2019 CVE Vulnerabilities

17,620 CVEs published in 2019.

CVE IDSeverityCVSSDescription
CVE-2019-0587Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n...
CVE-2019-0563Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n...
CVE-2019-0544Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n...
CVE-2019-1460MEDIUM4.6A spoofing vulnerability exists in the way Microsoft Outlook for Android software parses specifically crafted email mess...
CVE-2019-1454MEDIUM5.5An elevation of privilege vulnerability exists when the Windows User Profile Service (ProfSvc) improperly handles symlin...
CVE-2019-1414HIGH7.8An elevation of privilege vulnerability exists in Visual Studio Code when it exposes a debug listener to users of a loca...
CVE-2019-1354HIGH8.8A remote code execution vulnerability exists when Git for Visual Studio improperly sanitizes input, aka 'Git for Visual ...
CVE-2019-1352HIGH8.8A remote code execution vulnerability exists when Git for Visual Studio improperly sanitizes input, aka 'Git for Visual ...
CVE-2019-1351HIGH7.5A tampering vulnerability exists when Git for Visual Studio improperly handles virtual drive paths, aka 'Git for Visual ...
CVE-2019-1350HIGH8.8A remote code execution vulnerability exists when Git for Visual Studio improperly sanitizes input, aka 'Git for Visual ...
CVE-2019-1349HIGH8.8A remote code execution vulnerability exists when Git for Visual Studio improperly sanitizes input, aka 'Git for Visual ...
CVE-2019-19363HIGH7.8An issue was discovered in Ricoh (including Savin and Lanier) Windows printer drivers prior to 2020 that allows attacker...
CVE-2019-19631HIGH8.8An issue was discovered in Big Switch Big Monitoring Fabric 6.2 through 6.2.4, 6.3 through 6.3.9, 7.0 through 7.0.3, and...
CVE-2019-18900LOW3.3: Incorrect Default Permissions vulnerability in libzypp of SUSE CaaS Platform 3.0, SUSE Linux Enterprise Server 12, SUS...
CVE-2019-19632MEDIUM6.1An issue was discovered in Big Switch Big Monitoring Fabric 6.2 through 6.2.4, 6.3 through 6.3.9, 7.0 through 7.0.3, and...
CVE-2019-3700LOW3.3yast2-security didn't use secure defaults to protect passwords. This became a problem on 2019-10-07 when configuration f...
CVE-2019-3699HIGH7.8UNIX Symbolic Link (Symlink) Following vulnerability in the packaging of privoxy on openSUSE Leap 15.1, Factory allows l...
CVE-2019-3697HIGH7.8UNIX Symbolic Link (Symlink) Following vulnerability in the packaging of gnump3d in openSUSE Leap 15.1 allows local atta...
CVE-2019-3694HIGH7.8A Symbolic Link (Symlink) Following vulnerability in the packaging of munin in openSUSE Factory, Leap 15.1 allows local ...
CVE-2019-3693HIGH7.8A symlink following vulnerability in the packaging of mailman in SUSE Linux Enterprise Server 11, SUSE Linux Enterprise ...
CVE-2019-3692HIGH7.8The packaging of inn on SUSE Linux Enterprise Server 11; openSUSE Factory, Leap 15.1 allows local attackers to escalate ...
CVE-2019-3687LOW3.3The permission package in SUSE Linux Enterprise Server allowed all local users to run dumpcap in the "easy" permission p...
CVE-2019-17570CRITICAL9.8An untrusted deserialization was found in the org.apache.xmlrpc.parser.XmlRpcResponseParser:addResult method of Apache X...
CVE-2019-14885MEDIUM4.3A flaw was found in the JBoss EAP Vault system in all versions before 7.2.6.GA. Confidential information of the system p...
CVE-2019-19898HIGH7.5In IXP EasyInstall 6.2.13723, there are cleartext credentials in network communication on TCP port 20050 when using the ...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now