2019 CVE Vulnerabilities

17,620 CVEs published in 2019.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2019-6556When processing project files, the application (Omron CX-Programmer v9.70 and prior and Common Components January 2019 a...
CVE-2019-0229A number of HTTP endpoints in the Airflow webserver (both RBAC and classic) did not have adequate protection and were vu...
CVE-2019-0216A malicious admin user could edit the state of objects in the Airflow metadata database to execute arbitrary javascript ...
CVE-2019-0034Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. Reason: This candidate was withdrawn by its CNA. Further investigatio...
CVE-2019-10946An issue was discovered in Joomla! before 3.9.5. The "refresh list of helpsites" endpoint of com_users lacks access chec...
CVE-2019-10945An issue was discovered in Joomla! before 3.9.5. The Media Manager component does not properly sanitize the folder param...
CVE-2019-0208Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n...
CVE-2019-7139An unauthenticated user can execute SQL statements that allow arbitrary read access to the underlying database, which ca...
CVE-2019-5425In Ubiquiti Networks EdgeSwitch X v1.1.0 and prior, an authenticated user can execute arbitrary shell commands over the ...
CVE-2019-6156In Lenovo systems, SMM BIOS Write Protection is used to prevent writes to SPI Flash. While this provides sufficient prot...
CVE-2019-6287In Rancher 2.0.0 through 2.1.5, project members have continued access to create, update, read, and delete namespaces in ...
CVE-2019-0199The HTTP/2 implementation in Apache Tomcat 9.0.0.M1 to 9.0.14 and 8.5.0 to 8.5.37 accepted streams with excessive number...
CVE-2019-10843Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu...
CVE-2019-9696Symantec VIP Enterprise Gateway (all versions) may be susceptible to a cross-site scripting (XSS) exploit, which is a ty...
CVE-2019-5585An improper access control vulnerability in FortiClientMac before 6.0.5 may allow an attacker to affect the application'...
CVE-2019-0879A remote code execution vulnerability exists when the Windows Jet Database Engine improperly handles objects in memory, ...
CVE-2019-0877A remote code execution vulnerability exists when the Windows Jet Database Engine improperly handles objects in memory, ...
CVE-2019-0875An elevation of privilege vulnerability exists when Azure DevOps Server 2019 does not properly enforce project permissio...
CVE-2019-0874A Cross-site Scripting (XSS) vulnerability exists when Azure DevOps Server does not properly sanitize user provided inpu...
CVE-2019-0871A Cross-site Scripting (XSS) vulnerability exists when Azure DevOps Server and Team Foundation Server do not properly sa...
CVE-2019-0870A Cross-site Scripting (XSS) vulnerability exists when Azure DevOps Server and Team Foundation Server do not properly sa...
CVE-2019-0869A spoofing vulnerability exists in Microsoft Azure DevOps Server when it fails to properly handle web requests, aka 'Azu...
CVE-2019-0868A Cross-site Scripting (XSS) vulnerability exists when Azure DevOps Server and Team Foundation Server do not properly sa...
CVE-2019-0867A Cross-site Scripting (XSS) vulnerability exists when Azure DevOps Server and Team Foundation Server do not properly sa...
CVE-2019-0866A Cross-site Scripting (XSS) vulnerability exists when Azure DevOps Server and Team Foundation Server do not properly sa...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now