiquiti UniFi Network Controller prior to 5.10.12 (excluding 5.6.42), UAP FW prior to 4.0.6, UAP-AC, UAP-AC v2, and UAP...
CVE-2019-25646CRITICAL9.8Tabs Mail Carrier 2.5.1 contains a buffer overflow vulnerability in the MAIL FROM SMTP command that allows remote attack...
CVE-2019-25628CRITICAL9.8Download Accelerator Plus DAP 10.0.6.0 contains a structured exception handler buffer overflow vulnerability that allows...
CVE-2019-25614CRITICAL9.8Free Float FTP 1.0 contains a buffer overflow vulnerability in the STOR command handler that allows remote attackers to ...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now