2019 CVE Vulnerabilities

17,619 CVEs published in 2019.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2019-5956MEDIUM6.5Directory traversal vulnerability in WonderCMS 2.6.0 and earlier allows remote attackers to delete arbitrary files via u...
CVE-2019-16238MEDIUM6.1Afterlogic Aurora through 8.3.9-build-a3 has XSS that can be leveraged for session hijacking by retrieving the session c...
CVE-2019-10400MEDIUM4.2A sandbox bypass vulnerability in Jenkins Script Security Plugin 1.62 and earlier related to the handling of subexpressi...
CVE-2019-10399MEDIUM4.2A sandbox bypass vulnerability in Jenkins Script Security Plugin 1.62 and earlier related to the handling of property na...
CVE-2019-10398MEDIUM5.5Jenkins Beaker Builder Plugin 1.9 and earlier stored credentials unencrypted in its global configuration file on the Jen...
CVE-2019-10396MEDIUM5.4Jenkins Dashboard View Plugin 2.11 and earlier did not escape build descriptions, resulting in a cross-site scripting vu...
CVE-2019-10395MEDIUM5.4Jenkins Build Environment Plugin 1.6 and earlier did not escape variables shown on its views, resulting in a cross-site ...
CVE-2019-10394MEDIUM4.2A sandbox bypass vulnerability in Jenkins Script Security Plugin 1.62 and earlier related to the handling of property na...
CVE-2019-10393MEDIUM4.2A sandbox bypass vulnerability in Jenkins Script Security Plugin 1.62 and earlier related to the handling of method name...
CVE-2019-16249MEDIUM5.3OpenCV 4.1.1 has an out-of-bounds read in hal_baseline::v_load in core/hal/intrin_sse.hpp when called from computeSSDMea...
CVE-2019-16248MEDIUM5.5The "delete for" feature in Telegram before 5.11 on Android does not delete shared media files from the Telegram Images ...
CVE-2019-1305MEDIUM5.4A Cross-site Scripting (XSS) vulnerability exists when Team Foundation Server does not properly sanitize user provided i...
CVE-2019-1299MEDIUM6.5An information disclosure vulnerability exists when Microsoft Edge based on Edge HTML improperly handles objects in memo...
CVE-2019-1294MEDIUM4.6A security feature bypass exists when Windows Secure Boot improperly restricts access to debugging functionality, aka 'W...
CVE-2019-1293MEDIUM5.5An information disclosure vulnerability exists in Windows when the Windows SMB Client kernel-mode driver fails to proper...
CVE-2019-1292MEDIUM4.9A denial of service vulnerability exists when Windows improperly handles objects in memory, aka 'Windows Denial of Servi...
CVE-2019-1289MEDIUM5.5An elevation of privilege vulnerability exists when the Windows Update Delivery Optimization does not properly enforce f...
CVE-2019-1286MEDIUM6.5An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its m...
CVE-2019-1283MEDIUM5.5An information disclosure vulnerability exists in the way that Microsoft Graphics Components handle objects in memory, a...
CVE-2019-1282MEDIUM5.5An information disclosure exists in the Windows Common Log File System (CLFS) driver when it fails to properly handle sa...
CVE-2019-1274MEDIUM5.5An information disclosure vulnerability exists when the Windows kernel fails to properly initialize a memory address, ak...
CVE-2019-1273MEDIUM5.4A cross-site-scripting (XSS) vulnerability exists when Active Directory Federation Services (ADFS) does not properly san...
CVE-2019-1270MEDIUM5.5An elevation of privilege vulnerability exists in Windows store installer where WindowsApps directory is vulnerable to s...
CVE-2019-1266MEDIUM6.1A spoofing vulnerability exists in Microsoft Exchange Server when Outlook Web App (OWA) fails to properly handle web req...
CVE-2019-1263MEDIUM5.5An information disclosure vulnerability exists when Microsoft Excel improperly discloses the contents of its memory, aka...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now