2019 CVE Vulnerabilities
17,623 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-15028 | — | — | 1.0% | Aug 14, 2019 | In Joomla! before 3.9.11, inadequate checks in com_contact could allow mail submission in disabled forms. |
| CVE-2019-9518 | HIGH | 7.5 | 24.8% | Aug 13, 2019 | Some HTTP/2 implementations are vulnerable to a flood of empty frames, potentially leading to a denial of service. The a... |
| CVE-2019-9517 | HIGH | 7.5 | 27.9% | Aug 13, 2019 | Some HTTP/2 implementations are vulnerable to unconstrained interal data buffering, potentially leading to a denial of s... |
| CVE-2019-9516 | MEDIUM | 6.5 | 57.5% | Aug 13, 2019 | Some HTTP/2 implementations are vulnerable to a header leak, potentially leading to a denial of service. The attacker se... |
| CVE-2019-9515 | HIGH | 7.5 | 87.8% | Aug 13, 2019 | Some HTTP/2 implementations are vulnerable to a settings flood, potentially leading to a denial of service. The attacker... |
| CVE-2019-9514 | HIGH | 7.5 | 82.8% | Aug 13, 2019 | Some HTTP/2 implementations are vulnerable to a reset flood, potentially leading to a denial of service. The attacker op... |
| CVE-2019-9513 | HIGH | 7.5 | 82.6% | Aug 13, 2019 | Some HTTP/2 implementations are vulnerable to resource loops, potentially leading to a denial of service. The attacker c... |
| CVE-2019-9512 | HIGH | 7.5 | 83.4% | Aug 13, 2019 | Some HTTP/2 implementations are vulnerable to ping floods, potentially leading to a denial of service. The attacker send... |
| CVE-2019-9511 | HIGH | 7.5 | 59.5% | Aug 13, 2019 | Some HTTP/2 implementations are vulnerable to window size manipulation and stream prioritization manipulation, potential... |
| CVE-2019-5299 | — | — | 0.7% | Aug 13, 2019 | Huawei mobile phones Hima-AL00Bhave with Versions earlier than HMA-AL00C00B175 have a signature verification bypass vuln... |
| CVE-2019-5280 | — | — | 0.4% | Aug 13, 2019 | The SIP TLS module of Huawei CloudLink Phone 7900 with V600R019C10 has a TLS certificate verification vulnerability. Due... |
| CVE-2019-5223 | — | — | 0.9% | Aug 13, 2019 | PCManager 9.1.3.1 has an improper authentication vulnerability. The certain driver interface of the software does not pe... |
| CVE-2019-14809 | — | — | 8.4% | Aug 13, 2019 | net/url in Go before 1.11.13 and 1.12.x before 1.12.8 mishandles malformed hosts in URLs, leading to an authorization by... |
| CVE-2019-12479 | — | — | 2.0% | Aug 13, 2019 | An issue was discovered in 20|20 Storage 2.11.0. A Path Traversal vulnerability in the TwentyTwenty.Storage library in t... |
| CVE-2019-11207 | HIGH | 8.8 | 0.7% | Aug 13, 2019 | The web server component of TIBCO Software Inc.'s TIBCO LogLogic Enterprise Virtual Appliance, and TIBCO LogLogic Log Ma... |
| CVE-2019-14986 | — | — | 2.5% | Aug 13, 2019 | eQ-3 Homematic CCU2 and CCU3 with the CUxD AddOn before 2.3.0 installed allow administrative operations by unauthenticat... |
| CVE-2019-14985 | — | — | 11.3% | Aug 13, 2019 | eQ-3 Homematic CCU2 and CCU3 with the CUxD AddOn installed allow Remote Code Execution by unauthenticated attackers with... |
| CVE-2019-14984 | — | — | 5.8% | Aug 13, 2019 | eQ-3 Homematic CCU2 and CCU3 with the XML-API through 1.2.0 AddOn installed allow Remote Code Execution by unauthenticat... |
| CVE-2019-12808 | HIGH | 7.8 | 0.4% | Aug 13, 2019 | ALTOOLS update service 18.1 and earlier versions contains a local privilege escalation vulnerability due to insecure per... |
| CVE-2019-12807 | HIGH | 7.8 | 1.6% | Aug 13, 2019 | Alzip 10.83 and earlier version contains a stack-based buffer overflow vulnerability, caused by improper bounds checking... |
| CVE-2019-12806 | HIGH | 8.8 | 4.1% | Aug 13, 2019 | UniSign 2.0.4.0 and earlier version contains a stack-based buffer overflow vulnerability which can overwrite the stack w... |
| CVE-2019-13416 | MEDIUM | 6.5 | 1.0% | Aug 13, 2019 | Search Guard versions before 24.3 had an issue when Cross Cluster Search (CCS) was enabled, authenticated users are alwa... |
| CVE-2019-13415 | MEDIUM | 6.5 | 1.0% | Aug 13, 2019 | Search Guard versions before 24.3 had an issue when Cross Cluster Search (CCS) was enabled, authenticated users can gain... |
| CVE-2019-10943 | HIGH | 7.5 | 1.0% | Aug 13, 2019 | A vulnerability has been identified in SIMATIC Drive Controller family (All versions), SIMATIC ET 200SP Open Controller ... |
| CVE-2019-10942 | HIGH | 8.6 | 1.4% | Aug 13, 2019 | A vulnerability has been identified in SCALANCE X-200 switch family (incl. SIPLUS NET variants) (All versions < V5.2.5),... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now