2019 CVE Vulnerabilities

17,619 CVEs published in 2019.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2019-2895HIGH7.5Vulnerability in the Enterprise Manager for Exadata product of Oracle Enterprise Manager (component: Exadata Plug-In Dep...
CVE-2019-2891HIGH8.1Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Console). Supported versions...
CVE-2019-2890HIGH7.2Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Web Services). Supported ver...
CVE-2019-15893HIGH7.2Sonatype Nexus Repository Manager 2.x before 2.14.15 allows Remote Code Execution.
CVE-2019-10453HIGH7.8Jenkins Delphix Plugin stores credentials unencrypted in its global configuration file on the Jenkins master where they ...
CVE-2019-10449HIGH8.8Jenkins Fortify on Demand Plugin stores credentials unencrypted in job config.xml files on the Jenkins master where they...
CVE-2019-10448HIGH8.8Jenkins Extensive Testing Plugin stores credentials unencrypted in job config.xml files on the Jenkins master where they...
CVE-2019-10446HIGH8.2Jenkins Cadence vManager Plugin 2.7.0 and earlier disabled SSL/TLS and hostname verification globally for the Jenkins ma...
CVE-2019-10443HIGH8.8Jenkins iceScrum Plugin 1.1.4 and earlier stored credentials unencrypted in job config.xml files on the Jenkins master w...
CVE-2019-10440HIGH8.8Jenkins NeoLoad Plugin 2.2.5 and earlier stored credentials unencrypted in its global configuration file and in job conf...
CVE-2019-10437HIGH8.8A cross-site request forgery vulnerability in Jenkins CRX Content Package Deployer Plugin 1.8.1 and earlier allowed atta...
CVE-2019-4031HIGH7.8IBM Workload Scheduler Distributed 9.2, 9.3, 9.4, and 9.5 contains a vulnerability that could allow a local user to writ...
CVE-2019-17624HIGH7.8"" In X.Org X Server 1.20.4, there is a stack-based buffer overflow in the function XQueryKeymap. For example, by sendin...
CVE-2019-17612HIGH7.2An issue was discovered in 74CMS v5.2.8. There is a SQL Injection generated by the _list method in the Common/Controller...
CVE-2019-14832HIGH7.5A flaw was found in the Keycloak REST API before version 8.0.0 where it would permit user access from a realm the user w...
CVE-2019-12944HIGH7.5Glue Smart Lock 2.7.8 devices do not properly block guest access in certain situations where the network connection is u...
CVE-2019-17593HIGH8.8JIZHICMS 1.5.1 allows admin.php/Admin/adminadd.html CSRF to add an administrator.
CVE-2019-17592HIGH7.5The csv-parse module before 4.4.6 for Node.js is vulnerable to Regular Expression Denial of Service. The __isInt() funct...
CVE-2019-14823HIGH7.4A flaw was found in the "Leaf and Chain" OCSP policy implementation in JSS' CryptoManager versions after 4.4.6, 4.5.3, 4...
CVE-2019-14737HIGH7.8Ubisoft Uplay 92.0.0.6280 has Insecure Permissions.
CVE-2019-3767HIGH8.2Dell ImageAssist versions prior to 8.7.15 contain an information disclosure vulnerability. Dell ImageAssist stores some ...
CVE-2019-17044HIGH7.8An issue was discovered in BMC Patrol Agent 9.0.10i. Weak execution permissions on the PatrolAgent SUID binary could all...
CVE-2019-17043HIGH7.8An issue was discovered in BMC Patrol Agent 9.0.10i. Weak execution permissions on the best1collect.exe SUID binary coul...
CVE-2019-16279HIGH7.5A memory error in the function SSL_accept in nostromo nhttpd through 1.9.6 allows an attacker to trigger a denial of ser...
CVE-2019-14226HIGH8.1OX App Suite through 7.10.2 has Insecure Permissions.

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now