2019 CVE Vulnerabilities
17,620 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-8011 | HIGH | 7.5 | 3.1% | Aug 20, 2019 | Adobe Acrobat and Reader versions 2019.012.20035 and earlier, 2019.012.20035 and earlier, 2017.011.30142 and earlier, 20... |
| CVE-2019-8010 | HIGH | 7.5 | 3.0% | Aug 20, 2019 | Adobe Acrobat and Reader versions 2019.012.20035 and earlier, 2019.012.20035 and earlier, 2017.011.30142 and earlier, 20... |
| CVE-2019-8008 | HIGH | 8.8 | 3.6% | Aug 20, 2019 | Adobe Acrobat and Reader versions 2019.012.20035 and earlier, 2019.012.20035 and earlier, 2017.011.30142 and earlier, 20... |
| CVE-2019-8007 | HIGH | 7.5 | 3.1% | Aug 20, 2019 | Adobe Acrobat and Reader versions 2019.012.20035 and earlier, 2019.012.20035 and earlier, 2017.011.30142 and earlier, 20... |
| CVE-2019-8005 | HIGH | 7.5 | 3.6% | Aug 20, 2019 | Adobe Acrobat and Reader versions 2019.012.20035 and earlier, 2019.012.20035 and earlier, 2017.011.30142 and earlier, 20... |
| CVE-2019-8004 | HIGH | 7.5 | 3.6% | Aug 20, 2019 | Adobe Acrobat and Reader versions 2019.012.20035 and earlier, 2019.012.20035 and earlier, 2017.011.30142 and earlier, 20... |
| CVE-2019-8002 | HIGH | 7.5 | 3.6% | Aug 20, 2019 | Adobe Acrobat and Reader versions 2019.012.20035 and earlier, 2019.012.20035 and earlier, 2017.011.30142 and earlier, 20... |
| CVE-2019-4424 | HIGH | 8.2 | 2.4% | Aug 20, 2019 | IBM Business Automation Workflow 18.0.0.0, 18.0.0.1, 18.0.0.2, 19.0.0.1, and 19.0.0.2 is vulnerable to an XML External E... |
| CVE-2019-4340 | HIGH | 8.2 | 2.4% | Aug 20, 2019 | IBM Security Guardium Big Data Intelligence 4.0 (SonarG) is vulnerable to an XML External Entity Injection (XXE) attack ... |
| CVE-2019-4338 | HIGH | 7.5 | 1.7% | Aug 20, 2019 | IBM Security Guardium Big Data Intelligence 4.0 (SonarG) does not properly restrict the size or amount of resources that... |
| CVE-2019-2126 | HIGH | 8.8 | 5.4% | Aug 20, 2019 | In ParseContentEncodingEntry of mkvparser.cc, there is a possible double free due to a missing reset of a freed pointer.... |
| CVE-2019-13520 | HIGH | 7.8 | 2.9% | Aug 20, 2019 | Multiple buffer overflow issues have been identified in Alpha5 Smart Loader: All versions prior to 4.2. An attacker coul... |
| CVE-2019-4460 | HIGH | 7.5 | 2.6% | Aug 20, 2019 | IBM API Connect 5.0.0.0 through 5.0.8.6 developer portal could allow a remote attacker to traverse directories on the sy... |
| CVE-2019-4433 | HIGH | 8.2 | 3.9% | Aug 20, 2019 | IBM InfoSphere Global Name Management 5.0 and 6.0 and IBM InfoSphere Identity Insight 8.1 and 9.0 is vulnerable to an XM... |
| CVE-2019-4419 | HIGH | 8.2 | 2.4% | Aug 20, 2019 | IBM Intelligent Operations Center V5.1.0 through V5.2.0 is vulnerable to an XML External Entity Injection (XXE) attack w... |
| CVE-2019-4402 | HIGH | 7.5 | 1.6% | Aug 20, 2019 | IBM API Connect 2018.1 through 2018.4.1.6 developer portal could allow an unauthorized user to cause a denial of service... |
| CVE-2019-4310 | HIGH | 7.5 | 2.2% | Aug 20, 2019 | IBM Security Guardium Big Data Intelligence 4.0 (SonarG) uses an inadequate account lockout setting that could allow a r... |
| CVE-2019-4294 | HIGH | 7.8 | 0.9% | Aug 20, 2019 | IBM DataPower Gateway 2018.4.1.0 through 2018.4.1.6, 7.6.0.0 through 7.6.0.15 and IBM MQ Appliance 8.0.0.0 through 8.0.0... |
| CVE-2019-4253 | HIGH | 7.8 | 0.4% | Aug 20, 2019 | IBM Informix Dynamic Server Enterprise Edition 12.1 could allow a local privileged Informix user to load a malicious sha... |
| CVE-2019-4117 | HIGH | 8.8 | 0.6% | Aug 20, 2019 | IBM Cloud Private 3.1.1 and 3.1.2 is vulnerable to cross-site request forgery which could allow an attacker to execute m... |
| CVE-2019-10745 | HIGH | 7.5 | 1.1% | Aug 20, 2019 | assign-deep is vulnerable to Prototype Pollution in versions before 0.4.8 and version 1.0.0. The function assign-deep co... |
| CVE-2019-11209 | HIGH | 8.8 | 1.4% | Aug 20, 2019 | The realm configuration component of TIBCO Software Inc.'s TIBCO FTL Community Edition, TIBCO FTL Developer Edition, TIB... |
| CVE-2019-15237 | HIGH | 7.4 | 0.9% | Aug 20, 2019 | Roundcube Webmail through 1.3.9 mishandles Punycode xn-- domain names, leading to homograph attacks. |
| CVE-2019-11145 | HIGH | 7.8 | 0.3% | Aug 19, 2019 | Improper file verification in Intel® Driver & Support Assistant before 19.7.30.2 may allow an authenticated user to pote... |
| CVE-2019-6165 | HIGH | 7.8 | 0.4% | Aug 19, 2019 | A DLL search path vulnerability was reported in PaperDisplay Hotkey Service version 1.2.0.8 that could allow privilege e... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now