2019 CVE Vulnerabilities

17,623 CVEs published in 2019.

CVE IDSeverityCVSSDescription
CVE-2019-12260CRITICAL9.8Wind River VxWorks 6.9 and vx7 has a Buffer Overflow in the TCP component (issue 2 of 4). This is an IPNET security vuln...
CVE-2019-12258HIGH7.5Wind River VxWorks 6.6 through vx7 has Session Fixation in the TCP component. This is a IPNET security vulnerability: Do...
CVE-2019-12255CRITICAL9.8Wind River VxWorks has a Buffer Overflow in the TCP component (issue 1 of 4). This is a IPNET security vulnerability: TC...
CVE-2019-11581CRITICAL9.8There was a server-side template injection vulnerability in Jira Server and Data Center, in the ContactAdministrators an...
CVE-2019-11274MEDIUM6.1Cloud Foundry UAA, versions prior to 74.0.0, is vulnerable to an XSS attack. A remote unauthenticated malicious attacker...
CVE-2019-11042HIGH7.1When PHP EXIF extension is parsing EXIF information from an image, e.g. via exif_read_data() function, in PHP versions 7...
CVE-2019-11041HIGH7.1When PHP EXIF extension is parsing EXIF information from an image, e.g. via exif_read_data() function, in PHP versions 7...
CVE-2019-3744HIGH7.8Dell/Alienware Digital Delivery versions prior to 4.0.41 contain a privilege escalation vulnerability. A local non-privi...
CVE-2019-3742HIGH7.8Dell/Alienware Digital Delivery versions prior to 3.5.2013 contain a privilege escalation vulnerability. A local non-pri...
CVE-2019-14433MEDIUM6.5An issue was discovered in OpenStack Nova before 17.0.12, 18.x before 18.2.2, and 19.x before 19.0.2. If an API request ...
CVE-2019-12265MEDIUM5.3Wind River VxWorks 6.5, 6.6, 6.7, 6.8, 6.9.3 and 6.9.4 has a Memory Leak in the IGMPv3 client component. There is an IPN...
CVE-2019-12263HIGH8.1Wind River VxWorks 6.9.4 and vx7 has a Buffer Overflow in the TCP component (issue 4 of 4). There is an IPNET security v...
CVE-2019-12259HIGH7.5Wind River VxWorks 6.6, 6.7, 6.8, 6.9 and vx7 has an array index error in the IGMPv3 client component. There is an IPNET...
CVE-2019-11776MEDIUM6.1In Eclipse BIRT versions 1.0 to 4.7, the Report Viewer allows Reflected XSS in URL parameter. Attacker can execute the p...
CVE-2019-5498OnCommand Insight versions through 7.3.6 may disclose sensitive account information to an authenticated user.
CVE-2019-5408Command View Advanced Edition (CVAE) products contain a vulnerability that could expose configuration information of hos...
CVE-2019-5407A remote information disclosure vulnerability was discovered in HPE 3PAR StoreServ Management and Core Software Media ve...
CVE-2019-5406A remote session reuse vulnerability was discovered in HPE 3PAR StoreServ Management and Core Software Media version(s):...
CVE-2019-5405A remote authorization bypass vulnerability was discovered in HPE 3PAR StoreServ Management and Core Software Media vers...
CVE-2019-5404A remote script injection vulnerability was discovered in HPE 3PAR StoreServ Management and Core Software Media version(...
CVE-2019-5403A remote multiple cross-site scripting vulnerability was discovered in HPE 3PAR StoreServ Management and Core Software M...
CVE-2019-5402A remote authorization bypass vulnerability was discovered in HPE 3PAR StoreServ Management and Core Software Media vers...
CVE-2019-5400A remote session reuse vulnerability was discovered in HPE 3PAR Service Processor version(s): prior to 5.0.5.1.
CVE-2019-5399A remote gain authorized access vulnerability was discovered in HPE 3PAR Service Processor version(s): prior to 5.0.5.1.
CVE-2019-5398A remote multiple multiple cross-site vulnerability was discovered in HPE 3PAR Service Processor version(s): prior to 5....

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now