2019 CVE Vulnerabilities
17,619 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-5956 | MEDIUM | 6.5 | 1.9% | Sep 12, 2019 | Directory traversal vulnerability in WonderCMS 2.6.0 and earlier allows remote attackers to delete arbitrary files via u... |
| CVE-2019-16238 | MEDIUM | 6.1 | 0.9% | Sep 12, 2019 | Afterlogic Aurora through 8.3.9-build-a3 has XSS that can be leveraged for session hijacking by retrieving the session c... |
| CVE-2019-10400 | MEDIUM | 4.2 | 1.0% | Sep 12, 2019 | A sandbox bypass vulnerability in Jenkins Script Security Plugin 1.62 and earlier related to the handling of subexpressi... |
| CVE-2019-10399 | MEDIUM | 4.2 | 1.0% | Sep 12, 2019 | A sandbox bypass vulnerability in Jenkins Script Security Plugin 1.62 and earlier related to the handling of property na... |
| CVE-2019-10398 | MEDIUM | 5.5 | 0.3% | Sep 12, 2019 | Jenkins Beaker Builder Plugin 1.9 and earlier stored credentials unencrypted in its global configuration file on the Jen... |
| CVE-2019-10396 | MEDIUM | 5.4 | 0.7% | Sep 12, 2019 | Jenkins Dashboard View Plugin 2.11 and earlier did not escape build descriptions, resulting in a cross-site scripting vu... |
| CVE-2019-10395 | MEDIUM | 5.4 | 0.7% | Sep 12, 2019 | Jenkins Build Environment Plugin 1.6 and earlier did not escape variables shown on its views, resulting in a cross-site ... |
| CVE-2019-10394 | MEDIUM | 4.2 | 1.0% | Sep 12, 2019 | A sandbox bypass vulnerability in Jenkins Script Security Plugin 1.62 and earlier related to the handling of property na... |
| CVE-2019-10393 | MEDIUM | 4.2 | 1.0% | Sep 12, 2019 | A sandbox bypass vulnerability in Jenkins Script Security Plugin 1.62 and earlier related to the handling of method name... |
| CVE-2019-16249 | MEDIUM | 5.3 | 1.7% | Sep 11, 2019 | OpenCV 4.1.1 has an out-of-bounds read in hal_baseline::v_load in core/hal/intrin_sse.hpp when called from computeSSDMea... |
| CVE-2019-16248 | MEDIUM | 5.5 | 0.4% | Sep 11, 2019 | The "delete for" feature in Telegram before 5.11 on Android does not delete shared media files from the Telegram Images ... |
| CVE-2019-1305 | MEDIUM | 5.4 | 1.4% | Sep 11, 2019 | A Cross-site Scripting (XSS) vulnerability exists when Team Foundation Server does not properly sanitize user provided i... |
| CVE-2019-1299 | MEDIUM | 6.5 | 5.4% | Sep 11, 2019 | An information disclosure vulnerability exists when Microsoft Edge based on Edge HTML improperly handles objects in memo... |
| CVE-2019-1294 | MEDIUM | 4.6 | 1.2% | Sep 11, 2019 | A security feature bypass exists when Windows Secure Boot improperly restricts access to debugging functionality, aka 'W... |
| CVE-2019-1293 | MEDIUM | 5.5 | 1.9% | Sep 11, 2019 | An information disclosure vulnerability exists in Windows when the Windows SMB Client kernel-mode driver fails to proper... |
| CVE-2019-1292 | MEDIUM | 4.9 | 4.7% | Sep 11, 2019 | A denial of service vulnerability exists when Windows improperly handles objects in memory, aka 'Windows Denial of Servi... |
| CVE-2019-1289 | MEDIUM | 5.5 | 0.7% | Sep 11, 2019 | An elevation of privilege vulnerability exists when the Windows Update Delivery Optimization does not properly enforce f... |
| CVE-2019-1286 | MEDIUM | 6.5 | 5.4% | Sep 11, 2019 | An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its m... |
| CVE-2019-1283 | MEDIUM | 5.5 | 1.5% | Sep 11, 2019 | An information disclosure vulnerability exists in the way that Microsoft Graphics Components handle objects in memory, a... |
| CVE-2019-1282 | MEDIUM | 5.5 | 1.2% | Sep 11, 2019 | An information disclosure exists in the Windows Common Log File System (CLFS) driver when it fails to properly handle sa... |
| CVE-2019-1274 | MEDIUM | 5.5 | 1.2% | Sep 11, 2019 | An information disclosure vulnerability exists when the Windows kernel fails to properly initialize a memory address, ak... |
| CVE-2019-1273 | MEDIUM | 5.4 | 1.4% | Sep 11, 2019 | A cross-site-scripting (XSS) vulnerability exists when Active Directory Federation Services (ADFS) does not properly san... |
| CVE-2019-1270 | MEDIUM | 5.5 | 0.8% | Sep 11, 2019 | An elevation of privilege vulnerability exists in Windows store installer where WindowsApps directory is vulnerable to s... |
| CVE-2019-1266 | MEDIUM | 6.1 | 1.8% | Sep 11, 2019 | A spoofing vulnerability exists in Microsoft Exchange Server when Outlook Web App (OWA) fails to properly handle web req... |
| CVE-2019-1263 | MEDIUM | 5.5 | 7.3% | Sep 11, 2019 | An information disclosure vulnerability exists when Microsoft Excel improperly discloses the contents of its memory, aka... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now