2019 CVE Vulnerabilities
17,623 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-4163 | MEDIUM | 4.3 | 1.0% | Jul 31, 2019 | IBM StoreIQ 7.6.0.0. through 7.6.0.18 could allow an authenticated user to obtain sensitive information that a privilege... |
| CVE-2019-13568 | — | — | 1.7% | Jul 31, 2019 | CImg through 2.6.7 has a heap-based buffer overflow in _load_bmp in CImg.h because of erroneous memory allocation for a ... |
| CVE-2019-14204 | — | — | 2.5% | Jul 31, 2019 | An issue was discovered in Das U-Boot through 2019.07. There is a stack-based buffer overflow in this nfs_handler reply ... |
| CVE-2019-14203 | — | — | 2.5% | Jul 31, 2019 | An issue was discovered in Das U-Boot through 2019.07. There is a stack-based buffer overflow in this nfs_handler reply ... |
| CVE-2019-14202 | — | — | 2.5% | Jul 31, 2019 | An issue was discovered in Das U-Boot through 2019.07. There is a stack-based buffer overflow in this nfs_handler reply ... |
| CVE-2019-14201 | — | — | 2.5% | Jul 31, 2019 | An issue was discovered in Das U-Boot through 2019.07. There is a stack-based buffer overflow in this nfs_handler reply ... |
| CVE-2019-14200 | — | — | 2.5% | Jul 31, 2019 | An issue was discovered in Das U-Boot through 2019.07. There is a stack-based buffer overflow in this nfs_handler reply ... |
| CVE-2019-14199 | — | — | 2.3% | Jul 31, 2019 | An issue was discovered in Das U-Boot through 2019.07. There is an unbounded memcpy when parsing a UDP packet due to a n... |
| CVE-2019-14198 | — | — | 2.3% | Jul 31, 2019 | An issue was discovered in Das U-Boot through 2019.07. There is an unbounded memcpy with a failed length check at nfs_re... |
| CVE-2019-14197 | — | — | 2.3% | Jul 31, 2019 | An issue was discovered in Das U-Boot through 2019.07. There is a read of out-of-bounds data at nfs_read_reply. |
| CVE-2019-14196 | — | — | 2.2% | Jul 31, 2019 | An issue was discovered in Das U-Boot through 2019.07. There is an unbounded memcpy with a failed length check at nfs_lo... |
| CVE-2019-14195 | — | — | 2.3% | Jul 31, 2019 | An issue was discovered in Das U-Boot through 2019.07. There is an unbounded memcpy with unvalidated length at nfs_readl... |
| CVE-2019-14194 | — | — | 2.3% | Jul 31, 2019 | An issue was discovered in Das U-Boot through 2019.07. There is an unbounded memcpy with a failed length check at nfs_re... |
| CVE-2019-14193 | — | — | 2.4% | Jul 31, 2019 | An issue was discovered in Das U-Boot through 2019.07. There is an unbounded memcpy with an unvalidated length at nfs_re... |
| CVE-2019-14192 | — | — | 2.7% | Jul 31, 2019 | An issue was discovered in Das U-Boot through 2019.07. There is an unbounded memcpy when parsing a UDP packet due to a n... |
| CVE-2019-10366 | MEDIUM | 6.5 | 1.5% | Jul 31, 2019 | Jenkins Skytap Cloud CI Plugin 2.06 and earlier stored credentials unencrypted in job config.xml files on the Jenkins ma... |
| CVE-2019-10365 | MEDIUM | 4.3 | 0.3% | Jul 31, 2019 | Jenkins Google Kubernetes Engine Plugin 0.6.2 and earlier created a temporary file containing a temporary access token i... |
| CVE-2019-10364 | MEDIUM | 5.5 | 0.3% | Jul 31, 2019 | Jenkins Amazon EC2 Plugin 1.43 and earlier wrote the beginning of private keys to the Jenkins system log. |
| CVE-2019-10363 | MEDIUM | 4.9 | 0.6% | Jul 31, 2019 | Jenkins Configuration as Code Plugin 1.24 and earlier did not reliably identify sensitive values expected to be exported... |
| CVE-2019-10362 | MEDIUM | 5.4 | 0.7% | Jul 31, 2019 | Jenkins Configuration as Code Plugin 1.24 and earlier did not escape values resulting in variable interpolation during c... |
| CVE-2019-10361 | MEDIUM | 5.5 | 0.5% | Jul 31, 2019 | Jenkins Maven Release Plugin 0.14.0 and earlier stored credentials unencrypted on the Jenkins master where they could be... |
| CVE-2019-10360 | MEDIUM | 5.4 | 0.7% | Jul 31, 2019 | A stored cross site scripting vulnerability in Jenkins Maven Release Plugin 0.14.0 and earlier allowed attackers to inje... |
| CVE-2019-10359 | MEDIUM | 6.3 | 0.6% | Jul 31, 2019 | A cross-site request forgery vulnerability in Jenkins Maven Release Plugin 0.14.0 and earlier in the M2ReleaseAction#doS... |
| CVE-2019-10358 | MEDIUM | 6.5 | 1.0% | Jul 31, 2019 | Jenkins Maven Integration Plugin 3.3 and earlier did not apply build log decorators to module builds, potentially reveal... |
| CVE-2019-10357 | MEDIUM | 4.3 | 1.2% | Jul 31, 2019 | A missing permission check in Jenkins Pipeline: Shared Groovy Libraries Plugin 2.14 and earlier allowed users with Overa... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now