2019 CVE Vulnerabilities
17,624 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-12369 | MEDIUM | 6.1 | 1.0% | Mar 18, 2020 | The TypeApp application through 1.9.5.35 for Android allows XSS via an event attribute and arbitrary file loading via a ... |
| CVE-2019-12368 | MEDIUM | 6.1 | 1.0% | Mar 18, 2020 | The Edison Mail application through 1.7.1 for Android allows XSS via an event attribute and arbitrary file loading via a... |
| CVE-2019-12367 | MEDIUM | 6.1 | 1.0% | Mar 18, 2020 | The BlueMail application through 1.9.5.36 for Android allows XSS via an event attribute and arbitrary file loading via a... |
| CVE-2019-12366 | MEDIUM | 6.1 | 1.0% | Mar 18, 2020 | The Nine application through 4.5.3a for Android allows XSS via an event attribute and arbitrary file loading via a src a... |
| CVE-2019-12365 | MEDIUM | 6.1 | 1.0% | Mar 18, 2020 | The Newton application through 10.0.23 for Android allows XSS via an event attribute and arbitrary file loading via a sr... |
| CVE-2019-12132 | CRITICAL | 9.8 | 1.5% | Mar 18, 2020 | An issue was discovered in ONAP SDNC before Dublin. By executing sla/dgUpload with a crafted filename parameter, an unau... |
| CVE-2019-12131 | CRITICAL | 9.1 | 1.2% | Mar 18, 2020 | An issue was detected in ONAP APPC through Dublin and SDC through Dublin. By setting a USER_ID parameter in an HTTP head... |
| CVE-2019-12124 | CRITICAL | 9.1 | 1.2% | Mar 18, 2020 | An issue was discovered in ONAP APPC before Dublin. By using an exposed unprotected Jolokia interface, an unauthenticate... |
| CVE-2019-12123 | HIGH | 8.8 | 1.3% | Mar 18, 2020 | An issue was discovered in ONAP SDNC before Dublin. By executing sla/printAsXml with a crafted module parameter, an auth... |
| CVE-2019-12122 | MEDIUM | 6.5 | 0.6% | Mar 18, 2020 | An issue was discovered in ONAP Portal through Dublin. By executing a call to ONAPPORTAL/portalApi/loggedinUser, an atta... |
| CVE-2019-12121 | HIGH | 7.5 | 0.7% | Mar 18, 2020 | An issue was detected in ONAP Portal through Dublin. By executing a padding oracle attack using the ONAPPORTAL/processSi... |
| CVE-2019-12120 | CRITICAL | 9.8 | 2.1% | Mar 18, 2020 | An issue was discovered in ONAP VNFSDK through Dublin. By accessing port 8000 of demo-vnfsdk-vnfsdk, an unauthenticated ... |
| CVE-2019-12119 | CRITICAL | 9.8 | 2.1% | Mar 18, 2020 | An issue was discovered in ONAP SDC through Dublin. By accessing port 7000 of demo-sdc-sdc-wfd-fe pod, an unauthenticate... |
| CVE-2019-12118 | CRITICAL | 9.8 | 2.1% | Mar 18, 2020 | An issue was discovered in ONAP SDC through Dublin. By accessing port 7001 of demo-sdc-sdc-wfd-be pod, an unauthenticate... |
| CVE-2019-12117 | CRITICAL | 9.8 | 2.1% | Mar 18, 2020 | An issue was discovered in ONAP SDC through Dublin. By accessing port 4001 of demo-sdc-sdc-onboarding-be pod, an unauthe... |
| CVE-2019-12116 | CRITICAL | 9.8 | 2.1% | Mar 18, 2020 | An issue was discovered in ONAP SDC through Dublin. By accessing port 6000 of demo-sdc-sdc-fe pod, an unauthenticated at... |
| CVE-2019-12115 | CRITICAL | 9.8 | 2.1% | Mar 18, 2020 | An issue was discovered in ONAP SDC through Dublin. By accessing port 4000 of demo-sdc-sdc-be pod, an unauthenticated at... |
| CVE-2019-12114 | CRITICAL | 9.8 | 2.1% | Mar 18, 2020 | An issue was discovered in ONAP HOLMES before Dublin. By accessing port 9202 of dep-holmes-engine-mgmt pod, an unauthent... |
| CVE-2019-12113 | HIGH | 8.8 | 1.3% | Mar 18, 2020 | An issue was discovered in ONAP SDNC before Dublin. By executing sla/printAsGv with a crafted module parameter, an authe... |
| CVE-2019-12112 | CRITICAL | 9.8 | 1.5% | Mar 18, 2020 | An issue was discovered in ONAP SDNC before Dublin. By executing sla/upload with a crafted filename parameter, an unauth... |
| CVE-2019-19355 | HIGH | 7 | 0.2% | Mar 18, 2020 | An insecure modification vulnerability in the /etc/passwd file was found in the openshift/ocp-release-operator-sdk. An a... |
| CVE-2019-19351 | HIGH | 7 | 0.2% | Mar 18, 2020 | An insecure modification vulnerability in the /etc/passwd file was found in the container openshift/jenkins. An attacker... |
| CVE-2019-19335 | MEDIUM | 4.4 | 0.3% | Mar 18, 2020 | During installation of an OpenShift 4 cluster, the `openshift-install` command line tool creates an `auth` directory, wi... |
| CVE-2019-14871 | MEDIUM | 6.5 | 1.0% | Mar 18, 2020 | The REENT_CHECK macro (see newlib/libc/include/sys/reent.h) as used by REENT_CHECK_TM, REENT_CHECK_MISC, REENT_CHECK_MP ... |
| CVE-2019-10178 | MEDIUM | 6.1 | 1.0% | Mar 18, 2020 | It was found that the Token Processing Service (TPS) did not properly sanitize the Token IDs from the "Activity" page, e... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now