2019 CVE Vulnerabilities
17,620 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-9723 | — | — | 1.3% | May 30, 2019 | LogicalDOC Community Edition 8.x before 8.2.1 has a path traversal vulnerability that allows reading arbitrary files and... |
| CVE-2019-12461 | — | — | 9.9% | May 30, 2019 | Web Port 1.19.1 allows XSS via the /log type parameter. |
| CVE-2019-12460 | — | — | 3.8% | May 30, 2019 | Web Port 1.19.1 allows XSS via the /access/setup type parameter. |
| CVE-2019-12456 | — | — | 0.4% | May 30, 2019 | An issue was discovered in the MPT3COMMAND case in _ctl_ioctl_main in drivers/scsi/mpt3sas/mpt3sas_ctl.c in the Linux ke... |
| CVE-2019-12455 | — | — | 0.4% | May 30, 2019 | An issue was discovered in sunxi_divs_clk_setup in drivers/clk/sunxi/clk-sunxi.c in the Linux kernel through 5.1.5. Ther... |
| CVE-2019-12454 | — | — | 0.4% | May 30, 2019 | An issue was discovered in wcd9335_codec_enable_dec in sound/soc/codecs/wcd9335.c in the Linux kernel through 5.1.5. It ... |
| CVE-2019-6981 | — | — | 1.2% | May 29, 2019 | Zimbra Collaboration Suite 8.7.x through 8.8.11 allows Blind SSRF in the Feed component. |
| CVE-2019-6980 | — | — | 3.9% | May 29, 2019 | Synacor Zimbra Collaboration Suite 8.7.x through 8.8.11 allows insecure object deserialization in the IMAP component. |
| CVE-2019-6322 | — | — | 1.2% | May 29, 2019 | HP has identified a security vulnerability with some versions of Workstation BIOS (UEFI Firmware) where the runtime BIOS... |
| CVE-2019-6321 | — | — | 1.5% | May 29, 2019 | HP has identified a security vulnerability with some versions of Workstation BIOS (UEFI Firmware) where the runtime BIOS... |
| CVE-2019-12452 | — | — | 2.6% | May 29, 2019 | types/types.go in Containous Traefik 1.7.x through 1.7.11, when the --api flag is used and the API is publicly reachable... |
| CVE-2019-12347 | — | — | 58.6% | May 29, 2019 | In pfSense 2.4.4-p3, a stored XSS vulnerability occurs when attackers inject a payload into the Name or Description fiel... |
| CVE-2019-7129 | — | — | 1.6% | May 29, 2019 | Adobe Experience Manager Forms versions 6.2, 6.3 and 6.4 have a stored cross-site scripting vulnerability. Successful ex... |
| CVE-2019-9866 | — | — | 1.2% | May 29, 2019 | An issue was discovered in GitLab Community and Enterprise Edition 11.x before 11.7.7 and 11.8.x before 11.8.3. It allow... |
| CVE-2019-9865 | — | — | 2.0% | May 29, 2019 | When RPC is enabled in Wind River VxWorks 6.9 prior to 6.9.1, a specially crafted RPC request can trigger an integer ove... |
| CVE-2019-9732 | — | — | 1.7% | May 29, 2019 | An issue was discovered in GitLab Community and Enterprise Edition 10.x (starting from 10.8) and 11.x before 11.6.10, 11... |
| CVE-2019-9485 | — | — | 1.7% | May 29, 2019 | An issue was discovered in GitLab Community and Enterprise Edition before 11.6.10, 11.7.x before 11.7.6, and 11.8.x befo... |
| CVE-2019-9221 | — | — | 0.5% | May 29, 2019 | An issue was discovered in GitLab Community and Enterprise Edition before 11.6.10, 11.7.x before 11.7.6, and 11.8.x befo... |
| CVE-2019-12448 | — | — | 1.7% | May 29, 2019 | An issue was discovered in GNOME gvfs 1.29.4 through 1.41.2. daemon/gvfsbackendadmin.c has race conditions because the a... |
| CVE-2019-9218 | — | — | 1.6% | May 29, 2019 | An issue was discovered in GitLab Community and Enterprise Edition before 11.6.10, 11.7.x before 11.7.6, and 11.8.x befo... |
| CVE-2019-9177 | — | — | — | May 29, 2019 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu... |
| CVE-2019-7549 | — | — | 1.0% | May 29, 2019 | An issue was discovered in GitLab Community and Enterprise Edition 10.x and 11.x before 11.5.10, 11.6.x before 11.6.8, a... |
| CVE-2019-12440 | — | — | 2.1% | May 29, 2019 | The Sitecore Rocks plugin before 2.1.149 for Sitecore allows an unauthenticated threat actor to inject malicious command... |
| CVE-2019-5589 | — | — | 2.6% | May 28, 2019 | An Unsafe Search Path vulnerability in FortiClient Online Installer (Windows version before 6.0.6) may allow an unauthen... |
| CVE-2019-0221 | — | — | 45.6% | May 28, 2019 | The SSI printenv command in Apache Tomcat 9.0.0.M1 to 9.0.0.17, 8.5.0 to 8.5.39 and 7.0.0 to 7.0.93 echoes user provided... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now