2019 CVE Vulnerabilities

17,619 CVEs published in 2019.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2019-25090MEDIUM6.1A vulnerability was found in FreePBX arimanager up to 13.0.5.3 and classified as problematic. Affected by this issue is ...
CVE-2019-25088MEDIUM5.4A vulnerability was found in ytti Oxidized Web. It has been classified as problematic. Affected is an unknown function o...
CVE-2019-25086MEDIUM5.4A vulnerability was found in IET-OU Open Media Player up to 1.5.0. It has been declared as problematic. This vulnerabili...
CVE-2019-19030MEDIUM5.3Cloud Native Computing Foundation Harbor before 1.10.3 and 2.x before 2.0.1 allows resource enumeration because unauthen...
CVE-2019-18177MEDIUM6.5In certain Citrix products, information disclosure can be achieved by an authenticated VPN user when there is a configur...
CVE-2019-14802MEDIUM5.3HashiCorp Nomad 0.5.0 through 0.9.4 (fixed in 0.9.5) reveals unintended environment variables to the rendering task duri...
CVE-2019-13988MEDIUM6.5Sierra Wireless MGOS before 3.15.2 and 4.x before 4.3 allows attackers to read log files via a Direct Request (aka Force...
CVE-2019-9011MEDIUM5.3In Pilz PMC programming tool 3.x before 3.5.17 (based on CODESYS Development System), an attacker can identify valid use...
CVE-2019-25084MEDIUM6.1A vulnerability, which was classified as problematic, has been found in Hide Files on GitHub up to 2.x. This issue affec...
CVE-2019-18265MEDIUM5.4Digital Alert Systems’ DASDEC software prior to version 4.1 contains a cross-site scripting (XSS) vulnerability that all...
CVE-2019-5641MEDIUM5.3Rapid7 InsightVM suffers from an information exposure issue whereby, when the user's session has ended due to inactivity...
CVE-2019-25076MEDIUM5.8The TSS (Tuple Space Search) algorithm in Open vSwitch 2.x through 2.17.2 and 3.0.0 allows remote attackers to cause a d...
CVE-2019-25075MEDIUM6.1HTML injection combined with path traversal in the Email service in Gravitee API Management before 1.25.3 allows anonymo...
CVE-2019-10800MEDIUM6.5This affects the package codecov before 2.0.16. The vulnerability occurs due to not sanitizing gcov arguments before bei...
CVE-2019-25070MEDIUM6.1** UNSUPPORTED WHEN ASSIGNED ** A vulnerability was found in WolfCMS up to 0.8.3.1. It has been rated as problematic. Th...
CVE-2019-25060MEDIUM5.3The WPGraphQL WordPress plugin before 0.3.5 doesn't properly restrict access to information about other users' roles on ...
CVE-2019-4351MEDIUM4.6IBM Maximo Anywhere 7.6.4.0 applications could disclose sensitive information to a user with physical access to the devi...
CVE-2019-4291MEDIUM6.5IBM Maximo Anywhere 7.6.4.0 could allow an attacker to reverse engineer the application due to the lack of binary protec...
CVE-2019-25056MEDIUM5.3In Bromite through 78.0.3904.130, there are adblock rules in the release APK; therefore, probing which resources are blo...
CVE-2019-8702MEDIUM5.5This issue was addressed with a new entitlement. This issue is fixed in macOS Mojave 10.14.6, Security Update 2019-004 H...
CVE-2019-8921MEDIUM6.5An issue was discovered in bluetoothd in BlueZ through 5.48. The vulnerability lies in the handling of a SVC_ATTR_REQ by...
CVE-2019-5640MEDIUM5.3Rapid7 Nexpose versions prior to 6.6.114 suffer from an information exposure issue whereby, when the user's session has ...
CVE-2019-18914MEDIUM6.1A potential security vulnerability has been identified for certain HP printers and MFPs that would allow redirection pag...
CVE-2019-16651MEDIUM5.3An issue was discovered on Virgin Media Super Hub 3 (based on ARRIS TG2492) devices. Because their SNMP commands have in...
CVE-2019-10941MEDIUM5.3A vulnerability has been identified in SINEMA Server (All versions < V14 SP3). Missing authentication for functionality ...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now