2019 CVE Vulnerabilities
17,620 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-6567 | MEDIUM | 5.5 | 0.3% | Jun 12, 2019 | A vulnerability has been identified in SCALANCE X-200 switch family (incl. SIPLUS NET variants) (All Versions < V5.2.4),... |
| CVE-2019-3875 | MEDIUM | 6.5 | 0.3% | Jun 12, 2019 | A vulnerability was found in keycloak before 6.0.2. The X.509 authenticator supports the verification of client certific... |
| CVE-2019-3873 | MEDIUM | 6.4 | 0.9% | Jun 12, 2019 | It was found that Picketlink as shipped with Jboss Enterprise Application Platform 7.2 would accept an xinclude paramete... |
| CVE-2019-3872 | MEDIUM | 5.4 | 0.7% | Jun 12, 2019 | It was found that a SAMLRequest containing a script could be processed by Picketlink versions shipped in Jboss Applicati... |
| CVE-2019-1081 | MEDIUM | 4.2 | 2.3% | Jun 12, 2019 | An information disclosure vulnerability exists when affected Microsoft browsers improperly handle objects in memory. An ... |
| CVE-2019-1054 | MEDIUM | 5 | 1.6% | Jun 12, 2019 | A security feature bypass vulnerability exists in Edge that allows for bypassing Mark of the Web Tagging (MOTW). Failing... |
| CVE-2019-1053 | MEDIUM | 6.3 | 1.3% | Jun 12, 2019 | An elevation of privilege vulnerability exists when the Windows Shell fails to validate folder shortcuts. An attacker wh... |
| CVE-2019-1052 | MEDIUM | 4.2 | 2.4% | Jun 12, 2019 | A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Mi... |
| CVE-2019-1051 | MEDIUM | 4.2 | 4.1% | Jun 12, 2019 | A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Mi... |
| CVE-2019-1050 | MEDIUM | 4.7 | 4.3% | Jun 12, 2019 | An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its m... |
| CVE-2019-1049 | MEDIUM | 4.7 | 4.3% | Jun 12, 2019 | An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its m... |
| CVE-2019-1048 | MEDIUM | 4.7 | 4.3% | Jun 12, 2019 | An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its m... |
| CVE-2019-1047 | MEDIUM | 4.7 | 4.3% | Jun 12, 2019 | An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its m... |
| CVE-2019-1046 | MEDIUM | 4.7 | 4.3% | Jun 12, 2019 | An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its m... |
| CVE-2019-1044 | MEDIUM | 5.3 | 1.0% | Jun 12, 2019 | A security feature bypass vulnerability exists when Windows Secure Kernel Mode fails to properly handle objects in memor... |
| CVE-2019-1043 | MEDIUM | 6.4 | 3.0% | Jun 12, 2019 | A remote code execution vulnerability exists in the way that comctl32.dll handles objects in memory. The vulnerability c... |
| CVE-2019-1040 | MEDIUM | 5.3 | 48.0% | Jun 12, 2019 | A tampering vulnerability exists in Microsoft Windows when a man-in-the-middle attacker is able to successfully bypass t... |
| CVE-2019-1039 | MEDIUM | 5.5 | 1.4% | Jun 12, 2019 | An information disclosure vulnerability exists when the Windows kernel improperly initializes objects in memory. To expl... |
| CVE-2019-1025 | MEDIUM | 6.5 | 5.4% | Jun 12, 2019 | A denial of service vulnerability exists when Windows improperly handles objects in memory. An attacker who successfully... |
| CVE-2019-1024 | MEDIUM | 4.2 | 2.4% | Jun 12, 2019 | A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Mi... |
| CVE-2019-1023 | MEDIUM | 6.5 | 5.4% | Jun 12, 2019 | An information disclosure vulnerability exists when the scripting engine does not properly handle objects in memory in M... |
| CVE-2019-1016 | MEDIUM | 4.7 | 4.3% | Jun 12, 2019 | An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its m... |
| CVE-2019-10157 | MEDIUM | 4.7 | 0.2% | Jun 12, 2019 | It was found that Keycloak's Node.js adapter before version 4.8.3 did not properly verify the web token received from th... |
| CVE-2019-10150 | MEDIUM | 5.9 | 1.4% | Jun 12, 2019 | It was found that OpenShift Container Platform versions 3.6.x - 4.6.0 does not perform SSH Host Key checking when using ... |
| CVE-2019-1015 | MEDIUM | 4.7 | 4.3% | Jun 12, 2019 | An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its m... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now