2019 CVE Vulnerabilities
17,623 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-4211 | MEDIUM | 5.4 | 0.7% | Jul 17, 2019 | IBM QRadar SIEM 7.2 and 7.3 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary Ja... |
| CVE-2019-4194 | MEDIUM | 4.3 | 1.3% | Jul 17, 2019 | IBM Jazz for Service Management 1.1.3, 1.1.3.1, and 1.1.3.2 is missing function level access control that could allow a ... |
| CVE-2019-4054 | LOW | 3.3 | 0.3% | Jul 17, 2019 | IBM QRadar SIEM 7.2 and 7.3 could allow a local user to obtain sensitive information when exporting content that could a... |
| CVE-2019-1010084 | — | — | 1.1% | Jul 17, 2019 | Dancer::Plugin::SimpleCRUD 1.14 and earlier is affected by: Incorrect Access Control. The impact is: Potential for unath... |
| CVE-2019-1010083 | — | — | 1.9% | Jul 17, 2019 | The Pallets Project Flask before 1.0 is affected by: unexpected memory usage. The impact is: denial of service. The atta... |
| CVE-2019-13272 | HIGH | 7.8 | 52.2% | Jul 17, 2019 | In the Linux kernel before 5.1.17, ptrace_link in kernel/ptrace.c mishandles the recording of the credentials of a proce... |
| CVE-2019-9849 | MEDIUM | 4.3 | 3.1% | Jul 17, 2019 | LibreOffice has a 'stealth mode' in which only documents from locations deemed 'trusted' are allowed to retrieve remote ... |
| CVE-2019-9848 | CRITICAL | 9.8 | 30.7% | Jul 17, 2019 | LibreOffice has a feature where documents can specify that pre-installed scripts can be executed on various document eve... |
| CVE-2019-13446 | — | — | — | Jul 17, 2019 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu... |
| CVE-2019-13625 | — | — | 2.4% | Jul 17, 2019 | NSA Ghidra before 9.0.1 allows XXE when a project is opened or restored, or a tool is imported, as demonstrated by a pro... |
| CVE-2019-13624 | — | — | 1.9% | Jul 17, 2019 | In ONOS 1.15.0, apps/yang/web/src/main/java/org/onosproject/yang/web/YangWebResource.java mishandles backquote character... |
| CVE-2019-13623 | — | — | 5.0% | Jul 17, 2019 | In NSA Ghidra before 9.1, path traversal can occur in RestoreTask.java (from the package ghidra.app.plugin.core.archive)... |
| CVE-2019-3571 | — | — | 0.8% | Jul 16, 2019 | An input validation issue affected WhatsApp Desktop versions prior to 0.3.3793 which allows malicious clients to send fi... |
| CVE-2019-9700 | — | — | 0.3% | Jul 16, 2019 | Norton Password Manager, prior to 6.3.0.2082, may be susceptible to an address spoofing issue. This type of issue may al... |
| CVE-2019-6160 | HIGH | 8.8 | 1.4% | Jul 16, 2019 | A vulnerability in various versions of Iomega and LenovoEMC NAS products could allow an unauthenticated user to access f... |
| CVE-2019-13359 | — | — | 26.5% | Jul 16, 2019 | In CentOS-WebPanel.com (aka CWP) CentOS Web Panel 0.9.8.836, a cwpsrv-xxx cookie allows a normal user to craft and uploa... |
| CVE-2019-13115 | HIGH | 8.1 | 11.7% | Jul 16, 2019 | In libssh2 before 1.9.0, kex_method_diffie_hellman_group_exchange_sha256_key_exchange in kex.c has an integer overflow t... |
| CVE-2019-12992 | — | — | 48.9% | Jul 16, 2019 | Citrix SD-WAN 10.2.x before 10.2.3 and NetScaler SD-WAN 10.0.x before 10.0.8 have Improper Input Validation (issue 6 of ... |
| CVE-2019-12991 | HIGH | 8.8 | 74.5% | Jul 16, 2019 | Citrix SD-WAN 10.2.x before 10.2.3 and NetScaler SD-WAN 10.0.x before 10.0.8 have Improper Input Validation (issue 5 of ... |
| CVE-2019-12990 | — | — | 39.3% | Jul 16, 2019 | Citrix SD-WAN 10.2.x before 10.2.3 and NetScaler SD-WAN 10.0.x before 10.0.8 allow Directory Traversal. |
| CVE-2019-12989 | CRITICAL | 9.8 | 94.4% | Jul 16, 2019 | Citrix SD-WAN 10.2.x before 10.2.3 and NetScaler SD-WAN 10.0.x before 10.0.8 allow SQL Injection. |
| CVE-2019-12988 | — | — | 42.6% | Jul 16, 2019 | Citrix SD-WAN 10.2.x before 10.2.3 and NetScaler SD-WAN 10.0.x before 10.0.8 have Improper Input Validation (issue 4 of ... |
| CVE-2019-12987 | — | — | 43.9% | Jul 16, 2019 | Citrix SD-WAN 10.2.x before 10.2.3 and NetScaler SD-WAN 10.0.x before 10.0.8 have Improper Input Validation (issue 3 of ... |
| CVE-2019-12986 | — | — | 39.5% | Jul 16, 2019 | Citrix SD-WAN 10.2.x before 10.2.3 and NetScaler SD-WAN 10.0.x before 10.0.8 have Improper Input Validation (issue 2 of ... |
| CVE-2019-12985 | — | — | 42.6% | Jul 16, 2019 | Citrix SD-WAN 10.2.x before 10.2.3 and NetScaler SD-WAN 10.0.x before 10.0.8 have Improper Input Validation (issue 1 of ... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now