2019 CVE Vulnerabilities
17,619 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-6142 | MEDIUM | 6.1 | 0.6% | Nov 5, 2019 | It has been reported that XSS is possible in Forcepoint Email Security, versions 8.5 and 8.5.3. It is strongly recommend... |
| CVE-2019-1982 | MEDIUM | 5.3 | 1.0% | Nov 5, 2019 | A vulnerability in the HTTP traffic filtering component of Cisco Firepower Threat Defense Software, Cisco FirePOWER Serv... |
| CVE-2019-1981 | MEDIUM | 5.8 | 1.0% | Nov 5, 2019 | A vulnerability in the normalization functionality of Cisco Firepower Threat Defense Software, Cisco FirePOWER Services ... |
| CVE-2019-1980 | MEDIUM | 5.3 | 1.0% | Nov 5, 2019 | A vulnerability in the protocol detection component of Cisco Firepower Threat Defense Software, Cisco FirePOWER Services... |
| CVE-2019-1978 | MEDIUM | 5.8 | 9.4% | Nov 5, 2019 | A vulnerability in the stream reassembly component of Cisco Firepower Threat Defense Software, Cisco FirePOWER Services ... |
| CVE-2019-1877 | MEDIUM | 6.5 | 1.4% | Nov 5, 2019 | A vulnerability in the HTTP API of Cisco Enterprise Chat and Email could allow an unauthenticated, remote attacker to do... |
| CVE-2019-1734 | MEDIUM | 5.5 | 0.3% | Nov 5, 2019 | A vulnerability in the implementation of a CLI diagnostic command in Cisco FXOS Software and Cisco NX-OS Software could ... |
| CVE-2019-10223 | MEDIUM | 6.5 | 1.8% | Nov 5, 2019 | A security issue was discovered in the kube-state-metrics versions v1.7.0 and v1.7.1. An experimental feature was added ... |
| CVE-2019-13497 | MEDIUM | 6.5 | 0.7% | Nov 4, 2019 | One Identity Cloud Access Manager before 8.1.4 Hotfix 1 allows CSRF for logout requests. |
| CVE-2019-18673 | MEDIUM | 4.6 | 0.4% | Nov 2, 2019 | On SHIFT BitBox02 devices, a side channel for the row-based OLED display was found. The power consumption of each row-ba... |
| CVE-2019-14360 | MEDIUM | 4.6 | 0.4% | Nov 2, 2019 | On Hyundai Pay Kasse HK-1000 devices, a side channel for the row-based OLED display was found. The power consumption of ... |
| CVE-2019-14358 | MEDIUM | 4.6 | 0.4% | Nov 2, 2019 | On Archos Safe-T devices, a side channel for the row-based OLED display was found. The power consumption of each row-bas... |
| CVE-2019-18668 | MEDIUM | 6.5 | 1.8% | Nov 2, 2019 | An issue was discovered in the Currency Switcher addon before 2.11.2 for WooCommerce if a user provides a currency that ... |
| CVE-2019-18667 | MEDIUM | 6.1 | 4.0% | Nov 2, 2019 | /usr/local/www/freeradius_view_config.php in the freeradius3 package before 0.15.7_3 for pfSense on FreeBSD allows a use... |
| CVE-2019-18664 | MEDIUM | 5.4 | 0.6% | Nov 2, 2019 | The Log module in SECUDOS DOMOS before 5.6 allows XSS. |
| CVE-2019-18659 | MEDIUM | 5.3 | 1.0% | Nov 2, 2019 | The Wireless Emergency Alerts (WEA) protocol allows remote attackers to spoof a Presidential Alert because cryptographic... |
| CVE-2019-18654 | MEDIUM | 6.1 | 0.9% | Nov 1, 2019 | A Cross Site Scripting (XSS) issue exists in AVG AntiVirus (Internet Security Edition) 19.3.3084 build 19.3.4241.440 in ... |
| CVE-2019-18653 | MEDIUM | 6.1 | 0.9% | Nov 1, 2019 | A Cross Site Scripting (XSS) issue exists in Avast AntiVirus (Free, Internet Security, and Premiere Edition) 19.3.2369 b... |
| CVE-2019-12752 | MEDIUM | 6.1 | 0.4% | Nov 1, 2019 | The Symantec SONAR component, prior to 12.0.2, may be susceptible to a tamper protection bypass vulnerability which coul... |
| CVE-2019-6658 | MEDIUM | 4.3 | 0.7% | Nov 1, 2019 | On BIG-IP AFM 15.0.0-15.0.1, 14.0.0-14.1.2, 13.1.0-13.1.3.1, and 12.1.0-12.1.5, a vulnerability in the AFM configuration... |
| CVE-2019-6657 | MEDIUM | 6.1 | 0.6% | Nov 1, 2019 | On BIG-IP 13.1.0-13.1.3.1, 12.1.0-12.1.5, and 11.5.2-11.6.5.1, a reflected cross-site scripting (XSS) vulnerability exis... |
| CVE-2019-18636 | MEDIUM | 5.4 | 0.6% | Nov 1, 2019 | A cross-site scripting (XSS) vulnerability in Jitbit .NET Forum (aka ASP.NET forum) 8.3.8 allows remote attackers to inj... |
| CVE-2019-16909 | MEDIUM | 4.3 | 1.1% | Nov 1, 2019 | An issue was discovered in the Infosysta "In-App & Desktop Notifications" app before 1.6.14_J8 for Jira. It is possible ... |
| CVE-2019-16908 | MEDIUM | 5.3 | 1.6% | Nov 1, 2019 | An issue was discovered in the Infosysta "In-App & Desktop Notifications" app before 1.6.14_J8 for Jira. It is possible ... |
| CVE-2019-18229 | MEDIUM | 6.5 | 2.4% | Oct 31, 2019 | Advantech WISE-PaaS/RMM, Versions 3.3.29 and prior. Lack of sanitization of user-supplied input cause SQL injection vuln... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now