2019 CVE Vulnerabilities

17,619 CVEs published in 2019.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2019-11556MEDIUM6.1Pagure before 5.6 allows XSS via the templates/blame.html blame view.
CVE-2019-1983MEDIUM5.3A vulnerability in the email message filtering feature of Cisco AsyncOS Software for Cisco Email Security Appliance (ESA...
CVE-2019-1736MEDIUM6.6A vulnerability in the firmware of the Cisco UCS C-Series Rack Servers could allow an authenticated, physical attacker t...
CVE-2019-16025MEDIUM4.8A vulnerability in the web framework of Cisco Emergency Responder could allow an authenticated, remote attacker to condu...
CVE-2019-16017MEDIUM6.8A vulnerability in the Operations, Administration, Maintenance and Provisioning (OAMP) OpsConsole Server for Cisco Unifi...
CVE-2019-16004MEDIUM6.5A vulnerability in the REST API endpoint of Cisco Vision Dynamic Signage Director could allow an unauthenticated, remote...
CVE-2019-16000MEDIUM4.4A vulnerability in the automatic update process of Cisco Umbrella Roaming Client for Windows could allow an authenticate...
CVE-2019-15993MEDIUM5.3A vulnerability in the web UI of Cisco Small Business Switches could allow an unauthenticated, remote attacker to access...
CVE-2019-15974MEDIUM6.1A vulnerability in the web interface of Cisco Managed Services Accelerator (MSX) could allow an unauthenticated, remote ...
CVE-2019-15969MEDIUM6.1A vulnerability in the web-based management interface of Cisco Web Security Appliance (WSA) could allow an unauthenticat...
CVE-2019-15963MEDIUM6.5A vulnerability in the web-based management interface of Cisco Unified Communications Manager could allow an authenticat...
CVE-2019-15959MEDIUM6.6A vulnerability in Cisco Small Business SPA500 Series IP Phones could allow a physically proximate attacker to execute a...
CVE-2019-20919MEDIUM4.7An issue was discovered in the DBI module before 1.643 for Perl. The hv_fetch() documentation requires checking for NULL...
CVE-2019-4671MEDIUM6.3IBM Maximo Asset Management 7.6.0 and 7.6.1 is vulnerable to SQL injection. A remote attacker could send specially-craft...
CVE-2019-14761MEDIUM4.4An issue was discovered in KaiOS 2.5. The pre-installed Note application is vulnerable to HTML and JavaScript injection ...
CVE-2019-14760MEDIUM4.4An issue was discovered in KaiOS 2.5. The pre-installed Recorder application is vulnerable to HTML and JavaScript inject...
CVE-2019-14759MEDIUM4.4An issue was discovered in KaiOS 1.0, 2.5, and 2.5.1. The pre-installed Radio application is vulnerable to HTML and Java...
CVE-2019-14758MEDIUM6.1An issue was discovered in KaiOS 2.5 and 2.5.1. The pre-installed File Manager application is vulnerable to HTML and Jav...
CVE-2019-14757MEDIUM6.1An issue was discovered in KaiOS 2.5 and 2.5.1. The pre-installed Contacts application is vulnerable to HTML and JavaScr...
CVE-2019-14756MEDIUM6.1An issue was discovered in KaiOS 1.0, 2.5, and 2.5.12.5. The pre-installed Email application is vulnerable to HTML and J...
CVE-2019-20918MEDIUM6.5An issue was discovered in InspIRCd 3 before 3.1.0. The silence module contains a use after free vulnerability. This vul...
CVE-2019-20917MEDIUM6.5An issue was discovered in InspIRCd 2 before 2.0.28 and 3 before 3.3.0. The mysql module contains a NULL pointer derefer...
CVE-2019-14115MEDIUM5.5u'Information disclosure issue occurs as in current logic as secure touch is released without clearing the display sessi...
CVE-2019-14025MEDIUM5.5u'When a new session is created, Object is returned that contains TZ addresses and it get passed to HLOS as an handle to...
CVE-2019-11928MEDIUM6.1An input validation issue in WhatsApp Desktop versions prior to v0.3.4932 could have allowed cross-site scripting upon c...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now