2019 CVE Vulnerabilities

17,619 CVEs published in 2019.

CVE IDSeverityCVSSDescription
CVE-2019-10225MEDIUM6.3A flaw was found in atomic-openshift of openshift-4.2 where the basic-user RABC role in OpenShift Container Platform doe...
CVE-2019-10200HIGH7.2A flaw was discovered in OpenShift Container Platform 4 where, by default, users with access to create pods also have th...
CVE-2019-10196CRITICAL9.8A flaw was found in http-proxy-agent, prior to version 2.1.0. It was discovered http-proxy-agent passes an auth option t...
CVE-2019-10151Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n...
CVE-2019-10128HIGH7.8A vulnerability was found in postgresql versions 11.x prior to 11.3. The Windows installer for EnterpriseDB-supplied Pos...
CVE-2019-10127HIGH8.8A vulnerability was found in postgresql versions 11.x prior to 11.3. The Windows installer for BigSQL-supplied PostgreSQ...
CVE-2019-14852HIGH7.5A flaw was found in 3scale’s APIcast gateway that enabled the TLS 1.0 protocol. An attacker could target traffic using t...
CVE-2019-14851MEDIUM6.5A denial of service vulnerability was discovered in nbdkit. A client issuing a certain sequence of commands could possib...
CVE-2019-3867MEDIUM4.1A vulnerability was found in the Quay web application. Sessions in the Quay web application never expire. An attacker, a...
CVE-2019-14908Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu...
CVE-2019-14903Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu...
CVE-2019-14850LOW3.7A denial of service vulnerability was discovered in nbdkit 1.12.7, 1.14.1 and 1.15.1. An attacker could connect to the n...
CVE-2019-14848Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu...
CVE-2019-18235CRITICAL9.8Advantech Spectre RT ERT351 Versions 5.1.3 and prior has insufficient login authentication parameters required for the w...
CVE-2019-18233MEDIUM6.1In Advantech Spectre RT Industrial Routers ERT351 5.1.3 and prior, the affected product does not neutralize special char...
CVE-2019-18231HIGH7.5Advantech Spectre RT ERT351 Versions 5.1.3 and prior logins and passwords are transmitted in clear text form, which may ...
CVE-2019-3903Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu...
CVE-2019-3898Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu...
CVE-2019-3897MEDIUM5.3It has been discovered in redhat-certification that any unauthorized user may download any file under /var/www/rhcert, p...
CVE-2019-3853Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu...
CVE-2019-25025MEDIUM5.3The activerecord-session_store (aka Active Record Session Store) component through 1.1.3 for Ruby on Rails does not use ...
CVE-2019-18351Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2019-18790. Reason: This candidate is a duplicate of ...
CVE-2019-18630HIGH7.5On Xerox AltaLink B8045/B8055/B8065/B8075/B8090 and C8030/C8035/C8045/C8055/C8070 multifunction printers with software r...
CVE-2019-18629HIGH8.1Xerox AltaLink B8045/B8055/B8065/B8075/B8090 and C8030/C8035/C8045/C8055/C8070 multifunction printers with software rele...
CVE-2019-18628MEDIUM4.9Xerox AltaLink B8045/B8055/B8065/B8075/B8090 and C8030/C8035/C8045/C8055/C8070 multifunction printers with software rele...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now