2019 CVE Vulnerabilities

17,620 CVEs published in 2019.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2019-2757MEDIUM4.9Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Optimizer). Supported versions that a...
CVE-2019-2755MEDIUM4.9Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Replication). Supported versions that...
CVE-2019-2752MEDIUM4.9Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Options). Supported versions that are...
CVE-2019-2747MEDIUM4.9Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: GIS). Supported versions that are aff...
CVE-2019-2746MEDIUM6.5Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Data Dictionary). Supported versions ...
CVE-2019-2745MEDIUM5.1Vulnerability in the Java SE component of Oracle Java SE (subcomponent: Security). Supported versions that are affected ...
CVE-2019-2743MEDIUM5.3Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Security: Roles). Supported versions ...
CVE-2019-2740MEDIUM6.5Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: XML). Supported versions that are aff...
CVE-2019-2739MEDIUM5.1Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Security: Privileges). Supported vers...
CVE-2019-2737MEDIUM4.9Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server : Pluggable Auth). Supported versions ...
CVE-2019-11273MEDIUM4.3Pivotal Container Services (PKS) versions 1.3.x prior to 1.3.7, and versions 1.4.x prior to 1.4.1, contains a vulnerable...
CVE-2019-11730MEDIUM6.5A vulnerability exists where if a user opens a locally saved HTML file, this file can use file: URIs to access other fil...
CVE-2019-11728MEDIUM4.7The HTTP Alternative Services header, Alt-Svc, can be used by a malicious site to scan all TCP ports of any host that th...
CVE-2019-11725MEDIUM6.5When a user navigates to site marked as unsafe by the Safebrowsing API, warning messages are displayed and navigation is...
CVE-2019-11724MEDIUM6.1Application permissions give additional remote troubleshooting permission to the site input.mozilla.org, which has been ...
CVE-2019-11721MEDIUM6.5The unicode latin 'kra' character can be used to spoof a standard 'k' character in the addressbar. This allows for domai...
CVE-2019-11720MEDIUM6.1Some unicode characters are incorrectly treated as whitespace during the parsing of web content instead of triggering pa...
CVE-2019-11718MEDIUM5.3Activity Stream can display content from sent from the Snippet Service website. This content is written to innerHTML on ...
CVE-2019-11717MEDIUM5.3A vulnerability exists where the caret ("^") character is improperly escaped constructing some URIs due to it being used...
CVE-2019-1010206MEDIUM5.9OSS Http Request (Apache Cordova Plugin) 6 is affected by: Missing SSL certificate validation. The impact is: certificat...
CVE-2019-1010204MEDIUM5.5GNU binutils gold gold v1.11-v1.16 (GNU binutils v2.21-v2.31.1) is affected by: Improper Input Validation, Signed/Unsign...
CVE-2019-1010124MEDIUM5.4WebAppick WooCommerce Product Feed 2.2.18 and earlier is affected by: Cross Site Scripting (XSS). The impact is: XSS to ...
CVE-2019-9959MEDIUM6.5The JPXStream::init function in Poppler 0.78.0 and earlier doesn't check for negative values of stream length, leading t...
CVE-2019-4236MEDIUM4.4A IBM Spectrum Protect 7.l client backup or archive operation running for an HP-UX VxFS object is silently skipping Acce...
CVE-2019-7590MEDIUM6.7ExacqVision Server’s services 'exacqVisionServer', 'dvrdhcpserver' and 'mdnsresponder' have an unquoted service path. If...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now