CVEs from 2019
Total
4,015
critical
critical 232
high
high 332
medium
medium 301
low
low 72
% Critical
5.8%
% with KEV
2.9%
% with exploit
3.0%
Top products
- u-boot 20
- nsauditor 1
- crypto 1
| CVE | Severity | CVSS | Risk | Published | Description | Impact |
|---|---|---|---|---|---|---|
| CVE-2019-11746 | high | — | 8.0 | — | A use-after-free vulnerability can occur while manipulating video elements if the body is freed while still in use. This results in a potentially exploitable crash. This vulnerability affects Firefox… | |
| CVE-2019-11706 | high | — | 8.0 | — | A flaw in Thunderbird's implementation of iCal causes a type confusion in icaltimezone_get_vtimezone_properties when processing certain email messages, resulting in a crash. This vulnerability affect… | |
| CVE-2019-6109 | high | — | 8.0 | — | An issue was discovered in OpenSSH 7.9. Due to missing character encoding in the progress display, a malicious server (or Man-in-The-Middle attacker) can employ crafted object names to manipulate the… | |
| CVE-2019-6465 | high | — | 8.0 | — | Controls for zone transfers may not be properly applied to Dynamically Loadable Zones (DLZs) if the zones are writable Versions affected: BIND 9.9.0 -> 9.10.8-P1, 9.11.0 -> 9.11.5-P2, 9.12.0 -> 9.12.… | |
| CVE-2019-3871 | high | — | 8.0 | — | A vulnerability was found in PowerDNS Authoritative Server before 4.0.7 and before 4.1.7. An insufficient validation of data coming from the user when building a HTTP request from a DNS query in the … | |
| CVE-2019-19450 | high | — | 8.0 | 3y ago | Important: python-reportlab security update | |
| CVE-2019-18466 | high | — | 8.0 | 4y ago | Important: container-tools:rhel8 security and bug fix update | |
| CVE-2019-9512 | high | — | 8.0 | 4y ago | Important: container-tools:rhel8 security and bug fix update | |
| CVE-2019-9514 | high | — | 8.0 | 4y ago | Important: nodejs:10 security update | |
| CVE-2019-10353 | high | — | 8.0 | 4y ago | Cross-Site Request Forgery in Jenkins | |
| CVE-2019-10352 | high | — | 8.0 | 4y ago | Improper Limitation of a Pathname to a Restricted Directory in Jenkins | |
| CVE-2019-10354 | high | — | 8.0 | 4y ago | Missing Authorization in Jenkins | |
| CVE-2019-16276 | high | — | 8.0 | 4y ago | Request smuggling due to accepting invalid headers in net/http via net/textproto | |
| CVE-2019-2435 | high | — | 8.0 | 4y ago | Improper Access Control in MySQL Connector Python | |
| CVE-2019-5885 | high | — | 8.0 | 4y ago | Matrix Synapse before 0.34.0.1, when the macaroon_secret_key authentication parameter is not set, uses a predictable value to derive a secret key and other secrets which could allow remote attackers … | |
| CVE-2019-16884 | high | — | 8.0 | 4y ago | Important: container-tools:rhel8 security and bug fix update | |
| CVE-2019-10214 | high | — | 8.0 | 4y ago | Important: container-tools:rhel8 security, bug fix, and enhancement update | |
| CVE-2019-18811 | high | — | 8.0 | 5y ago | Important: kernel security, bug fix, and enhancement update | |
| CVE-2019-19523 | high | — | 8.0 | 5y ago | Important: kernel security, bug fix, and enhancement update | |
| CVE-2019-19528 | high | — | 8.0 | 5y ago | Important: kernel security, bug fix, and enhancement update | |
| CVE-2019-2938 | high | — | 8.0 | 6y ago | Important: mysql:8.0 security update | |
| CVE-2019-2974 | high | — | 8.0 | 6y ago | Important: mysql:8.0 security update | |
| CVE-2019-15890 | high | — | 8.0 | 6y ago | Important: container-tools:rhel8 security, bug fix, and enhancement update | |
| CVE-2019-2967 | high | — | 8.0 | 6y ago | Important: mysql:8.0 security update | |
| CVE-2019-2966 | high | — | 8.0 | 6y ago | Important: mysql:8.0 security update | |
| CVE-2019-3004 | high | — | 8.0 | 6y ago | Important: mysql:8.0 security update | |
| CVE-2019-3018 | high | — | 8.0 | 6y ago | Important: mysql:8.0 security update | |
| CVE-2019-2997 | high | — | 8.0 | 6y ago | Important: mysql:8.0 security update | |
| CVE-2019-2998 | high | — | 8.0 | 6y ago | Important: mysql:8.0 security update | |
| CVE-2019-2957 | high | — | 8.0 | 6y ago | Important: mysql:8.0 security update | |
| CVE-2019-3011 | high | — | 8.0 | 6y ago | Important: mysql:8.0 security update | |
| CVE-2019-2982 | high | — | 8.0 | 6y ago | Important: mysql:8.0 security update | |
| CVE-2019-2911 | high | — | 8.0 | 6y ago | Important: mysql:8.0 security update | |
| CVE-2019-2968 | high | — | 8.0 | 6y ago | Important: mysql:8.0 security update | |
| CVE-2019-3009 | high | — | 8.0 | 6y ago | Important: mysql:8.0 security update | |
| CVE-2019-2960 | high | — | 8.0 | 6y ago | Important: mysql:8.0 security update | |
| CVE-2019-2946 | high | — | 8.0 | 6y ago | Important: mysql:8.0 security update | |
| CVE-2019-2963 | high | — | 8.0 | 6y ago | Important: mysql:8.0 security update | |
| CVE-2019-2993 | high | — | 8.0 | 6y ago | Important: mysql:8.0 security update | |
| CVE-2019-2991 | high | — | 8.0 | 6y ago | Important: mysql:8.0 security update | |
| CVE-2019-2914 | high | — | 8.0 | 6y ago | Important: mysql:8.0 security update | |
| CVE-2019-20382 | high | — | 8.0 | 6y ago | Important: virt:rhel security update | |
| CVE-2019-10086 | high | — | 8.0 | 6y ago | Insecure Deserialization in Apache Commons Beanutils | |
| CVE-2019-0199 | high | — | 8.0 | 6y ago | Apache Tomcat Denial of Service vulnerability | |
| CVE-2019-12525 | high | — | 8.0 | 6y ago | Important: squid:4 security update | |
| CVE-2019-12519 | high | — | 8.0 | 6y ago | Important: squid:4 security update | |
| CVE-2019-20044 | high | — | 8.0 | 6y ago | Important: zsh security update | |
| CVE-2019-15604 | high | — | 8.0 | 6y ago | Important: nodejs:10 security update | |
| CVE-2019-15606 | high | — | 8.0 | 6y ago | Important: nodejs:12 security update | |
| CVE-2019-15605 | high | — | 8.0 | 6y ago | Important: nodejs:12 security update | |
| CVE-2019-19844 | high | — | 8.0 | 6y ago | Django before 1.11.27, 2.x before 2.2.9, and 3.x before 3.0.1 allows account takeover. A suitably crafted email address (that is equal to an existing user's email address after case transformation of… | |
| CVE-2019-16777 | high | — | 8.0 | 7y ago | Important: nodejs:10 security update | |
| CVE-2019-16776 | high | — | 8.0 | 7y ago | Important: nodejs:10 security update | |
| CVE-2019-16775 | high | — | 8.0 | 7y ago | Important: nodejs:10 security update | |
| CVE-2019-14378 | high | — | 8.0 | 7y ago | Important: container-tools:1.0 security and bug fix update | |
| CVE-2019-9946 | high | — | 8.0 | 7y ago | Important: container-tools:rhel8 security, bug fix, and enhancement update | |
| CVE-2019-2510 | high | — | 8.0 | 7y ago | Important: mysql:8.0 security update | |
| CVE-2019-9515 | high | — | 8.0 | 7y ago | Important: nodejs:10 security update | |
| CVE-2019-5737 | high | — | 8.0 | 7y ago | Important: nodejs:10 security update | |
| CVE-2019-9518 | high | — | 8.0 | 7y ago | Important: nodejs:10 security update | |
| CVE-2019-9517 | high | — | 8.0 | 7y ago | Important: nodejs:10 security update | |
| CVE-2019-9513 | high | — | 8.0 | 7y ago | Important: nodejs:10 security update | |
| CVE-2019-9516 | high | — | 8.0 | 7y ago | Important: nodejs:10 security update | |
| CVE-2019-9511 | high | — | 8.0 | 7y ago | Important: nodejs:10 security update | |
| CVE-2019-12527 | high | — | 8.0 | 7y ago | Important: squid:4 security update | |
| CVE-2019-0203 | high | — | 8.0 | 7y ago | Important: subversion:1.10 security update | |
| CVE-2019-2596 | high | — | 8.0 | 7y ago | Important: mysql:8.0 security update | |
| CVE-2019-2455 | high | — | 8.0 | 7y ago | Important: mysql:8.0 security update | |
| CVE-2019-2795 | high | — | 8.0 | 7y ago | Important: mysql:8.0 security update | |
| CVE-2019-2811 | high | — | 8.0 | 7y ago | Important: mysql:8.0 security update | |
| CVE-2019-2531 | high | — | 8.0 | 7y ago | Important: mysql:8.0 security update | |
| CVE-2019-2533 | high | — | 8.0 | 7y ago | Important: mysql:8.0 security update | |
| CVE-2019-2689 | high | — | 8.0 | 7y ago | Important: mysql:8.0 security update | |
| CVE-2019-2784 | high | — | 8.0 | 7y ago | Important: mysql:8.0 security update | |
| CVE-2019-2780 | high | — | 8.0 | 7y ago | Important: mysql:8.0 security update | |
| CVE-2019-2757 | high | — | 8.0 | 7y ago | Important: mysql:8.0 security update | |
| CVE-2019-2592 | high | — | 8.0 | 7y ago | Important: mysql:8.0 security update | |
| CVE-2019-2635 | high | — | 8.0 | 7y ago | Important: mysql:8.0 security update | |
| CVE-2019-2644 | high | — | 8.0 | 7y ago | Important: mysql:8.0 security update | |
| CVE-2019-2580 | high | — | 8.0 | 7y ago | Important: mysql:8.0 security update | |
| CVE-2019-2755 | high | — | 8.0 | 7y ago | Important: mysql:8.0 security update | |
| CVE-2019-2623 | high | — | 8.0 | 7y ago | Important: mysql:8.0 security update | |
| CVE-2019-2686 | high | — | 8.0 | 7y ago | Important: mysql:8.0 security update | |
| CVE-2019-2481 | high | — | 8.0 | 7y ago | Important: mysql:8.0 security update | |
| CVE-2019-2482 | high | — | 8.0 | 7y ago | Important: mysql:8.0 security update | |
| CVE-2019-2539 | high | — | 8.0 | 7y ago | Important: mysql:8.0 security update | |
| CVE-2019-2688 | high | — | 8.0 | 7y ago | Important: mysql:8.0 security update | |
| CVE-2019-2693 | high | — | 8.0 | 7y ago | Important: mysql:8.0 security update | |
| CVE-2019-2625 | high | — | 8.0 | 7y ago | Important: mysql:8.0 security update | |
| CVE-2019-2587 | high | — | 8.0 | 7y ago | Important: mysql:8.0 security update | |
| CVE-2019-2581 | high | — | 8.0 | 7y ago | Important: mysql:8.0 security update | |
| CVE-2019-2532 | high | — | 8.0 | 7y ago | Important: mysql:8.0 security update | |
| CVE-2019-2528 | high | — | 8.0 | 7y ago | Important: mysql:8.0 security update | |
| CVE-2019-2685 | high | — | 8.0 | 7y ago | Important: mysql:8.0 security update | |
| CVE-2019-2626 | high | — | 8.0 | 7y ago | Important: mysql:8.0 security update | |
| CVE-2019-2529 | high | — | 8.0 | 7y ago | Important: mysql:8.0 security update | |
| CVE-2019-2636 | high | — | 8.0 | 7y ago | Important: mysql:8.0 security update | |
| CVE-2019-2819 | high | — | 8.0 | 7y ago | Important: mysql:8.0 security update | |
| CVE-2019-2507 | high | — | 8.0 | 7y ago | Important: mysql:8.0 security update | |
| CVE-2019-2815 | high | — | 8.0 | 7y ago | Important: mysql:8.0 security update |