2019 CVE Vulnerabilities
17,619 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-12479 | — | — | 2.0% | Aug 13, 2019 | An issue was discovered in 20|20 Storage 2.11.0. A Path Traversal vulnerability in the TwentyTwenty.Storage library in t... |
| CVE-2019-14986 | — | — | 2.5% | Aug 13, 2019 | eQ-3 Homematic CCU2 and CCU3 with the CUxD AddOn before 2.3.0 installed allow administrative operations by unauthenticat... |
| CVE-2019-14985 | — | — | 11.3% | Aug 13, 2019 | eQ-3 Homematic CCU2 and CCU3 with the CUxD AddOn installed allow Remote Code Execution by unauthenticated attackers with... |
| CVE-2019-14984 | — | — | 5.8% | Aug 13, 2019 | eQ-3 Homematic CCU2 and CCU3 with the XML-API through 1.2.0 AddOn installed allow Remote Code Execution by unauthenticat... |
| CVE-2019-14993 | — | — | 2.2% | Aug 13, 2019 | Istio before 1.1.13 and 1.2.x before 1.2.4 mishandles regular expressions for long URIs, leading to a denial of service ... |
| CVE-2019-14992 | — | — | — | Aug 13, 2019 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2019-9518. Reason: This candidate is a reservation du... |
| CVE-2019-14991 | — | — | — | Aug 13, 2019 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2019-9515. Reason: This candidate is a reservation du... |
| CVE-2019-14990 | — | — | — | Aug 13, 2019 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2019-9514. Reason: This candidate is a reservation du... |
| CVE-2019-14989 | — | — | — | Aug 13, 2019 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2019-9513. Reason: This candidate is a reservation du... |
| CVE-2019-14988 | — | — | — | Aug 13, 2019 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2019-9512. Reason: This candidate is a reservation du... |
| CVE-2019-8448 | — | — | 1.8% | Aug 13, 2019 | The login.jsp resource in Jira before version 7.13.4, and from version 8.0.0 before version 8.2.2 allows remote attacker... |
| CVE-2019-5681 | — | — | 0.5% | Aug 13, 2019 | NVIDIA Shield TV Experience prior to v8.0, contains a vulnerability in the custom NVIDIA API used in the mount system se... |
| CVE-2019-13419 | — | — | 0.9% | Aug 13, 2019 | Search Guard versions before 23.1 had an issue that for aggregations clear text values of anonymised fields were leaked. |
| CVE-2019-14659 | — | — | — | Aug 13, 2019 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu... |
| CVE-2019-14516 | — | — | 0.7% | Aug 13, 2019 | The mAadhaar application 1.2.7 for Android lacks SSL Certificate Validation, leading to man-in-the-middle attacks agains... |
| CVE-2019-14987 | — | — | 0.6% | Aug 13, 2019 | Adive Framework through 2.0.7 is affected by XSS in the Create New Table and Create New Navigation Link functions. |
| CVE-2019-14982 | — | — | 2.0% | Aug 12, 2019 | In Exiv2 before v0.27.2, there is an integer overflow vulnerability in the WebPImage::getHeaderOffset function in webpim... |
| CVE-2019-14359 | — | — | 0.4% | Aug 12, 2019 | On BC Vault devices, a side channel for the row-based SSD1309 OLED display was found. The power consumption of each row-... |
| CVE-2019-14976 | — | — | 0.8% | Aug 12, 2019 | iCMS 7.0.15 allows admincp.php?app=apps XSS via the keywords parameter. |
| CVE-2019-14969 | — | — | 0.5% | Aug 12, 2019 | Netwrix Auditor before 9.8 has insecure permissions on %PROGRAMDATA%\Netwrix Auditor\Logs\ActiveDirectory\ and sub-folde... |
| CVE-2019-14968 | — | — | 1.5% | Aug 12, 2019 | An issue was discovered in imcat 4.9. There is SQL Injection via the index.php order parameter in a mod=faqs action. |
| CVE-2019-14967 | — | — | 1.2% | Aug 12, 2019 | An issue was discovered in Frappe Framework 10, 11 before 11.1.46, and 12. There exists an XSS vulnerability. |
| CVE-2019-14966 | — | — | 1.7% | Aug 12, 2019 | An issue was discovered in Frappe Framework 10 through 12 before 12.0.4. There exists an authenticated SQL injection. |
| CVE-2019-14965 | — | — | 2.6% | Aug 12, 2019 | An issue was discovered in Frappe Framework 10 through 12 before 12.0.4. A server side template injection (SSTI) issue e... |
| CVE-2019-13462 | — | — | 11.4% | Aug 12, 2019 | Lansweeper before 7.1.117.4 allows unauthenticated SQL injection. |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now