2019 CVE Vulnerabilities
17,620 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-0715 | MEDIUM | 5.8 | 5.0% | Aug 14, 2019 | A denial of service vulnerability exists when Microsoft Hyper-V Network Switch on a host server fails to properly valida... |
| CVE-2019-0714 | MEDIUM | 5.8 | 5.0% | Aug 14, 2019 | A denial of service vulnerability exists when Microsoft Hyper-V Network Switch on a host server fails to properly valida... |
| CVE-2019-3637 | MEDIUM | 6.7 | 0.3% | Aug 14, 2019 | Privilege Escalation vulnerability in McAfee FRP 5.x prior to 5.1.0.209 allows local users to gain elevated privileges v... |
| CVE-2019-3635 | MEDIUM | 6.5 | 1.2% | Aug 14, 2019 | Exfiltration of Data in McAfee Web Gateway (MWG) 7.8.2.x prior to 7.8.2.12 allows attackers to obtain sensitive data via... |
| CVE-2019-14973 | MEDIUM | 6.5 | 4.2% | Aug 14, 2019 | _TIFFCheckMalloc and _TIFFCheckRealloc in tif_aux.c in LibTIFF through 4.0.10 mishandle Integer Overflow checks because ... |
| CVE-2019-9516 | MEDIUM | 6.5 | 57.5% | Aug 13, 2019 | Some HTTP/2 implementations are vulnerable to a header leak, potentially leading to a denial of service. The attacker se... |
| CVE-2019-13416 | MEDIUM | 6.5 | 1.0% | Aug 13, 2019 | Search Guard versions before 24.3 had an issue when Cross Cluster Search (CCS) was enabled, authenticated users are alwa... |
| CVE-2019-13415 | MEDIUM | 6.5 | 1.0% | Aug 13, 2019 | Search Guard versions before 24.3 had an issue when Cross Cluster Search (CCS) was enabled, authenticated users can gain... |
| CVE-2019-10929 | MEDIUM | 5.9 | 1.0% | Aug 13, 2019 | A vulnerability has been identified in SIMATIC CP 1626 (All versions), SIMATIC ET 200SP Open Controller CPU 1515SP PC (i... |
| CVE-2019-10928 | MEDIUM | 6.6 | 0.4% | Aug 13, 2019 | A vulnerability has been identified in SCALANCE SC-600 (V2.0). An authenticated attacker with access to port 22/tcp as w... |
| CVE-2019-10927 | MEDIUM | 6.5 | 1.2% | Aug 13, 2019 | A vulnerability has been identified in SCALANCE SC-600 (V2.0), SCALANCE XB-200 (V4.1), SCALANCE XC-200 (V4.1), SCALANCE ... |
| CVE-2019-13420 | MEDIUM | 5.9 | 1.2% | Aug 13, 2019 | Search Guard versions before 21.0 had an timing side channel issue when using the internal user database. |
| CVE-2019-14981 | MEDIUM | 6.5 | 2.7% | Aug 12, 2019 | In ImageMagick 7.x before 7.0.8-41 and 6.x before 6.9.10-41, there is a divide-by-zero vulnerability in the MeanShiftIma... |
| CVE-2019-14980 | MEDIUM | 6.5 | 1.9% | Aug 12, 2019 | In ImageMagick 7.x before 7.0.8-42 and 6.x before 6.9.10-42, there is a use after free vulnerability in the UnmapBlob fu... |
| CVE-2019-13417 | MEDIUM | 5.3 | 1.1% | Aug 12, 2019 | Search Guard versions before 24.0 had an issue that field caps and mapping API leak field names (but not values) for fie... |
| CVE-2019-14949 | MEDIUM | 6.1 | 0.9% | Aug 12, 2019 | The wp-database-backup plugin before 5.1.2 for WordPress has XSS. |
| CVE-2019-14948 | MEDIUM | 5.4 | 1.0% | Aug 12, 2019 | The woocommerce-product-addon plugin before 18.4 for WordPress has XSS via an import of a new meta data structure. |
| CVE-2019-14807 | MEDIUM | 6.1 | 0.7% | Aug 9, 2019 | In the MobileFrontend extension 1.31 through 1.33 for MediaWiki, XSS exists within the edit summary field in includes/sp... |
| CVE-2019-11274 | MEDIUM | 6.1 | 0.8% | Aug 9, 2019 | Cloud Foundry UAA, versions prior to 74.0.0, is vulnerable to an XSS attack. A remote unauthenticated malicious attacker... |
| CVE-2019-14433 | MEDIUM | 6.5 | 1.9% | Aug 9, 2019 | An issue was discovered in OpenStack Nova before 17.0.12, 18.x before 18.2.2, and 19.x before 19.0.2. If an API request ... |
| CVE-2019-12265 | MEDIUM | 5.3 | 55.3% | Aug 9, 2019 | Wind River VxWorks 6.5, 6.6, 6.7, 6.8, 6.9.3 and 6.9.4 has a Memory Leak in the IGMPv3 client component. There is an IPN... |
| CVE-2019-11776 | MEDIUM | 6.1 | 0.9% | Aug 9, 2019 | In Eclipse BIRT versions 1.0 to 4.7, the Report Viewer allows Reflected XSS in URL parameter. Attacker can execute the p... |
| CVE-2019-14796 | MEDIUM | 5.4 | 1.0% | Aug 9, 2019 | The mq-woocommerce-products-price-bulk-edit (aka Woocommerce Products Price Bulk Edit) plugin 2.0 for WordPress allows X... |
| CVE-2019-14799 | MEDIUM | 6.1 | 2.0% | Aug 9, 2019 | The FV Flowplayer Video Player plugin before 7.3.14.727 for WordPress allows email subscription XSS. |
| CVE-2019-14787 | MEDIUM | 5.4 | 1.0% | Aug 9, 2019 | The Tribulant Newsletters plugin before 4.6.19 for WordPress allows XSS via the wp-admin/admin-ajax.php?action=newslette... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now