2019 CVE Vulnerabilities

17,620 CVEs published in 2019.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2019-2584MEDIUM4.9Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Security: Privileges). Supported vers...
CVE-2019-2581MEDIUM4.9Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Optimizer). Supported versions that a...
CVE-2019-2580MEDIUM4.9Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: InnoDB). Supported versions that are affected...
CVE-2019-11474MEDIUM6.5coders/xwd.c in GraphicsMagick 1.3.31 allows attackers to cause a denial of service (floating-point exception and applic...
CVE-2019-11463MEDIUM5.5A memory leak in archive_read_format_zip_cleanup in archive_read_support_format_zip.c in libarchive 3.3.4-dev allows rem...
CVE-2019-11459MEDIUM5.5The tiff_document_render() and tiff_document_get_thumbnail() functions in the TIFF document backend in GNOME Evince thro...
CVE-2019-10247MEDIUM5.3In Eclipse Jetty version 7.x, 8.x, 9.2.27 and older, 9.3.26 and older, and 9.4.16 and older, the server running on any O...
CVE-2019-10246MEDIUM5.3In Eclipse Jetty version 9.2.27, 9.3.26, and 9.4.16, the server running on Windows is vulnerable to exposure of the full...
CVE-2019-10241MEDIUM6.1In Eclipse Jetty version 9.2.26 and older, 9.3.25 and older, and 9.4.15 and older, the server is vulnerable to XSS condi...
CVE-2019-6157MEDIUM6.5In various firmware versions of Lenovo System x, the integrated management module II (IMM2)'s first failure data capture...
CVE-2019-6155MEDIUM4.1A potential vulnerability was found in an SMI handler in various BIOS versions of certain legacy IBM System x and IBM Bl...
CVE-2019-3902MEDIUM5.1A flaw was found in Mercurial before 4.9. It was possible to use symlinks and subrepositories to defeat Mercurial's path...
CVE-2019-3901MEDIUM4.7A race condition in perf_event_open() allows local attackers to leak sensitive data from setuid programs. As no relevant...
CVE-2019-11454MEDIUM6.1Persistent cross-site scripting (XSS) in http/cervlet.c in Tildeslash Monit before 5.25.3 allows a remote unauthenticate...
CVE-2019-11244MEDIUM5In Kubernetes v1.8.x-v1.14.x, schema info is cached by kubectl in the location specified by --cache-dir (defaulting to $...
CVE-2019-11391MEDIUM5.3An issue was discovered in OWASP ModSecurity Core Rule Set (CRS) through 3.1.0. /rules/REQUEST-933-APPLICATION-ATTACK-PH...
CVE-2019-11390MEDIUM5.3An issue was discovered in OWASP ModSecurity Core Rule Set (CRS) through 3.1.0. /rules/REQUEST-933-APPLICATION-ATTACK-PH...
CVE-2019-11389MEDIUM5.3An issue was discovered in OWASP ModSecurity Core Rule Set (CRS) through 3.1.0. /rules/REQUEST-933-APPLICATION-ATTACK-PH...
CVE-2019-11388MEDIUM5.3An issue was discovered in OWASP ModSecurity Core Rule Set (CRS) through 3.1.0. /rules/REQUEST-932-APPLICATION-ATTACK-RC...
CVE-2019-11387MEDIUM5.3An issue was discovered in OWASP ModSecurity Core Rule Set (CRS) through 3.1.0. /rules/REQUEST-942-APPLICATION-ATTACK-SQ...
CVE-2019-11358MEDIUM6.1jQuery before 3.4.0, as used in Drupal, Backdrop CMS, and other products, mishandles jQuery.extend(true, {}, ...) becaus...
CVE-2019-11017MEDIUM4.8On D-Link DI-524 V2.06RU devices, multiple Stored and Reflected XSS vulnerabilities were found in the Web Configuration:...
CVE-2019-10305MEDIUM6.5A missing permission check in Jenkins XebiaLabs XL Deploy Plugin in the Credential#doValidateUserNamePassword form valid...
CVE-2019-1841MEDIUM6.5A vulnerability in the Software Image Management feature of Cisco DNA Center could allow an authenticated, remote attack...
CVE-2019-1837MEDIUM5.3A vulnerability in the User Data Services (UDS) API of Cisco Unified Communications Manager (Unified CM) could allow an ...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now