2019 CVE Vulnerabilities
17,619 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-16575 | HIGH | 8.8 | 0.9% | Dec 17, 2019 | A cross-site request forgery vulnerability in Jenkins Alauda Kubernetes Suport Plugin 2.3.0 and earlier allows attackers... |
| CVE-2019-16573 | HIGH | 8.8 | 0.7% | Dec 17, 2019 | A cross-site request forgery vulnerability in Jenkins Alauda DevOps Pipeline Plugin 2.3.2 and earlier allows attackers t... |
| CVE-2019-16570 | HIGH | 8.8 | 0.7% | Dec 17, 2019 | A cross-site request forgery vulnerability in Jenkins RapidDeploy Plugin 4.1 and earlier allows attackers to connect to ... |
| CVE-2019-16565 | HIGH | 8.8 | 0.6% | Dec 17, 2019 | A cross-site request forgery vulnerability in Jenkins Team Concert Plugin 1.3.0 and earlier allows attackers to connect ... |
| CVE-2019-16561 | HIGH | 7.1 | 0.5% | Dec 17, 2019 | Jenkins WebSphere Deployer Plugin 1.6.1 and earlier allows users with Overall/Read access to disable SSL/TLS certificate... |
| CVE-2019-16560 | HIGH | 8.8 | 0.7% | Dec 17, 2019 | A cross-site request forgery vulnerability in Jenkins WebSphere Deployer Plugin 1.6.1 and earlier allows attackers to pe... |
| CVE-2019-16558 | HIGH | 8.2 | 0.6% | Dec 17, 2019 | Jenkins Spira Importer Plugin 3.2.3 and earlier disables SSL/TLS certificate validation for the Jenkins master JVM. |
| CVE-2019-16553 | HIGH | 8.8 | 0.7% | Dec 17, 2019 | A cross-site request forgery vulnerability in Jenkins Build Failure Analyzer Plugin 1.24.1 and earlier allows attackers ... |
| CVE-2019-16551 | HIGH | 8.8 | 0.7% | Dec 17, 2019 | A cross-site request forgery vulnerability in Jenkins Gerrit Trigger Plugin 2.30.1 and earlier allows attackers to conne... |
| CVE-2019-16550 | HIGH | 8.8 | 0.6% | Dec 17, 2019 | A cross-site request forgery vulnerability in a connection test form method in Jenkins Maven Release Plugin 0.16.1 and e... |
| CVE-2019-16549 | HIGH | 8.1 | 1.0% | Dec 17, 2019 | Jenkins Maven Release Plugin 0.16.1 and earlier does not configure the XML parser to prevent XML external entity (XXE) a... |
| CVE-2019-19264 | HIGH | 7.5 | 1.7% | Dec 17, 2019 | In Simplifile RecordFusion through 2019-11-25, the logs and hist parameters allow remote attackers to access local files... |
| CVE-2019-18832 | HIGH | 8.1 | 0.4% | Dec 17, 2019 | Barco ClickShare Button R9861500D01 devices before 1.9.0 have incorrect Credentials Management. The ClickShare Button im... |
| CVE-2019-18829 | HIGH | 7.8 | 0.3% | Dec 17, 2019 | Barco ClickShare Button R9861500D01 devices before 1.10.0.13 have Missing Support for Integrity Check. The Barco signed ... |
| CVE-2019-18825 | HIGH | 7.5 | 0.6% | Dec 17, 2019 | Barco ClickShare Huddle CS-100 devices before 1.9.0 and CSE-200 devices before 1.9.0 have incorrect Credentials Manageme... |
| CVE-2019-19816 | HIGH | 7.8 | 3.3% | Dec 17, 2019 | In the Linux kernel 5.0.21, mounting a crafted btrfs filesystem image and performing some operations can cause slab-out-... |
| CVE-2019-19814 | HIGH | 7.8 | 3.3% | Dec 17, 2019 | In the Linux kernel 5.0.21, mounting a crafted f2fs filesystem image can cause __remove_dirty_segment slab-out-of-bounds... |
| CVE-2019-18191 | HIGH | 8.8 | 2.2% | Dec 16, 2019 | A privilege escalation vulnerability in the Trend Micro Deep Security as a Service Quick Setup cloud formation template ... |
| CVE-2019-14610 | HIGH | 7.8 | 0.3% | Dec 16, 2019 | Improper access control in firmware for Intel(R) NUC(R) may allow an authenticated user to potentially enable escalation... |
| CVE-2019-14608 | HIGH | 7.8 | 0.3% | Dec 16, 2019 | Improper buffer restrictions in firmware for Intel(R) NUC(R) may allow an authenticated user to potentially enable escal... |
| CVE-2019-14605 | HIGH | 7.8 | 0.3% | Dec 16, 2019 | Improper permissions in the installer for the Intel(R) SCS Platform Discovery Utility, all versions, may allow an authen... |
| CVE-2019-14603 | HIGH | 7.8 | 0.3% | Dec 16, 2019 | Improper permissions in the installer for the License Server software for Intel® Quartus® Prime Pro Edition before versi... |
| CVE-2019-14599 | HIGH | 7.8 | 0.3% | Dec 16, 2019 | Unquoted service path in Control Center-I version 2.1.0.0 and earlier may allow an authenticated user to potentially ena... |
| CVE-2019-14568 | HIGH | 7.8 | 0.3% | Dec 16, 2019 | Improper permissions in the executable for Intel(R) RST before version 17.7.0.1006 may allow an authenticated user to po... |
| CVE-2019-13533 | HIGH | 8.1 | 0.9% | Dec 16, 2019 | In Omron PLC CJ series, all versions, and Omron PLC CS series, all versions, an attacker could monitor traffic between t... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now