2019 CVE Vulnerabilities

17,624 CVEs published in 2019.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2019-11455HIGH8.1A buffer over-read in Util_urlDecode in util.c in Tildeslash Monit before 5.25.3 allows a remote authenticated attacker ...
CVE-2019-11243HIGH8.1In Kubernetes v1.12.0-v1.12.4 and v1.13.0, the rest.AnonymousClientConfig() method returns a copy of the provided config...
CVE-2019-11412HIGH7.5An issue was discovered in Artifex MuJS 1.0.5. jscompile.c can cause a denial of service (invalid stack-frame jump) beca...
CVE-2019-11405HIGH8.1OpenAPI Tools OpenAPI Generator before 4.0.0-20190419.052012-560 uses http:// URLs in various build.gradle, build.gradle...
CVE-2019-11404HIGH8.1arrow-kt Arrow before 0.9.0 resolved Gradle build artifacts (for compiling and building the published JARs) over HTTP in...
CVE-2019-11354HIGH7.8The client in Electronic Arts (EA) Origin 10.5.36 on Windows allows template injection in the title parameter of the Ori...
CVE-2019-4055HIGH7.5IBM MQ 8.0.0.0 through 8.0.0.10, 9.0.0.0 through 9.0.0.5, and 9.1.0.0 through 9.1.1 is vulnerable to a denial of service...
CVE-2019-10245HIGH7.5In Eclipse OpenJ9 prior to the 0.14.0 release, the Java bytecode verifier incorrectly allows a method to execute past th...
CVE-2019-11338HIGH8.8libavcodec/hevcdec.c in FFmpeg 3.4 and 4.1.2 mishandles detection of duplicate first slices, which allows remote attacke...
CVE-2019-3719HIGH8Dell SupportAssist Client versions prior to 3.2.0.90 contain a remote code execution vulnerability. An unauthenticated a...
CVE-2019-3718HIGH8.8Dell SupportAssist Client versions prior to 3.2.0.90 contain an improper origin validation vulnerability. An unauthentic...
CVE-2019-3398HIGH8.8Confluence Server and Data Center had a path traversal vulnerability in the downloadallattachments resource. A remote at...
CVE-2019-10303HIGH8.8Jenkins Azure PublisherSettings Credentials Plugin 1.2 and earlier stored credentials unencrypted in the credentials.xml...
CVE-2019-10302HIGH8.8Jenkins jira-ext Plugin 0.8 and earlier stored credentials unencrypted in its global configuration file on the Jenkins m...
CVE-2019-10301HIGH8.8A missing permission check in Jenkins GitLab Plugin 1.5.11 and earlier in the GitLabConnectionConfig#doTestConnection fo...
CVE-2019-1840HIGH8.6A vulnerability in the DHCPv6 input packet processor of Cisco Prime Network Registrar could allow an unauthenticated, re...
CVE-2019-1834HIGH7.4A vulnerability in the internal packet processing of Cisco Aironet Series Access Points (APs) could allow an unauthentic...
CVE-2019-1797HIGH8.8A vulnerability in the web-based management interface of Cisco Wireless LAN Controller (WLC) Software could allow an una...
CVE-2019-1718HIGH7.5A vulnerability in the web interface of Cisco Identity Services Engine (ISE) could allow an unauthenticated, remote atta...
CVE-2019-1686HIGH8.6A vulnerability in the TCP flags inspection feature for access control lists (ACLs) on Cisco ASR 9000 Series Aggregation...
CVE-2019-1654HIGH7.8A vulnerability in the development shell (devshell) authentication for Cisco Aironet Series Access Points (APs) running ...
CVE-2019-8455HIGH7.1A hard-link created from the log file of Check Point ZoneAlarm up to 15.4.062 to any file on the system will get its per...
CVE-2019-10953HIGH7.5ABB, Phoenix Contact, Schneider Electric, Siemens, WAGO - Programmable Logic Controllers, multiple versions. Researchers...
CVE-2019-10951HIGH7.8Delta Industrial Automation CNCSoft, CNCSoft ScreenEditor Version 1.00.88 and prior. Multiple heap-based buffer overflow...
CVE-2019-10947HIGH7.8Delta Industrial Automation CNCSoft, CNCSoft ScreenEditor Version 1.00.88 and prior. Multiple stack-based buffer overflo...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now