2019 CVE Vulnerabilities
17,619 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-25763 | CRITICAL | 9.8 | 0.4% | Jun 20, 2026 | WordPress Ultimate Addons for Beaver Builder 1.2.4.1 contains an authentication bypass vulnerability that allows attacke... |
| CVE-2019-25741 | CRITICAL | 9.8 | 0.6% | Jun 4, 2026 | Mobatek MobaXterm 12.1 contains a structured exception handling (SEH) based buffer overflow vulnerability in the usernam... |
| CVE-2019-25738 | CRITICAL | 9.8 | 0.3% | Jun 4, 2026 | WordPress Hybrid Composer 1.4.6 contains an unauthenticated settings change vulnerability that allows unauthenticated at... |
| CVE-2019-25729 | CRITICAL | 9.8 | 0.3% | Jun 4, 2026 | PDF Signer 3.0 contains a server-side template injection vulnerability that allows unauthenticated attackers to execute ... |
| CVE-2019-25727 | CRITICAL | 9.8 | 0.5% | Jun 4, 2026 | WordPress Plugin ad manager wd 1.0.11 contains an arbitrary file download vulnerability that allows unauthenticated atta... |
| CVE-2019-25714 | CRITICAL | 9.3 | 0.7% | Apr 21, 2026 | Seeyon OA A8 contains an unauthenticated arbitrary file write vulnerability in the /seeyon/htmlofficeservlet endpoint th... |
| CVE-2019-25710 | CRITICAL | 9.1 | 0.3% | Apr 12, 2026 | Dolibarr ERP-CRM 8.0.4 contains an SQL injection vulnerability in the rowid parameter of the admin dict.php endpoint tha... |
| CVE-2019-25709 | CRITICAL | 9.8 | 0.6% | Apr 12, 2026 | CF Image Hosting Script 1.6.5 allows unauthenticated attackers to download and decode the application database by access... |
| CVE-2019-25697 | CRITICAL | 9.8 | 0.4% | Apr 12, 2026 | CMSsite 1.0 contains an SQL injection vulnerability that allows unauthenticated attackers to manipulate database queries... |
| CVE-2019-25704 | CRITICAL | 9.1 | 0.3% | Apr 5, 2026 | Kados R10 GreenBee contains an SQL injection vulnerability that allows attackers to manipulate database queries by injec... |
| CVE-2019-25702 | CRITICAL | 9.1 | 0.3% | Apr 5, 2026 | Kados R10 GreenBee contains an SQL injection vulnerability that allows attackers to manipulate database queries by injec... |
| CVE-2019-25700 | CRITICAL | 9.1 | 0.3% | Apr 5, 2026 | Kados R10 GreenBee contains an SQL injection vulnerability that allows attackers to manipulate database queries by injec... |
| CVE-2019-25698 | CRITICAL | 9.1 | 0.3% | Apr 5, 2026 | Kados R10 GreenBee contains an SQL injection vulnerability that allows attackers to manipulate database queries by injec... |
| CVE-2019-25696 | CRITICAL | 9.1 | 0.3% | Apr 5, 2026 | Kados R10 GreenBee contains an SQL injection vulnerability that allows attackers to manipulate database queries by injec... |
| CVE-2019-25694 | CRITICAL | 9.1 | 0.4% | Apr 5, 2026 | Kados R10 GreenBee contains an SQL injection vulnerability that allows unauthenticated attackers to manipulate database ... |
| CVE-2019-25692 | CRITICAL | 9.1 | 0.3% | Apr 5, 2026 | Kados R10 GreenBee contains an SQL injection vulnerability that allows attackers to manipulate database queries by injec... |
| CVE-2019-25688 | CRITICAL | 9.1 | 0.3% | Apr 5, 2026 | Kados R10 GreenBee contains an SQL injection vulnerability that allows unauthenticated attackers to manipulate database ... |
| CVE-2019-25687 | CRITICAL | 9.8 | 1.4% | Apr 5, 2026 | Pegasus CMS 1.0 contains a remote code execution vulnerability in the extra_fields.php plugin that allows unauthenticate... |
| CVE-2019-25680 | CRITICAL | 9.8 | 0.4% | Apr 5, 2026 | Advance Gift Shop Pro Script 2.0.3 contains an SQL injection vulnerability that allows unauthenticated attackers to exec... |
| CVE-2019-25676 | CRITICAL | 9.8 | 0.5% | Apr 5, 2026 | Ask Expert Script 3.0.5 contains cross-site scripting and SQL injection vulnerabilities that allow unauthenticated attac... |
| CVE-2019-25674 | CRITICAL | 9.8 | 0.4% | Apr 5, 2026 | CMSsite 1.0 contains an SQL injection vulnerability that allows unauthenticated attackers to manipulate database queries... |
| CVE-2019-25651 | CRITICAL | 9 | 0.1% | Mar 27, 2026 | Ubiquiti UniFi Network Controller prior to 5.10.12 (excluding 5.6.42), UAP FW prior to 4.0.6, UAP-AC, UAP-AC v2, and UAP... |
| CVE-2019-25646 | CRITICAL | 9.8 | 0.9% | Mar 24, 2026 | Tabs Mail Carrier 2.5.1 contains a buffer overflow vulnerability in the MAIL FROM SMTP command that allows remote attack... |
| CVE-2019-25628 | CRITICAL | 9.8 | 0.8% | Mar 24, 2026 | Download Accelerator Plus DAP 10.0.6.0 contains a structured exception handler buffer overflow vulnerability that allows... |
| CVE-2019-25614 | CRITICAL | 9.8 | 0.9% | Mar 22, 2026 | Free Float FTP 1.0 contains a buffer overflow vulnerability in the STOR command handler that allows remote attackers to ... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now