2019 CVE Vulnerabilities
17,620 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-7711 | — | — | 1.5% | Mar 26, 2019 | An issue was discovered in the Interpeak IPCOMShell TELNET server on Green Hills INTEGRITY RTOS 5.0.4. The undocumented ... |
| CVE-2019-10061 | — | — | 4.2% | Mar 26, 2019 | utils/find-opencv.js in node-opencv (aka OpenCV bindings for Node.js) prior to 6.1.0 is vulnerable to Command Injection.... |
| CVE-2019-10060 | — | — | 1.7% | Mar 26, 2019 | The Verix Multi-app Conductor application 2.7 for Verifone Verix suffers from a buffer overflow vulnerability that allow... |
| CVE-2019-10044 | — | — | 3.3% | Mar 25, 2019 | Telegram Desktop before 1.5.12 on Windows, and the Telegram applications for Android, iOS, and Linux, is vulnerable to a... |
| CVE-2019-7610 | — | — | 3.9% | Mar 25, 2019 | Kibana versions before 6.6.1 contain an arbitrary code execution flaw in the security audit logger. If a Kibana instance... |
| CVE-2019-7608 | — | — | 1.3% | Mar 25, 2019 | Kibana versions before 5.6.15 and 6.6.1 had a cross-site scripting (XSS) vulnerability that could allow an attacker to o... |
| CVE-2019-3395 | — | — | 6.7% | Mar 25, 2019 | The WebDAV endpoint in Atlassian Confluence Server and Data Center before version 6.6.7 (the fixed version for 6.6.x), f... |
| CVE-2019-10042 | — | — | 1.7% | Mar 25, 2019 | The D-Link DIR-816 A2 1.11 router only checks the random token when authorizing a goform request. An attacker can get th... |
| CVE-2019-10041 | — | — | 1.5% | Mar 25, 2019 | The D-Link DIR-816 A2 1.11 router only checks the random token when authorizing a goform request. An attacker can get th... |
| CVE-2019-10040 | — | — | 2.5% | Mar 25, 2019 | The D-Link DIR-816 A2 1.11 router only checks the random token when authorizing a goform request. An attacker can get th... |
| CVE-2019-10039 | — | — | 1.9% | Mar 25, 2019 | The D-Link DIR-816 A2 1.11 router only checks the random token when authorizing a goform request. An attacker can get th... |
| CVE-2019-10011 | — | — | 2.1% | Mar 25, 2019 | ICS/StaticPages/AddTestUsers.aspx in Jenzabar JICS (aka Internet Campus Solution) before 2019-02-06 allows remote attack... |
| CVE-2019-6240 | — | — | 2.2% | Mar 25, 2019 | An issue was discovered in GitLab Community and Enterprise Edition before 11.4. It allows Directory Traversal. |
| CVE-2019-3484 | — | — | 1.4% | Mar 25, 2019 | Mitigates a remote code execution issue in ArcSight Logger versions prior to 6.7. |
| CVE-2019-3483 | — | — | 1.6% | Mar 25, 2019 | Mitigates a potential information leakage issue in ArcSight Logger versions prior to 6.7. |
| CVE-2019-3482 | — | — | 4.2% | Mar 25, 2019 | Mitigates a directory traversal issue in ArcSight Logger versions prior to 6.7. |
| CVE-2019-3481 | — | — | 1.7% | Mar 25, 2019 | Mitigates a XML External Entity Parsing issue in ArcSight Logger versions prior to 6.7. |
| CVE-2019-3480 | — | — | 1.3% | Mar 25, 2019 | Mitigates a stored/reflected XSS issue in ArcSight Logger versions prior to 6.7. |
| CVE-2019-3479 | — | — | 6.9% | Mar 25, 2019 | Mitigates a potential remote code execution issue in ArcSight Logger versions prior to 6.7. |
| CVE-2019-3476 | — | — | 2.9% | Mar 25, 2019 | Remote arbitrary code execution in Micro Focus Data Protector, version 10.03 this vulnerability could allow remote arbit... |
| CVE-2019-10016 | — | — | 0.8% | Mar 25, 2019 | GForge Advanced Server 6.4.4 allows XSS via the commonsearch.php words parameter, as demonstrated by a snippet/search/?w... |
| CVE-2019-10027 | — | — | 0.7% | Mar 25, 2019 | PHPCMS 9.6.x through 9.6.3 has XSS via the mailbox (aka E-mail) field on the personal information screen. |
| CVE-2019-10026 | — | — | 0.9% | Mar 25, 2019 | An issue was discovered in Xpdf 4.01.01. There is an FPE in the function PostScriptFunction::exec in Function.cc for the... |
| CVE-2019-10025 | — | — | 0.9% | Mar 25, 2019 | An issue was discovered in Xpdf 4.01.01. There is an FPE in the function ImageStream::ImageStream at Stream.cc for nBits... |
| CVE-2019-10024 | — | — | 0.9% | Mar 25, 2019 | An issue was discovered in Xpdf 4.01.01. There is an FPE in the function Splash::scaleImageYuXu at Splash.cc for y Brese... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now