2019 CVE Vulnerabilities
17,619 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-20436 | MEDIUM | 6.1 | 1.4% | Jan 28, 2020 | An issue was discovered in WSO2 API Manager 2.6.0, WSO2 IS as Key Manager 5.7.0, and WSO2 Identity Server 5.8.0. If ther... |
| CVE-2019-20435 | MEDIUM | 4.8 | 1.1% | Jan 28, 2020 | An issue was discovered in WSO2 API Manager 2.6.0. A reflected XSS attack could be performed in the inline API documenta... |
| CVE-2019-20434 | MEDIUM | 4.8 | 1.1% | Jan 28, 2020 | An issue was discovered in WSO2 API Manager 2.6.0. A potential Reflected Cross-Site Scripting (XSS) vulnerability has be... |
| CVE-2019-17651 | MEDIUM | 5.4 | 0.6% | Jan 28, 2020 | An Improper Neutralization of Input vulnerability in the description and title parameters of a Device Maintenance Schedu... |
| CVE-2019-10779 | MEDIUM | 6.1 | 0.9% | Jan 28, 2020 | All versions of stroom:stroom-app before 5.5.12 and all versions of the 6.0.0 branch before 6.0.25 are affected by Cross... |
| CVE-2019-10770 | MEDIUM | 6.1 | 0.9% | Jan 28, 2020 | All versions of io.ratpack:ratpack-core from 0.9.10 inclusive and before 1.7.6 are vulnerable to Cross-site Scripting (X... |
| CVE-2019-20443 | MEDIUM | 4.8 | 0.8% | Jan 28, 2020 | An issue was discovered in WSO2 API Manager 2.6.0, WSO2 Enterprise Integrator 6.5.0, WSO2 IS as Key Manager 5.7.0, and W... |
| CVE-2019-20442 | MEDIUM | 4.8 | 0.7% | Jan 28, 2020 | An issue was discovered in WSO2 API Manager 2.6.0, WSO2 Enterprise Integrator 6.5.0, WSO2 IS as Key Manager 5.7.0, and W... |
| CVE-2019-20441 | MEDIUM | 4.8 | 0.8% | Jan 28, 2020 | An issue was discovered in WSO2 API Manager 2.6.0. A potential Stored Cross-Site Scripting (XSS) vulnerability has been ... |
| CVE-2019-20440 | MEDIUM | 4.8 | 0.8% | Jan 28, 2020 | An issue was discovered in WSO2 API Manager 2.6.0. A potential Reflected Cross-Site Scripting (XSS) vulnerability has be... |
| CVE-2019-8947 | MEDIUM | 6.1 | 1.4% | Jan 27, 2020 | Zimbra Collaboration 8.7.x - 8.8.11P2 contains non-persistent XSS. |
| CVE-2019-8946 | MEDIUM | 6.1 | 1.4% | Jan 27, 2020 | Zimbra Collaboration 8.7.x - 8.8.11P2 contains persistent XSS. |
| CVE-2019-8945 | MEDIUM | 6.1 | 1.4% | Jan 27, 2020 | Zimbra Collaboration 8.7.x - 8.8.11P2 contains persistent XSS. |
| CVE-2019-19539 | MEDIUM | 5.5 | 0.4% | Jan 27, 2020 | An issue was discovered in Idelji Web ViewPoint H01ABO-H01BY and L01ABP-L01ABZ, Web ViewPoint Plus H01AAG-H01AAQ and L01... |
| CVE-2019-19143 | MEDIUM | 6.1 | 3.8% | Jan 27, 2020 | TP-LINK TL-WR849N 0.9.1 4.16 devices do not require authentication to replace the firmware via a POST request to the cgi... |
| CVE-2019-15313 | MEDIUM | 6.1 | 1.0% | Jan 27, 2020 | In Zimbra Collaboration before 8.8.15 Patch 1, there is a non-persistent XSS vulnerability. |
| CVE-2019-12427 | MEDIUM | 4.8 | 1.0% | Jan 27, 2020 | Zimbra Collaboration before 8.8.15 Patch 1 is vulnerable to a non-persistent XSS via the Admin Console. |
| CVE-2019-11318 | MEDIUM | 5.4 | 1.1% | Jan 27, 2020 | Zimbra Collaboration before 8.8.12 Patch 1 has persistent XSS. |
| CVE-2019-17103 | MEDIUM | 5.5 | 0.3% | Jan 27, 2020 | An Incorrect Default Permissions vulnerability in the BDLDaemon component of Bitdefender AV for Mac allows an attacker t... |
| CVE-2019-17100 | MEDIUM | 6.5 | 0.3% | Jan 27, 2020 | An Untrusted Search Path vulnerability in bdserviceshost.exe as used in Bitdefender Total Security 2020 allows an attack... |
| CVE-2019-6036 | MEDIUM | 6.1 | 0.8% | Jan 27, 2020 | Cross-site scripting vulnerability in F-RevoCRM 6.0 to F-RevoCRM 6.5 patch6 (version 6 series) allows remote attackers t... |
| CVE-2019-20422 | MEDIUM | 5.5 | 0.4% | Jan 27, 2020 | In the Linux kernel before 5.3.4, fib6_rule_lookup in net/ipv6/ip6_fib.c mishandles the RT6_LOOKUP_F_DST_NOREF flag in a... |
| CVE-2019-16027 | MEDIUM | 6.5 | 1.5% | Jan 26, 2020 | A vulnerability in the implementation of the Intermediate System–to–Intermediate System (IS–IS) routin... |
| CVE-2019-16026 | MEDIUM | 5.9 | 1.4% | Jan 26, 2020 | A vulnerability in the implementation of the Stream Control Transmission Protocol (SCTP) on Cisco Mobility Management En... |
| CVE-2019-16024 | MEDIUM | 6.1 | 0.8% | Jan 26, 2020 | A vulnerability in the web-based management interface of Cisco Crosswork Change Automation could allow an unauthenticate... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now