2019 CVE Vulnerabilities

17,623 CVEs published in 2019.

CVE IDSeverityCVSSDescription
CVE-2019-1299MEDIUM6.5An information disclosure vulnerability exists when Microsoft Edge based on Edge HTML improperly handles objects in memo...
CVE-2019-1298HIGH7.5A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Mi...
CVE-2019-1297HIGH8.8A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle obje...
CVE-2019-1296HIGH8.8A remote code execution vulnerability exists in Microsoft SharePoint where APIs aren't properly protected from unsafe da...
CVE-2019-1295HIGH8.8A remote code execution vulnerability exists in Microsoft SharePoint where APIs aren't properly protected from unsafe da...
CVE-2019-1294MEDIUM4.6A security feature bypass exists when Windows Secure Boot improperly restricts access to debugging functionality, aka 'W...
CVE-2019-1293MEDIUM5.5An information disclosure vulnerability exists in Windows when the Windows SMB Client kernel-mode driver fails to proper...
CVE-2019-1292MEDIUM4.9A denial of service vulnerability exists when Windows improperly handles objects in memory, aka 'Windows Denial of Servi...
CVE-2019-1291HIGH8.8A remote code execution vulnerability exists in the Windows Remote Desktop Client when a user connects to a malicious se...
CVE-2019-1290HIGH8.8A remote code execution vulnerability exists in the Windows Remote Desktop Client when a user connects to a malicious se...
CVE-2019-1289MEDIUM5.5An elevation of privilege vulnerability exists when the Windows Update Delivery Optimization does not properly enforce f...
CVE-2019-1287HIGH7.8An elevation of privilege vulnerability exists in the way that the Windows Network Connectivity Assistant handles object...
CVE-2019-1286MEDIUM6.5An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its m...
CVE-2019-1285HIGH7.8An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in ...
CVE-2019-1284HIGH7.8An elevation of privilege vulnerability exists when DirectX improperly handles objects in memory, aka 'DirectX Elevation...
CVE-2019-1283MEDIUM5.5An information disclosure vulnerability exists in the way that Microsoft Graphics Components handle objects in memory, a...
CVE-2019-1282MEDIUM5.5An information disclosure exists in the Windows Common Log File System (CLFS) driver when it fails to properly handle sa...
CVE-2019-1280HIGH7.8A remote code execution vulnerability exists in Microsoft Windows that could allow remote code execution if a .LNK file ...
CVE-2019-1278HIGH7.8An elevation of privilege vulnerability exists in the way that the unistore.dll handles objects in memory, aka 'Windows ...
CVE-2019-1277HIGH7.8An elevation of privilege vulnerability exists in Windows Audio Service when a malformed parameter is processed, aka 'Wi...
CVE-2019-1274MEDIUM5.5An information disclosure vulnerability exists when the Windows kernel fails to properly initialize a memory address, ak...
CVE-2019-1273MEDIUM5.4A cross-site-scripting (XSS) vulnerability exists when Active Directory Federation Services (ADFS) does not properly san...
CVE-2019-1272HIGH7.8An elevation of privilege vulnerability exists when Windows improperly handles calls to Advanced Local Procedure Call (A...
CVE-2019-1271HIGH7.8An elevation of privilege exists in hdAudio.sys which may lead to an out of band write, aka 'Windows Media Elevation of ...
CVE-2019-1270MEDIUM5.5An elevation of privilege vulnerability exists in Windows store installer where WindowsApps directory is vulnerable to s...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now