2019 CVE Vulnerabilities
17,623 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-10284 | HIGH | 8.8 | 1.8% | Apr 4, 2019 | Jenkins Diawi Upload Plugin stores credentials unencrypted in job config.xml files on the Jenkins master where they can ... |
| CVE-2019-10283 | HIGH | 8.8 | 1.8% | Apr 4, 2019 | Jenkins mabl Plugin stores credentials unencrypted in job config.xml files on the Jenkins master where they can be viewe... |
| CVE-2019-10282 | HIGH | 8.8 | 1.8% | Apr 4, 2019 | Jenkins Klaros-Testmanagement Plugin stores credentials unencrypted in job config.xml files on the Jenkins master where ... |
| CVE-2019-10281 | HIGH | 8.8 | 1.8% | Apr 4, 2019 | Jenkins Relution Enterprise Appstore Publisher Plugin stores credentials unencrypted in its global configuration file on... |
| CVE-2019-10280 | HIGH | 8.8 | 1.8% | Apr 4, 2019 | Jenkins Assembla Auth Plugin stores credentials unencrypted in the global config.xml configuration file on the Jenkins m... |
| CVE-2019-10279 | MEDIUM | 6.5 | 1.5% | Apr 4, 2019 | A missing permission check in Jenkins jenkins-reviewbot Plugin in the ReviewboardDescriptor#doTestConnection form valida... |
| CVE-2019-10278 | — | — | 1.3% | Apr 4, 2019 | A cross-site request forgery vulnerability in Jenkins jenkins-reviewbot Plugin in the ReviewboardDescriptor#doTestConnec... |
| CVE-2019-10277 | HIGH | 8.8 | 1.8% | Apr 4, 2019 | Jenkins StarTeam Plugin stores credentials unencrypted in job config.xml files on the Jenkins master where they can be v... |
| CVE-2019-10273 | — | — | 7.8% | Apr 4, 2019 | Information leakage vulnerability in the /mc login page in ManageEngine ServiceDesk Plus 9.3 software allows authenticat... |
| CVE-2019-1003099 | MEDIUM | 6.5 | 1.5% | Apr 4, 2019 | A missing permission check in Jenkins openid Plugin in the OpenIdSsoSecurityRealm.DescriptorImpl#doValidate form validat... |
| CVE-2019-1003098 | — | — | 1.3% | Apr 4, 2019 | A cross-site request forgery vulnerability in Jenkins openid Plugin in the OpenIdSsoSecurityRealm.DescriptorImpl#doValid... |
| CVE-2019-1003097 | MEDIUM | 6.5 | 1.6% | Apr 4, 2019 | Jenkins Crowd Integration Plugin stores credentials unencrypted in the global config.xml configuration file on the Jenki... |
| CVE-2019-1003096 | MEDIUM | 6.5 | 1.7% | Apr 4, 2019 | Jenkins TestFairy Plugin stores credentials unencrypted in job config.xml files on the Jenkins master where they can be ... |
| CVE-2019-1003095 | MEDIUM | 6.5 | 1.2% | Apr 4, 2019 | Jenkins Perfecto Mobile Plugin stores credentials unencrypted in its global configuration file on the Jenkins master whe... |
| CVE-2019-1003094 | MEDIUM | 6.5 | 1.2% | Apr 4, 2019 | Jenkins Open STF Plugin stores credentials unencrypted in its global configuration file on the Jenkins master where they... |
| CVE-2019-1003093 | MEDIUM | 6.5 | 1.5% | Apr 4, 2019 | A missing permission check in Jenkins Nomad Plugin in the NomadCloud.DescriptorImpl#doTestConnection form validation met... |
| CVE-2019-1003092 | — | — | 1.3% | Apr 4, 2019 | A cross-site request forgery vulnerability in Jenkins Nomad Plugin in the NomadCloud.DescriptorImpl#doTestConnection for... |
| CVE-2019-1003091 | MEDIUM | 6.5 | 1.5% | Apr 4, 2019 | A missing permission check in Jenkins SOASTA CloudTest Plugin in the CloudTestServer.DescriptorImpl#doValidate form vali... |
| CVE-2019-1003090 | — | — | 1.3% | Apr 4, 2019 | A cross-site request forgery vulnerability in Jenkins SOASTA CloudTest Plugin in the CloudTestServer.DescriptorImpl#doVa... |
| CVE-2019-1003089 | MEDIUM | 6.5 | 1.2% | Apr 4, 2019 | Jenkins Upload to pgyer Plugin stores credentials unencrypted in job config.xml files on the Jenkins master where they c... |
| CVE-2019-1003088 | MEDIUM | 6.5 | 1.2% | Apr 4, 2019 | Jenkins Fabric Beta Publisher Plugin stores credentials unencrypted in job config.xml files on the Jenkins master where ... |
| CVE-2019-1003087 | MEDIUM | 6.5 | 1.5% | Apr 4, 2019 | A missing permission check in Jenkins Chef Sinatra Plugin in the ChefBuilderConfiguration.DescriptorImpl#doTestConnectio... |
| CVE-2019-1003086 | — | — | 1.3% | Apr 4, 2019 | A cross-site request forgery vulnerability in Jenkins Chef Sinatra Plugin in the ChefBuilderConfiguration.DescriptorImpl... |
| CVE-2019-1003085 | MEDIUM | 6.5 | 1.5% | Apr 4, 2019 | A missing permission check in Jenkins Zephyr Enterprise Test Management Plugin in the ZeeDescriptor#doTestConnection for... |
| CVE-2019-1003084 | — | — | 1.3% | Apr 4, 2019 | A cross-site request forgery vulnerability in Jenkins Zephyr Enterprise Test Management Plugin in the ZeeDescriptor#doTe... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now