2019 CVE Vulnerabilities

17,624 CVEs published in 2019.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2019-4588HIGH7.8IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 9.7, 10.1, 10.5, 11.1, and 11.5 could allow a local us...
CVE-2019-14836HIGH8.8A vulnerability was found that the 3scale dev portal does not employ mechanisms for protection against login CSRF. An at...
CVE-2019-25044HIGH7.8The block subsystem in the Linux kernel before 5.2 has a use-after-free that can lead to arbitrary code execution in the...
CVE-2019-25041HIGH7.5Unbound before 1.9.5 allows an assertion failure via a compressed name in dname_pkt_copy. NOTE: The vendor disputes that...
CVE-2019-25040HIGH7.5Unbound before 1.9.5 allows an infinite loop via a compressed name in dname_pkt_copy. NOTE: The vendor disputes that thi...
CVE-2019-25037HIGH7.5Unbound before 1.9.5 allows an assertion failure and denial of service in dname_pkt_copy via an invalid packet. NOTE: Th...
CVE-2019-25036HIGH7.5Unbound before 1.9.5 allows an assertion failure and denial of service in synth_cname. NOTE: The vendor disputes that th...
CVE-2019-15059HIGH7.5In Liberty lisPBX 2.0-4, configuration backup files can be retrieved remotely from /backup/lispbx-CONF-YYYY-MM-DD.tar or...
CVE-2019-20466HIGH7.8An issue was discovered on Sannce Smart HD Wifi Security Camera EAN 2 950004 595317 devices. A local attacker with the "...
CVE-2019-20465HIGH7.5An issue was discovered on Sannce Smart HD Wifi Security Camera EAN 2 950004 595317 devices. It is possible (using TELNE...
CVE-2019-20464HIGH7.5An issue was discovered on Sannce Smart HD Wifi Security Camera EAN 2 950004 595317 devices. By default, a mobile applic...
CVE-2019-20463HIGH7.5An issue was discovered on Sannce Smart HD Wifi Security Camera EAN 2 950004 595317 devices. A crash and reboot can be t...
CVE-2019-19354HIGH7.8An insecure modification vulnerability in the /etc/passwd file was found in the operator-framework/hadoop as shipped in ...
CVE-2019-19353HIGH7An insecure modification vulnerability in the /etc/passwd file was found in the operator-framework/hive as shipped in Re...
CVE-2019-19352HIGH7An insecure modification vulnerability in the /etc/passwd file was found in the operator-framework/presto as shipped in ...
CVE-2019-19350HIGH7.8An insecure modification vulnerability in the /etc/passwd file was found in the openshift/ansible-service-broker as ship...
CVE-2019-19349HIGH7.8An insecure modification vulnerability in the /etc/passwd file was found in the container operator-framework/operator-me...
CVE-2019-19343HIGH7.5A flaw was found in Undertow when using Remoting as shipped in Red Hat Jboss EAP before version 7.2.4. A memory leak in ...
CVE-2019-10200HIGH7.2A flaw was discovered in OpenShift Container Platform 4 where, by default, users with access to create pods also have th...
CVE-2019-10128HIGH7.8A vulnerability was found in postgresql versions 11.x prior to 11.3. The Windows installer for EnterpriseDB-supplied Pos...
CVE-2019-10127HIGH8.8A vulnerability was found in postgresql versions 11.x prior to 11.3. The Windows installer for BigSQL-supplied PostgreSQ...
CVE-2019-14852HIGH7.5A flaw was found in 3scale’s APIcast gateway that enabled the TLS 1.0 protocol. An attacker could target traffic using t...
CVE-2019-18231HIGH7.5Advantech Spectre RT ERT351 Versions 5.1.3 and prior logins and passwords are transmitted in clear text form, which may ...
CVE-2019-18630HIGH7.5On Xerox AltaLink B8045/B8055/B8065/B8075/B8090 and C8030/C8035/C8045/C8055/C8070 multifunction printers with software r...
CVE-2019-18629HIGH8.1Xerox AltaLink B8045/B8055/B8065/B8075/B8090 and C8030/C8035/C8045/C8055/C8070 multifunction printers with software rele...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now