2019 CVE Vulnerabilities

17,620 CVEs published in 2019.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2019-9167MEDIUM6.1Cross-site scripting (XSS) vulnerability in Nagios XI before 5.5.11 allows attackers to inject arbitrary web script or H...
CVE-2019-1003047MEDIUM6.5A missing permission check in Jenkins Fortify on Demand Uploader Plugin 3.0.10 and earlier allows attackers with Overall...
CVE-2019-1003045MEDIUM6.5A vulnerability in Jenkins ECS Publisher Plugin 1.0.0 and earlier allows attackers with Item/Extended Read permission, o...
CVE-2019-1762MEDIUM4.4A vulnerability in the Secure Storage feature of Cisco IOS and IOS XE Software could allow an authenticated, local attac...
CVE-2019-1761MEDIUM4.3A vulnerability in the Hot Standby Router Protocol (HSRP) subsystem of Cisco IOS and IOS XE Software could allow an unau...
CVE-2019-1760MEDIUM6.8A vulnerability in Performance Routing Version 3 (PfRv3) of Cisco IOS XE Software could allow an unauthenticated, remote...
CVE-2019-1759MEDIUM5.3A vulnerability in access control list (ACL) functionality of the Gigabit Ethernet Management interface of Cisco IOS XE ...
CVE-2019-1758MEDIUM4.7A vulnerability in 802.1x function of Cisco IOS Software on the Catalyst 6500 Series Switches could allow an unauthentic...
CVE-2019-1757MEDIUM5.9A vulnerability in the Cisco Smart Call Home feature of Cisco IOS and IOS XE Software could allow an unauthenticated, re...
CVE-2019-1755MEDIUM6.5A vulnerability in the Web Services Management Agent (WSMA) function of Cisco IOS XE Software could allow an authenticat...
CVE-2019-1742MEDIUM5.3A vulnerability in the web UI of Cisco IOS XE Software could allow an unauthenticated, remote attacker to access sensiti...
CVE-2019-3829MEDIUM5.3A vulnerability was found in gnutls versions from 3.5.8 before 3.6.7. A memory corruption (double free) vulnerability in...
CVE-2019-3877MEDIUM5.8A vulnerability was found in mod_auth_mellon before v0.14.2. An open redirect in the logout URL allows requests with bac...
CVE-2019-3847MEDIUM4.8A vulnerability was found in moodle before versions 3.6.3, 3.5.5, 3.4.8 and 3.1.17. Users with the "login as other users...
CVE-2019-3840MEDIUM5.8A NULL pointer dereference flaw was discovered in libvirt before version 5.0.0 in the way it gets interface information ...
CVE-2019-3828MEDIUM4.2Ansible fetch module before versions 2.5.15, 2.6.14, 2.7.8 has a path traversal vulnerability which allows copying and o...
CVE-2019-8989MEDIUM4.3The application server component of TIBCO Software Inc.'s TIBCO Data Science for AWS, and TIBCO Spotfire Data Science co...
CVE-2019-8987MEDIUM5.4The application server component of TIBCO Software Inc.'s TIBCO Data Science for AWS, and TIBCO Spotfire Data Science co...
CVE-2019-6540MEDIUM6.5The Conexus telemetry protocol utilized within Medtronic MyCareLink Monitor versions 24950 and 24952, CareLink Monitor v...
CVE-2019-3852MEDIUM4.3A vulnerability was found in moodle before version 3.6.3. The get_with_capability_join and get_users_by_capability funct...
CVE-2019-3851MEDIUM4.3A vulnerability was found in moodle before versions 3.6.3 and 3.5.5. There was a link to site home within the the Boost ...
CVE-2019-3850MEDIUM4.3A vulnerability was found in moodle before versions 3.6.3, 3.5.5, 3.4.8 and 3.1.17. Links within assignment submission c...
CVE-2019-3848MEDIUM4.3A vulnerability was found in moodle before versions 3.6.3, 3.5.5 and 3.4.8. Permissions were not correctly checked befor...
CVE-2019-3826MEDIUM6.1A stored, DOM based, cross-site scripting (XSS) flaw was found in Prometheus before version 2.7.1. An attacker could exp...
CVE-2019-3597MEDIUM6.5Authentication Bypass vulnerability in McAfee Network Security Manager (NSM) 9.1 < 9.1.7.75.2 and 9.2 < 9.2.7.31 (9.2 Up...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now