2019 CVE Vulnerabilities
17,619 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-20859 | HIGH | 7.5 | 1.2% | Jun 19, 2020 | An issue was discovered in Mattermost Server before 5.15.0. Login access control can be bypassed via crafted input. |
| CVE-2019-20858 | HIGH | 7.5 | 1.1% | Jun 19, 2020 | An issue was discovered in Mattermost Server before 5.15.0. It allows attackers to cause a denial of service (CPU consum... |
| CVE-2019-20857 | HIGH | 7.5 | 1.1% | Jun 19, 2020 | An issue was discovered in Mattermost Server before 5.16.0. It allows attackers to cause a denial of service (markdown r... |
| CVE-2019-20855 | HIGH | 7.5 | 1.2% | Jun 19, 2020 | An issue was discovered in Mattermost Server before 5.16.1, 5.15.2, 5.14.5, and 5.9.6. It allows attackers to obtain sen... |
| CVE-2019-20854 | HIGH | 7.5 | 1.3% | Jun 19, 2020 | An issue was discovered in Mattermost Server before 5.17.0. It allows remote attackers to cause a denial of service (cli... |
| CVE-2019-20852 | HIGH | 7.5 | 1.1% | Jun 19, 2020 | An issue was discovered in Mattermost Mobile Apps before 1.26.0. Local logging is not blocked for sensitive information ... |
| CVE-2019-20848 | HIGH | 7.5 | 0.9% | Jun 19, 2020 | An issue was discovered in Mattermost Mobile Apps before 1.26.0. The Quick Reply feature mishandles crafted replies. |
| CVE-2019-20846 | HIGH | 7.5 | 1.1% | Jun 19, 2020 | An issue was discovered in Mattermost Server before 5.18.0. It has weak permissions for server-local file storage. |
| CVE-2019-20845 | HIGH | 7.5 | 1.1% | Jun 19, 2020 | An issue was discovered in Mattermost Server before 5.18.0. It allows attackers to cause a denial of service (memory con... |
| CVE-2019-20843 | HIGH | 7.5 | 1.1% | Jun 19, 2020 | An issue was discovered in Mattermost Server before 5.18.0, 5.17.2, 5.16.4, 5.15.4, and 5.9.7. There are weak permission... |
| CVE-2019-20842 | HIGH | 7.2 | 1.0% | Jun 19, 2020 | An issue was discovered in Mattermost Server before 5.18.0, 5.17.2, 5.16.4, 5.15.4, and 5.9.7. There is SQL injection by... |
| CVE-2019-20841 | HIGH | 8.8 | 0.4% | Jun 19, 2020 | An issue was discovered in Mattermost Server before 5.18.0, 5.17.2, 5.16.4, 5.15.4, and 5.9.7. CSRF can sometimes occur ... |
| CVE-2019-9944 | HIGH | 7.5 | 1.1% | Jun 17, 2020 | In Open Microscopy Environment OMERO.server 5.0.0 through 5.6.0, the reading of files from imported image filesets may c... |
| CVE-2019-9943 | HIGH | 7.5 | 0.8% | Jun 17, 2020 | In ome.services.graphs.GraphTraversal.findObjectDetails in Open Microscopy Environment OMERO.server 5.1.0 through 5.6.0,... |
| CVE-2019-20840 | HIGH | 7.5 | 2.6% | Jun 17, 2020 | An issue was discovered in LibVNCServer before 0.9.13. libvncserver/ws_decode.c can lead to a crash because of unaligned... |
| CVE-2019-20839 | HIGH | 7.5 | 3.6% | Jun 17, 2020 | libvncclient/sockets.c in LibVNCServer before 0.9.13 has a buffer overflow via a long socket filename. |
| CVE-2019-17655 | HIGH | 7.5 | 1.0% | Jun 16, 2020 | A cleartext storage in a file or on disk (CWE-313) vulnerability in FortiOS SSL VPN 6.2.0 through 6.2.2, 6.0.9 and earli... |
| CVE-2019-18614 | HIGH | 7.8 | 0.3% | Jun 16, 2020 | On the Cypress CYW20735 evaluation board, any data that exceeds 384 bytes is copied and causes an overflow. This is beca... |
| CVE-2019-20838 | HIGH | 7.5 | 2.8% | Jun 15, 2020 | libpcre in PCRE before 8.43 allows a subject buffer over-read in JIT when UTF is disabled, and \X or \R has more than on... |
| CVE-2019-19109 | HIGH | 8.8 | 0.7% | Jun 15, 2020 | The wpForo plugin 1.6.5 for WordPress allows wp-admin/admin.php?page=wpforo-usergroups CSRF. |
| CVE-2019-15123 | HIGH | 7.2 | 2.4% | Jun 12, 2020 | The Branding Module in Viki Vera 4.9.1.26180 allows an authenticated user to change the logo on the website. An attacker... |
| CVE-2019-3585 | HIGH | 7.8 | 0.3% | Jun 10, 2020 | Privilege Escalation vulnerability in Microsoft Windows client (McTray.exe) in McAfee VirusScan Enterprise (VSE) 8.8 pri... |
| CVE-2019-3613 | HIGH | 7.3 | 0.4% | Jun 10, 2020 | DLL Search Order Hijacking vulnerability in McAfee Agent (MA) prior to 5.6.4 allows attackers with local access to execu... |
| CVE-2019-3617 | HIGH | 8.2 | 0.3% | Jun 10, 2020 | Privilege escalation vulnerability in McAfee Total Protection (ToPS) for Mac OS prior to 4.6 allows local users to gain ... |
| CVE-2019-6196 | HIGH | 7.3 | 0.3% | Jun 9, 2020 | A symbolic link vulnerability in some Lenovo installation packages, prior to version 1.2.9.3, could allow privileged fil... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now