2019 CVE Vulnerabilities
17,620 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-12588 | MEDIUM | 6.5 | 1.2% | Sep 4, 2019 | The client 802.11 mac implementation in Espressif ESP8266_NONOS_SDK 2.2.0 through 3.1.0 does not validate correctly the ... |
| CVE-2019-15902 | MEDIUM | 5.6 | 0.6% | Sep 4, 2019 | A backporting error was discovered in the Linux stable/longterm kernel 4.4.x through 4.4.190, 4.9.x through 4.9.190, 4.1... |
| CVE-2019-5478 | MEDIUM | 5.5 | 0.2% | Sep 3, 2019 | A weakness was found in Encrypt Only boot mode in Zynq UltraScale+ devices. This could lead to an adversary being able t... |
| CVE-2019-6182 | MEDIUM | 4.9 | 0.7% | Sep 3, 2019 | A stored CSV Injection vulnerability was reported in Lenovo XClarity Administrator (LXCA) versions prior to 2.5.0 that c... |
| CVE-2019-6181 | MEDIUM | 6.1 | 0.8% | Sep 3, 2019 | A reflected cross-site scripting (XSS) vulnerability was reported in Lenovo XClarity Administrator (LXCA) versions prior... |
| CVE-2019-6180 | MEDIUM | 4.8 | 0.7% | Sep 3, 2019 | A stored cross-site scripting (XSS) vulnerability was reported in Lenovo XClarity Administrator (LXCA) versions prior to... |
| CVE-2019-1125 | MEDIUM | 5.6 | 4.5% | Sep 3, 2019 | An information disclosure vulnerability exists when certain central processing units (CPU) speculatively access memory. ... |
| CVE-2019-15889 | MEDIUM | 6.1 | 12.5% | Sep 3, 2019 | The download-manager plugin before 2.9.94 for WordPress has XSS via the category shortcode feature, as demonstrated by t... |
| CVE-2019-3754 | MEDIUM | 4.7 | 1.1% | Sep 3, 2019 | Dell EMC Unity Operating Environment versions prior to 5.0.0.0.5.116, Dell EMC UnityVSA versions prior to 5.0.0.0.5.116 ... |
| CVE-2019-3751 | MEDIUM | 6.4 | 0.7% | Sep 3, 2019 | Dell EMC Enterprise Copy Data Management (eCDM) versions 1.0, 1.1, 2.0, 2.1, and 3.0 contain a certificate validation vu... |
| CVE-2019-10197 | MEDIUM | 6.5 | 3.2% | Sep 3, 2019 | A flaw was found in samba versions 4.9.x up to 4.9.13, samba 4.10.x up to 4.10.8 and samba 4.11.x up to 4.11.0rc3, when ... |
| CVE-2019-2389 | MEDIUM | 4.2 | 0.3% | Aug 30, 2019 | Incorrect scoping of kill operations in MongoDB Server's packaged SysV init scripts allow users with write access to the... |
| CVE-2019-15833 | MEDIUM | 6.1 | 1.0% | Aug 30, 2019 | The simple-mail-address-encoder plugin before 1.7 for WordPress has reflected XSS. |
| CVE-2019-1977 | MEDIUM | 6.8 | 1.5% | Aug 30, 2019 | A vulnerability within the Endpoint Learning feature of Cisco Nexus 9000 Series Switches running in Application Centric ... |
| CVE-2019-1969 | MEDIUM | 5.3 | 1.4% | Aug 30, 2019 | A vulnerability in the implementation of the Simple Network Management Protocol (SNMP) Access Control List (ACL) feature... |
| CVE-2019-15807 | MEDIUM | 4.7 | 0.4% | Aug 29, 2019 | In the Linux kernel before 5.1.13, there is a memory leak in drivers/scsi/libsas/sas_expander.c when SAS expander discov... |
| CVE-2019-4536 | MEDIUM | 6.3 | 0.3% | Aug 29, 2019 | IBM i 7.4 users who have done a Restore User Profile (RSTUSRPRF) on a system which has been configured with Db2 Mirror f... |
| CVE-2019-4133 | MEDIUM | 5.2 | 0.3% | Aug 29, 2019 | IBM Cloud Automation Manager 3.1.2 could allow a malicious user on the client side (with access to client computer) to r... |
| CVE-2019-11476 | MEDIUM | 6.5 | 0.6% | Aug 29, 2019 | An integer overflow in whoopsie before versions 0.2.52.5ubuntu0.1, 0.2.62ubuntu0.1, 0.2.64ubuntu0.1, 0.2.66, results in ... |
| CVE-2019-15759 | MEDIUM | 6.5 | 1.3% | Aug 29, 2019 | An issue was discovered in Binaryen 1.38.32. Two visitors in ir/ExpressionManipulator.cpp can lead to a NULL pointer der... |
| CVE-2019-15758 | MEDIUM | 6.5 | 1.2% | Aug 29, 2019 | An issue was discovered in Binaryen 1.38.32. Missing validation rules in asmjs/asmangle.cpp can lead to an Assertion Fai... |
| CVE-2019-11250 | MEDIUM | 6.5 | 1.8% | Aug 29, 2019 | The Kubernetes client-go library logs request headers at verbosity levels of 7 or higher. This can disclose credentials ... |
| CVE-2019-11249 | MEDIUM | 6.5 | 3.7% | Aug 29, 2019 | The kubectl cp command allows copying files between containers and the user machine. To copy files from a container, Kub... |
| CVE-2019-11246 | MEDIUM | 6.5 | 3.6% | Aug 29, 2019 | The kubectl cp command allows copying files between containers and the user machine. To copy files from a container, Kub... |
| CVE-2019-11245 | MEDIUM | 4.9 | 0.6% | Aug 29, 2019 | In kubelet v1.13.6 and v1.14.2, containers for pods that do not specify an explicit runAsUser attempt to run as uid 0 (r... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now