2019 CVE Vulnerabilities

17,621 CVEs published in 2019.

CVE IDSeverityCVSSDescription
CVE-2019-1449CRITICAL9.8A security feature bypass vulnerability exists in the way that Office Click-to-Run (C2R) components handle a specially c...
CVE-2019-1448HIGH7.8A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle obje...
CVE-2019-1447MEDIUM5.4A spoofing vulnerability exists when Office Online does not validate origin in cross-origin communications handlers corr...
CVE-2019-1446MEDIUM5.5An information disclosure vulnerability exists when Microsoft Excel improperly discloses the contents of its memory, aka...
CVE-2019-1445MEDIUM5.4A spoofing vulnerability exists when Office Online does not validate origin in cross-origin communications handlers corr...
CVE-2019-1443MEDIUM6.5An information disclosure vulnerability exists in Microsoft SharePoint when an attacker uploads a specially crafted file...
CVE-2019-1442MEDIUM5.5A security feature bypass vulnerability exists when Microsoft Office does not validate URLs.An attacker could send a vic...
CVE-2019-1441HIGH8.8A remote code execution vulnerability exists when the Windows font library improperly handles specially crafted embedded...
CVE-2019-1440MEDIUM5.5An information disclosure vulnerability exists when the win32k component improperly provides kernel information, aka 'Wi...
CVE-2019-1439MEDIUM6.5An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its m...
CVE-2019-1438HIGH7.8An elevation of privilege vulnerability exists when the Windows Graphics Component improperly handles objects in memory,...
CVE-2019-1437HIGH7.8An elevation of privilege vulnerability exists when the Windows Graphics Component improperly handles objects in memory,...
CVE-2019-1436MEDIUM5.5An information disclosure vulnerability exists when the win32k component improperly provides kernel information, aka 'Wi...
CVE-2019-1435HIGH7.8An elevation of privilege vulnerability exists when the Windows Graphics Component improperly handles objects in memory,...
CVE-2019-1434HIGH7.8An elevation of privilege vulnerability exists in Windows when the Windows kernel-mode driver fails to properly handle o...
CVE-2019-1433HIGH7.8An elevation of privilege vulnerability exists when the Windows Graphics Component improperly handles objects in memory,...
CVE-2019-1432MEDIUM6.5An information disclosure vulnerability exists when DirectWrite improperly discloses the contents of its memory, aka 'Di...
CVE-2019-1430HIGH7.8A remote code execution vulnerability exists when Windows Media Foundation improperly parses specially crafted QuickTime...
CVE-2019-1429HIGH7.5A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Internet ...
CVE-2019-1428HIGH7.5A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Microsoft...
CVE-2019-1427HIGH7.5A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Microsoft...
CVE-2019-1426HIGH7.5A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Microsoft...
CVE-2019-1425MEDIUM6.5An elevation of privilege vulnerability exists when Visual Studio fails to properly validate hardlinks while extracting ...
CVE-2019-1424HIGH8.1A security feature bypass vulnerability exists when Windows Netlogon improperly handles a secure communications channel,...
CVE-2019-1423HIGH7.8An elevation of privilege vulnerability exists in the way that the StartTileData.dll handles file creation in protected ...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now