2019 CVE Vulnerabilities

17,619 CVEs published in 2019.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2019-3686MEDIUM6.1openQA before commit c172e8883d8f32fced5e02f9b6faaacc913df27b was vulnerable to XSS in the distri and version parameter....
CVE-2019-19802MEDIUM6.5In Gallagher Command Centre Server v8.10 prior to v8.10.1134(MR4), v8.00 prior to v8.00.1161(MR5), v7.90 prior to v7.90....
CVE-2019-19801MEDIUM5.5In Gallagher Command Centre Server versions of v8.10 prior to v8.10.1134(MR4), v8.00 prior to v8.00.1161(MR5), v7.90 pri...
CVE-2019-3997MEDIUM4.6Authentication bypass using an alternate path or channel in SimpliSafe SS3 firmware 1.0-1.3 allows a local, unauthentica...
CVE-2019-11998MEDIUM5.5HPE Superdome Flex Server is vulnerable to multiple remote vulnerabilities via improper input validation of administrato...
CVE-2019-11997MEDIUM6.1A potential security vulnerability has been identified in HPE enhanced Internet Usage Manager (eIUM) versions 8.3 and 9....
CVE-2019-17573MEDIUM6.1By default, Apache CXF creates a /services page containing a listing of the available endpoint names and addresses. This...
CVE-2019-19278MEDIUM6.8A vulnerability has been identified in SINAMICS PERFECT HARMONY GH180 Drives MLFB 6SR32..-.....-.... MLFB 6SR4...-.....-...
CVE-2019-18282MEDIUM5.3The flow_dissector feature in the Linux kernel 4.3 through 5.x before 5.3.10 has a device tracking vulnerability, aka CI...
CVE-2019-19859MEDIUM5.3An issue was discovered in Serpico (aka SimplE RePort wrIting and CollaboratiOn tool) 1.3.0. The Add Collaborator allows...
CVE-2019-19858MEDIUM4.8An issue was discovered in Serpico (aka SimplE RePort wrIting and CollaboratiOn tool) 1.3.0. admin/add_user/UID allows s...
CVE-2019-19857MEDIUM6.5An issue was discovered in Serpico (aka SimplE RePort wrIting and CollaboratiOn tool) 1.3.0. An admin can change their p...
CVE-2019-19856MEDIUM4.8An issue was discovered in Serpico (aka SimplE RePort wrIting and CollaboratiOn tool) 1.3.0. The User Type on the admin/...
CVE-2019-19855MEDIUM4.8An issue was discovered in Serpico (aka SimplE RePort wrIting and CollaboratiOn tool) 1.3.0. admin/list_user allows stor...
CVE-2019-18275MEDIUM6.5OSIsoft PI Vision, All versions of PI Vision prior to 2019. The affected product is vulnerable to an improper access con...
CVE-2019-18273MEDIUM4.8OSIsoft PI Vision, PI Vision 2017 R2 and PI Vision 2017 R2 SP1. The affected product is vulnerable to cross-site scripti...
CVE-2019-18244MEDIUM4.7In OSIsoft PI System multiple products and versions, a local attacker could view sensitive information in log files when...
CVE-2019-15961MEDIUM6.5A vulnerability in the email parsing module Clam AntiVirus (ClamAV) Software versions 0.102.0, 0.101.4 and prior could a...
CVE-2019-16467MEDIUM6.1Adobe Experience Manager versions 6.5, 6.4, 6.3, 6.2, 6.1, and 6.0 have a reflected cross-site scripting vulnerability. ...
CVE-2019-16466MEDIUM6.1Adobe Experience Manager versions 6.5, 6.4, 6.3, 6.2, 6.1, and 6.0 have a reflected cross-site scripting vulnerability. ...
CVE-2019-13722MEDIUM6.5Inappropriate implementation in WebRTC in Google Chrome prior to 79.0.3945.79 allowed a remote attacker to potentially e...
CVE-2019-12398MEDIUM4.8In Apache Airflow before 1.10.5 when running with the "classic" UI, a malicious admin user could edit the state of objec...
CVE-2019-20144MEDIUM4.3An issue was discovered in GitLab Community Edition (CE) and Enterprise Edition (EE) 10.8 through 12.6.1. It has Incorre...
CVE-2019-20143MEDIUM5.3An issue was discovered in GitLab Community Edition (CE) and Enterprise Edition (EE) 12.6. It has Incorrect Access Contr...
CVE-2019-20142MEDIUM4.3An issue was discovered in GitLab Community Edition (CE) and Enterprise Edition (EE) 12.3 through 12.6.1. It allows Deni...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now