2019 CVE Vulnerabilities
17,621 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-1449 | CRITICAL | 9.8 | 6.4% | Nov 12, 2019 | A security feature bypass vulnerability exists in the way that Office Click-to-Run (C2R) components handle a specially c... |
| CVE-2019-1448 | HIGH | 7.8 | 28.2% | Nov 12, 2019 | A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle obje... |
| CVE-2019-1447 | MEDIUM | 5.4 | 0.8% | Nov 12, 2019 | A spoofing vulnerability exists when Office Online does not validate origin in cross-origin communications handlers corr... |
| CVE-2019-1446 | MEDIUM | 5.5 | 8.4% | Nov 12, 2019 | An information disclosure vulnerability exists when Microsoft Excel improperly discloses the contents of its memory, aka... |
| CVE-2019-1445 | MEDIUM | 5.4 | 0.8% | Nov 12, 2019 | A spoofing vulnerability exists when Office Online does not validate origin in cross-origin communications handlers corr... |
| CVE-2019-1443 | MEDIUM | 6.5 | 5.4% | Nov 12, 2019 | An information disclosure vulnerability exists in Microsoft SharePoint when an attacker uploads a specially crafted file... |
| CVE-2019-1442 | MEDIUM | 5.5 | 2.0% | Nov 12, 2019 | A security feature bypass vulnerability exists when Microsoft Office does not validate URLs.An attacker could send a vic... |
| CVE-2019-1441 | HIGH | 8.8 | 12.0% | Nov 12, 2019 | A remote code execution vulnerability exists when the Windows font library improperly handles specially crafted embedded... |
| CVE-2019-1440 | MEDIUM | 5.5 | 2.1% | Nov 12, 2019 | An information disclosure vulnerability exists when the win32k component improperly provides kernel information, aka 'Wi... |
| CVE-2019-1439 | MEDIUM | 6.5 | 75.9% | Nov 12, 2019 | An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its m... |
| CVE-2019-1438 | HIGH | 7.8 | 0.8% | Nov 12, 2019 | An elevation of privilege vulnerability exists when the Windows Graphics Component improperly handles objects in memory,... |
| CVE-2019-1437 | HIGH | 7.8 | 0.9% | Nov 12, 2019 | An elevation of privilege vulnerability exists when the Windows Graphics Component improperly handles objects in memory,... |
| CVE-2019-1436 | MEDIUM | 5.5 | 1.8% | Nov 12, 2019 | An information disclosure vulnerability exists when the win32k component improperly provides kernel information, aka 'Wi... |
| CVE-2019-1435 | HIGH | 7.8 | 0.9% | Nov 12, 2019 | An elevation of privilege vulnerability exists when the Windows Graphics Component improperly handles objects in memory,... |
| CVE-2019-1434 | HIGH | 7.8 | 0.8% | Nov 12, 2019 | An elevation of privilege vulnerability exists in Windows when the Windows kernel-mode driver fails to properly handle o... |
| CVE-2019-1433 | HIGH | 7.8 | 0.9% | Nov 12, 2019 | An elevation of privilege vulnerability exists when the Windows Graphics Component improperly handles objects in memory,... |
| CVE-2019-1432 | MEDIUM | 6.5 | 5.2% | Nov 12, 2019 | An information disclosure vulnerability exists when DirectWrite improperly discloses the contents of its memory, aka 'Di... |
| CVE-2019-1430 | HIGH | 7.8 | 13.0% | Nov 12, 2019 | A remote code execution vulnerability exists when Windows Media Foundation improperly parses specially crafted QuickTime... |
| CVE-2019-1429 | HIGH | 7.5 | 72.6% | Nov 12, 2019 | A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Internet ... |
| CVE-2019-1428 | HIGH | 7.5 | 9.4% | Nov 12, 2019 | A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Microsoft... |
| CVE-2019-1427 | HIGH | 7.5 | 9.4% | Nov 12, 2019 | A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Microsoft... |
| CVE-2019-1426 | HIGH | 7.5 | 9.4% | Nov 12, 2019 | A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Microsoft... |
| CVE-2019-1425 | MEDIUM | 6.5 | 3.1% | Nov 12, 2019 | An elevation of privilege vulnerability exists when Visual Studio fails to properly validate hardlinks while extracting ... |
| CVE-2019-1424 | HIGH | 8.1 | 2.6% | Nov 12, 2019 | A security feature bypass vulnerability exists when Windows Netlogon improperly handles a secure communications channel,... |
| CVE-2019-1423 | HIGH | 7.8 | 1.3% | Nov 12, 2019 | An elevation of privilege vulnerability exists in the way that the StartTileData.dll handles file creation in protected ... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now