2019 CVE Vulnerabilities
17,620 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-4072 | MEDIUM | 6.3 | 0.8% | May 9, 2019 | IBM Tivoli Storage Productivity Center (IBM Spectrum Control Standard Edition 5.2.1 through 5.2.17) allows users to rema... |
| CVE-2019-11323 | MEDIUM | 5.9 | 1.3% | May 9, 2019 | HAProxy before 1.9.7 mishandles a reload with rotated keys, which triggers use of uninitialized, and very predictable, H... |
| CVE-2019-11820 | MEDIUM | 5.5 | 0.3% | May 9, 2019 | Information exposure through process environment vulnerability in Synology Calendar before 2.3.3-0620 allows local users... |
| CVE-2019-5014 | MEDIUM | 6.5 | 0.6% | May 8, 2019 | An exploitable improper access control vulnerability exists in the bluetooth low energy functionality of Winco Fireworks... |
| CVE-2019-11507 | MEDIUM | 6.1 | 4.1% | May 8, 2019 | In Pulse Secure Pulse Connect Secure (PCS) 8.3.x before 8.3R7.1 and 9.0.x before 9.0R3, an XSS issue has been found on t... |
| CVE-2019-5431 | MEDIUM | 5.4 | 0.4% | May 6, 2019 | This vulnerability was caused by an incomplete fix to CVE-2017-0911. Twitter Kit for iOS versions 3.0 to 3.4.0 is vulner... |
| CVE-2019-3799 | MEDIUM | 6.5 | 85.3% | May 6, 2019 | Spring Cloud Config, versions 2.1.x prior to 2.1.2, versions 2.0.x prior to 2.0.4, and versions 1.4.x prior to 1.4.6, an... |
| CVE-2019-6617 | MEDIUM | 6.5 | 2.3% | May 3, 2019 | On BIG-IP 14.0.0-14.1.0.1, 13.0.0-13.1.1.4, 12.1.0-12.1.4, 11.6.1-11.6.3.4, and 11.5.2-11.5.8, a user with the Resource ... |
| CVE-2019-6615 | MEDIUM | 4.9 | 1.1% | May 3, 2019 | On BIG-IP 14.0.0-14.1.0.1, 13.0.0-13.1.1.4, 12.1.0-12.1.4, 11.6.1-11.6.3.4, and 11.5.2-11.5.8, Administrator and Resourc... |
| CVE-2019-6614 | MEDIUM | 6.5 | 1.4% | May 3, 2019 | On BIG-IP 14.0.0-14.1.0.1, 13.0.0-13.1.1.4, and 12.1.0-12.1.4, internal methods used to prevent arbitrary file overwrite... |
| CVE-2019-3805 | MEDIUM | 4.7 | 0.2% | May 3, 2019 | A flaw was discovered in wildfly versions up to 16.0.0.Final that would allow local users who are able to execute init.d... |
| CVE-2019-3400 | MEDIUM | 6.1 | 1.1% | May 3, 2019 | The labels gadget in Jira before version 7.13.2, and from version 8.0.0 before version 8.0.2 allows remote attackers to ... |
| CVE-2019-11037 | MEDIUM | 4.9 | 2.0% | May 3, 2019 | In PHP imagick extension in versions between 3.3.0 and 3.4.4, writing to an array of values in ImagickKernel::fromMatrix... |
| CVE-2019-6613 | MEDIUM | 5.3 | 0.8% | May 3, 2019 | On BIG-IP 13.0.0-13.1.1.4, 12.1.0-12.1.4, 11.6.1-11.6.3.4, and 11.5.2-11.5.8, SNMP may expose sensitive configuration ob... |
| CVE-2019-1857 | MEDIUM | 6.1 | 0.6% | May 3, 2019 | A vulnerability in the web-based management interface of Cisco HyperFlex HX-Series could allow an unauthenticated, remot... |
| CVE-2019-1856 | MEDIUM | 6.1 | 1.1% | May 3, 2019 | A vulnerability in the web-based management interface of Cisco Prime Collaboration Assurance (PCA) could allow an unauth... |
| CVE-2019-1854 | MEDIUM | 4.1 | 3.8% | May 3, 2019 | A vulnerability in the management web interface of Cisco Expressway Series could allow an authenticated, remote attacker... |
| CVE-2019-1852 | MEDIUM | 6.1 | 1.1% | May 3, 2019 | A vulnerability in the web-based management interface of Cisco Prime Network Registrar could allow an unauthenticated, r... |
| CVE-2019-1844 | MEDIUM | 5.3 | 1.7% | May 3, 2019 | A vulnerability in certain attachment detection mechanisms of the Cisco Email Security Appliance (ESA) could allow an un... |
| CVE-2019-1838 | MEDIUM | 5.4 | 0.8% | May 3, 2019 | A vulnerability in the web-based management interface of Cisco Application Policy Infrastructure Controller (APIC) could... |
| CVE-2019-1803 | MEDIUM | 6.7 | 0.3% | May 3, 2019 | A vulnerability in the filesystem management for the Cisco Nexus 9000 Series Application Centric Infrastructure (ACI) Mo... |
| CVE-2019-1705 | MEDIUM | 5.3 | 2.0% | May 3, 2019 | A vulnerability in the remote access VPN session manager of Cisco Adaptive Security Appliance (ASA) Software could allow... |
| CVE-2019-1701 | MEDIUM | 4.8 | 0.9% | May 3, 2019 | Multiple vulnerabilities in the WebVPN service of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower T... |
| CVE-2019-1699 | MEDIUM | 6.7 | 0.7% | May 3, 2019 | A vulnerability in the CLI of Cisco Firepower Threat Defense (FTD) Software could allow an authenticated, local attacker... |
| CVE-2019-1695 | MEDIUM | 6.5 | 0.7% | May 3, 2019 | A vulnerability in the detection engine of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat D... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now