2019 CVE Vulnerabilities
17,619 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-19532 | MEDIUM | 6.8 | 0.5% | Dec 3, 2019 | In the Linux kernel before 5.3.9, there are multiple out-of-bounds write bugs that can be caused by a malicious USB devi... |
| CVE-2019-19531 | MEDIUM | 6.8 | 0.5% | Dec 3, 2019 | In the Linux kernel before 5.2.9, there is a use-after-free bug that can be caused by a malicious USB device in the driv... |
| CVE-2019-19530 | MEDIUM | 4.6 | 0.4% | Dec 3, 2019 | In the Linux kernel before 5.2.10, there is a use-after-free bug that can be caused by a malicious USB device in the dri... |
| CVE-2019-19529 | MEDIUM | 6.3 | 0.4% | Dec 3, 2019 | In the Linux kernel before 5.3.11, there is a use-after-free bug that can be caused by a malicious USB device in the dri... |
| CVE-2019-19528 | MEDIUM | 6.1 | 0.5% | Dec 3, 2019 | In the Linux kernel before 5.3.7, there is a use-after-free bug that can be caused by a malicious USB device in the driv... |
| CVE-2019-19527 | MEDIUM | 6.8 | 0.4% | Dec 3, 2019 | In the Linux kernel before 5.2.10, there is a use-after-free bug that can be caused by a malicious USB device in the dri... |
| CVE-2019-19526 | MEDIUM | 4.6 | 0.4% | Dec 3, 2019 | In the Linux kernel before 5.3.9, there is a use-after-free bug that can be caused by a malicious USB device in the driv... |
| CVE-2019-19525 | MEDIUM | 4.6 | 0.5% | Dec 3, 2019 | In the Linux kernel before 5.3.6, there is a use-after-free bug that can be caused by a malicious USB device in the driv... |
| CVE-2019-19524 | MEDIUM | 4.6 | 0.7% | Dec 3, 2019 | In the Linux kernel before 5.3.12, there is a use-after-free bug that can be caused by a malicious USB device in the dri... |
| CVE-2019-19523 | MEDIUM | 4.6 | 0.4% | Dec 3, 2019 | In the Linux kernel before 5.3.7, there is a use-after-free bug that can be caused by a malicious USB device in the driv... |
| CVE-2019-4468 | MEDIUM | 5.4 | 0.6% | Dec 3, 2019 | IBM Cloud Pak System 2.3 and 2.3.0.1 is vulnerable to cross-site scripting. This vulnerability allows users to embed arb... |
| CVE-2019-4467 | MEDIUM | 5.4 | 0.6% | Dec 3, 2019 | IBM Cloud Pak System 2.3 and 2.3.0.1 is vulnerable to cross-site scripting. This vulnerability allows users to embed arb... |
| CVE-2019-4226 | MEDIUM | 5.4 | 0.6% | Dec 3, 2019 | IBM Cloud Pak System 2.3 and 2.3.0.1 is vulnerable to cross-site scripting. This vulnerability allows users to embed arb... |
| CVE-2019-4098 | MEDIUM | 5.4 | 0.6% | Dec 3, 2019 | IBM Cloud Pak System 2.3 and 2.3.0.1 is vulnerable to cross-site scripting. This vulnerability allows users to embed arb... |
| CVE-2019-3666 | MEDIUM | 6.5 | 1.5% | Dec 3, 2019 | API Abuse/Misuse vulnerability in the web interface in McAfee Web Advisor (WA) prior to 4.1.1.48 allows remote unauthent... |
| CVE-2019-3665 | MEDIUM | 6.5 | 0.9% | Dec 3, 2019 | Code Injection vulnerability in the web interface in McAfee Web Advisor (WA) prior to 4.1.1.48 allows remote unauthentic... |
| CVE-2019-19516 | MEDIUM | 6.5 | 9.6% | Dec 2, 2019 | Intelbras WRN 150 1.0.18 devices allow CSRF via GO=system_password.asp to the goform/SysToolChangePwd URI to change a pa... |
| CVE-2019-15689 | MEDIUM | 6.7 | 0.8% | Dec 2, 2019 | Kaspersky Secure Connection, Kaspersky Internet Security, Kaspersky Total Security, Kaspersky Security Cloud prior to ve... |
| CVE-2019-19507 | MEDIUM | 5.3 | 1.0% | Dec 2, 2019 | In jpv (aka Json Pattern Validator) before 2.1.1, compareCommon() can be bypassed because certain internal attributes ca... |
| CVE-2019-12390 | MEDIUM | 5.3 | 1.4% | Dec 2, 2019 | Anviz access control devices expose private Information (pin code and name) by allowing remote attackers to query this i... |
| CVE-2019-19118 | MEDIUM | 6.5 | 1.7% | Dec 2, 2019 | Django 2.1 before 2.1.15 and 2.2 before 2.2.8 allows unintended model editing. A Django model admin displaying inline re... |
| CVE-2019-19496 | MEDIUM | 5.4 | 0.6% | Dec 2, 2019 | Alfresco Enterprise before 5.2.5 allows stored XSS via an uploaded HTML document. |
| CVE-2019-19493 | MEDIUM | 5.4 | 2.0% | Dec 2, 2019 | Kentico before 12.0.50 allows file uploads in which the Content-Type header is inconsistent with the file extension, lea... |
| CVE-2019-19362 | MEDIUM | 6.5 | 2.1% | Dec 2, 2019 | An issue was discovered in the Chat functionality of the TeamViewer desktop application 14.3.4730 on Windows. (The vendo... |
| CVE-2019-19491 | MEDIUM | 6.1 | 0.8% | Dec 2, 2019 | TestLink 1.9.19 has XSS via the lib/testcases/archiveData.php edit parameter, the index.php reqURI parameter, or the URI... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now