2019 CVE Vulnerabilities

17,620 CVEs published in 2019.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2019-1003033HIGH8.8A sandbox bypass vulnerability exists in Jenkins Groovy Plugin 2.1 and earlier in pom.xml, src/main/java/hudson/plugins/...
CVE-2019-5015HIGH7.8A local privilege escalation vulnerability exists in the Mac OS X version of Pixar Renderman 22.3.0's Install Helper hel...
CVE-2019-1606HIGH7.8A vulnerability in the CLI of Cisco NX-OS Software could allow an authenticated, local attacker to execute arbitrary com...
CVE-2019-1605HIGH7.8A vulnerability in the NX-API feature of Cisco NX-OS Software could allow an authenticated, local attacker to execute ar...
CVE-2019-9627HIGH7A buffer overflow in the kernel driver CybKernelTracker.sys in CyberArk Endpoint Privilege Manager versions prior to 10....
CVE-2019-1604HIGH7.8A vulnerability in the user account management interface of Cisco NX-OS Software could allow an authenticated, local att...
CVE-2019-1603HIGH7.8A vulnerability in the CLI of Cisco NX-OS Software could allow an authenticated, local attacker to escalate lower-level ...
CVE-2019-1602HIGH7.8A vulnerability in the filesystem permissions of Cisco NX-OS Software could allow an authenticated, local attacker to ac...
CVE-2019-1601HIGH7.8A vulnerability in the filesystem permissions of Cisco NX-OS Software could allow an authenticated, local attacker to ga...
CVE-2019-3780HIGH8.8Cloud Foundry Container Runtime, versions prior to 0.28.0, deploys K8s worker nodes that contains a configuration file w...
CVE-2019-3779HIGH8.8Cloud Foundry Container Runtime, versions prior to 0.29.0, deploys Kubernetes clusters utilize the same CA (Certificate ...
CVE-2019-9634HIGH7.8Go through 1.12 on Windows misuses certain LoadLibrary functionality, leading to DLL injection.
CVE-2019-7175HIGH7.5In ImageMagick before 7.0.8-25, some memory leaks exist in DecodeImage in coders/pcd.c.
CVE-2019-8986HIGH7.7The SOAP API component vulnerability of TIBCO Software Inc.'s TIBCO JasperReports Server, and TIBCO JasperReports Server...
CVE-2019-1599HIGH8.6A vulnerability in the network stack of Cisco NX-OS Software could allow an unauthenticated, remote attacker to cause a ...
CVE-2019-1598HIGH8.6Multiple vulnerabilities in the implementation of the Lightweight Directory Access Protocol (LDAP) feature in Cisco FXOS...
CVE-2019-1597HIGH8.6Multiple vulnerabilities in the implementation of the Lightweight Directory Access Protocol (LDAP) feature in Cisco FXOS...
CVE-2019-1596HIGH7.8A vulnerability in the Bash shell implementation for Cisco NX-OS Software could allow an authenticated, local attacker t...
CVE-2019-3784HIGH8.2Cloud Foundry Stratos, versions prior to 2.3.0, contains an insecure session that can be spoofed. When deployed on cloud...
CVE-2019-3783HIGH8.8Cloud Foundry Stratos, versions prior to 2.3.0, deploys with a public default session store secret. A malicious user wit...
CVE-2019-3781HIGH8.8Cloud Foundry CLI, versions prior to v6.43.0, improperly exposes passwords when verbose/trace/debugging is turned on. A ...
CVE-2019-3777HIGH8Pivotal Application Service (PAS), versions 2.2.x prior to 2.2.12, 2.3.x prior to 2.3.7 and 2.4.x prior to 2.4.3, contai...
CVE-2019-3776HIGH7.2Pivotal Operations Manager, 2.1.x versions prior to 2.1.20, 2.2.x versions prior to 2.2.16, 2.3.x versions prior to 2.3....
CVE-2019-3775HIGH7.1Cloud Foundry UAA, versions prior to v70.0, allows a user to update their own email address. A remote authenticated user...
CVE-2019-3712HIGH8.2Dell WES Wyse Device Agent versions prior to 14.1.2.9 and Dell Wyse ThinLinux HAgent versions prior to 5.4.55 00.10 cont...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now