2019 CVE Vulnerabilities
17,621 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-8113 | MEDIUM | 5.3 | 0.9% | Nov 5, 2019 | Magento 2.2 prior to 2.2.10, Magento 2.3 prior to 2.3.3 or 2.3.2-p1 uses cryptographically weak random number generator ... |
| CVE-2019-8112 | HIGH | 7.5 | 0.6% | Nov 5, 2019 | A security bypass vulnerability exists in Magento 2.2 prior to 2.2.10, Magento 2.3 prior to 2.3.3 or 2.3.2-p1. An unauth... |
| CVE-2019-8111 | HIGH | 8.8 | 1.9% | Nov 5, 2019 | A remote code execution vulnerability exists in Magento 2.2 prior to 2.2.10, Magento 2.3 prior to 2.3.3 or 2.3.2-p1. An ... |
| CVE-2019-8110 | HIGH | 8.8 | 1.9% | Nov 5, 2019 | A remote code execution vulnerability exists in Magento 2.2 prior to 2.2.10, Magento 2.3 prior to 2.3.3 or 2.3.2-p1. An ... |
| CVE-2019-8109 | HIGH | 8 | 0.9% | Nov 5, 2019 | A remote code execution vulnerability exists in Magento 2.2 prior to 2.2.10, Magento 2.3 prior to 2.3.3 or 2.3.2-p1. An ... |
| CVE-2019-8108 | MEDIUM | 6.5 | 1.2% | Nov 5, 2019 | Insecure authentication and session management vulnerability exists in Magento 2.2 prior to 2.2.10, Magento 2.3 prior to... |
| CVE-2019-8107 | MEDIUM | 6.5 | 0.8% | Nov 5, 2019 | An arbitrary file deletion vulnerability exists in Magento 2.2 prior to 2.2.10, Magento 2.3 prior to 2.3.3 or 2.3.2-p1. ... |
| CVE-2019-8093 | HIGH | 8.8 | 1.1% | Nov 5, 2019 | An arbitrary file access vulnerability exists in Magento 2.2 prior to 2.2.10, Magento 2.3 prior to 2.3.3 or 2.3.2-p1. An... |
| CVE-2019-8092 | MEDIUM | 5.4 | 0.6% | Nov 5, 2019 | A reflected cross-site scripting (XSS) vulnerability exists in Magento 2.2 prior to 2.2.10, Magento 2.3 prior to 2.3.3 o... |
| CVE-2019-8091 | HIGH | 7.2 | 1.7% | Nov 5, 2019 | A remote code execution vulnerability exists in Magento 1 prior to 1.9.4.3 and 1.14.4.3. An authenticated admin user wit... |
| CVE-2019-8090 | MEDIUM | 6.5 | 0.8% | Nov 5, 2019 | An arbitrary file deletion vulnerability exists in Magento 2.1 prior to 2.1.19, Magento 2.2 prior to 2.2.10, Magento 2.3... |
| CVE-2019-5068 | MEDIUM | 4.4 | 0.5% | Nov 5, 2019 | An exploitable shared memory permissions vulnerability exists in the functionality of X11 Mesa 3D Graphics Library 19.1.... |
| CVE-2019-6142 | MEDIUM | 6.1 | 0.6% | Nov 5, 2019 | It has been reported that XSS is possible in Forcepoint Email Security, versions 8.5 and 8.5.3. It is strongly recommend... |
| CVE-2019-5089 | HIGH | 7.8 | 2.0% | Nov 5, 2019 | An exploitable memory corruption vulnerability exists in Investintech Able2Extract Professional 4.0.7 x64. A specially c... |
| CVE-2019-5088 | HIGH | 7.8 | 2.0% | Nov 5, 2019 | An exploitable memory corruption vulnerability exists in Investintech Able2Extract Professional 14.0.7 x64. A specially ... |
| CVE-2019-16284 | HIGH | 7.2 | 2.0% | Nov 5, 2019 | A potential security vulnerability has been identified in multiple HP products and versions which involves possible exec... |
| CVE-2019-1982 | MEDIUM | 5.3 | 1.0% | Nov 5, 2019 | A vulnerability in the HTTP traffic filtering component of Cisco Firepower Threat Defense Software, Cisco FirePOWER Serv... |
| CVE-2019-1981 | MEDIUM | 5.8 | 1.0% | Nov 5, 2019 | A vulnerability in the normalization functionality of Cisco Firepower Threat Defense Software, Cisco FirePOWER Services ... |
| CVE-2019-1980 | MEDIUM | 5.3 | 1.0% | Nov 5, 2019 | A vulnerability in the protocol detection component of Cisco Firepower Threat Defense Software, Cisco FirePOWER Services... |
| CVE-2019-1978 | MEDIUM | 5.8 | 9.4% | Nov 5, 2019 | A vulnerability in the stream reassembly component of Cisco Firepower Threat Defense Software, Cisco FirePOWER Services ... |
| CVE-2019-1877 | MEDIUM | 6.5 | 1.4% | Nov 5, 2019 | A vulnerability in the HTTP API of Cisco Enterprise Chat and Email could allow an unauthenticated, remote attacker to do... |
| CVE-2019-1734 | MEDIUM | 5.5 | 0.3% | Nov 5, 2019 | A vulnerability in the implementation of a CLI diagnostic command in Cisco FXOS Software and Cisco NX-OS Software could ... |
| CVE-2019-18780 | CRITICAL | 9.8 | 6.1% | Nov 5, 2019 | An arbitrary command injection vulnerability in the Cluster Server component of Veritas InfoScale allows an unauthentica... |
| CVE-2019-10084 | HIGH | 7.5 | 1.0% | Nov 5, 2019 | In Apache Impala 2.7.0 to 3.2.0, an authenticated user with access to the IDs of active Impala queries or sessions can i... |
| CVE-2019-1789 | HIGH | 7.5 | 1.5% | Nov 5, 2019 | ClamAV versions prior to 0.101.2 are susceptible to a denial of service (DoS) vulnerability. An out-of-bounds heap read ... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now