2019 CVE Vulnerabilities
17,623 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-16378 | CRITICAL | 9.8 | 2.5% | Sep 17, 2019 | OpenDMARC through 1.3.2 and 1.4.x through 1.4.0-Beta1 is prone to a signature-bypass vulnerability with multiple From: a... |
| CVE-2019-16239 | CRITICAL | 9.8 | 3.4% | Sep 17, 2019 | process_http_response in OpenConnect before 8.05 has a Buffer Overflow when a malicious server uses HTTP chunked encodin... |
| CVE-2019-15131 | CRITICAL | 9.8 | 1.9% | Sep 17, 2019 | In Code42 Enterprise 6.7.5 and earlier, 6.8.4 through 6.8.8, and 7.0.0 a vulnerability has been identified that may allo... |
| CVE-2019-5482 | CRITICAL | 9.8 | 17.9% | Sep 16, 2019 | Heap buffer overflow in the TFTP protocol handler in cURL 7.19.4 to 7.65.3. |
| CVE-2019-5481 | CRITICAL | 9.8 | 7.3% | Sep 16, 2019 | Double-free vulnerability in the FTP-kerberos code in cURL 7.52.0 to 7.65.3. |
| CVE-2019-4147 | HIGH | 7.2 | 1.3% | Sep 16, 2019 | IBM Sterling File Gateway 2.2.0.0 through 6.0.1.0 is vulnerable to SQL injection. A remote attacker could send specially... |
| CVE-2019-8368 | MEDIUM | 6.1 | 46.9% | Sep 16, 2019 | OpenEMR v5.0.1-6 allows XSS. |
| CVE-2019-16371 | HIGH | 8.2 | 1.2% | Sep 16, 2019 | LogMeIn LastPass before 4.33.0 allows attackers to construct a crafted web site that captures the credentials for a vict... |
| CVE-2019-16370 | MEDIUM | 5.9 | 1.0% | Sep 16, 2019 | The PGP signing plugin in Gradle before 6.0 relies on the SHA-1 algorithm, which might allow an attacker to replace an a... |
| CVE-2019-15741 | CRITICAL | 9.8 | 3.1% | Sep 16, 2019 | An issue was discovered in GitLab Omnibus 7.4 through 12.2.1. An unsafe interaction with logrotate could result in a pri... |
| CVE-2019-15740 | MEDIUM | 5.3 | 1.6% | Sep 16, 2019 | An issue was discovered in GitLab Community and Enterprise Edition 7.9 through 12.2.1. EXIF Geolocation data was not bei... |
| CVE-2019-15739 | MEDIUM | 6.1 | 1.2% | Sep 16, 2019 | An issue was discovered in GitLab Community and Enterprise Edition 8.1 through 12.2.1. Certain areas displaying Markdown... |
| CVE-2019-15738 | MEDIUM | 5.3 | 1.5% | Sep 16, 2019 | An issue was discovered in GitLab Community and Enterprise Edition 12.0 through 12.2.1. Under certain conditions, merge ... |
| CVE-2019-15737 | MEDIUM | 6.5 | 1.4% | Sep 16, 2019 | An issue was discovered in GitLab Community and Enterprise Edition through 12.2.1. Certain account actions needed improv... |
| CVE-2019-15736 | HIGH | 7.5 | 2.0% | Sep 16, 2019 | An issue was discovered in GitLab Community and Enterprise Edition through 12.2.1. Under certain circumstances, CI pipel... |
| CVE-2019-15734 | MEDIUM | 4.3 | 1.0% | Sep 16, 2019 | An issue was discovered in GitLab Community and Enterprise Edition 8.6 through 12.2.1. Under very specific conditions, c... |
| CVE-2019-10071 | CRITICAL | 9.8 | 8.8% | Sep 16, 2019 | The code which checks HMAC in form submissions used String.equals() for comparisons, which results in a timing side chan... |
| CVE-2019-8371 | HIGH | 7.2 | 2.6% | Sep 16, 2019 | OpenEMR v5.0.1-6 allows code execution. |
| CVE-2019-16366 | CRITICAL | 9.8 | 1.4% | Sep 16, 2019 | In XS 9.0.0 in Moddable SDK OS180329, there is a heap-based buffer overflow in fxBeginHost in xsAPI.c when called from f... |
| CVE-2019-15733 | MEDIUM | 4.3 | 1.0% | Sep 16, 2019 | An issue was discovered in GitLab Community and Enterprise Edition 7.12 through 12.2.1. The specified default branch nam... |
| CVE-2019-15732 | MEDIUM | 5.3 | 1.6% | Sep 16, 2019 | An issue was discovered in GitLab Community and Enterprise Edition 12.2 through 12.2.1. The project import API could be ... |
| CVE-2019-15731 | MEDIUM | 5.3 | 1.2% | Sep 16, 2019 | An issue was discovered in GitLab Community and Enterprise Edition 12.0 through 12.2.1. Non-members were able to comment... |
| CVE-2019-15730 | HIGH | 7.5 | 1.5% | Sep 16, 2019 | An issue was discovered in GitLab Community and Enterprise Edition 8.14 through 12.2.1. The Jira integration contains a ... |
| CVE-2019-15728 | HIGH | 7.5 | 1.5% | Sep 16, 2019 | An issue was discovered in GitLab Community and Enterprise Edition 10.1 through 12.2.1. Protections against SSRF attacks... |
| CVE-2019-15727 | MEDIUM | 5.3 | 1.5% | Sep 16, 2019 | An issue was discovered in GitLab Community and Enterprise Edition 11.2 through 12.2.1. Insufficient permission checks w... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now