2019 CVE Vulnerabilities
17,620 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-0587 | — | — | — | Jan 24, 2020 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n... |
| CVE-2019-0563 | — | — | — | Jan 24, 2020 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n... |
| CVE-2019-0544 | — | — | — | Jan 24, 2020 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n... |
| CVE-2019-1460 | MEDIUM | 4.6 | 1.4% | Jan 24, 2020 | A spoofing vulnerability exists in the way Microsoft Outlook for Android software parses specifically crafted email mess... |
| CVE-2019-1454 | MEDIUM | 5.5 | 0.6% | Jan 24, 2020 | An elevation of privilege vulnerability exists when the Windows User Profile Service (ProfSvc) improperly handles symlin... |
| CVE-2019-1414 | HIGH | 7.8 | 1.0% | Jan 24, 2020 | An elevation of privilege vulnerability exists in Visual Studio Code when it exposes a debug listener to users of a loca... |
| CVE-2019-1354 | HIGH | 8.8 | 22.4% | Jan 24, 2020 | A remote code execution vulnerability exists when Git for Visual Studio improperly sanitizes input, aka 'Git for Visual ... |
| CVE-2019-1352 | HIGH | 8.8 | 24.0% | Jan 24, 2020 | A remote code execution vulnerability exists when Git for Visual Studio improperly sanitizes input, aka 'Git for Visual ... |
| CVE-2019-1351 | HIGH | 7.5 | 8.7% | Jan 24, 2020 | A tampering vulnerability exists when Git for Visual Studio improperly handles virtual drive paths, aka 'Git for Visual ... |
| CVE-2019-1350 | HIGH | 8.8 | 25.7% | Jan 24, 2020 | A remote code execution vulnerability exists when Git for Visual Studio improperly sanitizes input, aka 'Git for Visual ... |
| CVE-2019-1349 | HIGH | 8.8 | 34.0% | Jan 24, 2020 | A remote code execution vulnerability exists when Git for Visual Studio improperly sanitizes input, aka 'Git for Visual ... |
| CVE-2019-19363 | HIGH | 7.8 | 4.6% | Jan 24, 2020 | An issue was discovered in Ricoh (including Savin and Lanier) Windows printer drivers prior to 2020 that allows attacker... |
| CVE-2019-19631 | HIGH | 8.8 | 1.7% | Jan 24, 2020 | An issue was discovered in Big Switch Big Monitoring Fabric 6.2 through 6.2.4, 6.3 through 6.3.9, 7.0 through 7.0.3, and... |
| CVE-2019-18900 | LOW | 3.3 | 0.3% | Jan 24, 2020 | : Incorrect Default Permissions vulnerability in libzypp of SUSE CaaS Platform 3.0, SUSE Linux Enterprise Server 12, SUS... |
| CVE-2019-19632 | MEDIUM | 6.1 | 1.0% | Jan 24, 2020 | An issue was discovered in Big Switch Big Monitoring Fabric 6.2 through 6.2.4, 6.3 through 6.3.9, 7.0 through 7.0.3, and... |
| CVE-2019-3700 | LOW | 3.3 | 0.1% | Jan 24, 2020 | yast2-security didn't use secure defaults to protect passwords. This became a problem on 2019-10-07 when configuration f... |
| CVE-2019-3699 | HIGH | 7.8 | 0.4% | Jan 24, 2020 | UNIX Symbolic Link (Symlink) Following vulnerability in the packaging of privoxy on openSUSE Leap 15.1, Factory allows l... |
| CVE-2019-3697 | HIGH | 7.8 | 0.5% | Jan 24, 2020 | UNIX Symbolic Link (Symlink) Following vulnerability in the packaging of gnump3d in openSUSE Leap 15.1 allows local atta... |
| CVE-2019-3694 | HIGH | 7.8 | 0.4% | Jan 24, 2020 | A Symbolic Link (Symlink) Following vulnerability in the packaging of munin in openSUSE Factory, Leap 15.1 allows local ... |
| CVE-2019-3693 | HIGH | 7.8 | 0.4% | Jan 24, 2020 | A symlink following vulnerability in the packaging of mailman in SUSE Linux Enterprise Server 11, SUSE Linux Enterprise ... |
| CVE-2019-3692 | HIGH | 7.8 | 0.5% | Jan 24, 2020 | The packaging of inn on SUSE Linux Enterprise Server 11; openSUSE Factory, Leap 15.1 allows local attackers to escalate ... |
| CVE-2019-3687 | LOW | 3.3 | 0.3% | Jan 24, 2020 | The permission package in SUSE Linux Enterprise Server allowed all local users to run dumpcap in the "easy" permission p... |
| CVE-2019-17570 | CRITICAL | 9.8 | 49.3% | Jan 23, 2020 | An untrusted deserialization was found in the org.apache.xmlrpc.parser.XmlRpcResponseParser:addResult method of Apache X... |
| CVE-2019-14885 | MEDIUM | 4.3 | 0.7% | Jan 23, 2020 | A flaw was found in the JBoss EAP Vault system in all versions before 7.2.6.GA. Confidential information of the system p... |
| CVE-2019-19898 | HIGH | 7.5 | 0.7% | Jan 23, 2020 | In IXP EasyInstall 6.2.13723, there are cleartext credentials in network communication on TCP port 20050 when using the ... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now