2019 CVE Vulnerabilities

17,619 CVEs published in 2019.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2019-20859HIGH7.5An issue was discovered in Mattermost Server before 5.15.0. Login access control can be bypassed via crafted input.
CVE-2019-20858HIGH7.5An issue was discovered in Mattermost Server before 5.15.0. It allows attackers to cause a denial of service (CPU consum...
CVE-2019-20857HIGH7.5An issue was discovered in Mattermost Server before 5.16.0. It allows attackers to cause a denial of service (markdown r...
CVE-2019-20855HIGH7.5An issue was discovered in Mattermost Server before 5.16.1, 5.15.2, 5.14.5, and 5.9.6. It allows attackers to obtain sen...
CVE-2019-20854HIGH7.5An issue was discovered in Mattermost Server before 5.17.0. It allows remote attackers to cause a denial of service (cli...
CVE-2019-20852HIGH7.5An issue was discovered in Mattermost Mobile Apps before 1.26.0. Local logging is not blocked for sensitive information ...
CVE-2019-20848HIGH7.5An issue was discovered in Mattermost Mobile Apps before 1.26.0. The Quick Reply feature mishandles crafted replies.
CVE-2019-20846HIGH7.5An issue was discovered in Mattermost Server before 5.18.0. It has weak permissions for server-local file storage.
CVE-2019-20845HIGH7.5An issue was discovered in Mattermost Server before 5.18.0. It allows attackers to cause a denial of service (memory con...
CVE-2019-20843HIGH7.5An issue was discovered in Mattermost Server before 5.18.0, 5.17.2, 5.16.4, 5.15.4, and 5.9.7. There are weak permission...
CVE-2019-20842HIGH7.2An issue was discovered in Mattermost Server before 5.18.0, 5.17.2, 5.16.4, 5.15.4, and 5.9.7. There is SQL injection by...
CVE-2019-20841HIGH8.8An issue was discovered in Mattermost Server before 5.18.0, 5.17.2, 5.16.4, 5.15.4, and 5.9.7. CSRF can sometimes occur ...
CVE-2019-9944HIGH7.5In Open Microscopy Environment OMERO.server 5.0.0 through 5.6.0, the reading of files from imported image filesets may c...
CVE-2019-9943HIGH7.5In ome.services.graphs.GraphTraversal.findObjectDetails in Open Microscopy Environment OMERO.server 5.1.0 through 5.6.0,...
CVE-2019-20840HIGH7.5An issue was discovered in LibVNCServer before 0.9.13. libvncserver/ws_decode.c can lead to a crash because of unaligned...
CVE-2019-20839HIGH7.5libvncclient/sockets.c in LibVNCServer before 0.9.13 has a buffer overflow via a long socket filename.
CVE-2019-17655HIGH7.5A cleartext storage in a file or on disk (CWE-313) vulnerability in FortiOS SSL VPN 6.2.0 through 6.2.2, 6.0.9 and earli...
CVE-2019-18614HIGH7.8On the Cypress CYW20735 evaluation board, any data that exceeds 384 bytes is copied and causes an overflow. This is beca...
CVE-2019-20838HIGH7.5libpcre in PCRE before 8.43 allows a subject buffer over-read in JIT when UTF is disabled, and \X or \R has more than on...
CVE-2019-19109HIGH8.8The wpForo plugin 1.6.5 for WordPress allows wp-admin/admin.php?page=wpforo-usergroups CSRF.
CVE-2019-15123HIGH7.2The Branding Module in Viki Vera 4.9.1.26180 allows an authenticated user to change the logo on the website. An attacker...
CVE-2019-3585HIGH7.8Privilege Escalation vulnerability in Microsoft Windows client (McTray.exe) in McAfee VirusScan Enterprise (VSE) 8.8 pri...
CVE-2019-3613HIGH7.3DLL Search Order Hijacking vulnerability in McAfee Agent (MA) prior to 5.6.4 allows attackers with local access to execu...
CVE-2019-3617HIGH8.2Privilege escalation vulnerability in McAfee Total Protection (ToPS) for Mac OS prior to 4.6 allows local users to gain ...
CVE-2019-6196HIGH7.3A symbolic link vulnerability in some Lenovo installation packages, prior to version 1.2.9.3, could allow privileged fil...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now