2019 CVE Vulnerabilities

17,619 CVEs published in 2019.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2019-19532MEDIUM6.8In the Linux kernel before 5.3.9, there are multiple out-of-bounds write bugs that can be caused by a malicious USB devi...
CVE-2019-19531MEDIUM6.8In the Linux kernel before 5.2.9, there is a use-after-free bug that can be caused by a malicious USB device in the driv...
CVE-2019-19530MEDIUM4.6In the Linux kernel before 5.2.10, there is a use-after-free bug that can be caused by a malicious USB device in the dri...
CVE-2019-19529MEDIUM6.3In the Linux kernel before 5.3.11, there is a use-after-free bug that can be caused by a malicious USB device in the dri...
CVE-2019-19528MEDIUM6.1In the Linux kernel before 5.3.7, there is a use-after-free bug that can be caused by a malicious USB device in the driv...
CVE-2019-19527MEDIUM6.8In the Linux kernel before 5.2.10, there is a use-after-free bug that can be caused by a malicious USB device in the dri...
CVE-2019-19526MEDIUM4.6In the Linux kernel before 5.3.9, there is a use-after-free bug that can be caused by a malicious USB device in the driv...
CVE-2019-19525MEDIUM4.6In the Linux kernel before 5.3.6, there is a use-after-free bug that can be caused by a malicious USB device in the driv...
CVE-2019-19524MEDIUM4.6In the Linux kernel before 5.3.12, there is a use-after-free bug that can be caused by a malicious USB device in the dri...
CVE-2019-19523MEDIUM4.6In the Linux kernel before 5.3.7, there is a use-after-free bug that can be caused by a malicious USB device in the driv...
CVE-2019-4468MEDIUM5.4IBM Cloud Pak System 2.3 and 2.3.0.1 is vulnerable to cross-site scripting. This vulnerability allows users to embed arb...
CVE-2019-4467MEDIUM5.4IBM Cloud Pak System 2.3 and 2.3.0.1 is vulnerable to cross-site scripting. This vulnerability allows users to embed arb...
CVE-2019-4226MEDIUM5.4IBM Cloud Pak System 2.3 and 2.3.0.1 is vulnerable to cross-site scripting. This vulnerability allows users to embed arb...
CVE-2019-4098MEDIUM5.4IBM Cloud Pak System 2.3 and 2.3.0.1 is vulnerable to cross-site scripting. This vulnerability allows users to embed arb...
CVE-2019-3666MEDIUM6.5API Abuse/Misuse vulnerability in the web interface in McAfee Web Advisor (WA) prior to 4.1.1.48 allows remote unauthent...
CVE-2019-3665MEDIUM6.5Code Injection vulnerability in the web interface in McAfee Web Advisor (WA) prior to 4.1.1.48 allows remote unauthentic...
CVE-2019-19516MEDIUM6.5Intelbras WRN 150 1.0.18 devices allow CSRF via GO=system_password.asp to the goform/SysToolChangePwd URI to change a pa...
CVE-2019-15689MEDIUM6.7Kaspersky Secure Connection, Kaspersky Internet Security, Kaspersky Total Security, Kaspersky Security Cloud prior to ve...
CVE-2019-19507MEDIUM5.3In jpv (aka Json Pattern Validator) before 2.1.1, compareCommon() can be bypassed because certain internal attributes ca...
CVE-2019-12390MEDIUM5.3Anviz access control devices expose private Information (pin code and name) by allowing remote attackers to query this i...
CVE-2019-19118MEDIUM6.5Django 2.1 before 2.1.15 and 2.2 before 2.2.8 allows unintended model editing. A Django model admin displaying inline re...
CVE-2019-19496MEDIUM5.4Alfresco Enterprise before 5.2.5 allows stored XSS via an uploaded HTML document.
CVE-2019-19493MEDIUM5.4Kentico before 12.0.50 allows file uploads in which the Content-Type header is inconsistent with the file extension, lea...
CVE-2019-19362MEDIUM6.5An issue was discovered in the Chat functionality of the TeamViewer desktop application 14.3.4730 on Windows. (The vendo...
CVE-2019-19491MEDIUM6.1TestLink 1.9.19 has XSS via the lib/testcases/archiveData.php edit parameter, the index.php reqURI parameter, or the URI...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now