2019 CVE Vulnerabilities

17,619 CVEs published in 2019.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2019-16931MEDIUM6.1A stored XSS vulnerability in the Visualizer plugin 3.3.0 for WordPress allows an unauthenticated attacker to execute ar...
CVE-2019-15165MEDIUM5.3sf-pcapng.c in libpcap before 1.9.1 does not properly validate the PHB header length before allocating memory.
CVE-2019-15164MEDIUM5.3rpcapd/daemon.c in libpcap before 1.9.1 allows SSRF because a URL may be provided as a capture source.
CVE-2019-15162MEDIUM5.3rpcapd/daemon.c in libpcap before 1.9.1 on non-Windows platforms provides details about why authentication failed, which...
CVE-2019-15161MEDIUM5.3rpcapd/daemon.c in libpcap before 1.9.1 mishandles certain length values because of reuse of a variable. This may open u...
CVE-2019-4441MEDIUM5.3IBM WebSphere Application Server 7.0, 8.0, 8.5, 9.0, and Liberty could allow a remote attacker to obtain sensitive infor...
CVE-2019-15809MEDIUM4.7Smart cards from the Athena SCS manufacturer, based on the Atmel Toolbox 00.03.11.05 and the AT90SC chip, contain a timi...
CVE-2019-13629MEDIUM5.9MatrixSSL 4.2.1 and earlier contains a timing side channel in ECDSA signature generation. This allows a local or a remot...
CVE-2019-13628MEDIUM4.7wolfSSL and wolfCrypt 4.0.0 and earlier (when configured without --enable-fpecc, --enable-sp, or --enable-sp-math) conta...
CVE-2019-11651MEDIUM6.1Reflected XSS on Micro Focus Enterprise Developer and Enterprise Server, all versions prior to version 3.0 Patch Update ...
CVE-2019-1915MEDIUM6.5A vulnerability in the web-based interface of Cisco Unified Communications Manager, Cisco Unified Communications Manager...
CVE-2019-16171MEDIUM6.1In JetBrains YouTrack through 2019.2.56594, stored XSS was found on the issue page.
CVE-2019-15272MEDIUM6.5A vulnerability in the web-based interface of Cisco Unified Communications Manager and Cisco Unified Communications Mana...
CVE-2019-15259MEDIUM6.1A vulnerability in Cisco Unified Contact Center Express (UCCX) Software could allow an unauthenticated, remote attacker ...
CVE-2019-15037MEDIUM6.1An issue was discovered in JetBrains TeamCity 2018.2.4. It had several XSS vulnerabilities on the settings pages. The is...
CVE-2019-14959MEDIUM5.9JetBrains Toolbox before 1.15.5605 was resolving an internal URL via a cleartext http connection.
CVE-2019-14956MEDIUM4.3JetBrains YouTrack before 2019.2.53938 was using incorrect settings, allowing a user without necessary permissions to ge...
CVE-2019-12737MEDIUM5.3UserHashedTableAuth in JetBrains Ktor framework before 1.2.0-rc uses a One-Way Hash with a Predictable Salt for storing ...
CVE-2019-12716MEDIUM6.1A vulnerability in the web-based interface of Cisco Unified Communications Manager and Cisco Unified Communications Mana...
CVE-2019-12715MEDIUM6.1A vulnerability in the web-based interface of Cisco Unified Communications Manager and Cisco Unified Communications Mana...
CVE-2019-12714MEDIUM6.5A vulnerability in the web-based management interface of Cisco IC3000 Industrial Compute Gateway could allow an authenti...
CVE-2019-12713MEDIUM6.1A vulnerability in the web-based management interface of Cisco Prime Infrastructure could allow an unauthenticated, remo...
CVE-2019-12712MEDIUM6.1A vulnerability in the web-based management interface of Cisco Prime Infrastructure could allow an unauthenticated, remo...
CVE-2019-12711MEDIUM6.5A vulnerability in the web-based interface of Cisco Unified Communications Manager and Cisco Unified Communications Mana...
CVE-2019-12710MEDIUM4.9A vulnerability in the web-based interface of Cisco Unified Communications Manager and Cisco Unified Communications Mana...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now