2019 CVE Vulnerabilities
17,619 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-1010252 | — | — | 1.1% | Jul 18, 2019 | The Linux Foundation ONOS 2.0.0 and earlier is affected by: Poor Input-validation. The impact is: A network administrato... |
| CVE-2019-1010251 | — | — | 2.1% | Jul 18, 2019 | Open Information Security Foundation Suricata prior to version 4.1.2 is affected by: Denial of Service - DNS detection b... |
| CVE-2019-1010250 | — | — | 1.1% | Jul 18, 2019 | The Linux Foundation ONOS 2.0.0 and earlier is affected by: Poor Input-validation. The impact is: A network administrato... |
| CVE-2019-1010249 | — | — | 1.1% | Jul 18, 2019 | The Linux Foundation ONOS 2.0.0 and earlier is affected by: Integer Overflow. The impact is: A network administrator (or... |
| CVE-2019-1010248 | — | — | 1.4% | Jul 18, 2019 | Synetics GmbH I-doit 1.12 and earlier is affected by: SQL Injection. The impact is: Unauthenticated mysql database acces... |
| CVE-2019-13951 | — | — | 1.7% | Jul 18, 2019 | The set_ipv4() function in zscan_rfc1035.rl in gdnsd 3.x before 3.2.1 has a stack-based buffer overflow via a long and m... |
| CVE-2019-11230 | — | — | 0.5% | Jul 18, 2019 | In Avast Antivirus before 19.4, a local administrator can trick the product into renaming arbitrary files by replacing t... |
| CVE-2019-1010268 | — | — | 5.7% | Jul 18, 2019 | Ladon since 0.6.1 (since ebef0aae48af78c159b6fce81bc6f5e7e0ddb059) is affected by: XML External Entity (XXE). The impact... |
| CVE-2019-1010262 | — | — | — | Jul 18, 2019 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2019-1010142. Reason: This candidate is a reservation... |
| CVE-2019-1010261 | — | — | 0.8% | Jul 18, 2019 | Gitea 1.7.0 and earlier is affected by: Cross Site Scripting (XSS). The impact is: Attacker is able to have victim execu... |
| CVE-2019-1010259 | — | — | 1.9% | Jul 18, 2019 | SaltStack Salt 2018.3, 2019.2 is affected by: SQL Injection. The impact is: An attacker could escalate privileges on MyS... |
| CVE-2019-9231 | — | — | 0.7% | Jul 18, 2019 | An issue was discovered on AudioCodes Mediant 500L-MSBR, 500-MBSR, M800B-MSBR and 800C-MSBR devices with firmware versio... |
| CVE-2019-13950 | — | — | 0.7% | Jul 18, 2019 | index.php?c=admin&a=index in SyGuestBook A5 Version 1.2 has stored XSS via a reply to a comment. |
| CVE-2019-13949 | — | — | 0.7% | Jul 18, 2019 | SyGuestBook A5 Version 1.2 has no CSRF protection mechanism, as demonstrated by CSRF for an index.php?c=Administrator&a=... |
| CVE-2019-13948 | — | — | 0.7% | Jul 18, 2019 | SyGuestBook A5 Version 1.2 allows stored XSS because the isValidData function in include/functions.php does not properly... |
| CVE-2019-13509 | — | — | 3.7% | Jul 18, 2019 | In Docker CE and EE before 18.09.8 (as well as Docker EE before 17.06.2-ee-23 and 18.x before 18.03.1-ee-10), Docker Eng... |
| CVE-2019-1010104 | — | — | 1.8% | Jul 18, 2019 | TechyTalk Quick Chat WordPress Plugin All up to the latest is affected by: SQL Injection. The impact is: Access to the d... |
| CVE-2019-9230 | — | — | 1.0% | Jul 18, 2019 | An issue was discovered on AudioCodes Mediant 500L-MSBR, 500-MBSR, M800B-MSBR and 800C-MSBR devices with firmware versio... |
| CVE-2019-13915 | — | — | 2.6% | Jul 18, 2019 | b3log Wide before 1.6.0 allows three types of attacks to access arbitrary files. First, the attacker can write code in t... |
| CVE-2019-13607 | — | — | 0.8% | Jul 18, 2019 | The Opera Mini application through 16.0.14 for iOS has a UXSS vulnerability that can be triggered by performing navigati... |
| CVE-2019-1010073 | — | — | — | Jul 18, 2019 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2018-10238. Reason: This issue was MERGED into CVE-20... |
| CVE-2019-1010066 | — | — | 1.3% | Jul 18, 2019 | Lawrence Livermore National Laboratory msr-safe v1.1.0 is affected by: Incorrect Access Control. The impact is: An attac... |
| CVE-2019-1010096 | — | — | 0.7% | Jul 18, 2019 | DomainMOD v4.10.0 is affected by: Cross Site Request Forgery (CSRF). The impact is: There is a CSRF vulnerability that c... |
| CVE-2019-1010095 | — | — | 0.7% | Jul 18, 2019 | DomainMOD v4.10.0 is affected by: Cross Site Request Forgery (CSRF). The impact is: There is a CSRF vulnerability that c... |
| CVE-2019-1010094 | — | — | 0.7% | Jul 18, 2019 | domainmod v4.10.0 is affected by: Cross Site Request Forgery (CSRF). The impact is: There is a CSRF vulnerability that c... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now