2019 CVE Vulnerabilities
17,620 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-1003016 | — | — | 1.0% | Feb 6, 2019 | An exposure of sensitive information vulnerability exists in Jenkins Job Import Plugin 2.1 and earlier in src/main/java/... |
| CVE-2019-1003015 | — | — | 1.8% | Feb 6, 2019 | An XML external entity processing vulnerability exists in Jenkins Job Import Plugin 2.1 and earlier in src/main/java/org... |
| CVE-2019-1003014 | — | — | 0.9% | Feb 6, 2019 | An cross-site scripting vulnerability exists in Jenkins Config File Provider Plugin 3.4.1 and earlier in src/main/resour... |
| CVE-2019-1003013 | — | — | 1.2% | Feb 6, 2019 | An cross-site scripting vulnerability exists in Jenkins Blue Ocean Plugins 1.10.1 and earlier in blueocean-commons/src/m... |
| CVE-2019-1003012 | — | — | 1.1% | Feb 6, 2019 | A data modification vulnerability exists in Jenkins Blue Ocean Plugins 1.10.1 and earlier in blueocean-core-js/src/js/bu... |
| CVE-2019-1003010 | — | — | 1.1% | Feb 6, 2019 | A cross-site request forgery vulnerability exists in Jenkins Git Plugin 3.9.1 and earlier in src/main/java/hudson/plugin... |
| CVE-2019-1003009 | — | — | 0.8% | Feb 6, 2019 | An improper certificate validation vulnerability exists in Jenkins Active Directory Plugin 2.10 and earlier in src/main/... |
| CVE-2019-1003008 | — | — | 1.2% | Feb 6, 2019 | A cross-site request forgery vulnerability exists in Jenkins Warnings Next Generation Plugin 2.1.1 and earlier in src/ma... |
| CVE-2019-1003007 | — | — | 1.2% | Feb 6, 2019 | A cross-site request forgery vulnerability exists in Jenkins Warnings Plugin 5.0.0 and earlier in src/main/java/hudson/p... |
| CVE-2019-6504 | — | — | 2.0% | Feb 6, 2019 | Insufficient output sanitization in the Automic Web Interface (AWI), in CA Automic Workload Automation 12.0 to 12.2, all... |
| CVE-2019-6523 | — | — | 2.0% | Feb 5, 2019 | WebAccess/SCADA, Version 8.3. The software does not properly sanitize its inputs for SQL commands. |
| CVE-2019-6521 | — | — | 1.9% | Feb 5, 2019 | WebAccess/SCADA, Version 8.3. Specially crafted requests could allow a possible authentication bypass that could allow a... |
| CVE-2019-6519 | — | — | 2.8% | Feb 5, 2019 | WebAccess/SCADA, Version 8.3. An improper authentication vulnerability exists that could allow a possible authentication... |
| CVE-2019-6590 | — | — | 1.5% | Feb 5, 2019 | On BIG-IP LTM 13.0.0 to 13.0.1 and 12.1.0 to 12.1.3.6, under certain conditions, the TMM may consume excessive resources... |
| CVE-2019-7413 | — | — | 0.9% | Feb 5, 2019 | In the Parallax Scroll (aka adamrob-parallax-scroll) plugin before 2.1 for WordPress, includes/adamrob-parralax-shortcod... |
| CVE-2019-7412 | — | — | 2.5% | Feb 5, 2019 | The PS PHPCaptcha WP plugin before v1.2.0 for WordPress mishandles sanitization of input values. |
| CVE-2019-6591 | — | — | 0.6% | Feb 5, 2019 | On BIG-IP APM 14.0.0 to 14.0.0.4, 13.0.0 to 13.1.1.3 and 12.1.0 to 12.1.3.7, a reflected cross-site scripting (XSS) vuln... |
| CVE-2019-7403 | — | — | 1.7% | Feb 5, 2019 | An issue was discovered in PHPMyWind 5.5. It allows remote attackers to delete arbitrary folders via an admin/database_b... |
| CVE-2019-7402 | — | — | 0.4% | Feb 5, 2019 | An issue was discovered in PHPMyWind 5.5. The GetQQ function in include/func.class.php allows XSS via the cfg_qqcode... |
| CVE-2019-7390 | — | — | 2.0% | Feb 5, 2019 | An issue was discovered in /bin/goahead on D-Link DIR-823G devices with firmware 1.02B03. There is incorrect access cont... |
| CVE-2019-7389 | — | — | 2.7% | Feb 5, 2019 | An issue was discovered in /bin/goahead on D-Link DIR-823G devices with the firmware 1.02B03. There is incorrect access ... |
| CVE-2019-7388 | — | — | 2.8% | Feb 5, 2019 | An issue was discovered in /bin/goahead on D-Link DIR-823G devices with firmware 1.02B03. There is incorrect access cont... |
| CVE-2019-7387 | — | — | 1.4% | Feb 4, 2019 | A local file inclusion vulnerability exists in the web interface of Systrome Cumilon ISG-600C, ISG-600H, and ISG-800W 1.... |
| CVE-2019-1000024 | — | — | 1.2% | Feb 4, 2019 | OPT/NET BV NG-NetMS version v3.6-2 and earlier versions contains a Cross Site Scripting (XSS) vulnerability in /js/libs/... |
| CVE-2019-1000023 | — | — | 2.1% | Feb 4, 2019 | OPT/NET BV OPTOSS Next Gen Network Management System (NG-NetMS) version v3.6-2 and earlier versions contains a SQL Injec... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now