2019 CVE Vulnerabilities

17,623 CVEs published in 2019.

CVE IDSeverityCVSSDescription
CVE-2019-6571HIGH7.5A vulnerability has been identified in SIEMENS LOGO!8 (6ED1052-xyyxx-0BA8 FS:01 to FS:06 / Firmware version V1.80.xx and...
CVE-2019-6567MEDIUM5.5A vulnerability has been identified in SCALANCE X-200 switch family (incl. SIPLUS NET variants) (All Versions < V5.2.4),...
CVE-2019-3888CRITICAL9.8A vulnerability was found in Undertow web server before 2.0.21. An information exposure of plain text credentials throug...
CVE-2019-3875MEDIUM6.5A vulnerability was found in keycloak before 6.0.2. The X.509 authenticator supports the verification of client certific...
CVE-2019-3873MEDIUM6.4It was found that Picketlink as shipped with Jboss Enterprise Application Platform 7.2 would accept an xinclude paramete...
CVE-2019-3872MEDIUM5.4It was found that a SAMLRequest containing a script could be processed by Picketlink versions shipped in Jboss Applicati...
CVE-2019-10926A vulnerability has been identified in SIMATIC MV400 family (All Versions < V7.0.6). Communication with the device is no...
CVE-2019-10925HIGH7.1A vulnerability has been identified in SIMATIC MV400 family (All Versions < V7.0.6). An authenticated attacker could esc...
CVE-2019-1081MEDIUM4.2An information disclosure vulnerability exists when affected Microsoft browsers improperly handle objects in memory. An ...
CVE-2019-1080HIGH7.5A remote code execution vulnerability exists in the way the scripting engine handles objects in memory in Microsoft brow...
CVE-2019-1069HIGH7.8An elevation of privilege vulnerability exists in the way the Task Scheduler Service validates certain file operations. ...
CVE-2019-1065HIGH7.8An elevation of privilege vulnerability exists when the Windows kernel fails to properly handle objects in memory. An at...
CVE-2019-1064HIGH7.8An elevation of privilege vulnerability exists when Windows AppX Deployment Service (AppXSVC) improperly handles hard li...
CVE-2019-1055HIGH7.5A remote code execution vulnerability exists in the way the scripting engine handles objects in memory in Microsoft brow...
CVE-2019-1054MEDIUM5A security feature bypass vulnerability exists in Edge that allows for bypassing Mark of the Web Tagging (MOTW). Failing...
CVE-2019-1053MEDIUM6.3An elevation of privilege vulnerability exists when the Windows Shell fails to validate folder shortcuts. An attacker wh...
CVE-2019-1052MEDIUM4.2A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Mi...
CVE-2019-1051MEDIUM4.2A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Mi...
CVE-2019-1050MEDIUM4.7An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its m...
CVE-2019-1049MEDIUM4.7An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its m...
CVE-2019-1048MEDIUM4.7An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its m...
CVE-2019-1047MEDIUM4.7An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its m...
CVE-2019-1046MEDIUM4.7An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its m...
CVE-2019-1045HIGH7.8An elevation of privilege vulnerability exists in the way that the Windows Network File System (NFS) handles objects in ...
CVE-2019-1044MEDIUM5.3A security feature bypass vulnerability exists when Windows Secure Kernel Mode fails to properly handle objects in memor...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now