2019 CVE Vulnerabilities

17,620 CVEs published in 2019.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2019-4142HIGH8.8IBM Cloud Private 2.1.0, 3.1.0, 3.1.1, and 3.1.2 is vulnerable to cross-site request forgery which could allow an attack...
CVE-2019-8323HIGH7.5An issue was discovered in RubyGems 2.6 and later through 3.0.2. Gem::GemcutterUtilities#with_response may output the AP...
CVE-2019-8322HIGH7.5An issue was discovered in RubyGems 2.6 and later through 3.0.2. The gem owner command outputs the contents of the API r...
CVE-2019-8321HIGH7.5An issue was discovered in RubyGems 2.6 and later through 3.0.2. Since Gem::UserInteraction#verbose calls say without es...
CVE-2019-8325HIGH7.5An issue was discovered in RubyGems 2.6 and later through 3.0.2. Since Gem::CommandManager#run calls alert_error without...
CVE-2019-8324HIGH8.8An issue was discovered in RubyGems 2.6 and later through 3.0.2. A crafted gem with a multi-line name is not handled cor...
CVE-2019-11409HIGH8.8app/operator_panel/exec.php in the Operator Panel module in FusionPBX 4.4.3 suffers from a command injection vulnerabili...
CVE-2019-12181HIGH8.8A privilege escalation vulnerability exists in SolarWinds Serv-U before 15.1.7 for Linux.
CVE-2019-4103HIGH8IBM Tivoli Netcool/Impact 7.1.0 allows for remote execution of command by low privileged User. Remote code execution all...
CVE-2019-11770HIGH8.1In Eclipse Buildship versions prior to 3.1.1, the build files indicate that this project is resolving dependencies over ...
CVE-2019-12802HIGH7.8In radare2 through 3.5.1, the rcc_context function of libr/egg/egg_lang.c mishandles changing context. This allows remot...
CVE-2019-12799HIGH8.8In createInstanceFromNamedArguments in Shopware through 5.6.x, a crafted web request can trigger a PHP object instantiat...
CVE-2019-11117HIGH7.8Improper permissions in the installer for Intel(R) Omni-Path Fabric Manager GUI before version 10.9.2.1.1 may allow an a...
CVE-2019-0164HIGH7.3Improper permissions in the installer for Intel(R) Turbo Boost Max Technology 3.0 driver version 1.0.0.1035 and before m...
CVE-2019-0130HIGH7.4Reflected XSS in web interface for Intel(R) Accelerated Storage Manager in Intel(R) RSTe before version 5.5.0.2015 may a...
CVE-2019-0128HIGH7.8Improper permissions in the installer for Intel(R) Chipset Device Software (INF Update Utility) before version 10.1.1.45...
CVE-2019-7845HIGH8.8Adobe Flash Player versions 32.0.0.192 and earlier, 32.0.0.192 and earlier, and 32.0.0.192 and earlier have an use after...
CVE-2019-5442HIGH7.5XML Entity Expansion (Billion Laughs Attack) on Pippo 1.12.0 results in Denial of Service.Entities are created recursive...
CVE-2019-6584HIGH8.8A vulnerability has been identified in SIEMENS LOGO!8 (6ED1052-xyyxx-0BA8 FS:01 to FS:06 / Firmware version V1.80.xx and...
CVE-2019-6582HIGH7.1A vulnerability has been identified in Siveillance VMS 2017 R2 (All versions < V11.2a), Siveillance VMS 2018 R1 (All ver...
CVE-2019-6581HIGH8.8A vulnerability has been identified in Siveillance VMS 2017 R2 (All versions < V11.2a), Siveillance VMS 2018 R1 (All ver...
CVE-2019-6571HIGH7.5A vulnerability has been identified in SIEMENS LOGO!8 (6ED1052-xyyxx-0BA8 FS:01 to FS:06 / Firmware version V1.80.xx and...
CVE-2019-10925HIGH7.1A vulnerability has been identified in SIMATIC MV400 family (All Versions < V7.0.6). An authenticated attacker could esc...
CVE-2019-1080HIGH7.5A remote code execution vulnerability exists in the way the scripting engine handles objects in memory in Microsoft brow...
CVE-2019-1069HIGH7.8An elevation of privilege vulnerability exists in the way the Task Scheduler Service validates certain file operations. ...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now