2019 CVE Vulnerabilities
17,619 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-9827 | — | — | 26.8% | Jul 3, 2019 | Hawt Hawtio through 2.5.0 is vulnerable to SSRF, allowing a remote attacker to trigger an HTTP request from an affected ... |
| CVE-2019-13074 | — | — | 2.0% | Jul 3, 2019 | A vulnerability in the FTP daemon on MikroTik routers through 6.44.3 could allow remote attackers to exhaust all availab... |
| CVE-2019-13207 | — | — | 2.0% | Jul 3, 2019 | nsd-checkzone in NLnet Labs NSD 4.2.0 has a Stack-based Buffer Overflow in the dname_concatenate() function in dname.c. |
| CVE-2019-12852 | — | — | 1.8% | Jul 3, 2019 | An SSRF attack was possible on a JetBrains YouTrack server. The issue (1 of 2) was fixed in JetBrains YouTrack 2018.4.49... |
| CVE-2019-12846 | — | — | 0.8% | Jul 3, 2019 | A user without the required permissions could gain access to some JetBrains TeamCity settings. The issue was fixed in Te... |
| CVE-2019-12845 | — | — | 0.9% | Jul 3, 2019 | The generated Kotlin DSL settings allowed usage of an unencrypted connection for resolving artifacts. The issue was fixe... |
| CVE-2019-12844 | — | — | 0.8% | Jul 3, 2019 | A possible stored JavaScript injection was detected on one of the JetBrains TeamCity pages. The issue was fixed in TeamC... |
| CVE-2019-12843 | — | — | 0.8% | Jul 3, 2019 | A possible stored JavaScript injection requiring a deliberate server administrator action was detected. The issue was fi... |
| CVE-2019-12842 | — | — | 0.8% | Jul 3, 2019 | A reflected XSS on a user page was detected on one of the JetBrains TeamCity pages. The issue was fixed in TeamCity 2018... |
| CVE-2019-12841 | — | — | 1.1% | Jul 3, 2019 | Incorrect handling of user input in ZIP extraction was detected in JetBrains TeamCity. The issue was fixed in TeamCity 2... |
| CVE-2019-10103 | — | — | 0.9% | Jul 3, 2019 | JetBrains IntelliJ IDEA projects created using the Kotlin (JS Client/JVM Server) IDE Template were resolving Gradle arti... |
| CVE-2019-10102 | — | — | 0.9% | Jul 3, 2019 | JetBrains Ktor framework (created using the Kotlin IDE template) versions before 1.1.0 were resolving artifacts using an... |
| CVE-2019-9873 | — | — | 1.6% | Jul 3, 2019 | In several versions of JetBrains IntelliJ IDEA Ultimate, creating Task Servers configurations leads to saving a cleartex... |
| CVE-2019-9872 | — | — | 1.2% | Jul 3, 2019 | In several versions of JetBrains IntelliJ IDEA Ultimate, creating run configurations for cloud application servers leads... |
| CVE-2019-9823 | — | — | 1.6% | Jul 3, 2019 | In several JetBrains IntelliJ IDEA versions, creating remote run configurations of JavaEE application servers leads to s... |
| CVE-2019-9186 | — | — | 4.5% | Jul 3, 2019 | In several JetBrains IntelliJ IDEA versions, a Spring Boot run configuration with the default setting allowed remote att... |
| CVE-2019-6637 | — | — | 1.5% | Jul 3, 2019 | On BIG-IP (ASM) 14.1.0-14.1.0.5, 14.0.0-14.0.0.4, 13.0.0-13.1.1.4, and 12.1.0-12.1.4, Application logic abuse of ASM RES... |
| CVE-2019-6636 | — | — | 0.9% | Jul 3, 2019 | On BIG-IP (AFM, ASM) 14.1.0-14.1.0.5, 14.0.0-14.0.0.4, 13.0.0-13.1.1.4, 12.1.0-12.1.4, and 11.5.1-11.6.4, a stored cross... |
| CVE-2019-6634 | — | — | 1.4% | Jul 3, 2019 | On BIG-IP 14.1.0-14.1.0.5, 14.0.0-14.0.0.4, 13.0.0-13.1.1.4, and 12.1.0-12.1.4, a high volume of malformed analytics rep... |
| CVE-2019-6632 | — | — | 0.4% | Jul 3, 2019 | On BIG-IP 14.1.0-14.1.0.5, 14.0.0-14.0.0.4, 13.0.0-13.1.1.4, and 12.1.0-12.1.4, under certain circumstances, attackers c... |
| CVE-2019-5602 | — | — | 4.1% | Jul 3, 2019 | In FreeBSD 12.0-STABLE before r349628, 12.0-RELEASE before 12.0-RELEASE-p7, 11.3-PRERELEASE before r349629, 11.3-RC3 bef... |
| CVE-2019-5601 | — | — | 1.6% | Jul 3, 2019 | In FreeBSD 12.0-STABLE before r347474, 12.0-RELEASE before 12.0-RELEASE-p7, 11.2-STABLE before r347475, and 11.2-RELEASE... |
| CVE-2019-5600 | — | — | 4.9% | Jul 3, 2019 | In FreeBSD 12.0-STABLE before r349622, 12.0-RELEASE before 12.0-RELEASE-p7, 11.3-PRERELEASE before r349624, 11.3-RC3 bef... |
| CVE-2019-12867 | — | — | 2.0% | Jul 3, 2019 | Certain actions could cause privilege escalation for issue attachments in JetBrains YouTrack. The issue was fixed in 201... |
| CVE-2019-12866 | — | — | 1.9% | Jul 3, 2019 | An Insecure Direct Object Reference, with Authorization Bypass through a User-Controlled Key, was possible in JetBrains ... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now