2019 CVE Vulnerabilities

17,619 CVEs published in 2019.

Filter:LOWClear
CVE IDSeverityCVSSDescription
CVE-2019-2894LOW3.7Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: Security). Supported versions that ...
CVE-2019-2872LOW2.7Vulnerability in the Oracle Retail Xstore Point of Service product of Oracle Retail Applications (component: Point of Sa...
CVE-2019-10450LOW3.3Jenkins ElasticBox CI Plugin stores credentials unencrypted in the global config.xml configuration file on the Jenkins m...
CVE-2019-4265LOW2.4IBM Maximo Anywhere 7.6.0, 7.6.1, 7.6.2, and 7.6.3 does not have device root detection which could result in an attacker...
CVE-2019-17401LOW3.3libyal liblnk 20191006 has a heap-based buffer over-read in the network_share_name_offset>20 code block of liblnk_locati...
CVE-2019-17264LOW3.3In libyal liblnk before 20191006, liblnk_location_information_read_data in liblnk_location_information.c has a heap-base...
CVE-2019-17263LOW3.3In libyal libfwsi before 20191006, libfwsi_extension_block_copy_from_byte_stream in libfwsi_extension_block.c has a heap...
CVE-2019-17056LOW3.3llcp_sock_create in net/nfc/llcp_sock.c in the AF_NFC network module in the Linux kernel through 5.3.2 does not enforce ...
CVE-2019-17055LOW3.3base_sock_create in drivers/isdn/mISDN/socket.c in the AF_ISDN network module in the Linux kernel through 5.3.2 does not...
CVE-2019-17054LOW3.3atalk_create in net/appletalk/ddp.c in the AF_APPLETALK network module in the Linux kernel through 5.3.2 does not enforc...
CVE-2019-17053LOW3.3ieee802154_create in net/ieee802154/socket.c in the AF_IEEE802154 network module in the Linux kernel through 5.3.2 does ...
CVE-2019-17052LOW3.3ax25_create in net/ax25/af_ax25.c in the AF_AX25 network module in the Linux kernel 3.16 through 5.3.2 does not enforce ...
CVE-2019-10433LOW3.3Jenkins Dingding[钉钉] Plugin stores credentials unencrypted in job config.xml files on the Jenkins master where they can ...
CVE-2019-3729LOW2.4RSA BSAFE Micro Edition Suite versions prior to 4.4 (in 4.0.x, 4.1.x, 4.2.x and 4.3.x) are vulnerable to a Heap-based Bu...
CVE-2019-4112LOW3.3IBM WebSphere eXtreme Scale 8.6 Admin Console allows web pages to be stored locally which can be read by another user on...
CVE-2019-9440LOW3.3In AOSP Email, there is a possible information disclosure due to a confused deputy. This could lead to local disclosure ...
CVE-2019-9438LOW3.3In the Package Manager service, there is a possible information disclosure due to a confused deputy. This could lead to ...
CVE-2019-9377LOW3.3In FingerprintService, there is a possible bypass for operating system protections that isolate user profiles from each ...
CVE-2019-9364LOW3.3In AudioService, there is a possible trigger of background user audio due to a permissions bypass. This could lead to lo...
CVE-2019-9351LOW3.3In SyncStatusObserver, there is a possible bypass for operating system protections that isolate user profiles from each ...
CVE-2019-9292LOW3.3In the Activity Manager service, there is a possible information disclosure due to a confused deputy. This could lead to...
CVE-2019-9280LOW3.3In keyguard, there is a possible escalation of privilege due to improper permission checks. This could lead to a local b...
CVE-2019-9277LOW3.3In the proc filesystem, there is a possible information disclosure due to log information disclosure. This could lead to...
CVE-2019-11743LOW3.7Navigation events were not fully adhering to the W3C's "Navigation-Timing Level 2" draft specification in some instances...
CVE-2019-12617LOW2.7In SilverStripe through 4.3.3, there is access escalation for CMS users with limited access through permission cache pol...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now