2019 CVE Vulnerabilities

17,623 CVEs published in 2019.

CVE IDSeverityCVSSDescription
CVE-2019-1043MEDIUM6.4A remote code execution vulnerability exists in the way that comctl32.dll handles objects in memory. The vulnerability c...
CVE-2019-1041HIGH7An elevation of privilege vulnerability exists when the Windows kernel fails to properly handle objects in memory. An at...
CVE-2019-1040MEDIUM5.3A tampering vulnerability exists in Microsoft Windows when a man-in-the-middle attacker is able to successfully bypass t...
CVE-2019-1039MEDIUM5.5An information disclosure vulnerability exists when the Windows kernel improperly initializes objects in memory. To expl...
CVE-2019-1038HIGH7.5A remote code execution vulnerability exists in the way that Microsoft browsers access objects in memory. The vulnerabil...
CVE-2019-1036A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a speciall...
CVE-2019-1035HIGH7.8A remote code execution vulnerability exists in Microsoft Word software when it fails to properly handle objects in memo...
CVE-2019-1034A remote code execution vulnerability exists in Microsoft Word software when it fails to properly handle objects in memo...
CVE-2019-1033A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a speciall...
CVE-2019-1032A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a speciall...
CVE-2019-1031A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a speciall...
CVE-2019-1029A denial of service vulnerability exists in Skype for Business. An attacker who successfully exploited the vulnerability...
CVE-2019-1028HIGH7.8An elevation of privilege exists in Windows Audio Service. An attacker who successfully exploited the vulnerability coul...
CVE-2019-1027HIGH7.8An elevation of privilege exists in Windows Audio Service. An attacker who successfully exploited the vulnerability coul...
CVE-2019-1026HIGH7.8An elevation of privilege exists in Windows Audio Service. An attacker who successfully exploited the vulnerability coul...
CVE-2019-1025MEDIUM6.5A denial of service vulnerability exists when Windows improperly handles objects in memory. An attacker who successfully...
CVE-2019-1024MEDIUM4.2A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Mi...
CVE-2019-1023MEDIUM6.5An information disclosure vulnerability exists when the scripting engine does not properly handle objects in memory in M...
CVE-2019-1022HIGH7.8An elevation of privilege exists in Windows Audio Service. An attacker who successfully exploited the vulnerability coul...
CVE-2019-1021HIGH7.8An elevation of privilege exists in Windows Audio Service. An attacker who successfully exploited the vulnerability coul...
CVE-2019-1019HIGH8.5A security feature bypass vulnerability exists where a NETLOGON message is able to obtain the session key and sign messa...
CVE-2019-1018HIGH7An elevation of privilege vulnerability exists when DirectX improperly handles objects in memory. An attacker who succes...
CVE-2019-1017HIGH7An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in ...
CVE-2019-1016MEDIUM4.7An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its m...
CVE-2019-10157MEDIUM4.7It was found that Keycloak's Node.js adapter before version 4.8.3 did not properly verify the web token received from th...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now