2019 CVE Vulnerabilities
17,620 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-9167 | MEDIUM | 6.1 | 21.7% | Mar 28, 2019 | Cross-site scripting (XSS) vulnerability in Nagios XI before 5.5.11 allows attackers to inject arbitrary web script or H... |
| CVE-2019-1003047 | MEDIUM | 6.5 | 1.5% | Mar 28, 2019 | A missing permission check in Jenkins Fortify on Demand Uploader Plugin 3.0.10 and earlier allows attackers with Overall... |
| CVE-2019-1003045 | MEDIUM | 6.5 | 1.6% | Mar 28, 2019 | A vulnerability in Jenkins ECS Publisher Plugin 1.0.0 and earlier allows attackers with Item/Extended Read permission, o... |
| CVE-2019-1762 | MEDIUM | 4.4 | 0.2% | Mar 28, 2019 | A vulnerability in the Secure Storage feature of Cisco IOS and IOS XE Software could allow an authenticated, local attac... |
| CVE-2019-1761 | MEDIUM | 4.3 | 0.6% | Mar 28, 2019 | A vulnerability in the Hot Standby Router Protocol (HSRP) subsystem of Cisco IOS and IOS XE Software could allow an unau... |
| CVE-2019-1760 | MEDIUM | 6.8 | 2.1% | Mar 28, 2019 | A vulnerability in Performance Routing Version 3 (PfRv3) of Cisco IOS XE Software could allow an unauthenticated, remote... |
| CVE-2019-1759 | MEDIUM | 5.3 | 4.4% | Mar 28, 2019 | A vulnerability in access control list (ACL) functionality of the Gigabit Ethernet Management interface of Cisco IOS XE ... |
| CVE-2019-1758 | MEDIUM | 4.7 | 0.6% | Mar 28, 2019 | A vulnerability in 802.1x function of Cisco IOS Software on the Catalyst 6500 Series Switches could allow an unauthentic... |
| CVE-2019-1757 | MEDIUM | 5.9 | 1.1% | Mar 28, 2019 | A vulnerability in the Cisco Smart Call Home feature of Cisco IOS and IOS XE Software could allow an unauthenticated, re... |
| CVE-2019-1755 | MEDIUM | 6.5 | 3.5% | Mar 28, 2019 | A vulnerability in the Web Services Management Agent (WSMA) function of Cisco IOS XE Software could allow an authenticat... |
| CVE-2019-1742 | MEDIUM | 5.3 | 2.2% | Mar 28, 2019 | A vulnerability in the web UI of Cisco IOS XE Software could allow an unauthenticated, remote attacker to access sensiti... |
| CVE-2019-3829 | MEDIUM | 5.3 | 59.0% | Mar 27, 2019 | A vulnerability was found in gnutls versions from 3.5.8 before 3.6.7. A memory corruption (double free) vulnerability in... |
| CVE-2019-3877 | MEDIUM | 5.8 | 2.1% | Mar 27, 2019 | A vulnerability was found in mod_auth_mellon before v0.14.2. An open redirect in the logout URL allows requests with bac... |
| CVE-2019-3847 | MEDIUM | 4.8 | 2.3% | Mar 27, 2019 | A vulnerability was found in moodle before versions 3.6.3, 3.5.5, 3.4.8 and 3.1.17. Users with the "login as other users... |
| CVE-2019-3840 | MEDIUM | 5.8 | 1.5% | Mar 27, 2019 | A NULL pointer dereference flaw was discovered in libvirt before version 5.0.0 in the way it gets interface information ... |
| CVE-2019-3828 | MEDIUM | 4.2 | 0.5% | Mar 27, 2019 | Ansible fetch module before versions 2.5.15, 2.6.14, 2.7.8 has a path traversal vulnerability which allows copying and o... |
| CVE-2019-8989 | MEDIUM | 4.3 | 1.3% | Mar 26, 2019 | The application server component of TIBCO Software Inc.'s TIBCO Data Science for AWS, and TIBCO Spotfire Data Science co... |
| CVE-2019-8987 | MEDIUM | 5.4 | 1.1% | Mar 26, 2019 | The application server component of TIBCO Software Inc.'s TIBCO Data Science for AWS, and TIBCO Spotfire Data Science co... |
| CVE-2019-6540 | MEDIUM | 6.5 | 0.2% | Mar 26, 2019 | The Conexus telemetry protocol utilized within Medtronic MyCareLink Monitor versions 24950 and 24952, CareLink Monitor v... |
| CVE-2019-3852 | MEDIUM | 4.3 | 0.9% | Mar 26, 2019 | A vulnerability was found in moodle before version 3.6.3. The get_with_capability_join and get_users_by_capability funct... |
| CVE-2019-3851 | MEDIUM | 4.3 | 0.9% | Mar 26, 2019 | A vulnerability was found in moodle before versions 3.6.3 and 3.5.5. There was a link to site home within the the Boost ... |
| CVE-2019-3850 | MEDIUM | 4.3 | 0.8% | Mar 26, 2019 | A vulnerability was found in moodle before versions 3.6.3, 3.5.5, 3.4.8 and 3.1.17. Links within assignment submission c... |
| CVE-2019-3848 | MEDIUM | 4.3 | 0.9% | Mar 26, 2019 | A vulnerability was found in moodle before versions 3.6.3, 3.5.5 and 3.4.8. Permissions were not correctly checked befor... |
| CVE-2019-3826 | MEDIUM | 6.1 | 2.7% | Mar 26, 2019 | A stored, DOM based, cross-site scripting (XSS) flaw was found in Prometheus before version 2.7.1. An attacker could exp... |
| CVE-2019-3597 | MEDIUM | 6.5 | 1.2% | Mar 26, 2019 | Authentication Bypass vulnerability in McAfee Network Security Manager (NSM) 9.1 < 9.1.7.75.2 and 9.2 < 9.2.7.31 (9.2 Up... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now