2019 CVE Vulnerabilities
17,619 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-10225 | MEDIUM | 6.3 | 0.6% | Mar 19, 2021 | A flaw was found in atomic-openshift of openshift-4.2 where the basic-user RABC role in OpenShift Container Platform doe... |
| CVE-2019-10200 | HIGH | 7.2 | 1.3% | Mar 19, 2021 | A flaw was discovered in OpenShift Container Platform 4 where, by default, users with access to create pods also have th... |
| CVE-2019-10196 | CRITICAL | 9.8 | 1.4% | Mar 19, 2021 | A flaw was found in http-proxy-agent, prior to version 2.1.0. It was discovered http-proxy-agent passes an auth option t... |
| CVE-2019-10151 | — | — | — | Mar 19, 2021 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n... |
| CVE-2019-10128 | HIGH | 7.8 | 0.4% | Mar 19, 2021 | A vulnerability was found in postgresql versions 11.x prior to 11.3. The Windows installer for EnterpriseDB-supplied Pos... |
| CVE-2019-10127 | HIGH | 8.8 | 0.3% | Mar 19, 2021 | A vulnerability was found in postgresql versions 11.x prior to 11.3. The Windows installer for BigSQL-supplied PostgreSQ... |
| CVE-2019-14852 | HIGH | 7.5 | 0.4% | Mar 18, 2021 | A flaw was found in 3scale’s APIcast gateway that enabled the TLS 1.0 protocol. An attacker could target traffic using t... |
| CVE-2019-14851 | MEDIUM | 6.5 | 1.0% | Mar 18, 2021 | A denial of service vulnerability was discovered in nbdkit. A client issuing a certain sequence of commands could possib... |
| CVE-2019-3867 | MEDIUM | 4.1 | 0.3% | Mar 18, 2021 | A vulnerability was found in the Quay web application. Sessions in the Quay web application never expire. An attacker, a... |
| CVE-2019-14908 | — | — | — | Mar 18, 2021 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu... |
| CVE-2019-14903 | — | — | — | Mar 18, 2021 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu... |
| CVE-2019-14850 | LOW | 3.7 | 1.6% | Mar 18, 2021 | A denial of service vulnerability was discovered in nbdkit 1.12.7, 1.14.1 and 1.15.1. An attacker could connect to the n... |
| CVE-2019-14848 | — | — | — | Mar 18, 2021 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu... |
| CVE-2019-18235 | CRITICAL | 9.8 | 1.5% | Mar 17, 2021 | Advantech Spectre RT ERT351 Versions 5.1.3 and prior has insufficient login authentication parameters required for the w... |
| CVE-2019-18233 | MEDIUM | 6.1 | 0.7% | Mar 17, 2021 | In Advantech Spectre RT Industrial Routers ERT351 5.1.3 and prior, the affected product does not neutralize special char... |
| CVE-2019-18231 | HIGH | 7.5 | 0.8% | Mar 17, 2021 | Advantech Spectre RT ERT351 Versions 5.1.3 and prior logins and passwords are transmitted in clear text form, which may ... |
| CVE-2019-3903 | — | — | — | Mar 16, 2021 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu... |
| CVE-2019-3898 | — | — | — | Mar 16, 2021 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu... |
| CVE-2019-3897 | MEDIUM | 5.3 | 0.9% | Mar 16, 2021 | It has been discovered in redhat-certification that any unauthorized user may download any file under /var/www/rhcert, p... |
| CVE-2019-3853 | — | — | — | Mar 16, 2021 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu... |
| CVE-2019-25025 | MEDIUM | 5.3 | 1.8% | Mar 5, 2021 | The activerecord-session_store (aka Active Record Session Store) component through 1.1.3 for Ruby on Rails does not use ... |
| CVE-2019-18351 | — | — | — | Mar 5, 2021 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2019-18790. Reason: This candidate is a duplicate of ... |
| CVE-2019-18630 | HIGH | 7.5 | 0.7% | Mar 4, 2021 | On Xerox AltaLink B8045/B8055/B8065/B8075/B8090 and C8030/C8035/C8045/C8055/C8070 multifunction printers with software r... |
| CVE-2019-18629 | HIGH | 8.1 | 1.0% | Mar 4, 2021 | Xerox AltaLink B8045/B8055/B8065/B8075/B8090 and C8030/C8035/C8045/C8055/C8070 multifunction printers with software rele... |
| CVE-2019-18628 | MEDIUM | 4.9 | 0.6% | Mar 4, 2021 | Xerox AltaLink B8045/B8055/B8065/B8075/B8090 and C8030/C8035/C8045/C8055/C8070 multifunction printers with software rele... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now