2019 CVE Vulnerabilities
17,619 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-12851 | — | — | 0.8% | Jul 3, 2019 | A CSRF vulnerability was detected in one of the admin endpoints of JetBrains YouTrack. The issue was fixed in YouTrack 2... |
| CVE-2019-12850 | — | — | 2.1% | Jul 3, 2019 | A query injection was possible in JetBrains YouTrack. The issue was fixed in YouTrack 2018.4.49168. |
| CVE-2019-12847 | — | — | 1.1% | Jul 3, 2019 | In JetBrains Hub versions earlier than 2018.4.11298, the audit events for SMTPSettings show a cleartext password to the ... |
| CVE-2019-10104 | — | — | 3.8% | Jul 3, 2019 | In several JetBrains IntelliJ IDEA Ultimate versions, an Application Server run configuration (for Tomcat, Jetty, Resin,... |
| CVE-2019-10100 | — | — | 2.2% | Jul 3, 2019 | In JetBrains YouTrack Confluence plugin versions before 1.8.1.3, it was possible to achieve Server Side Template Injecti... |
| CVE-2019-7165 | — | — | 3.8% | Jul 3, 2019 | A buffer overflow in DOSBox 0.74-2 allows attackers to execute arbitrary code. |
| CVE-2019-6630 | — | — | 1.4% | Jul 3, 2019 | On F5 SSL Orchestrator 14.1.0-14.1.0.5 and 14.0.0-14.0.0.4, undisclosed traffic flow may cause TMM to restart under cert... |
| CVE-2019-6628 | — | — | 1.3% | Jul 3, 2019 | On BIG-IP PEM 14.1.0-14.1.0.5 and 14.0.0-14.0.0.4, under certain conditions, the TMM process may terminate and restart w... |
| CVE-2019-6627 | — | — | 0.8% | Jul 3, 2019 | On F5 SSL Orchestrator 14.1.0-14.1.0.5, on rare occasions, specific to a certain race condition, TMM may restart when SS... |
| CVE-2019-6626 | — | — | 0.8% | Jul 3, 2019 | On BIG-IP (AFM, Analytics, ASM) 14.1.0-14.1.0.5, 14.0.0-14.0.0.4, 13.0.0-13.1.1.4, 12.1.0-12.1.4, and 11.5.1-11.6.3.4, A... |
| CVE-2019-6625 | — | — | 0.8% | Jul 3, 2019 | On BIG-IP 14.1.0-14.1.0.5, 14.0.0-14.0.0.4, 13.0.0-13.1.1.4, 12.1.0-12.1.4, and 11.5.1-11.6.4, a reflected cross-site sc... |
| CVE-2019-12570 | — | — | 1.7% | Jul 3, 2019 | A SQL injection vulnerability in the Xpert Solution "Server Status by Hostname/IP" plugin 4.6 for WordPress allows an au... |
| CVE-2019-13186 | — | — | 0.9% | Jul 3, 2019 | In MiniCMS V1.10, stored XSS was found in mc-admin/post-edit.php via the tags box. An attacker can use it to get a user'... |
| CVE-2019-10721 | — | — | 1.0% | Jul 3, 2019 | BlogEngine.NET 3.3.7.0 allows a Client Side URL Redirect via the ReturnUrl parameter, related to BlogEngine/BlogEngine.C... |
| CVE-2019-10717 | — | — | 5.4% | Jul 3, 2019 | BlogEngine.NET 3.3.7.0 allows /api/filemanager Directory Traversal via the path parameter. |
| CVE-2019-13179 | — | — | 2.1% | Jul 2, 2019 | Calamares versions 3.1 through 3.2.10 copies a LUKS encryption keyfile from /crypto_keyfile.bin (mode 0600 owned by root... |
| CVE-2019-13178 | — | — | 1.7% | Jul 2, 2019 | modules/luksbootkeyfile/main.py in Calamares versions 3.1 through 3.2.10 has a race condition between the time when the ... |
| CVE-2019-13177 | — | — | 1.6% | Jul 2, 2019 | verification.py in django-rest-registration (aka Django REST Registration library) before 0.5.0 relies on a static strin... |
| CVE-2019-6624 | — | — | 1.3% | Jul 2, 2019 | On BIG-IP 14.1.0-14.1.0.5, 14.0.0-14.0.0.4, 13.0.0-13.1.1.4, and 12.1.0-12.1.4, an undisclosed traffic pattern sent to a... |
| CVE-2019-6622 | — | — | 1.8% | Jul 2, 2019 | On BIG-IP 14.1.0-14.1.0.5, 14.0.0-14.0.0.5, 13.0.0-13.1.1.4, 12.1.0-12.1.4.1, and 11.5.1-11.6.4, an undisclosed iControl... |
| CVE-2019-6621 | — | — | 2.0% | Jul 2, 2019 | On BIG-IP 14.1.0-14.1.0.5, 14.0.0-14.0.0.4, 13.0.0-13.1.1.4, 12.1.0-12.1.4.1, 11.6.1-11.6.3.4, and 11.5.2-11.5.8 and BIG... |
| CVE-2019-6620 | — | — | 1.8% | Jul 2, 2019 | On BIG-IP 14.1.0-14.1.0.5, 14.0.0-14.0.0.5, 13.0.0-13.1.1.4, 12.1.0-12.1.4.1, and 11.5.1-11.6.4 and BIG-IQ 6.0.0-6.1.0 a... |
| CVE-2019-5599 | — | — | 5.2% | Jul 2, 2019 | In FreeBSD 12.0-STABLE before r349197 and 12.0-RELEASE before 12.0-RELEASE-p6, a bug in the non-default RACK TCP stack c... |
| CVE-2019-13175 | — | — | 0.9% | Jul 2, 2019 | Read the Docs before 3.5.1 has an Open Redirect if certain user-defined redirects are used. This affects private instanc... |
| CVE-2019-13173 | — | — | 2.8% | Jul 2, 2019 | fstream before 1.0.12 is vulnerable to Arbitrary File Overwrite. Extracting tarballs containing a hardlink to a file tha... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now