2019 CVE Vulnerabilities
17,620 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-9877 | — | — | 1.1% | Mar 21, 2019 | There is an invalid memory access vulnerability in the function TextPage::findGaps() located at TextOutputDev.c in Xpdf ... |
| CVE-2019-9870 | — | — | 1.8% | Mar 21, 2019 | plugin.js in the w8tcha oEmbed plugin before 2019-03-14 for CKEditor mishandles SCRIPT elements. |
| CVE-2019-9868 | — | — | 1.3% | Mar 21, 2019 | An issue was discovered in the Web Console in Veritas NetBackup Appliance through 3.1.2. The SMTP password is displayed ... |
| CVE-2019-9867 | — | — | 1.2% | Mar 21, 2019 | An issue was discovered in the Web Console in Veritas NetBackup Appliance through 3.1.2. The proxy server password is di... |
| CVE-2019-9857 | — | — | 0.4% | Mar 21, 2019 | In the Linux kernel through 5.0.2, the function inotify_update_existing_watch() in fs/notify/inotify/inotify_user.c negl... |
| CVE-2019-9837 | — | — | 1.3% | Mar 21, 2019 | Doorkeeper::OpenidConnect (aka the OpenID Connect extension for Doorkeeper) 1.4.x and 1.5.x before 1.5.4 has an open red... |
| CVE-2019-9094 | — | — | 0.8% | Mar 21, 2019 | A Reflected Cross Site Scripting (XSS) Vulnerability was discovered in /s/adada/cfiles/upload in Humhub 1.3.10 Community... |
| CVE-2019-9093 | — | — | 0.8% | Mar 21, 2019 | A Reflected Cross Site Scripting (XSS) Vulnerability was discovered in file/file/upload in Humhub 1.3.10 Community Editi... |
| CVE-2019-9083 | — | — | 17.6% | Mar 21, 2019 | SQLiteManager 1.20 and 1.24 allows SQL injection via the /sqlitemanager/main.php dbsel parameter. NOTE: This product is ... |
| CVE-2019-8938 | — | — | 1.5% | Mar 21, 2019 | VertrigoServ 2.17 allows XSS via the /inc/extensions.php ext parameter. |
| CVE-2019-7441 | — | — | 6.0% | Mar 21, 2019 | cgi-bin/webscr?cmd=_cart in the WooCommerce PayPal Checkout Payment Gateway plugin 1.6.8 for WordPress allows Parameter ... |
| CVE-2019-7440 | — | — | 2.0% | Mar 21, 2019 | JioFi 4G M2S 1.0.2 devices have CSRF via the SSID name and Security Key field under Edit Wi-Fi Settings (aka a SetWiFi_S... |
| CVE-2019-7439 | — | — | 4.8% | Mar 21, 2019 | cgi-bin/qcmap_web_cgi on JioFi 4G M2S 1.0.2 devices allows a DoS (Hang) via the mask POST parameter. |
| CVE-2019-7438 | — | — | 4.0% | Mar 21, 2019 | cgi-bin/qcmap_web_cgi on JioFi 4G M2S 1.0.2 devices has XSS and HTML injection via the mask POST parameter. |
| CVE-2019-7437 | — | — | 0.8% | Mar 21, 2019 | PHP Scripts Mall Opensource Classified Ads Script 3.2.2 has reflected Cross-Site Scripting (XSS) via the Search field. |
| CVE-2019-7436 | — | — | 1.4% | Mar 21, 2019 | PHP Scripts Mall Opensource Classified Ads Script 3.2.2 has directory traversal via a direct request for a listing of an... |
| CVE-2019-7435 | — | — | 1.0% | Mar 21, 2019 | PHP Scripts Mall Opensource Classified Ads Script 3.2.2 has reflected HTML injection via the Search Form. |
| CVE-2019-7434 | — | — | 1.4% | Mar 21, 2019 | PHP Scripts Mall Rental Bike Script 2.0.3 has directory traversal via a direct request for a listing of an uploads direc... |
| CVE-2019-7433 | — | — | 0.6% | Mar 21, 2019 | PHP Scripts Mall Rental Bike Script 2.0.3 has Cross-Site Request Forgery (CSRF) via the Edit Profile feature. |
| CVE-2019-7432 | — | — | 0.7% | Mar 21, 2019 | PHP Scripts Mall Rental Bike Script 2.0.3 has HTML injection via the STREET field in the Profile Edit section. |
| CVE-2019-7431 | — | — | 1.4% | Mar 21, 2019 | PHP Scripts Mall Image Sharing Script 1.3.4 has directory traversal via a direct request for a listing of an uploads dir... |
| CVE-2019-7430 | — | — | 1.0% | Mar 21, 2019 | PHP Scripts Mall Image Sharing Script 1.3.4 has HTML injection via the Search Bar. |
| CVE-2019-7429 | — | — | 1.4% | Mar 21, 2019 | PHP Scripts Mall Property Rental Software 2.1.4 has directory traversal via a direct request for a listing of an uploads... |
| CVE-2019-7424 | — | — | 2.7% | Mar 21, 2019 | XSS exists in Zoho ManageEngine Netflow Analyzer Professional v7.0.0.2 in the Administration zone "/netflow/jspui/index.... |
| CVE-2019-7423 | — | — | 2.7% | Mar 21, 2019 | XSS exists in Zoho ManageEngine Netflow Analyzer Professional v7.0.0.2 in the Administration zone "/netflow/jspui/editPr... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now