2019 CVE Vulnerabilities

17,620 CVEs published in 2019.

CVE IDSeverityCVSSDescription
CVE-2019-18846MEDIUM5OX App Suite through 7.10.2 allows SSRF.
CVE-2019-19866HIGH7.5Atos Unify OpenScape UC Web Client V9 before version V9 R4.31.0 and V10 before version V10 R0.6.0 allows remote attacker...
CVE-2019-19865MEDIUM6.1Atos Unify OpenScape UC Application V9 before version V9 R4.31.0 and V10 before version V10 R0.6.0 allows XSS. An attack...
CVE-2019-19452HIGH7.8A buffer overflow was found in Patriot Viper RGB through 1.1 when processing IoControlCode 0x80102040. Local attackers (...
CVE-2019-19694MEDIUM4.7The Trend Micro Security 2019 (15.0.0.1163 and below) consumer family of products is vulnerable to a denial of service (...
CVE-2019-14688HIGH7Trend Micro has repackaged installers for several Trend Micro products that were found to utilize a version of an instal...
CVE-2019-16302HIGH7.5An issue was discovered in Open Network Operating System (ONOS) 1.14. In the Ethernet VPN application (org.onosproject.e...
CVE-2019-16301HIGH7.5An issue was discovered in Open Network Operating System (ONOS) 1.14. In the virtual tenant network application (org.ono...
CVE-2019-16300HIGH7.5An issue was discovered in Open Network Operating System (ONOS) 1.14. In the access control application (org.onosproject...
CVE-2019-16299HIGH7.5An issue was discovered in Open Network Operating System (ONOS) 1.14. In the mobility application (org.onosproject.mobil...
CVE-2019-16298HIGH7.5An issue was discovered in Open Network Operating System (ONOS) 1.14. In the virtual broadband network gateway applicati...
CVE-2019-16297HIGH7.5An issue was discovered in Open Network Operating System (ONOS) 1.14. In the P4 tutorial application (org.onosproject.p4...
CVE-2019-11189HIGH7.5Authentication Bypass by Spoofing in org.onosproject.acl (access control) and org.onosproject.mobility (host mobility) i...
CVE-2019-4752HIGH8.8IBM Emptoris Spend Analysis and IBM Emptoris Strategic Supply Management Platform 10.1.0.x, 10.1.1.x, and 10.1.3.x is vu...
CVE-2019-4583MEDIUM4.3IBM Maximo Asset Management 7.6.0.10 and 7.6.1.1 could allow an authenticated user to obtain sensitive information from ...
CVE-2019-19741HIGH7.8Electronic Arts Origin 10.5.55.33574 is vulnerable to local privilege escalation due to arbitrary directory DACL manipul...
CVE-2019-20479MEDIUM6.1A flaw was found in mod_auth_openidc before version 2.4.1. An open redirect issue exists in URLs with a slash and backsl...
CVE-2019-1950HIGH8.4A vulnerability in Cisco IOS XE SD-WAN Software could allow an unauthenticated, local attacker to gain unauthorized acce...
CVE-2019-17333MEDIUM5.4The Web server component of TIBCO Software Inc.'s TIBCO EBX contains a vulnerability that theoretically allows authentic...
CVE-2019-10797MEDIUM6.5Netty in WSO2 transport-http before v6.3.1 is vulnerable to HTTP Response Splitting due to HTTP Header validation being ...
CVE-2019-12437HIGH8.8In SilverStripe through 4.3.3, the previous fix for SS-2018-007 does not completely mitigate the risk of CSRF in GraphQL...
CVE-2019-12246MEDIUM4.3SilverStripe through 4.3.3 allows a Denial of Service on flush and development URL tools.
CVE-2019-4640CRITICAL9.8IBM Security Secret Server 10.7 processes patches, image backups and other updates without sufficiently verifying the or...
CVE-2019-4457MEDIUM6.5IBM Jazz Foundation 6.0, 6.0.1, 6.0.2, 6.0.3, 6.0.4, 6.0.5, 6.0.6, and 6.0.6.1 could allow an authenticated user to obta...
CVE-2019-4429MEDIUM5.4IBM Maximo Asset Management 7.6.0 and 7.6.1 is vulnerable to cross-site scripting. This vulnerability allows users to em...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now