2019 CVE Vulnerabilities
17,620 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-5462 | HIGH | 8.8 | 2.5% | Jan 28, 2020 | A privilege escalation issue was discovered in GitLab CE/EE 9.0 and later when trigger tokens are not rotated once owner... |
| CVE-2019-15607 | MEDIUM | 5.4 | 0.6% | Jan 28, 2020 | A stored XSS vulnerability is present within node-red (version: <= 0.20.7) npm package, which is a visual tool for wirin... |
| CVE-2019-15590 | HIGH | 7.5 | 1.1% | Jan 28, 2020 | An access control issue exists in < 12.3.5, < 12.2.8, and < 12.1.14 for GitLab Community Edition (CE) and Enterprise Edi... |
| CVE-2019-15586 | MEDIUM | 6.1 | 0.8% | Jan 28, 2020 | A XSS exists in Gitlab CE/EE < 12.1.10 in the Mermaid plugin. |
| CVE-2019-15585 | CRITICAL | 9.8 | 1.6% | Jan 28, 2020 | Improper authentication exists in < 12.3.2, < 12.2.6, and < 12.1.12 for GitLab Community Edition (CE) and Enterprise Edi... |
| CVE-2019-15583 | HIGH | 7.5 | 1.4% | Jan 28, 2020 | An information disclosure exists in < 12.3.2, < 12.2.6, and < 12.1.12 for GitLab Community Edition (CE) and Enterprise E... |
| CVE-2019-15582 | MEDIUM | 5.3 | 0.9% | Jan 28, 2020 | An IDOR was discovered in < 12.3.2, < 12.2.6, and < 12.1.12 for GitLab Community Edition (CE) and Enterprise Edition (EE... |
| CVE-2019-15581 | MEDIUM | 5.3 | 1.0% | Jan 28, 2020 | An IDOR exists in < 12.3.2, < 12.2.6, and < 12.1.12 for GitLab Community Edition (CE) and Enterprise Edition (EE) that a... |
| CVE-2019-15579 | MEDIUM | 5.3 | 1.0% | Jan 28, 2020 | An information disclosure exists in < 12.3.2, < 12.2.6, and < 12.1.12 for GitLab Community Edition (CE) and Enterprise E... |
| CVE-2019-15578 | MEDIUM | 5.3 | 1.0% | Jan 28, 2020 | An information disclosure exists in < 12.3.2, < 12.2.6, and < 12.1.12 for GitLab Community Edition (CE) and Enterprise E... |
| CVE-2019-20439 | MEDIUM | 4.8 | 1.0% | Jan 28, 2020 | An issue was discovered in WSO2 API Manager 2.6.0. A potential Reflected Cross-Site Scripting (XSS) vulnerability has be... |
| CVE-2019-20438 | MEDIUM | 4.8 | 0.8% | Jan 28, 2020 | An issue was discovered in WSO2 API Manager 2.6.0. A potential stored Cross-Site Scripting (XSS) vulnerability has been ... |
| CVE-2019-20437 | MEDIUM | 6.1 | 1.3% | Jan 28, 2020 | An issue was discovered in WSO2 API Manager 2.6.0, WSO2 IS as Key Manager 5.7.0, and WSO2 Identity Server 5.8.0. When a ... |
| CVE-2019-20436 | MEDIUM | 6.1 | 1.4% | Jan 28, 2020 | An issue was discovered in WSO2 API Manager 2.6.0, WSO2 IS as Key Manager 5.7.0, and WSO2 Identity Server 5.8.0. If ther... |
| CVE-2019-20435 | MEDIUM | 4.8 | 1.1% | Jan 28, 2020 | An issue was discovered in WSO2 API Manager 2.6.0. A reflected XSS attack could be performed in the inline API documenta... |
| CVE-2019-20434 | MEDIUM | 4.8 | 1.1% | Jan 28, 2020 | An issue was discovered in WSO2 API Manager 2.6.0. A potential Reflected Cross-Site Scripting (XSS) vulnerability has be... |
| CVE-2019-17651 | MEDIUM | 5.4 | 0.6% | Jan 28, 2020 | An Improper Neutralization of Input vulnerability in the description and title parameters of a Device Maintenance Schedu... |
| CVE-2019-10779 | MEDIUM | 6.1 | 0.9% | Jan 28, 2020 | All versions of stroom:stroom-app before 5.5.12 and all versions of the 6.0.0 branch before 6.0.25 are affected by Cross... |
| CVE-2019-10770 | MEDIUM | 6.1 | 0.9% | Jan 28, 2020 | All versions of io.ratpack:ratpack-core from 0.9.10 inclusive and before 1.7.6 are vulnerable to Cross-site Scripting (X... |
| CVE-2019-8257 | CRITICAL | 9.8 | 4.1% | Jan 28, 2020 | Adobe Acrobat and Reader versions 2019.012.20035 and earlier, 2019.012.20035 and earlier, 2017.011.30142 and earlier, 20... |
| CVE-2019-7131 | CRITICAL | 9.8 | 4.3% | Jan 28, 2020 | Adobe Acrobat and Reader versions 2019.010.20064 and earlier, 2019.010.20064 and earlier, 2017.011.30110 and earlier ver... |
| CVE-2019-20443 | MEDIUM | 4.8 | 0.8% | Jan 28, 2020 | An issue was discovered in WSO2 API Manager 2.6.0, WSO2 Enterprise Integrator 6.5.0, WSO2 IS as Key Manager 5.7.0, and W... |
| CVE-2019-20442 | MEDIUM | 4.8 | 0.7% | Jan 28, 2020 | An issue was discovered in WSO2 API Manager 2.6.0, WSO2 Enterprise Integrator 6.5.0, WSO2 IS as Key Manager 5.7.0, and W... |
| CVE-2019-20441 | MEDIUM | 4.8 | 0.8% | Jan 28, 2020 | An issue was discovered in WSO2 API Manager 2.6.0. A potential Stored Cross-Site Scripting (XSS) vulnerability has been ... |
| CVE-2019-20440 | MEDIUM | 4.8 | 0.8% | Jan 28, 2020 | An issue was discovered in WSO2 API Manager 2.6.0. A potential Reflected Cross-Site Scripting (XSS) vulnerability has be... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now