2019 CVE Vulnerabilities

17,619 CVEs published in 2019.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2019-7656HIGH7.8A privilege escalation vulnerability in Wowza Streaming Engine 4.8.0 and earlier allows any unprivileged Linux user to e...
CVE-2019-4707HIGH7.1IBM Security Access Manager Appliance 9.0.7.0 is vulnerable to an XML External Entity Injection (XXE) attack when proces...
CVE-2019-4639HIGH7.5IBM Security Secret Server 10.7 uses weaker than expected cryptographic algorithms that could allow an attacker to decry...
CVE-2019-4620HIGH7.8IBM MQ Appliance 8.0 and 9.0 LTS could allow a local attacker to bypass security restrictions caused by improper validat...
CVE-2019-5472HIGH7.5An authorization issue was discovered in Gitlab versions < 12.1.2, < 12.0.4, and < 11.11.6 that prevented owners and mai...
CVE-2019-5470HIGH7.5An information disclosure issue was discovered GitLab versions < 12.1.2, < 12.0.4, and < 11.11.6 in the security dashboa...
CVE-2019-5468HIGH8.8An privilege escalation issue was discovered in Gitlab versions < 12.1.2, < 12.0.4, and < 11.11.6 when Mattermost slash ...
CVE-2019-5462HIGH8.8A privilege escalation issue was discovered in GitLab CE/EE 9.0 and later when trigger tokens are not rotated once owner...
CVE-2019-15590HIGH7.5An access control issue exists in < 12.3.5, < 12.2.8, and < 12.1.14 for GitLab Community Edition (CE) and Enterprise Edi...
CVE-2019-15583HIGH7.5An information disclosure exists in < 12.3.2, < 12.2.6, and < 12.1.12 for GitLab Community Edition (CE) and Enterprise E...
CVE-2019-13521HIGH7.8A maliciously crafted program file opened by an unsuspecting user of Rockwell Automation Arena Simulation Software versi...
CVE-2019-13519HIGH7.8A maliciously crafted program file opened by an unsuspecting user of Rockwell Automation Arena Simulation Software versi...
CVE-2019-11288HIGH7In Pivotal tc Server, 3.x versions prior to 3.2.19 and 4.x versions prior to 4.0.10, and Pivotal tc Runtimes, 7.x versio...
CVE-2019-19824HIGH8.8On certain TOTOLINK Realtek SDK based routers, an authenticated attacker may execute arbitrary OS commands via the sysCm...
CVE-2019-19823HIGH7.5A certain router administration interface (that includes Realtek APMIB 0.11f for Boa 0.94.14rc21) stores cleartext admin...
CVE-2019-19822HIGH7.5A certain router administration interface (that includes Realtek APMIB 0.11f for Boa 0.94.14rc21) allows remote attacker...
CVE-2019-17099HIGH7.8An Untrusted Search Path vulnerability in EPSecurityService.exe as used in Bitdefender Endpoint Security Tools versions ...
CVE-2019-17094HIGH7.8A Stack-based Buffer Overflow vulnerability in libbelkin_api.so component of Belkin WeMo Insight Switch firmware allows ...
CVE-2019-17190HIGH7.8A Local Privilege Escalation issue was discovered in Avast Secure Browser 76.0.1659.101. The vulnerability is due to an ...
CVE-2019-17102HIGH8.1An exploitable command execution vulnerability exists in the recovery partition of Bitdefender BOX 2, version 2.0.1.91. ...
CVE-2019-20432HIGH7.5In the Lustre file system before 2.12.3, the mdt module has an out-of-bounds access and panic due to the lack of validat...
CVE-2019-20431HIGH7.5In the Lustre file system before 2.12.3, the ptlrpc module has an osd_map_remote_to_local out-of-bounds access and panic...
CVE-2019-20430HIGH7.5In the Lustre file system before 2.12.3, the mdt module has an LBUG panic (via a large MDT Body eadatasize field) due to...
CVE-2019-20429HIGH7.5In the Lustre file system before 2.12.3, the ptlrpc module has an out-of-bounds read and panic (via a modified lm_bufcou...
CVE-2019-20428HIGH7.5In the Lustre file system before 2.12.3, the ptlrpc module has an out-of-bounds read and panic due to the lack of valida...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now