2019 CVE Vulnerabilities
17,620 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-2584 | MEDIUM | 4.9 | 2.2% | Apr 23, 2019 | Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Security: Privileges). Supported vers... |
| CVE-2019-2581 | MEDIUM | 4.9 | 2.4% | Apr 23, 2019 | Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Optimizer). Supported versions that a... |
| CVE-2019-2580 | MEDIUM | 4.9 | 2.2% | Apr 23, 2019 | Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: InnoDB). Supported versions that are affected... |
| CVE-2019-11474 | MEDIUM | 6.5 | 2.2% | Apr 23, 2019 | coders/xwd.c in GraphicsMagick 1.3.31 allows attackers to cause a denial of service (floating-point exception and applic... |
| CVE-2019-11463 | MEDIUM | 5.5 | 1.3% | Apr 23, 2019 | A memory leak in archive_read_format_zip_cleanup in archive_read_support_format_zip.c in libarchive 3.3.4-dev allows rem... |
| CVE-2019-11459 | MEDIUM | 5.5 | 1.4% | Apr 22, 2019 | The tiff_document_render() and tiff_document_get_thumbnail() functions in the TIFF document backend in GNOME Evince thro... |
| CVE-2019-10247 | MEDIUM | 5.3 | 5.8% | Apr 22, 2019 | In Eclipse Jetty version 7.x, 8.x, 9.2.27 and older, 9.3.26 and older, and 9.4.16 and older, the server running on any O... |
| CVE-2019-10246 | MEDIUM | 5.3 | 4.0% | Apr 22, 2019 | In Eclipse Jetty version 9.2.27, 9.3.26, and 9.4.16, the server running on Windows is vulnerable to exposure of the full... |
| CVE-2019-10241 | MEDIUM | 6.1 | 9.6% | Apr 22, 2019 | In Eclipse Jetty version 9.2.26 and older, 9.3.25 and older, and 9.4.15 and older, the server is vulnerable to XSS condi... |
| CVE-2019-6157 | MEDIUM | 6.5 | 1.3% | Apr 22, 2019 | In various firmware versions of Lenovo System x, the integrated management module II (IMM2)'s first failure data capture... |
| CVE-2019-6155 | MEDIUM | 4.1 | 0.8% | Apr 22, 2019 | A potential vulnerability was found in an SMI handler in various BIOS versions of certain legacy IBM System x and IBM Bl... |
| CVE-2019-3902 | MEDIUM | 5.1 | 1.4% | Apr 22, 2019 | A flaw was found in Mercurial before 4.9. It was possible to use symlinks and subrepositories to defeat Mercurial's path... |
| CVE-2019-3901 | MEDIUM | 4.7 | 0.3% | Apr 22, 2019 | A race condition in perf_event_open() allows local attackers to leak sensitive data from setuid programs. As no relevant... |
| CVE-2019-11454 | MEDIUM | 6.1 | 2.4% | Apr 22, 2019 | Persistent cross-site scripting (XSS) in http/cervlet.c in Tildeslash Monit before 5.25.3 allows a remote unauthenticate... |
| CVE-2019-11244 | MEDIUM | 5 | 0.5% | Apr 22, 2019 | In Kubernetes v1.8.x-v1.14.x, schema info is cached by kubectl in the location specified by --cache-dir (defaulting to $... |
| CVE-2019-11391 | MEDIUM | 5.3 | 1.6% | Apr 21, 2019 | An issue was discovered in OWASP ModSecurity Core Rule Set (CRS) through 3.1.0. /rules/REQUEST-933-APPLICATION-ATTACK-PH... |
| CVE-2019-11390 | MEDIUM | 5.3 | 1.7% | Apr 21, 2019 | An issue was discovered in OWASP ModSecurity Core Rule Set (CRS) through 3.1.0. /rules/REQUEST-933-APPLICATION-ATTACK-PH... |
| CVE-2019-11389 | MEDIUM | 5.3 | 1.7% | Apr 21, 2019 | An issue was discovered in OWASP ModSecurity Core Rule Set (CRS) through 3.1.0. /rules/REQUEST-933-APPLICATION-ATTACK-PH... |
| CVE-2019-11388 | MEDIUM | 5.3 | 1.6% | Apr 21, 2019 | An issue was discovered in OWASP ModSecurity Core Rule Set (CRS) through 3.1.0. /rules/REQUEST-932-APPLICATION-ATTACK-RC... |
| CVE-2019-11387 | MEDIUM | 5.3 | 2.4% | Apr 21, 2019 | An issue was discovered in OWASP ModSecurity Core Rule Set (CRS) through 3.1.0. /rules/REQUEST-942-APPLICATION-ATTACK-SQ... |
| CVE-2019-11358 | MEDIUM | 6.1 | 87.2% | Apr 20, 2019 | jQuery before 3.4.0, as used in Drupal, Backdrop CMS, and other products, mishandles jQuery.extend(true, {}, ...) becaus... |
| CVE-2019-11017 | MEDIUM | 4.8 | 1.5% | Apr 18, 2019 | On D-Link DI-524 V2.06RU devices, multiple Stored and Reflected XSS vulnerabilities were found in the Web Configuration:... |
| CVE-2019-10305 | MEDIUM | 6.5 | 1.1% | Apr 18, 2019 | A missing permission check in Jenkins XebiaLabs XL Deploy Plugin in the Credential#doValidateUserNamePassword form valid... |
| CVE-2019-1841 | MEDIUM | 6.5 | 2.6% | Apr 18, 2019 | A vulnerability in the Software Image Management feature of Cisco DNA Center could allow an authenticated, remote attack... |
| CVE-2019-1837 | MEDIUM | 5.3 | 2.4% | Apr 18, 2019 | A vulnerability in the User Data Services (UDS) API of Cisco Unified Communications Manager (Unified CM) could allow an ... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now