2019 CVE Vulnerabilities

17,621 CVEs published in 2019.

CVE IDSeverityCVSSDescription
CVE-2019-8113MEDIUM5.3Magento 2.2 prior to 2.2.10, Magento 2.3 prior to 2.3.3 or 2.3.2-p1 uses cryptographically weak random number generator ...
CVE-2019-8112HIGH7.5A security bypass vulnerability exists in Magento 2.2 prior to 2.2.10, Magento 2.3 prior to 2.3.3 or 2.3.2-p1. An unauth...
CVE-2019-8111HIGH8.8A remote code execution vulnerability exists in Magento 2.2 prior to 2.2.10, Magento 2.3 prior to 2.3.3 or 2.3.2-p1. An ...
CVE-2019-8110HIGH8.8A remote code execution vulnerability exists in Magento 2.2 prior to 2.2.10, Magento 2.3 prior to 2.3.3 or 2.3.2-p1. An ...
CVE-2019-8109HIGH8A remote code execution vulnerability exists in Magento 2.2 prior to 2.2.10, Magento 2.3 prior to 2.3.3 or 2.3.2-p1. An ...
CVE-2019-8108MEDIUM6.5Insecure authentication and session management vulnerability exists in Magento 2.2 prior to 2.2.10, Magento 2.3 prior to...
CVE-2019-8107MEDIUM6.5An arbitrary file deletion vulnerability exists in Magento 2.2 prior to 2.2.10, Magento 2.3 prior to 2.3.3 or 2.3.2-p1. ...
CVE-2019-8093HIGH8.8An arbitrary file access vulnerability exists in Magento 2.2 prior to 2.2.10, Magento 2.3 prior to 2.3.3 or 2.3.2-p1. An...
CVE-2019-8092MEDIUM5.4A reflected cross-site scripting (XSS) vulnerability exists in Magento 2.2 prior to 2.2.10, Magento 2.3 prior to 2.3.3 o...
CVE-2019-8091HIGH7.2A remote code execution vulnerability exists in Magento 1 prior to 1.9.4.3 and 1.14.4.3. An authenticated admin user wit...
CVE-2019-8090MEDIUM6.5An arbitrary file deletion vulnerability exists in Magento 2.1 prior to 2.1.19, Magento 2.2 prior to 2.2.10, Magento 2.3...
CVE-2019-5068MEDIUM4.4An exploitable shared memory permissions vulnerability exists in the functionality of X11 Mesa 3D Graphics Library 19.1....
CVE-2019-6142MEDIUM6.1It has been reported that XSS is possible in Forcepoint Email Security, versions 8.5 and 8.5.3. It is strongly recommend...
CVE-2019-5089HIGH7.8An exploitable memory corruption vulnerability exists in Investintech Able2Extract Professional 4.0.7 x64. A specially c...
CVE-2019-5088HIGH7.8An exploitable memory corruption vulnerability exists in Investintech Able2Extract Professional 14.0.7 x64. A specially ...
CVE-2019-16284HIGH7.2A potential security vulnerability has been identified in multiple HP products and versions which involves possible exec...
CVE-2019-1982MEDIUM5.3A vulnerability in the HTTP traffic filtering component of Cisco Firepower Threat Defense Software, Cisco FirePOWER Serv...
CVE-2019-1981MEDIUM5.8A vulnerability in the normalization functionality of Cisco Firepower Threat Defense Software, Cisco FirePOWER Services ...
CVE-2019-1980MEDIUM5.3A vulnerability in the protocol detection component of Cisco Firepower Threat Defense Software, Cisco FirePOWER Services...
CVE-2019-1978MEDIUM5.8A vulnerability in the stream reassembly component of Cisco Firepower Threat Defense Software, Cisco FirePOWER Services ...
CVE-2019-1877MEDIUM6.5A vulnerability in the HTTP API of Cisco Enterprise Chat and Email could allow an unauthenticated, remote attacker to do...
CVE-2019-1734MEDIUM5.5A vulnerability in the implementation of a CLI diagnostic command in Cisco FXOS Software and Cisco NX-OS Software could ...
CVE-2019-18780CRITICAL9.8An arbitrary command injection vulnerability in the Cluster Server component of Veritas InfoScale allows an unauthentica...
CVE-2019-10084HIGH7.5In Apache Impala 2.7.0 to 3.2.0, an authenticated user with access to the IDs of active Impala queries or sessions can i...
CVE-2019-1789HIGH7.5ClamAV versions prior to 0.101.2 are susceptible to a denial of service (DoS) vulnerability. An out-of-bounds heap read ...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now