2019 CVE Vulnerabilities
17,623 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-9872 | — | — | 1.2% | Jul 3, 2019 | In several versions of JetBrains IntelliJ IDEA Ultimate, creating run configurations for cloud application servers leads... |
| CVE-2019-9823 | — | — | 1.6% | Jul 3, 2019 | In several JetBrains IntelliJ IDEA versions, creating remote run configurations of JavaEE application servers leads to s... |
| CVE-2019-9186 | — | — | 4.5% | Jul 3, 2019 | In several JetBrains IntelliJ IDEA versions, a Spring Boot run configuration with the default setting allowed remote att... |
| CVE-2019-6641 | MEDIUM | 6.5 | 2.0% | Jul 3, 2019 | On BIG-IP 12.1.0-12.1.4.1, undisclosed requests can cause iControl REST processes to crash. The attack can only come fro... |
| CVE-2019-6640 | MEDIUM | 5.3 | 1.1% | Jul 3, 2019 | On BIG-IP 14.1.0-14.1.0.5, 14.0.0-14.0.0.4, 13.0.0-13.1.1.4, 12.1.0-12.1.4, 11.6.1-11.6.3.4, and 11.5.1-11.5.8, SNMP exp... |
| CVE-2019-6639 | MEDIUM | 4.8 | 0.7% | Jul 3, 2019 | On BIG-IP (AFM, PEM) 14.1.0-14.1.0.5, 14.0.0-14.0.0.4, 13.0.0-13.1.1.4, 12.1.0-12.1.4, 11.6.1-11.6.3.4, and 11.5.1-11.5.... |
| CVE-2019-6638 | MEDIUM | 6.5 | 2.0% | Jul 3, 2019 | On BIG-IP 14.1.0-14.1.0.5 and 14.0.0-14.0.0.4, Malformed http requests made to an undisclosed iControl REST endpoint can... |
| CVE-2019-6637 | — | — | 1.5% | Jul 3, 2019 | On BIG-IP (ASM) 14.1.0-14.1.0.5, 14.0.0-14.0.0.4, 13.0.0-13.1.1.4, and 12.1.0-12.1.4, Application logic abuse of ASM RES... |
| CVE-2019-6636 | — | — | 0.9% | Jul 3, 2019 | On BIG-IP (AFM, ASM) 14.1.0-14.1.0.5, 14.0.0-14.0.0.4, 13.0.0-13.1.1.4, 12.1.0-12.1.4, and 11.5.1-11.6.4, a stored cross... |
| CVE-2019-6635 | MEDIUM | 4.4 | 0.4% | Jul 3, 2019 | On BIG-IP 14.1.0-14.1.0.5, 14.0.0-14.0.0.4, 13.0.0-13.1.1.4, 12.1.0-12.1.4, 11.6.1-11.6.3.4, and 11.5.1-11.5.8, when the... |
| CVE-2019-6634 | — | — | 1.4% | Jul 3, 2019 | On BIG-IP 14.1.0-14.1.0.5, 14.0.0-14.0.0.4, 13.0.0-13.1.1.4, and 12.1.0-12.1.4, a high volume of malformed analytics rep... |
| CVE-2019-6632 | — | — | 0.4% | Jul 3, 2019 | On BIG-IP 14.1.0-14.1.0.5, 14.0.0-14.0.0.4, 13.0.0-13.1.1.4, and 12.1.0-12.1.4, under certain circumstances, attackers c... |
| CVE-2019-5602 | — | — | 4.1% | Jul 3, 2019 | In FreeBSD 12.0-STABLE before r349628, 12.0-RELEASE before 12.0-RELEASE-p7, 11.3-PRERELEASE before r349629, 11.3-RC3 bef... |
| CVE-2019-5601 | — | — | 1.6% | Jul 3, 2019 | In FreeBSD 12.0-STABLE before r347474, 12.0-RELEASE before 12.0-RELEASE-p7, 11.2-STABLE before r347475, and 11.2-RELEASE... |
| CVE-2019-5600 | — | — | 4.9% | Jul 3, 2019 | In FreeBSD 12.0-STABLE before r349622, 12.0-RELEASE before 12.0-RELEASE-p7, 11.3-PRERELEASE before r349624, 11.3-RC3 bef... |
| CVE-2019-5052 | HIGH | 8.8 | 4.5% | Jul 3, 2019 | An exploitable integer overflow vulnerability exists when loading a PCX file in SDL2_image 2.0.4. A specially crafted fi... |
| CVE-2019-5051 | HIGH | 8.8 | 4.0% | Jul 3, 2019 | An exploitable heap-based buffer overflow vulnerability exists when loading a PCX file in SDL2_image, version 2.0.4. A m... |
| CVE-2019-12867 | — | — | 2.0% | Jul 3, 2019 | Certain actions could cause privilege escalation for issue attachments in JetBrains YouTrack. The issue was fixed in 201... |
| CVE-2019-12866 | — | — | 1.9% | Jul 3, 2019 | An Insecure Direct Object Reference, with Authorization Bypass through a User-Controlled Key, was possible in JetBrains ... |
| CVE-2019-12851 | — | — | 0.8% | Jul 3, 2019 | A CSRF vulnerability was detected in one of the admin endpoints of JetBrains YouTrack. The issue was fixed in YouTrack 2... |
| CVE-2019-12850 | — | — | 2.1% | Jul 3, 2019 | A query injection was possible in JetBrains YouTrack. The issue was fixed in YouTrack 2018.4.49168. |
| CVE-2019-12847 | — | — | 1.1% | Jul 3, 2019 | In JetBrains Hub versions earlier than 2018.4.11298, the audit events for SMTPSettings show a cleartext password to the ... |
| CVE-2019-10104 | — | — | 3.8% | Jul 3, 2019 | In several JetBrains IntelliJ IDEA Ultimate versions, an Application Server run configuration (for Tomcat, Jetty, Resin,... |
| CVE-2019-10100 | — | — | 2.2% | Jul 3, 2019 | In JetBrains YouTrack Confluence plugin versions before 1.8.1.3, it was possible to achieve Server Side Template Injecti... |
| CVE-2019-7165 | — | — | 3.8% | Jul 3, 2019 | A buffer overflow in DOSBox 0.74-2 allows attackers to execute arbitrary code. |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now