2019 CVE Vulnerabilities

17,624 CVEs published in 2019.

CVE IDSeverityCVSSDescription
CVE-2019-11928MEDIUM6.1An input validation issue in WhatsApp Desktop versions prior to v0.3.4932 could have allowed cross-site scripting upon c...
CVE-2019-10679HIGH7.8Thomson Reuters Eikon 4.0.42144 allows all local users to modify the service executable file because of weak %PROGRAMFIL...
CVE-2019-5645HIGH7.5By sending a specially crafted HTTP GET request to a listening Rapid7 Metasploit HTTP handler, an attacker can register ...
CVE-2019-4579MEDIUM4.3IBM Resilient SOAR 38 uses incomplete blacklisting for input validation which allows attackers to bypass application con...
CVE-2019-4533MEDIUM4.3IBM Resilient SOAR V38.0 users may experience a denial of service of the SOAR Platform due to a insufficient input valid...
CVE-2019-19499MEDIUM6.5Grafana <= 6.4.3 has an Arbitrary File Read vulnerability, which could be exploited by an authenticated attacker that ha...
CVE-2019-18392——Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. No...
CVE-2019-5321HIGH8.8Aruba Intelligent Edge Switch Series 2540, 2530, 2930F, 2930M, 2920, 5400R, and 3810M with firmware 16.08.* before 16.08...
CVE-2019-5320MEDIUM6.1Aruba Intelligent Edge Switch Series 2540, 2530, 2930F, 2930M, 2920, 5400R, and 3810M with firmware 16.08.* before 16.08...
CVE-2019-4695LOW3.3IBM Security Guardium Data Encryption (GDE) 3.0.0.2 allows web pages to be stored locally which can be read by another u...
CVE-2019-4713HIGH8.8IBM Security Guardium Data Encryption (GDE) 3.0.0.2 could allow a remote authenticated attacker to execute arbitrary com...
CVE-2019-4701MEDIUM5.3IBM Security Guardium Data Encryption (GDE) 3.0.0.2 is deployed with active debugging code that can create unintended en...
CVE-2019-4699LOW2.7IBM Security Guardium Data Encryption (GDE) 3.0.0.2 generates an error message that includes sensitive information about...
CVE-2019-4698HIGH7.5IBM Security Guardium Data Encryption (GDE) 3.0.0.2 does not require that users should have strong passwords by default,...
CVE-2019-4697MEDIUM6.5IBM Security Guardium Data Encryption (GDE) 3.0.0.2 stores user credentials in plain in clear text which can be read by ...
CVE-2019-4694CRITICAL9.8IBM Security Guardium Data Encryption (GDE) 3.0.0.2 contains hard-coded credentials, such as a password or cryptographic...
CVE-2019-4693MEDIUM4.4IBM Security Guardium Data Encryption (GDE) 3.0.0.2 stores user credentials in plain in clear text which can be read by ...
CVE-2019-4692MEDIUM5.3IBM Security Guardium Data Encryption (GDE) 3.0.0.2 discloses sensitive information to unauthorized users. The informati...
CVE-2019-4691MEDIUM5.4IBM Security Guardium Data Encryption (GDE) 3.0.0.2 is vulnerable to cross-site scripting. This vulnerability allows use...
CVE-2019-4689HIGH7.5IBM Security Guardium Data Encryption (GDE) 3.0.0.2 could allow a remote attacker to obtain sensitive information, cause...
CVE-2019-4688MEDIUM4.3IBM Security Guardium Data Encryption (GDE) 3.0.0.2 does not set the secure attribute on authorization tokens or session...
CVE-2019-4686MEDIUM5.3IBM Security Guardium Data Encryption (GDE) 3.0.0.2 does not set the secure attribute on authorization tokens or session...
CVE-2019-18847CRITICAL9.8Enterprise Access Client Auto-Updater allows for Remote Code Execution prior to version 2.0.1.
CVE-2019-14904HIGH7.3A flaw was found in the solaris_zone module from the Ansible Community modules. When setting the name for the zone on th...
CVE-2019-11862HIGH8.4The SSH service on ALEOS before 4.12.0, 4.9.5, 4.4.9 allows traffic proxying.

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now