2019 CVE Vulnerabilities

17,620 CVEs published in 2019.

CVE IDSeverityCVSSDescription
CVE-2019-16674CRITICAL9.8An issue was discovered on Weidmueller IE-SW-VL05M 3.6.6 Build 16102415, IE-SW-VL08MT 3.5.2 Build 16102415, and IE-SW-PL...
CVE-2019-16673MEDIUM6.5An issue was discovered on Weidmueller IE-SW-VL05M 3.6.6 Build 16102415, IE-SW-VL08MT 3.5.2 Build 16102415, and IE-SW-PL...
CVE-2019-16672CRITICAL9.8An issue was discovered on Weidmueller IE-SW-VL05M 3.6.6 Build 16102415, IE-SW-VL08MT 3.5.2 Build 16102415, and IE-SW-PL...
CVE-2019-16671MEDIUM6.5An issue was discovered on Weidmueller IE-SW-VL05M 3.6.6 Build 16102415, IE-SW-VL08MT 3.5.2 Build 16102415, and IE-SW-PL...
CVE-2019-16670CRITICAL9.8An issue was discovered on Weidmueller IE-SW-VL05M 3.6.6 Build 16102415, IE-SW-VL08MT 3.5.2 Build 16102415, and IE-SW-PL...
CVE-2019-12734HIGH8.8SiteVision 4 has Incorrect Access Control.
CVE-2019-12733HIGH8.8SiteVision 4 allows Remote Code Execution.
CVE-2019-5544CRITICAL9.8OpenSLP as used in ESXi and the Horizon DaaS appliances has a heap overwrite issue. VMware has evaluated the severity of...
CVE-2019-19627MEDIUM5.3SROS 2 0.8.1 (after CVE-2019-19625 is mitigated) leaks ROS 2 node-related information regardless of the rtps_protection_...
CVE-2019-19625MEDIUM5.3SROS 2 0.8.1 (which provides the tools that generate and distribute keys for Robot Operating System 2 and uses the under...
CVE-2019-19620LOW3.3In SecureWorks Red Cloak Windows Agent before 2.0.7.9, a local user can bypass the generation of telemetry alerts by rem...
CVE-2019-19552MEDIUM4.8In userman 13.0.76.43 through 15.0.20 in Sangoma FreePBX, XSS exists in the user management screen of the Administrator ...
CVE-2019-19551MEDIUM4.8In userman 13.0.76.43 through 15.0.20 in Sangoma FreePBX, XSS exists in the User Management screen of the Administrator ...
CVE-2019-19334CRITICAL9.8In all versions of libyang before 1.0-r5, a stack-based buffer overflow was discovered in the way libyang parses YANG fi...
CVE-2019-19333CRITICAL9.8In all versions of libyang before 1.0-r5, a stack-based buffer overflow was discovered in the way libyang parses YANG fi...
CVE-2019-11554MEDIUM5.9The Audible application through 2.34.0 for Android has Missing SSL Certificate Validation for Adobe SDKs, allowing MITM ...
CVE-2019-19624MEDIUM6.5An out-of-bounds read was discovered in OpenCV before 4.1.1. Specifically, variable coarsest_scale is assumed to be grea...
CVE-2019-19619MEDIUM6.1domain/section/markdown/markdown.go in Documize before 3.5.1 mishandles untrusted Markdown content. This was addressed b...
CVE-2019-19617CRITICAL9.8phpMyAdmin before 4.9.2 does not escape certain Git information, related to libraries/classes/Display/GitRevision.php an...
CVE-2019-19616MEDIUM4.3An Insecure Direct Object Reference (IDOR) vulnerability in the Xtivia Web Time and Expense (WebTE) interface used for M...
CVE-2019-19609HIGH7.2The Strapi framework before 3.0.0-beta.17.8 is vulnerable to Remote Code Execution in the Install and Uninstall Plugin c...
CVE-2019-16770HIGH7.5In Puma before versions 3.12.2 and 4.3.1, a poorly-behaved client could use keepalive requests to monopolize Puma's reac...
CVE-2019-16768MEDIUM4.3In affected versions of Sylius, exception messages from internal exceptions (like database exception) are wrapped by \Sy...
CVE-2019-16769MEDIUM5.4The serialize-javascript npm package before version 2.1.1 is vulnerable to Cross-site Scripting (XSS). It does not prope...
CVE-2019-5098HIGH8.6An exploitable out-of-bounds read vulnerability exists in AMD ATIDXX64.DLL driver, version 26.20.13001.29010. A speciall...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now