2019 CVE Vulnerabilities

17,619 CVEs published in 2019.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2019-17063MEDIUM5.5In Snowtide PDFxStream before 3.7.1 (for Java), a crafted PDF file can trigger an extremely long running computation bec...
CVE-2019-14957MEDIUM5.3The JetBrains Vim plugin before version 0.52 was storing individual project data in the global vim_settings.xml file. Th...
CVE-2019-14955MEDIUM5.3In JetBrains Hub versions earlier than 2018.4.11436, there was no option to force a user to change the password and no p...
CVE-2019-14953MEDIUM6.1JetBrains YouTrack versions before 2019.2.53938 had a possible XSS through issue attachments when using the Firefox brow...
CVE-2019-4497MEDIUM5.4IBM Jazz Reporting Service (JRS) 6.0, 6.0.1, 6.0.2, 6.0.3, 6.0.4, 6.0.5, 6.0.6, and 6.0.6.1 is vulnerable to cross-site ...
CVE-2019-4495MEDIUM5.4IBM Jazz Reporting Service (JRS) 6.0, 6.0.1, 6.0.2, 6.0.3, 6.0.4, 6.0.5, 6.0.6, and 6.0.6.1 is vulnerable to cross-site ...
CVE-2019-4494MEDIUM5.4IBM Jazz Reporting Service (JRS) 6.0, 6.0.1, 6.0.2, 6.0.3, 6.0.4, 6.0.5, 6.0.6, and 6.0.6.1 is vulnerable to cross-site ...
CVE-2019-4246MEDIUM5.3IBM Daeja ViewONE Virtual 5.0 through 5.0.6 could expose internal parameters to ViewONE clients that could be used in fu...
CVE-2019-11275MEDIUM4.3Pivotal Application Manager, versions 666.0.x prior to 666.0.36, versions 667.0.x prior to 667.0.22, versions 668.0.x pr...
CVE-2019-14954MEDIUM5.9JetBrains IntelliJ IDEA before 2019.2 was resolving the markdown plantuml artifact download link via a cleartext http co...
CVE-2019-14952MEDIUM6.1JetBrains YouTrack versions before 2019.1.52584 had a possible XSS in the issue titles.
CVE-2019-10432MEDIUM5.4Jenkins HTML Publisher Plugin 1.20 and earlier did not escape the project and build display names in the HTML report fra...
CVE-2019-3733MEDIUM4.9RSA BSAFE Crypto-C Micro Edition, all versions prior to 4.1.4, is vulnerable to three (3) different Improper Clearing of...
CVE-2019-13467MEDIUM5.9Description: Western Digital SSD Dashboard before 2.5.1.0 and SanDisk SSD Dashboard before 2.5.1.0 applications are pote...
CVE-2019-15810MEDIUM6.1Insufficient sanitization during device search in Netdisco 2.042010 allows for reflected XSS via manipulation of a URL p...
CVE-2019-4423MEDIUM5.3IBM Sterling File Gateway 2.2.0.0 through 6.0.1.0 could allow a remote attacker to traverse directories on the system. A...
CVE-2019-4305MEDIUM5.3IBM WebSphere Application Server Liberty could allow a remote attacker to obtain sensitive information caused by the imp...
CVE-2019-4304MEDIUM6.3IBM WebSphere Application Server - Liberty could allow a remote attacker to bypass security restrictions caused by impro...
CVE-2019-4280MEDIUM5.3IBM Sterling File Gateway 2.2.0.0 through 6.0.1.0 displays sensitive information in HTTP requests which could be used in...
CVE-2019-4115MEDIUM5.4IBM WebSphere eXtreme Scale 8.6 Admin API is vulnerable to cross-site scripting. This vulnerability allows users to embe...
CVE-2019-4109MEDIUM6.1IBM WebSphere eXtreme Scale 8.6 Admin Console could allow a remote attacker to hijack the clicking action of the victim....
CVE-2019-4106MEDIUM4.8IBM WebSphere eXtreme Scale 8.6 Admin Console is vulnerable to cross-site scripting. This vulnerability allows users to ...
CVE-2019-16684MEDIUM4.8An issue was discovered in the image-manager in Xoops 2.5.10. When any image with a JavaScript payload as its name is ho...
CVE-2019-16683MEDIUM4.8An issue was discovered in the image-manager in Xoops 2.5.10. When the breadcrumb showing the category name is hovered o...
CVE-2019-17045MEDIUM4.8Ilch 2.1.22 allows stored XSS via the title, text, or email id to the Jobs Tab.

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now