VYPR
Medium severity6.1NVD Advisory· Published Apr 16, 2020· Updated Jun 17, 2026

CVE-2019-19394

CVE-2019-19394

Description

Northern.tech CFEngine Enterprise before 3.10.7, 3.11.x and 3.12.x before 3.12.3, 3.13.x, and 3.14.x allows XSS. This is fixed in 3.10.7, 3.12.3, and 3.15.0.

Affected products

4
  • cpe:2.3:a:northern.tech:cfengine:*:*:*:*:enterprise:*:*:*+ 1 more
    • cpe:2.3:a:northern.tech:cfengine:*:*:*:*:enterprise:*:*:*range: >=3.10.0,<3.10.7
    • cpe:2.3:a:northern.tech:cfengine:3.7:*:*:*:enterprise:*:*:*
  • Northern.tech/CFEngine Enterprisedescription
  • Range: <3.10.7, 3.11.x, <3.12.3, 3.13.x, 3.14.x

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.