2019 CVE Vulnerabilities

17,619 CVEs published in 2019.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2019-13675MEDIUM4.3Insufficient data validation in extensions in Google Chrome prior to 77.0.3865.75 allowed a remote attacker to disable e...
CVE-2019-13674MEDIUM4.3IDN spoofing in Omnibox in Google Chrome prior to 77.0.3865.75 allowed a remote attacker to perform domain spoofing via ...
CVE-2019-13671MEDIUM4.3UI spoofing in Blink in Google Chrome prior to 77.0.3865.75 allowed a remote attacker to spoof security UI via a crafted...
CVE-2019-13670MEDIUM6.5Insufficient data validation in JavaScript in Google Chrome prior to 77.0.3865.75 allowed a remote attacker to potential...
CVE-2019-13669MEDIUM4.3Incorrect data validation in navigation in Google Chrome prior to 77.0.3865.75 allowed a remote attacker to spoof the co...
CVE-2019-13667MEDIUM4.3Inappropriate implementation in Omnibox in Google Chrome on iOS prior to 77.0.3865.75 allowed a remote attacker to spoof...
CVE-2019-13665MEDIUM6.5Insufficient filtering in Blink in Google Chrome prior to 77.0.3865.75 allowed a remote attacker to bypass multiple file...
CVE-2019-13664MEDIUM6.5Insufficient policy enforcement in Blink in Google Chrome prior to 77.0.3865.75 allowed a remote attacker to bypass cont...
CVE-2019-13663MEDIUM4.3IDN spoofing in Omnibox in Google Chrome prior to 77.0.3865.75 allowed a remote attacker to perform domain spoofing via ...
CVE-2019-13662MEDIUM6.5Insufficient policy enforcement in navigations in Google Chrome prior to 77.0.3865.75 allowed a remote attacker to bypas...
CVE-2019-13661MEDIUM4.3UI spoofing in Chromium in Google Chrome prior to 77.0.3865.75 allowed a remote attacker to spoof notifications via a cr...
CVE-2019-13660MEDIUM5.3UI spoofing in Chromium in Google Chrome prior to 77.0.3865.75 allowed a remote attacker to spoof notifications via a cr...
CVE-2019-13659MEDIUM4.3IDN spoofing in Omnibox in Google Chrome prior to 77.0.3865.75 allowed a remote attacker to perform domain spoofing via ...
CVE-2019-10213MEDIUM6.5OpenShift Container Platform, versions 4.1 and 4.2, does not sanitize secret data written to pod logs when the log level...
CVE-2019-10207MEDIUM5.5A flaw was found in the Linux kernel's Bluetooth implementation of UART, all versions kernel 3.x.x before 4.18.0 and ker...
CVE-2019-14891MEDIUM5A flaw was found in cri-o, as a result of all pod-related processes being placed in the same memory cgroup. This can res...
CVE-2019-10214MEDIUM5.9The containers/image library used by the container tools Podman, Buildah, and Skopeo in Red Hat Enterprise Linux version...
CVE-2019-11291MEDIUM4.8Pivotal RabbitMQ, 3.7 versions prior to v3.7.20 and 3.8 version prior to v3.8.1, and RabbitMQ for PCF, 1.16.x versions p...
CVE-2019-18910MEDIUM6.8The Citrix Receiver wrapper function does not safely handle user supplied input, which may be leveraged by an attacker t...
CVE-2019-16287MEDIUM6.8In HP ThinPro Linux 6.2, 6.2.1, 7.0 and 7.1, an attacker may be able to leverage the application filter bypass vulnerabi...
CVE-2019-16286MEDIUM6.8An attacker may be able to bypass the OS application filter meant to restrict applications that can be executed by chang...
CVE-2019-16285MEDIUM4.6If a local user has been configured and logged in, an unauthenticated attacker with physical access may be able to extra...
CVE-2019-15593MEDIUM6.5GitLab 12.2.3 contains a security vulnerability that allows a user to affect the availability of the service through a D...
CVE-2019-19240MEDIUM5.3Embedthis GoAhead before 5.0.1 mishandles redirected HTTP requests with a large Host header. The GoAhead WebsRedirect us...
CVE-2019-16763MEDIUM6.1In Pannellum from 2.5.0 through 2.5.4 URLs were not sanitized for data URIs (or vbscript:), allowing for potential XSS a...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now