Known Exploited Vulnerabilities (KEV)

ID Title Severity CVSS EPSS Source Updated
cve-2019-16759 vBulletin PHP Module Remote Code Execution Vulnerability CRITICAL 9.8 99.73% cvelistv5 2021-11-03
cve-2019-16662 CVE-2019-16662 HIGH N/A 97.70% cvelistv5
cve-2019-1653 Cisco Small Business RV320 and RV325 Routers Information Disclosure Vulnerability HIGH 7.5 99.88% cvelistv5 2021-11-03
cve-2019-1652 Cisco Small Business Routers Improper Input Validation Vulnerability HIGH 7.2 95.92% cvelistv5 2022-03-03
cve-2019-16278 Nostromo nhttpd Directory Traversal Vulnerability CRITICAL 9.8 99.03% cvelistv5 2024-11-07
cve-2019-16256 SIMalliance Toolbox Browser Command Injection Vulnerability CRITICAL 9.8 4.95% cvelistv5 2021-11-03
cve-2019-16057 The login_mgr.cgi script in D-Link DNS-320 through 2.05.B10 is vulnerable to remote command injection. CRITICAL 9.8 87.06% cvelistv5 2026-06-17
cve-2019-15949 Nagios XI Remote Code Execution Vulnerability HIGH 8.8 77.04% cvelistv5 2021-11-03
cve-2019-1579 Palo Alto Networks PAN-OS Remote Code Execution Vulnerability HIGH 8.1 46.24% cvelistv5 2022-01-10
cve-2019-15752 Docker Desktop Community Edition before 2.1.0.1 allows local users to gain privileges by placing a Trojan horse docker-credential-wincred.exe file in %PROGRAMDATA%\DockerDesktop\version-bin\ as a low-privilege user, and then waiting for an admin or service user to authenticate with Docker, restart Docker, or run 'docker login' to force the command. HIGH 7.8 31.92% cvelistv5 2026-06-17
cve-2019-15642 rpc.cgi in Webmin through 1.920 allows authenticated Remote Code Execution via a crafted object name because unserialise_variable makes an eval call. NOTE: the Webmin_Servers_Index documentation states "RPC can be used to run any command or modify any file on a server, which is why access to it must not be granted to un-trusted Webmin users." HIGH 8.8 34.80% cvelistv5 2026-06-17
cve-2019-15271 Cisco Small Business RV016, RV042, RV042G, and RV082 Routers Arbitrary Command Execution Vulnerability HIGH 8.8 5.98% cvelistv5 2026-06-17
cve-2019-15107 An issue was discovered in Webmin <=1.920. The parameter old in password_change.cgi contains a command injection vulnerability. CRITICAL 9.8 99.77% cvelistv5 2026-08-06
cve-2019-1458 Microsoft Win32k Privilege Escalation Vulnerability HIGH 7.8 74.26% cvelistv5 2022-01-10
cve-2019-1429 Microsoft Internet Explorer Scripting Engine Memory Corruption Vulnerability HIGH 7.5 77.29% cvelistv5 2021-11-03
cve-2019-14251 CVE-2019-14251 HIGH N/A 7.85% cvelistv5
cve-2019-14223 CVE-2019-14223 HIGH N/A 4.47% cvelistv5
cve-2019-1405 Microsoft Windows Universal Plug and Play (UPnP) Service Privilege Escalation Vulnerability HIGH 7.8 29.95% cvelistv5 2022-03-15
cve-2019-1388 Microsoft Windows Certificate Dialog Privilege Escalation Vulnerability HIGH 7.8 8.59% cvelistv5 2023-04-07
cve-2019-1385 Microsoft Windows AppX Deployment Extensions Privilege Escalation Vulnerability HIGH 7.8 3.60% cvelistv5 2022-05-23
cve-2019-13720 Use after free in WebAudio in Google Chrome prior to 78.0.3904.87 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. HIGH 8.8 72.98% cvelistv5 2026-06-17
cve-2019-1367 Microsoft Internet Explorer Scripting Engine Memory Corruption Vulnerability CRITICAL N/A 52.45% cvelistv5 2021-11-03
cve-2019-13608 Citrix StoreFront Server XML External Entity (XXE) Processing Vulnerability HIGH 7.5 30.04% cvelistv5 2021-11-03
cve-2019-13462 Lansweeper before 7.1.117.4 allows unauthenticated SQL injection. CRITICAL 9.1 11.31% cvelistv5 2026-06-17
cve-2019-13396 FlightPath 4.x and 5.0-x allows directory traversal and Local File Inclusion through the form_include parameter in an index.php?q=system-handle-form-submit POST request because of an include_once in system_handle_form_submit in modules/system/system.module. MEDIUM 5.3 62.57% cvelistv5 2026-06-17
cve-2019-13372 CVE-2019-13372 HIGH N/A 82.49% cvelistv5
cve-2019-13272 kernel: broken permission and object lifetime handling for PTRACE_TRACEME HIGH 7.8 52.20% cvelistv5 2026-06-28
cve-2019-1322 Microsoft Windows Privilege Escalation Vulnerability HIGH 7.8 19.20% cvelistv5 2022-03-15
cve-2019-1315 Microsoft Windows Error Reporting Manager Privilege Escalation Vulnerability HIGH 7.8 3.48% cvelistv5 2022-03-15
cve-2019-13101 CVE-2019-13101 HIGH N/A 67.09% cvelistv5