2019 CVE Vulnerabilities
17,620 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-18273 | MEDIUM | 4.8 | 0.7% | Jan 15, 2020 | OSIsoft PI Vision, PI Vision 2017 R2 and PI Vision 2017 R2 SP1. The affected product is vulnerable to cross-site scripti... |
| CVE-2019-18271 | HIGH | 8.8 | 0.6% | Jan 15, 2020 | OSIsoft PI Vision, All versions of PI Vision prior to 2019. The affected product is vulnerable to a cross-site request f... |
| CVE-2019-18244 | MEDIUM | 4.7 | 0.3% | Jan 15, 2020 | In OSIsoft PI System multiple products and versions, a local attacker could view sensitive information in log files when... |
| CVE-2019-15961 | MEDIUM | 6.5 | 3.1% | Jan 15, 2020 | A vulnerability in the email parsing module Clam AntiVirus (ClamAV) Software versions 0.102.0, 0.101.4 and prior could a... |
| CVE-2019-9510 | HIGH | 7.8 | 1.3% | Jan 15, 2020 | A vulnerability in Microsoft Windows 10 1803 and Windows Server 2019 and later systems can allow authenticated RDP-conne... |
| CVE-2019-9493 | CRITICAL | 9.8 | 3.6% | Jan 15, 2020 | The MyCar Controls of AutoMobility Distribution Inc., mobile application contains hard-coded admin credentials. A remote... |
| CVE-2019-16469 | HIGH | 7.5 | 17.2% | Jan 15, 2020 | Adobe Experience Manager versions 6.5, 6.4, 6.3, 6.2, 6.1, and 6.0 have an expression language injection vulnerability. ... |
| CVE-2019-16468 | HIGH | 7.5 | 2.6% | Jan 15, 2020 | Adobe Experience Manager versions 6.5, 6.4, 6.3, 6.2, 6.1, and 6.0 have an user interface injection vulnerability. Succe... |
| CVE-2019-16467 | MEDIUM | 6.1 | 1.5% | Jan 15, 2020 | Adobe Experience Manager versions 6.5, 6.4, 6.3, 6.2, 6.1, and 6.0 have a reflected cross-site scripting vulnerability. ... |
| CVE-2019-16466 | MEDIUM | 6.1 | 1.5% | Jan 15, 2020 | Adobe Experience Manager versions 6.5, 6.4, 6.3, 6.2, 6.1, and 6.0 have a reflected cross-site scripting vulnerability. ... |
| CVE-2019-18412 | HIGH | 7.5 | 1.0% | Jan 15, 2020 | JetBrains IDETalk plugin before version 193.4099.10 allows XXE |
| CVE-2019-17150 | — | — | — | Jan 15, 2020 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. Reason: This candidate was accidentally assigned. Notes: All CVE user... |
| CVE-2019-17149 | — | — | — | Jan 15, 2020 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. Reason: This candidate was accidentally assigned. Notes: All CVE user... |
| CVE-2019-16784 | HIGH | 7.8 | 0.7% | Jan 14, 2020 | In PyInstaller before version 3.6, only on Windows, a local privilege escalation vulnerability is present in this partic... |
| CVE-2019-3981 | LOW | 3.7 | 1.1% | Jan 14, 2020 | MikroTik Winbox 3.20 and below is vulnerable to man in the middle attacks. A man in the middle can downgrade the client'... |
| CVE-2019-13722 | MEDIUM | 6.5 | 1.0% | Jan 14, 2020 | Inappropriate implementation in WebRTC in Google Chrome prior to 79.0.3945.79 allowed a remote attacker to potentially e... |
| CVE-2019-13537 | HIGH | 7.5 | 1.3% | Jan 14, 2020 | The IEC870IP driver for AVEVA’s Vijeo Citect and Citect SCADA and Schneider Electric’s Power SCADA Operation has a buffe... |
| CVE-2019-19548 | HIGH | 7.8 | 0.4% | Jan 14, 2020 | Norton Power Eraser, prior to 5.3.0.67, may be susceptible to a privilege escalation vulnerability, which is a type of i... |
| CVE-2019-12398 | MEDIUM | 4.8 | 1.9% | Jan 14, 2020 | In Apache Airflow before 1.10.5 when running with the "classic" UI, a malicious admin user could edit the state of objec... |
| CVE-2019-10995 | HIGH | 8.8 | 0.7% | Jan 14, 2020 | ABB CP651 HMI products revision BSP UN30 v1.76 and prior implement hidden administrative accounts that are used during t... |
| CVE-2019-12399 | HIGH | 7.5 | 3.9% | Jan 14, 2020 | When Connect workers in Apache Kafka 2.0.0, 2.0.1, 2.1.0, 2.1.1, 2.2.0, 2.2.1, or 2.3.0 are configured with one or more ... |
| CVE-2019-0219 | CRITICAL | 9.8 | 7.8% | Jan 14, 2020 | A website running in the InAppBrowser webview on Android could execute arbitrary JavaScript in the main application's we... |
| CVE-2019-20144 | MEDIUM | 4.3 | 0.7% | Jan 13, 2020 | An issue was discovered in GitLab Community Edition (CE) and Enterprise Edition (EE) 10.8 through 12.6.1. It has Incorre... |
| CVE-2019-20143 | MEDIUM | 5.3 | 0.9% | Jan 13, 2020 | An issue was discovered in GitLab Community Edition (CE) and Enterprise Edition (EE) 12.6. It has Incorrect Access Contr... |
| CVE-2019-20142 | MEDIUM | 4.3 | 0.9% | Jan 13, 2020 | An issue was discovered in GitLab Community Edition (CE) and Enterprise Edition (EE) 12.3 through 12.6.1. It allows Deni... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now