2019 CVE Vulnerabilities
17,619 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-1010054 | — | — | 2.2% | Jul 18, 2019 | Dolibarr 7.0.0 is affected by: Cross Site Request Forgery (CSRF). The impact is: allow malitious html to change user pas... |
| CVE-2019-13647 | — | — | 0.8% | Jul 18, 2019 | Firefly III before 4.7.17.3 is vulnerable to stored XSS due to lack of filtration of user-supplied data in image file co... |
| CVE-2019-13646 | — | — | 0.8% | Jul 18, 2019 | Firefly III before 4.7.17.3 is vulnerable to reflected XSS due to lack of filtration of user-supplied data in a search q... |
| CVE-2019-13645 | — | — | 0.8% | Jul 18, 2019 | Firefly III before 4.7.17.3 is vulnerable to stored XSS due to lack of filtration of user-supplied data in image file na... |
| CVE-2019-13643 | — | — | 1.1% | Jul 18, 2019 | Stored XSS in EspoCRM before 5.6.4 allows remote attackers to execute malicious JavaScript and inject arbitrary source c... |
| CVE-2019-5222 | — | — | 0.6% | Jul 17, 2019 | There is an information disclosure vulnerability on Secure Input of certain Huawei smartphones in Versions earlier than ... |
| CVE-2019-13640 | — | — | 7.9% | Jul 17, 2019 | In qBittorrent before 4.1.7, the function Application::runExternalProgram() located in app/application.cpp allows comman... |
| CVE-2019-8932 | — | — | 1.2% | Jul 17, 2019 | Redbrick Shift through 3.4.3 allows an attacker to extract authentication tokens of services (such as Gmail, Outlook, et... |
| CVE-2019-8931 | — | — | 1.1% | Jul 17, 2019 | Redbrick Shift through 3.4.3 allows an attacker to extract emails of services (such as Gmail, Outlook, etc.) used in the... |
| CVE-2019-3973 | — | — | 0.4% | Jul 17, 2019 | Comodo Antivirus versions 11.0.0.6582 and below are vulnerable to Denial of Service affecting CmdGuard.sys via its filte... |
| CVE-2019-3972 | — | — | 0.4% | Jul 17, 2019 | Comodo Antivirus versions 12.0.0.6810 and below are vulnerable to Denial of Service affecting CmdAgent.exe via an unprot... |
| CVE-2019-3971 | — | — | 0.4% | Jul 17, 2019 | Comodo Antivirus versions up to 12.0.0.6810 are vulnerable to a local Denial of Service affecting CmdVirth.exe via its L... |
| CVE-2019-3970 | — | — | 0.4% | Jul 17, 2019 | Comodo Antivirus versions up to 12.0.0.6810 are vulnerable to Arbitrary File Write due to Cavwp.exe handling of Comodo's... |
| CVE-2019-3969 | — | — | 0.6% | Jul 17, 2019 | Comodo Antivirus versions up to 12.0.0.6810 are vulnerable to Local Privilege Escalation due to CmdAgent's handling of C... |
| CVE-2019-13637 | — | — | 2.6% | Jul 17, 2019 | In LogMeIn join.me before 3.16.0.5505, an attacker could execute arbitrary commands on a targeted system. This vulnerabi... |
| CVE-2019-13636 | — | — | 3.9% | Jul 17, 2019 | In GNU patch through 2.7.6, the following of symlinks is mishandled in certain cases other than input files. This affect... |
| CVE-2019-12914 | — | — | 1.2% | Jul 17, 2019 | Redbrick Shift through 3.4.3 allows an attacker to extract authentication tokens of services (such as Gmail, Outlook, et... |
| CVE-2019-12913 | — | — | 0.4% | Jul 17, 2019 | Redbrick Shift through 3.4.3 allows an attacker to extract emails of services (such as Gmail, Outlook, etc.) used in the... |
| CVE-2019-12912 | — | — | 0.4% | Jul 17, 2019 | Redbrick Shift through 3.4.3 allows an attacker to extract emails of services (such as Gmail, Outlook, etc.) used in the... |
| CVE-2019-12911 | — | — | 1.2% | Jul 17, 2019 | Redbrick Shift through 3.4.3 allows an attacker to extract authentication tokens of services (such as Gmail, Outlook, et... |
| CVE-2019-11772 | — | — | 2.1% | Jul 17, 2019 | In Eclipse OpenJ9 prior to 0.15, the String.getBytes(int, int, byte[], int) method does not verify that the provided byt... |
| CVE-2019-1010287 | — | — | 4.3% | Jul 17, 2019 | Timesheet Next Gen 1.5.3 and earlier is affected by: Cross Site Scripting (XSS). The impact is: Allows an attacker to ex... |
| CVE-2019-1010275 | — | — | 1.4% | Jul 17, 2019 | helm Before 2.7.2 is affected by: CWE-295: Improper Certificate Validation. The impact is: Unauthorized clients could co... |
| CVE-2019-1010263 | — | — | 1.3% | Jul 17, 2019 | Perl Crypt::JWT prior to 0.023 is affected by: Incorrect Access Control. The impact is: allow attackers to bypass authen... |
| CVE-2019-13577 | — | — | 24.4% | Jul 17, 2019 | SnmpAdm.exe in MAPLE WBT SNMP Administrator v2.0.195.15 has an Unauthenticated Remote Buffer Overflow via a long string ... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now