2019 CVE Vulnerabilities

17,620 CVEs published in 2019.

CVE IDSeverityCVSSDescription
CVE-2019-12430HIGH8.8An issue was discovered in GitLab Community and Enterprise Edition 11.11. A specially crafted payload would allow an aut...
CVE-2019-12429MEDIUM6.5An issue was discovered in GitLab Community and Enterprise Edition 11.9 through 11.11. Unprivileged users were able to a...
CVE-2019-12428CRITICAL9.8An issue was discovered in GitLab Community and Enterprise Edition 6.8 through 11.11. Users could bypass the mandatory e...
CVE-2019-11345MEDIUM6.1Citrix SD-WAN Center 10.2.x before 10.2.1 and NetScaler SD-WAN Center 10.0.x before 10.0.7 allow XSS.
CVE-2019-9859HIGH8.8Vesta Control Panel (VestaCP) 0.9.7 through 0.9.8-23 is vulnerable to an authenticated command execution that can result...
CVE-2019-11686MEDIUM5.5Western Digital SanDisk X300, X300s, X400, and X600 devices: A vulnerability in the wear-leveling algorithm of the drive...
CVE-2019-10706MEDIUM6.3Western Digital SanDisk SanDisk X300, X300s, X400, and X600 devices: The firmware update authentication method relies on...
CVE-2019-10065MEDIUM4.3An issue was discovered in Open Ticket Request System (OTRS) 7.0 through 7.0.6. An attacker who is logged into OTRS as a...
CVE-2019-4608MEDIUM5.4IBM Tivoli Workload Scheduler 9.3 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitr...
CVE-2019-19614HIGH7.5An issue was discovered in Halvotec RAQuest 10.23.10801.0. The login page is vulnerable to wildcard injection, allowing ...
CVE-2019-20226Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n...
CVE-2019-10806MEDIUM4.3vega-util prior to 1.13.1 allows manipulation of object prototype. The 'vega.mergeConfig' method within vega-util could ...
CVE-2019-20504CRITICAL9.8service/krashrpt.php in Quest KACE K1000 Systems Management Appliance before 6.4 SP3 (6.4.120822) allows a remote attack...
CVE-2019-14508Rejected reason: Unused CVE for 2019
CVE-2019-14507Rejected reason: Unused CVE for 2019
CVE-2019-14506Rejected reason: Unused CVE for 2019
CVE-2019-14505Rejected reason: Unused CVE for 2019
CVE-2019-14504Rejected reason: Unused CVE for 2019
CVE-2019-14503Rejected reason: Unused CVE for 2019
CVE-2019-14502Rejected reason: Unused CVE for 2019
CVE-2019-14501Rejected reason: Unused CVE for 2019
CVE-2019-14500Rejected reason: Unused CVE for 2019
CVE-2019-14499Rejected reason: Unused CVE for 2019
CVE-2019-19773MEDIUM5.4Various Lexmark products have stored XSS in the embedded web server used in older generation Lexmark devices. Affected p...
CVE-2019-19772MEDIUM5.4Various Lexmark products have reflected XSS in the embedded web server used in older generation Lexmark devices. Affecte...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now