2019 CVE Vulnerabilities
17,619 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-2895 | HIGH | 7.5 | 1.2% | Oct 16, 2019 | Vulnerability in the Enterprise Manager for Exadata product of Oracle Enterprise Manager (component: Exadata Plug-In Dep... |
| CVE-2019-2891 | HIGH | 8.1 | 1.6% | Oct 16, 2019 | Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Console). Supported versions... |
| CVE-2019-2890 | HIGH | 7.2 | 37.6% | Oct 16, 2019 | Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Web Services). Supported ver... |
| CVE-2019-15893 | HIGH | 7.2 | 2.1% | Oct 16, 2019 | Sonatype Nexus Repository Manager 2.x before 2.14.15 allows Remote Code Execution. |
| CVE-2019-10453 | HIGH | 7.8 | 0.3% | Oct 16, 2019 | Jenkins Delphix Plugin stores credentials unencrypted in its global configuration file on the Jenkins master where they ... |
| CVE-2019-10449 | HIGH | 8.8 | 0.7% | Oct 16, 2019 | Jenkins Fortify on Demand Plugin stores credentials unencrypted in job config.xml files on the Jenkins master where they... |
| CVE-2019-10448 | HIGH | 8.8 | 0.9% | Oct 16, 2019 | Jenkins Extensive Testing Plugin stores credentials unencrypted in job config.xml files on the Jenkins master where they... |
| CVE-2019-10446 | HIGH | 8.2 | 1.0% | Oct 16, 2019 | Jenkins Cadence vManager Plugin 2.7.0 and earlier disabled SSL/TLS and hostname verification globally for the Jenkins ma... |
| CVE-2019-10443 | HIGH | 8.8 | 1.6% | Oct 16, 2019 | Jenkins iceScrum Plugin 1.1.4 and earlier stored credentials unencrypted in job config.xml files on the Jenkins master w... |
| CVE-2019-10440 | HIGH | 8.8 | 1.5% | Oct 16, 2019 | Jenkins NeoLoad Plugin 2.2.5 and earlier stored credentials unencrypted in its global configuration file and in job conf... |
| CVE-2019-10437 | HIGH | 8.8 | 0.8% | Oct 16, 2019 | A cross-site request forgery vulnerability in Jenkins CRX Content Package Deployer Plugin 1.8.1 and earlier allowed atta... |
| CVE-2019-4031 | HIGH | 7.8 | 0.3% | Oct 16, 2019 | IBM Workload Scheduler Distributed 9.2, 9.3, 9.4, and 9.5 contains a vulnerability that could allow a local user to writ... |
| CVE-2019-17624 | HIGH | 7.8 | 3.7% | Oct 16, 2019 | "" In X.Org X Server 1.20.4, there is a stack-based buffer overflow in the function XQueryKeymap. For example, by sendin... |
| CVE-2019-17612 | HIGH | 7.2 | 1.0% | Oct 15, 2019 | An issue was discovered in 74CMS v5.2.8. There is a SQL Injection generated by the _list method in the Common/Controller... |
| CVE-2019-14832 | HIGH | 7.5 | 0.5% | Oct 15, 2019 | A flaw was found in the Keycloak REST API before version 8.0.0 where it would permit user access from a realm the user w... |
| CVE-2019-12944 | HIGH | 7.5 | 1.0% | Oct 15, 2019 | Glue Smart Lock 2.7.8 devices do not properly block guest access in certain situations where the network connection is u... |
| CVE-2019-17593 | HIGH | 8.8 | 0.5% | Oct 14, 2019 | JIZHICMS 1.5.1 allows admin.php/Admin/adminadd.html CSRF to add an administrator. |
| CVE-2019-17592 | HIGH | 7.5 | 2.3% | Oct 14, 2019 | The csv-parse module before 4.4.6 for Node.js is vulnerable to Regular Expression Denial of Service. The __isInt() funct... |
| CVE-2019-14823 | HIGH | 7.4 | 0.9% | Oct 14, 2019 | A flaw was found in the "Leaf and Chain" OCSP policy implementation in JSS' CryptoManager versions after 4.4.6, 4.5.3, 4... |
| CVE-2019-14737 | HIGH | 7.8 | 1.7% | Oct 14, 2019 | Ubisoft Uplay 92.0.0.6280 has Insecure Permissions. |
| CVE-2019-3767 | HIGH | 8.2 | 0.2% | Oct 14, 2019 | Dell ImageAssist versions prior to 8.7.15 contain an information disclosure vulnerability. Dell ImageAssist stores some ... |
| CVE-2019-17044 | HIGH | 7.8 | 0.4% | Oct 14, 2019 | An issue was discovered in BMC Patrol Agent 9.0.10i. Weak execution permissions on the PatrolAgent SUID binary could all... |
| CVE-2019-17043 | HIGH | 7.8 | 0.4% | Oct 14, 2019 | An issue was discovered in BMC Patrol Agent 9.0.10i. Weak execution permissions on the best1collect.exe SUID binary coul... |
| CVE-2019-16279 | HIGH | 7.5 | 19.8% | Oct 14, 2019 | A memory error in the function SSL_accept in nostromo nhttpd through 1.9.6 allows an attacker to trigger a denial of ser... |
| CVE-2019-14226 | HIGH | 8.1 | 1.2% | Oct 14, 2019 | OX App Suite through 7.10.2 has Insecure Permissions. |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now