2019 CVE Vulnerabilities

17,620 CVEs published in 2019.

CVE IDSeverityCVSSDescription
CVE-2019-5462HIGH8.8A privilege escalation issue was discovered in GitLab CE/EE 9.0 and later when trigger tokens are not rotated once owner...
CVE-2019-15607MEDIUM5.4A stored XSS vulnerability is present within node-red (version: <= 0.20.7) npm package, which is a visual tool for wirin...
CVE-2019-15590HIGH7.5An access control issue exists in < 12.3.5, < 12.2.8, and < 12.1.14 for GitLab Community Edition (CE) and Enterprise Edi...
CVE-2019-15586MEDIUM6.1A XSS exists in Gitlab CE/EE < 12.1.10 in the Mermaid plugin.
CVE-2019-15585CRITICAL9.8Improper authentication exists in < 12.3.2, < 12.2.6, and < 12.1.12 for GitLab Community Edition (CE) and Enterprise Edi...
CVE-2019-15583HIGH7.5An information disclosure exists in < 12.3.2, < 12.2.6, and < 12.1.12 for GitLab Community Edition (CE) and Enterprise E...
CVE-2019-15582MEDIUM5.3An IDOR was discovered in < 12.3.2, < 12.2.6, and < 12.1.12 for GitLab Community Edition (CE) and Enterprise Edition (EE...
CVE-2019-15581MEDIUM5.3An IDOR exists in < 12.3.2, < 12.2.6, and < 12.1.12 for GitLab Community Edition (CE) and Enterprise Edition (EE) that a...
CVE-2019-15579MEDIUM5.3An information disclosure exists in < 12.3.2, < 12.2.6, and < 12.1.12 for GitLab Community Edition (CE) and Enterprise E...
CVE-2019-15578MEDIUM5.3An information disclosure exists in < 12.3.2, < 12.2.6, and < 12.1.12 for GitLab Community Edition (CE) and Enterprise E...
CVE-2019-20439MEDIUM4.8An issue was discovered in WSO2 API Manager 2.6.0. A potential Reflected Cross-Site Scripting (XSS) vulnerability has be...
CVE-2019-20438MEDIUM4.8An issue was discovered in WSO2 API Manager 2.6.0. A potential stored Cross-Site Scripting (XSS) vulnerability has been ...
CVE-2019-20437MEDIUM6.1An issue was discovered in WSO2 API Manager 2.6.0, WSO2 IS as Key Manager 5.7.0, and WSO2 Identity Server 5.8.0. When a ...
CVE-2019-20436MEDIUM6.1An issue was discovered in WSO2 API Manager 2.6.0, WSO2 IS as Key Manager 5.7.0, and WSO2 Identity Server 5.8.0. If ther...
CVE-2019-20435MEDIUM4.8An issue was discovered in WSO2 API Manager 2.6.0. A reflected XSS attack could be performed in the inline API documenta...
CVE-2019-20434MEDIUM4.8An issue was discovered in WSO2 API Manager 2.6.0. A potential Reflected Cross-Site Scripting (XSS) vulnerability has be...
CVE-2019-17651MEDIUM5.4An Improper Neutralization of Input vulnerability in the description and title parameters of a Device Maintenance Schedu...
CVE-2019-10779MEDIUM6.1All versions of stroom:stroom-app before 5.5.12 and all versions of the 6.0.0 branch before 6.0.25 are affected by Cross...
CVE-2019-10770MEDIUM6.1All versions of io.ratpack:ratpack-core from 0.9.10 inclusive and before 1.7.6 are vulnerable to Cross-site Scripting (X...
CVE-2019-8257CRITICAL9.8Adobe Acrobat and Reader versions 2019.012.20035 and earlier, 2019.012.20035 and earlier, 2017.011.30142 and earlier, 20...
CVE-2019-7131CRITICAL9.8Adobe Acrobat and Reader versions 2019.010.20064 and earlier, 2019.010.20064 and earlier, 2017.011.30110 and earlier ver...
CVE-2019-20443MEDIUM4.8An issue was discovered in WSO2 API Manager 2.6.0, WSO2 Enterprise Integrator 6.5.0, WSO2 IS as Key Manager 5.7.0, and W...
CVE-2019-20442MEDIUM4.8An issue was discovered in WSO2 API Manager 2.6.0, WSO2 Enterprise Integrator 6.5.0, WSO2 IS as Key Manager 5.7.0, and W...
CVE-2019-20441MEDIUM4.8An issue was discovered in WSO2 API Manager 2.6.0. A potential Stored Cross-Site Scripting (XSS) vulnerability has been ...
CVE-2019-20440MEDIUM4.8An issue was discovered in WSO2 API Manager 2.6.0. A potential Reflected Cross-Site Scripting (XSS) vulnerability has be...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now