2019 CVE Vulnerabilities
17,623 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-1043 | MEDIUM | 6.4 | 3.0% | Jun 12, 2019 | A remote code execution vulnerability exists in the way that comctl32.dll handles objects in memory. The vulnerability c... |
| CVE-2019-1041 | HIGH | 7 | 1.0% | Jun 12, 2019 | An elevation of privilege vulnerability exists when the Windows kernel fails to properly handle objects in memory. An at... |
| CVE-2019-1040 | MEDIUM | 5.3 | 48.0% | Jun 12, 2019 | A tampering vulnerability exists in Microsoft Windows when a man-in-the-middle attacker is able to successfully bypass t... |
| CVE-2019-1039 | MEDIUM | 5.5 | 1.4% | Jun 12, 2019 | An information disclosure vulnerability exists when the Windows kernel improperly initializes objects in memory. To expl... |
| CVE-2019-1038 | HIGH | 7.5 | 3.3% | Jun 12, 2019 | A remote code execution vulnerability exists in the way that Microsoft browsers access objects in memory. The vulnerabil... |
| CVE-2019-1036 | — | — | 1.7% | Jun 12, 2019 | A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a speciall... |
| CVE-2019-1035 | HIGH | 7.8 | 6.6% | Jun 12, 2019 | A remote code execution vulnerability exists in Microsoft Word software when it fails to properly handle objects in memo... |
| CVE-2019-1034 | — | — | 4.9% | Jun 12, 2019 | A remote code execution vulnerability exists in Microsoft Word software when it fails to properly handle objects in memo... |
| CVE-2019-1033 | — | — | 1.7% | Jun 12, 2019 | A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a speciall... |
| CVE-2019-1032 | — | — | 1.7% | Jun 12, 2019 | A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a speciall... |
| CVE-2019-1031 | — | — | 1.7% | Jun 12, 2019 | A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a speciall... |
| CVE-2019-1029 | — | — | 5.3% | Jun 12, 2019 | A denial of service vulnerability exists in Skype for Business. An attacker who successfully exploited the vulnerability... |
| CVE-2019-1028 | HIGH | 7.8 | 0.9% | Jun 12, 2019 | An elevation of privilege exists in Windows Audio Service. An attacker who successfully exploited the vulnerability coul... |
| CVE-2019-1027 | HIGH | 7.8 | 0.9% | Jun 12, 2019 | An elevation of privilege exists in Windows Audio Service. An attacker who successfully exploited the vulnerability coul... |
| CVE-2019-1026 | HIGH | 7.8 | 0.9% | Jun 12, 2019 | An elevation of privilege exists in Windows Audio Service. An attacker who successfully exploited the vulnerability coul... |
| CVE-2019-1025 | MEDIUM | 6.5 | 5.4% | Jun 12, 2019 | A denial of service vulnerability exists when Windows improperly handles objects in memory. An attacker who successfully... |
| CVE-2019-1024 | MEDIUM | 4.2 | 2.4% | Jun 12, 2019 | A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Mi... |
| CVE-2019-1023 | MEDIUM | 6.5 | 5.4% | Jun 12, 2019 | An information disclosure vulnerability exists when the scripting engine does not properly handle objects in memory in M... |
| CVE-2019-1022 | HIGH | 7.8 | 0.9% | Jun 12, 2019 | An elevation of privilege exists in Windows Audio Service. An attacker who successfully exploited the vulnerability coul... |
| CVE-2019-1021 | HIGH | 7.8 | 0.9% | Jun 12, 2019 | An elevation of privilege exists in Windows Audio Service. An attacker who successfully exploited the vulnerability coul... |
| CVE-2019-1019 | HIGH | 8.5 | 15.1% | Jun 12, 2019 | A security feature bypass vulnerability exists where a NETLOGON message is able to obtain the session key and sign messa... |
| CVE-2019-1018 | HIGH | 7 | 0.9% | Jun 12, 2019 | An elevation of privilege vulnerability exists when DirectX improperly handles objects in memory. An attacker who succes... |
| CVE-2019-1017 | HIGH | 7 | 0.9% | Jun 12, 2019 | An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in ... |
| CVE-2019-1016 | MEDIUM | 4.7 | 4.3% | Jun 12, 2019 | An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its m... |
| CVE-2019-10157 | MEDIUM | 4.7 | 0.2% | Jun 12, 2019 | It was found that Keycloak's Node.js adapter before version 4.8.3 did not properly verify the web token received from th... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now