2019 CVE Vulnerabilities

17,619 CVEs published in 2019.

CVE IDSeverityCVSSDescription
CVE-2019-25381MEDIUM6.1Smoothwall Express 3.1-SP4-polar-x86_64-update9 contains multiple reflected cross-site scripting vulnerabilities in the ...
CVE-2019-25380MEDIUM6.1Smoothwall Express 3.1-SP4-polar-x86_64-update9 contains multiple reflected cross-site scripting vulnerabilities in the ...
CVE-2019-25379HIGH7.2Smoothwall Express 3.1-SP4-polar-x86_64-update9 contains stored and reflected cross-site scripting vulnerabilities in th...
CVE-2019-25378MEDIUM6.1Smoothwall Express 3.1-SP4-polar-x86_64-update9 contains multiple cross-site scripting vulnerabilities in the proxy.cgi ...
CVE-2019-25377MEDIUM6.1OPNsense 19.1 contains a reflected cross-site scripting vulnerability in the system_advanced_sysctl.php endpoint that al...
CVE-2019-25376MEDIUM6.1OPNsense 19.1 contains a reflected cross-site scripting vulnerability that allows unauthenticated attackers to inject ma...
CVE-2019-25375MEDIUM6.1OPNsense 19.1 contains a reflected cross-site scripting vulnerability that allows unauthenticated attackers to inject ma...
CVE-2019-25374MEDIUM6.1OPNsense 19.1 contains a reflected cross-site scripting vulnerability that allows attackers to inject malicious scripts ...
CVE-2019-25373MEDIUM5.4OPNsense 19.1 contains a stored cross-site scripting vulnerability that allows authenticated attackers to inject malicio...
CVE-2019-25372MEDIUM6.1OPNsense 19.1 contains a reflected cross-site scripting vulnerability that allows unauthenticated attackers to inject ma...
CVE-2019-25371MEDIUM6.1OPNsense 19.1 contains a reflected cross-site scripting vulnerability that allows unauthenticated attackers to inject ma...
CVE-2019-25370MEDIUM6.1OPNsense 19.1 contains a reflected cross-site scripting vulnerability that allows attackers to inject malicious scripts ...
CVE-2019-25369MEDIUM5.4OPNsense 19.1 contains a stored cross-site scripting vulnerability in the system_advanced_sysctl.php endpoint that allow...
CVE-2019-25368MEDIUM5.4OPNsense 19.1 contains multiple cross-site scripting vulnerabilities in the diag_backup.php endpoint that allow attacker...
CVE-2019-25367MEDIUM5.4ArangoDB Community Edition 3.4.2-1 contains multiple cross-site scripting vulnerabilities in the Aardvark web admin inte...
CVE-2019-25342HIGH7.5Centova Cast 3.2.12 contains a denial of service vulnerability that allows attackers to overwhelm the system by repeated...
CVE-2019-25341HIGH7.5iNetTools for iOS 8.20 contains a denial of service vulnerability in the Whois feature that allows attackers to crash th...
CVE-2019-25340HIGH7.5SpotAuditor 5.3.2 contains a denial of service vulnerability in its Base64 decryption feature that allows attackers to c...
CVE-2019-25339HIGH7.5GHIA CamIP 1.2 for iOS contains a denial of service vulnerability in the password input field that allows attackers to c...
CVE-2019-25338MEDIUM6.9DokuWiki 2018-04-22b contains a username enumeration vulnerability in its password reset functionality that allows attac...
CVE-2019-25337CRITICAL9.8OwnCloud 8.1.8 contains a username enumeration vulnerability that allows remote attackers to discover user accounts by m...
CVE-2019-25336HIGH7.8SpotAuditor 5.3.2 contains a local buffer overflow vulnerability in the Base64 Encrypted Password tool that allows attac...
CVE-2019-25335HIGH8.8PRO-7070 Hazır Profesyonel Web Sitesi version 1.0 contains an authentication bypass vulnerability in the administration ...
CVE-2019-25334MEDIUM5.5Product Key Explorer 4.2.0.0 contains a denial of service vulnerability that allows local attackers to crash the applica...
CVE-2019-25333HIGH8.7Bullwark Momentum Series JAWS 1.0 contains a directory traversal vulnerability that allows unauthenticated attackers to ...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now