2019 CVE Vulnerabilities
17,620 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-1262 | MEDIUM | 5.4 | 2.8% | Sep 11, 2019 | A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a speciall... |
| CVE-2019-1260 | MEDIUM | 6.5 | 2.4% | Sep 11, 2019 | An elevation of privilege vulnerability exists in Microsoft SharePoint, aka 'Microsoft SharePoint Elevation of Privilege... |
| CVE-2019-1254 | MEDIUM | 5.5 | 1.2% | Sep 11, 2019 | An information disclosure vulnerability exists when Windows Hyper-V writes uninitialized memory to disk, aka 'Windows Hy... |
| CVE-2019-1252 | MEDIUM | 6.5 | 59.1% | Sep 11, 2019 | An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its m... |
| CVE-2019-1251 | MEDIUM | 5.5 | 1.6% | Sep 11, 2019 | An information disclosure vulnerability exists when DirectWrite improperly discloses the contents of its memory, aka 'Di... |
| CVE-2019-1245 | MEDIUM | 6.5 | 12.1% | Sep 11, 2019 | An information disclosure vulnerability exists when DirectWrite improperly discloses the contents of its memory, aka 'Di... |
| CVE-2019-1244 | MEDIUM | 6.5 | 11.3% | Sep 11, 2019 | An information disclosure vulnerability exists when DirectWrite improperly discloses the contents of its memory, aka 'Di... |
| CVE-2019-1231 | MEDIUM | 5.9 | 2.1% | Sep 11, 2019 | An information disclosure vulnerability exists in the way Rome SDK handles server SSL/TLS certificate validation, aka 'R... |
| CVE-2019-1220 | MEDIUM | 4.3 | 3.6% | Sep 11, 2019 | A security feature bypass vulnerability exists when Microsoft Browsers fail to validate the correct Security Zone of req... |
| CVE-2019-1219 | MEDIUM | 5.5 | 1.6% | Sep 11, 2019 | An information disclosure vulnerability exists when the Windows Transaction Manager improperly handles objects in memory... |
| CVE-2019-1216 | MEDIUM | 5.5 | 1.6% | Sep 11, 2019 | An information disclosure vulnerability exists when DirectX improperly handles objects in memory, aka 'DirectX Informati... |
| CVE-2019-1209 | MEDIUM | 6.5 | 5.8% | Sep 11, 2019 | An information disclosure vulnerability exists in Lync 2013, aka 'Lync 2013 Information Disclosure Vulnerability'. |
| CVE-2019-1142 | MEDIUM | 5.5 | 1.0% | Sep 11, 2019 | An elevation of privilege vulnerability exists when the .NET Framework common language runtime (CLR) allows file creatio... |
| CVE-2019-0928 | MEDIUM | 6.2 | 1.6% | Sep 11, 2019 | A denial of service vulnerability exists when Microsoft Hyper-V on a host server fails to properly validate input from a... |
| CVE-2019-15302 | MEDIUM | 6.5 | 1.4% | Sep 11, 2019 | The pad management logic in XWiki labs CryptPad before 3.0.0 allows a remote attacker (who has access to a Rich Text pad... |
| CVE-2019-10073 | MEDIUM | 6.1 | 5.0% | Sep 11, 2019 | The "Blog", "Forum", "Contact Us" screens of the template "ecommerce" application bundled in Apache OFBiz are weak to St... |
| CVE-2019-3761 | MEDIUM | 5.4 | 0.8% | Sep 11, 2019 | The RSA Identity Governance and Lifecycle software and RSA Via Lifecycle and Governance products prior to 7.1.0 P08 cont... |
| CVE-2019-14936 | MEDIUM | 5.3 | 1.4% | Sep 11, 2019 | Easy!Appointments 1.3.2 plugin for WordPress allows Sensitive Information Disclosure (Username and Password Hash). |
| CVE-2019-9488 | MEDIUM | 4.9 | 1.2% | Sep 11, 2019 | Trend Micro Deep Security Manager (10.x, 11.x) and Vulnerability Protection (2.0) are vulnerable to a XML External Entit... |
| CVE-2019-16234 | MEDIUM | 4.7 | 0.4% | Sep 11, 2019 | drivers/net/wireless/intel/iwlwifi/pcie/trans.c in the Linux kernel 5.2.14 does not check the alloc_workqueue return val... |
| CVE-2019-16233 | MEDIUM | 4.1 | 0.4% | Sep 11, 2019 | drivers/scsi/qla2xxx/qla_os.c in the Linux kernel 5.2.14 does not check the alloc_workqueue return value, leading to a N... |
| CVE-2019-16232 | MEDIUM | 4.1 | 0.6% | Sep 11, 2019 | drivers/net/wireless/marvell/libertas/if_sdio.c in the Linux kernel 5.2.14 does not check the alloc_workqueue return val... |
| CVE-2019-16231 | MEDIUM | 4.1 | 0.4% | Sep 11, 2019 | drivers/net/fjes/fjes_main.c in the Linux kernel 5.2.14 does not check the alloc_workqueue return value, leading to a NU... |
| CVE-2019-16230 | MEDIUM | 4.7 | 0.4% | Sep 11, 2019 | drivers/gpu/drm/radeon/radeon_display.c in the Linux kernel 5.2.14 does not check the alloc_workqueue return value, lead... |
| CVE-2019-16229 | MEDIUM | 4.1 | 0.4% | Sep 11, 2019 | drivers/gpu/drm/amd/amdkfd/kfd_interrupt.c in the Linux kernel 5.2.14 does not check the alloc_workqueue return value, l... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now