2019 CVE Vulnerabilities
17,619 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-25462 | HIGH | 8.8 | 0.3% | Feb 22, 2026 | Web Ofisi Rent a Car v3 contains an SQL injection vulnerability that allows unauthenticated attackers to manipulate data... |
| CVE-2019-25461 | HIGH | 8.8 | 0.4% | Feb 22, 2026 | Web Ofisi Platinum E-Ticaret v5 contains an SQL injection vulnerability that allows unauthenticated attackers to manipul... |
| CVE-2019-25460 | HIGH | 8.8 | 0.4% | Feb 22, 2026 | Web Ofisi Platinum E-Ticaret v5 contains an SQL injection vulnerability that allows unauthenticated attackers to manipul... |
| CVE-2019-25459 | CRITICAL | 9.8 | 0.4% | Feb 22, 2026 | Web Ofisi Emlak V2 contains multiple SQL injection vulnerabilities in the endpoint that allow unauthenticated attackers ... |
| CVE-2019-25458 | CRITICAL | 9.8 | 0.5% | Feb 22, 2026 | Web Ofisi Firma Rehberi v1 contains an SQL injection vulnerability that allows unauthenticated attackers to manipulate d... |
| CVE-2019-25457 | HIGH | 8.8 | 0.4% | Feb 22, 2026 | Web Ofisi Firma v13 contains an SQL injection vulnerability that allows unauthenticated attackers to manipulate database... |
| CVE-2019-25456 | CRITICAL | 9.1 | 0.5% | Feb 22, 2026 | Web Ofisi Emlak v2 contains an SQL injection vulnerability that allows unauthenticated attackers to manipulate database ... |
| CVE-2019-25455 | HIGH | 8.8 | 0.4% | Feb 22, 2026 | Web Ofisi E-Ticaret v3 contains an SQL injection vulnerability that allows unauthenticated attackers to manipulate datab... |
| CVE-2019-25452 | HIGH | 8.8 | 0.4% | Feb 22, 2026 | Dolibarr ERP/CRM 10.0.1 contains an SQL injection vulnerability in the elemid POST parameter of the viewcat.php endpoint... |
| CVE-2019-25450 | HIGH | 7.5 | 0.3% | Feb 22, 2026 | Dolibarr ERP/CRM 10.0.1 contains multiple SQL injection vulnerabilities that allow authenticated attackers to manipulate... |
| CVE-2019-25446 | HIGH | 8.8 | 0.2% | Feb 22, 2026 | DIGIT CENTRIS ERP contains an SQL injection vulnerability that allows unauthenticated attackers to manipulate database q... |
| CVE-2019-25443 | HIGH | 8.8 | 0.2% | Feb 22, 2026 | Inventory Webapp contains an SQL injection vulnerability that allows unauthenticated attackers to manipulate database qu... |
| CVE-2019-25442 | HIGH | 8.8 | 0.4% | Feb 22, 2026 | Web Wiz Forums 12.01 contains an SQL injection vulnerability that allows unauthenticated attackers to manipulate databas... |
| CVE-2019-25440 | HIGH | 8.8 | 0.2% | Feb 22, 2026 | WebIncorp ERP contains an SQL injection vulnerability that allows unauthenticated attackers to manipulate database queri... |
| CVE-2019-25439 | HIGH | 8.8 | 0.3% | Feb 22, 2026 | NoviSmart CMS contains an SQL injection vulnerability that allows remote attackers to execute arbitrary SQL queries by i... |
| CVE-2019-25433 | HIGH | 8.8 | 0.3% | Feb 22, 2026 | XOOPS CMS 2.5.9 contains an SQL injection vulnerability that allows unauthenticated attackers to manipulate database que... |
| CVE-2019-25391 | HIGH | 8.8 | 0.3% | Feb 22, 2026 | Ashop Shopping Cart Software contains a time-based blind SQL injection vulnerability that allows attackers to manipulate... |
| CVE-2019-25366 | HIGH | 8.8 | 0.3% | Feb 22, 2026 | microASP Portal+ CMS contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary ... |
| CVE-2019-25454 | MEDIUM | 6.1 | 0.2% | Feb 20, 2026 | phpMoAdmin 1.1.5 contains a stored cross-site scripting vulnerability that allows unauthenticated attackers to inject ma... |
| CVE-2019-25453 | MEDIUM | 6.1 | 0.3% | Feb 20, 2026 | phpMoAdmin 1.1.5 contains a reflected cross-site scripting vulnerability that allows unauthenticated attackers to inject... |
| CVE-2019-25451 | HIGH | 8.8 | 0.3% | Feb 20, 2026 | phpMoAdmin 1.1.5 contains a cross-site request forgery vulnerability that allows attackers to perform unauthorized datab... |
| CVE-2019-25449 | MEDIUM | 6.1 | 0.2% | Feb 20, 2026 | OrientDB 3.0.17 contains a reflected cross-site scripting vulnerability that allows attackers to inject malicious script... |
| CVE-2019-25448 | MEDIUM | 6.4 | 0.3% | Feb 20, 2026 | OrientDB 3.0.17 contains a stored cross-site scripting vulnerability that allows authenticated attackers to inject malic... |
| CVE-2019-25447 | LOW | 3.5 | 0.1% | Feb 20, 2026 | OrientDB 3.0.17 GA Community Edition contains cross-site request forgery vulnerabilities that allow attackers to perform... |
| CVE-2019-25441 | CRITICAL | 9.8 | 8.5% | Feb 20, 2026 | thesystem 1.0 contains a command injection vulnerability that allows unauthenticated attackers to execute arbitrary syst... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now