2019 CVE Vulnerabilities
17,620 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-1003093 | MEDIUM | 6.5 | 1.5% | Apr 4, 2019 | A missing permission check in Jenkins Nomad Plugin in the NomadCloud.DescriptorImpl#doTestConnection form validation met... |
| CVE-2019-1003091 | MEDIUM | 6.5 | 1.5% | Apr 4, 2019 | A missing permission check in Jenkins SOASTA CloudTest Plugin in the CloudTestServer.DescriptorImpl#doValidate form vali... |
| CVE-2019-1003089 | MEDIUM | 6.5 | 1.2% | Apr 4, 2019 | Jenkins Upload to pgyer Plugin stores credentials unencrypted in job config.xml files on the Jenkins master where they c... |
| CVE-2019-1003088 | MEDIUM | 6.5 | 1.2% | Apr 4, 2019 | Jenkins Fabric Beta Publisher Plugin stores credentials unencrypted in job config.xml files on the Jenkins master where ... |
| CVE-2019-1003087 | MEDIUM | 6.5 | 1.5% | Apr 4, 2019 | A missing permission check in Jenkins Chef Sinatra Plugin in the ChefBuilderConfiguration.DescriptorImpl#doTestConnectio... |
| CVE-2019-1003085 | MEDIUM | 6.5 | 1.5% | Apr 4, 2019 | A missing permission check in Jenkins Zephyr Enterprise Test Management Plugin in the ZeeDescriptor#doTestConnection for... |
| CVE-2019-1003083 | MEDIUM | 6.5 | 1.5% | Apr 4, 2019 | A missing permission check in Jenkins Gearman Plugin in the GearmanPluginConfig#doTestConnection form validation method ... |
| CVE-2019-1003081 | MEDIUM | 6.5 | 1.5% | Apr 4, 2019 | A missing permission check in Jenkins OpenShift Deployer Plugin in the DeployApplication.DeployApplicationDescriptor#doC... |
| CVE-2019-1003079 | MEDIUM | 6.5 | 1.5% | Apr 4, 2019 | A missing permission check in Jenkins VMware Lab Manager Slaves Plugin in the LabManager.DescriptorImpl#doTestConnection... |
| CVE-2019-1003077 | MEDIUM | 6.5 | 1.5% | Apr 4, 2019 | A missing permission check in Jenkins Audit to Database Plugin in the DbAuditPublisherDescriptorImpl#doTestJdbcConnectio... |
| CVE-2019-1003059 | MEDIUM | 6.5 | 1.5% | Apr 4, 2019 | A missing permission check in Jenkins FTP publisher Plugin in the FTPPublisher.DescriptorImpl#doLoginCheck method allows... |
| CVE-2019-10714 | MEDIUM | 6.5 | 1.9% | Apr 2, 2019 | LocaleLowercase in MagickCore/locale.c in ImageMagick before 7.0.8-32 allows out-of-bounds access, leading to a SIGSEGV. |
| CVE-2019-7474 | MEDIUM | 6.5 | 0.7% | Apr 2, 2019 | A vulnerability in SonicWall SonicOS and SonicOSv, allow authenticated read-only admin to leave the firewall in an unsta... |
| CVE-2019-4093 | MEDIUM | 4.4 | 0.3% | Apr 2, 2019 | IBM Tivoli Storage Manager (IBM Spectrum Protect 8.1.7) could allow a user to restore files and directories using IBM Sp... |
| CVE-2019-4080 | MEDIUM | 6.5 | 3.1% | Apr 2, 2019 | IBM WebSphere Application Server Admin Console 7.5, 8.0, 8.5, and 9.0 is vulnerable to a potential denial of service, ca... |
| CVE-2019-3792 | MEDIUM | 6.8 | 1.1% | Apr 1, 2019 | Pivotal Concourse version 5.0.0, contains an API that is vulnerable to SQL injection. An Concourse resource can craft a ... |
| CVE-2019-5888 | MEDIUM | 6.1 | 0.9% | Apr 1, 2019 | Multiple XSS vulnerabilities were discovered in OverIT Geocall 6.3 before build 2:346977. |
| CVE-2019-3876 | MEDIUM | 6.3 | 0.7% | Apr 1, 2019 | A flaw was found in the /oauth/token/request custom endpoint of the OpenShift OAuth server allowing for XSS generation o... |
| CVE-2019-3836 | MEDIUM | 5.9 | 3.4% | Apr 1, 2019 | It was discovered in gnutls before version 3.6.7 upstream that there is an uninitialized pointer access in gnutls versio... |
| CVE-2019-1002101 | MEDIUM | 6.4 | 13.2% | Apr 1, 2019 | The kubectl cp command allows copying files between containers and the user machine. To copy files from a container, Kub... |
| CVE-2019-1002100 | MEDIUM | 6.5 | 10.5% | Apr 1, 2019 | In all Kubernetes versions prior to v1.11.8, v1.12.6, and v1.13.4, users that are authorized to make patch requests to t... |
| CVE-2019-10657 | MEDIUM | 6.5 | 1.5% | Mar 30, 2019 | Grandstream GWN7000 before 1.0.6.32 and GWN7610 before 1.0.8.18 devices allow remote authenticated users to discover pas... |
| CVE-2019-10649 | MEDIUM | 5.5 | 1.7% | Mar 30, 2019 | In ImageMagick 7.0.8-36 Q16, there is a memory leak in the function SVGKeyValuePairs of coders/svg.c, which allows an at... |
| CVE-2019-9921 | MEDIUM | 6.5 | 1.1% | Mar 29, 2019 | An issue was discovered in the Harmis JE Messenger component 1.2.2 for Joomla!. It is possible to read information that ... |
| CVE-2019-9919 | MEDIUM | 5.4 | 0.7% | Mar 29, 2019 | An issue was discovered in the Harmis JE Messenger component 1.2.2 for Joomla!. It is possible to craft messages in a wa... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now