2019 CVE Vulnerabilities

17,623 CVEs published in 2019.

CVE IDSeverityCVSSDescription
CVE-2019-16378CRITICAL9.8OpenDMARC through 1.3.2 and 1.4.x through 1.4.0-Beta1 is prone to a signature-bypass vulnerability with multiple From: a...
CVE-2019-16239CRITICAL9.8process_http_response in OpenConnect before 8.05 has a Buffer Overflow when a malicious server uses HTTP chunked encodin...
CVE-2019-15131CRITICAL9.8In Code42 Enterprise 6.7.5 and earlier, 6.8.4 through 6.8.8, and 7.0.0 a vulnerability has been identified that may allo...
CVE-2019-5482CRITICAL9.8Heap buffer overflow in the TFTP protocol handler in cURL 7.19.4 to 7.65.3.
CVE-2019-5481CRITICAL9.8Double-free vulnerability in the FTP-kerberos code in cURL 7.52.0 to 7.65.3.
CVE-2019-4147HIGH7.2IBM Sterling File Gateway 2.2.0.0 through 6.0.1.0 is vulnerable to SQL injection. A remote attacker could send specially...
CVE-2019-8368MEDIUM6.1OpenEMR v5.0.1-6 allows XSS.
CVE-2019-16371HIGH8.2LogMeIn LastPass before 4.33.0 allows attackers to construct a crafted web site that captures the credentials for a vict...
CVE-2019-16370MEDIUM5.9The PGP signing plugin in Gradle before 6.0 relies on the SHA-1 algorithm, which might allow an attacker to replace an a...
CVE-2019-15741CRITICAL9.8An issue was discovered in GitLab Omnibus 7.4 through 12.2.1. An unsafe interaction with logrotate could result in a pri...
CVE-2019-15740MEDIUM5.3An issue was discovered in GitLab Community and Enterprise Edition 7.9 through 12.2.1. EXIF Geolocation data was not bei...
CVE-2019-15739MEDIUM6.1An issue was discovered in GitLab Community and Enterprise Edition 8.1 through 12.2.1. Certain areas displaying Markdown...
CVE-2019-15738MEDIUM5.3An issue was discovered in GitLab Community and Enterprise Edition 12.0 through 12.2.1. Under certain conditions, merge ...
CVE-2019-15737MEDIUM6.5An issue was discovered in GitLab Community and Enterprise Edition through 12.2.1. Certain account actions needed improv...
CVE-2019-15736HIGH7.5An issue was discovered in GitLab Community and Enterprise Edition through 12.2.1. Under certain circumstances, CI pipel...
CVE-2019-15734MEDIUM4.3An issue was discovered in GitLab Community and Enterprise Edition 8.6 through 12.2.1. Under very specific conditions, c...
CVE-2019-10071CRITICAL9.8The code which checks HMAC in form submissions used String.equals() for comparisons, which results in a timing side chan...
CVE-2019-8371HIGH7.2OpenEMR v5.0.1-6 allows code execution.
CVE-2019-16366CRITICAL9.8In XS 9.0.0 in Moddable SDK OS180329, there is a heap-based buffer overflow in fxBeginHost in xsAPI.c when called from f...
CVE-2019-15733MEDIUM4.3An issue was discovered in GitLab Community and Enterprise Edition 7.12 through 12.2.1. The specified default branch nam...
CVE-2019-15732MEDIUM5.3An issue was discovered in GitLab Community and Enterprise Edition 12.2 through 12.2.1. The project import API could be ...
CVE-2019-15731MEDIUM5.3An issue was discovered in GitLab Community and Enterprise Edition 12.0 through 12.2.1. Non-members were able to comment...
CVE-2019-15730HIGH7.5An issue was discovered in GitLab Community and Enterprise Edition 8.14 through 12.2.1. The Jira integration contains a ...
CVE-2019-15728HIGH7.5An issue was discovered in GitLab Community and Enterprise Edition 10.1 through 12.2.1. Protections against SSRF attacks...
CVE-2019-15727MEDIUM5.3An issue was discovered in GitLab Community and Enterprise Edition 11.2 through 12.2.1. Insufficient permission checks w...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now