2019 CVE Vulnerabilities

17,624 CVEs published in 2019.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2019-13189——In Knowage through 6.1.1, there is XSS via the start_url or user_id field to the ChangePwdServlet page.
CVE-2019-10058——Various Lexmark products have Incorrect Access Control.
CVE-2019-15716——WTF before 0.19.0 does not set the permissions of config.yml, which might make it easier for local attackers to read pas...
CVE-2019-15714——cli/lib/main.js in Entropic before 2019-06-13 does not reject / and \ in command names, which might allow a directory tr...
CVE-2019-15713——The my-calendar plugin before 3.1.10 for WordPress has XSS.
CVE-2019-15294——An issue was discovered in Gallagher Command Centre 8.10 before 8.10.1092(MR2). Upon an upgrade, if a custom service acc...
CVE-2019-15701——components/Modals/HelpModal.jsx in BloodHound 2.2.0 allows remote attackers to execute arbitrary OS commands (by spawnin...
CVE-2019-15700——public/js/frappe/form/footer/timeline.js in Frappe Framework 12 through 12.0.8 does not escape HTML in the timeline and ...
CVE-2019-13270——Edimax BR-6208AC V1 devices have Insufficient Compartmentalization between a host network and a guest network that are e...
CVE-2019-13269——Edimax BR-6208AC V1 devices have Insufficient Compartmentalization between a host network and a guest network that are e...
CVE-2019-13268——TP-Link Archer C3200 V1 and Archer C2 V1 devices have Insufficient Compartmentalization between a host network and a gue...
CVE-2019-13267——TP-Link Archer C3200 V1 and Archer C2 V1 devices have Insufficient Compartmentalization between a host network and a gue...
CVE-2019-13266——TP-Link Archer C3200 V1 and Archer C2 V1 devices have Insufficient Compartmentalization between a host network and a gue...
CVE-2019-15698——In Octopus Deploy 2019.7.3 through 2019.7.9, in certain circumstances, an authenticated user with VariableView permissio...
CVE-2019-13486——In Xymon through 4.3.28, a stack-based buffer overflow exists in the status-log viewer component because of   expan...
CVE-2019-13485——In Xymon through 4.3.28, a stack-based buffer overflow vulnerability exists in the history viewer component via a long h...
CVE-2019-13484——In Xymon through 4.3.28, a buffer overflow exists in the status-log viewer CGI because of   expansion in appfeed.c.
CVE-2019-13455——In Xymon through 4.3.28, a stack-based buffer overflow vulnerability exists in the alert acknowledgment CGI tool because...
CVE-2019-13452——In Xymon through 4.3.28, a buffer overflow vulnerability exists in reportlog.c.
CVE-2019-13451——In Xymon through 4.3.28, a buffer overflow vulnerability exists in history.c.
CVE-2019-13274——In Xymon through 4.3.28, an XSS vulnerability exists in the csvinfo CGI script due to insufficient filtering of the db p...
CVE-2019-13273——In Xymon through 4.3.28, a buffer overflow vulnerability exists in the csvinfo CGI script. The overflow may be exploited...
CVE-2019-13271——Edimax BR-6208AC V1 devices have Insufficient Compartmentalization between a host network and a guest network that are e...
CVE-2019-14314——A SQL injection vulnerability exists in the Imagely NextGEN Gallery plugin before 3.2.11 for WordPress. Successful explo...
CVE-2019-15660——The wp-members plugin before 3.2.8 for WordPress has CSRF.

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now