2019 CVE Vulnerabilities

17,624 CVEs published in 2019.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2019-19550HIGH7.5Remote Authentication Bypass in Senior Rubiweb 6.2.34.28 and 6.2.34.37 allows admin access to sensitive information of a...
CVE-2019-20358HIGH7.8Trend Micro Anti-Threat Toolkit (ATTK) versions 1.62.0.1218 and below have a vulnerability that may allow an attacker to...
CVE-2019-18634HIGH7.8In Sudo before 1.8.26, if pwfeedback is enabled in /etc/sudoers, users can trigger a stack-based buffer overflow in the ...
CVE-2019-7656HIGH7.8A privilege escalation vulnerability in Wowza Streaming Engine 4.8.0 and earlier allows any unprivileged Linux user to e...
CVE-2019-4707HIGH7.1IBM Security Access Manager Appliance 9.0.7.0 is vulnerable to an XML External Entity Injection (XXE) attack when proces...
CVE-2019-4639HIGH7.5IBM Security Secret Server 10.7 uses weaker than expected cryptographic algorithms that could allow an attacker to decry...
CVE-2019-4620HIGH7.8IBM MQ Appliance 8.0 and 9.0 LTS could allow a local attacker to bypass security restrictions caused by improper validat...
CVE-2019-5472HIGH7.5An authorization issue was discovered in Gitlab versions < 12.1.2, < 12.0.4, and < 11.11.6 that prevented owners and mai...
CVE-2019-5470HIGH7.5An information disclosure issue was discovered GitLab versions < 12.1.2, < 12.0.4, and < 11.11.6 in the security dashboa...
CVE-2019-5468HIGH8.8An privilege escalation issue was discovered in Gitlab versions < 12.1.2, < 12.0.4, and < 11.11.6 when Mattermost slash ...
CVE-2019-5462HIGH8.8A privilege escalation issue was discovered in GitLab CE/EE 9.0 and later when trigger tokens are not rotated once owner...
CVE-2019-15590HIGH7.5An access control issue exists in < 12.3.5, < 12.2.8, and < 12.1.14 for GitLab Community Edition (CE) and Enterprise Edi...
CVE-2019-15583HIGH7.5An information disclosure exists in < 12.3.2, < 12.2.6, and < 12.1.12 for GitLab Community Edition (CE) and Enterprise E...
CVE-2019-13521HIGH7.8A maliciously crafted program file opened by an unsuspecting user of Rockwell Automation Arena Simulation Software versi...
CVE-2019-13519HIGH7.8A maliciously crafted program file opened by an unsuspecting user of Rockwell Automation Arena Simulation Software versi...
CVE-2019-11288HIGH7In Pivotal tc Server, 3.x versions prior to 3.2.19 and 4.x versions prior to 4.0.10, and Pivotal tc Runtimes, 7.x versio...
CVE-2019-19824HIGH8.8On certain TOTOLINK Realtek SDK based routers, an authenticated attacker may execute arbitrary OS commands via the sysCm...
CVE-2019-19823HIGH7.5A certain router administration interface (that includes Realtek APMIB 0.11f for Boa 0.94.14rc21) stores cleartext admin...
CVE-2019-19822HIGH7.5A certain router administration interface (that includes Realtek APMIB 0.11f for Boa 0.94.14rc21) allows remote attacker...
CVE-2019-17099HIGH7.8An Untrusted Search Path vulnerability in EPSecurityService.exe as used in Bitdefender Endpoint Security Tools versions ...
CVE-2019-17094HIGH7.8A Stack-based Buffer Overflow vulnerability in libbelkin_api.so component of Belkin WeMo Insight Switch firmware allows ...
CVE-2019-17190HIGH7.8A Local Privilege Escalation issue was discovered in Avast Secure Browser 76.0.1659.101. The vulnerability is due to an ...
CVE-2019-17102HIGH8.1An exploitable command execution vulnerability exists in the recovery partition of Bitdefender BOX 2, version 2.0.1.91. ...
CVE-2019-20432HIGH7.5In the Lustre file system before 2.12.3, the mdt module has an out-of-bounds access and panic due to the lack of validat...
CVE-2019-20431HIGH7.5In the Lustre file system before 2.12.3, the ptlrpc module has an osd_map_remote_to_local out-of-bounds access and panic...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now