2019 CVE Vulnerabilities
17,619 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-9753 | LOW | 3.5 | 0.9% | Jun 3, 2019 | An issue was discovered in Open Ticket Request System (OTRS) 7.x before 7.0.5. An attacker who is logged into OTRS as an... |
| CVE-2019-11884 | LOW | 3.3 | 0.5% | May 10, 2019 | The do_hidp_sock_ioctl function in net/bluetooth/hidp/sock.c in the Linux kernel before 5.0.15 allows a local user to ob... |
| CVE-2019-4207 | LOW | 3.3 | 0.3% | May 7, 2019 | IBM TRIRIGA Application Platform 3.5.3 and 3.6.0 may disclose sensitive information only available to a local user that ... |
| CVE-2019-3797 | LOW | 3.5 | 1.1% | May 6, 2019 | This affects Spring Data JPA in versions up to and including 2.1.5, 2.0.13 and 1.11.19. Derived queries using any of the... |
| CVE-2019-4146 | LOW | 3.1 | 1.1% | Apr 25, 2019 | IBM Sterling B2B Integrator Standard Edition 6.0.0.0 and 6.0.0.1 could allow an authenticated user to obtain sensitive d... |
| CVE-2019-3868 | LOW | 3.8 | 1.0% | Apr 24, 2019 | Keycloak up to version 6.0.0 allows the end user token (access or id token JWT) to be used as the session cookie for bro... |
| CVE-2019-3885 | LOW | 3.3 | 2.0% | Apr 18, 2019 | A use-after-free flaw was found in pacemaker up to and including version 2.0.1 which could result in certain sensitive i... |
| CVE-2019-9495 | LOW | 3.7 | 3.4% | Apr 17, 2019 | The implementations of EAP-PWD in hostapd and wpa_supplicant are vulnerable to side-channel attacks as a result of cache... |
| CVE-2019-1573 | LOW | 2.5 | 0.3% | Apr 9, 2019 | GlobalProtect Agent 4.1.0 for Windows and GlobalProtect Agent 4.1.10 and earlier for macOS may allow a local authenticat... |
| CVE-2019-9942 | LOW | 3.7 | 1.4% | Mar 23, 2019 | A sandbox information disclosure exists in Twig before 1.38.0 and 2.x before 2.7.0 because, under some circumstances, it... |
| CVE-2019-8934 | LOW | 3.3 | 0.6% | Mar 21, 2019 | hw/ppc/spapr.c in QEMU through 3.1.0 allows Information Exposure because the hypervisor shares the /proc/device-tree/sys... |
| CVE-2019-1667 | LOW | 3.3 | 0.2% | Feb 21, 2019 | A vulnerability in the Graphite interface of Cisco HyperFlex software could allow an authenticated, local attacker to wr... |
| CVE-2019-3807 | LOW | 3.7 | 0.4% | Jan 29, 2019 | An issue has been found in PowerDNS Recursor versions 4.1.x before 4.1.9 where records in the answer section of response... |
| CVE-2019-3815 | LOW | 3.3 | 0.4% | Jan 28, 2019 | A memory leak was discovered in the backport of fixes for CVE-2018-16864 in Red Hat Enterprise Linux. Function dispatch_... |
| CVE-2019-2513 | LOW | 2.5 | 0.4% | Jan 16, 2019 | Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Shell). Supported versions that are affected ... |
| CVE-2019-2449 | LOW | 3.1 | 2.7% | Jan 16, 2019 | Vulnerability in the Java SE component of Oracle Java SE (subcomponent: Deployment). The supported version that is affec... |
| CVE-2019-2426 | LOW | 3.7 | 2.6% | Jan 16, 2019 | Vulnerability in the Java SE component of Oracle Java SE (subcomponent: Networking). Supported versions that are affecte... |
| CVE-2019-2422 | LOW | 3.1 | 3.5% | Jan 16, 2019 | Vulnerability in the Java SE component of Oracle Java SE (subcomponent: Libraries). Supported versions that are affected... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now