2019 CVE Vulnerabilities

17,619 CVEs published in 2019.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2019-1442MEDIUM5.5A security feature bypass vulnerability exists when Microsoft Office does not validate URLs.An attacker could send a vic...
CVE-2019-1440MEDIUM5.5An information disclosure vulnerability exists when the win32k component improperly provides kernel information, aka 'Wi...
CVE-2019-1439MEDIUM6.5An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its m...
CVE-2019-1436MEDIUM5.5An information disclosure vulnerability exists when the win32k component improperly provides kernel information, aka 'Wi...
CVE-2019-1432MEDIUM6.5An information disclosure vulnerability exists when DirectWrite improperly discloses the contents of its memory, aka 'Di...
CVE-2019-1425MEDIUM6.5An elevation of privilege vulnerability exists when Visual Studio fails to properly validate hardlinks while extracting ...
CVE-2019-1413MEDIUM4.3A security feature bypass vulnerability exists when Microsoft Edge improperly handles extension requests and fails to re...
CVE-2019-1412MEDIUM5.5An information disclosure vulnerability exists in Windows Adobe Type Manager Font Driver (ATMFD.dll) when it fails to pr...
CVE-2019-1411MEDIUM6.5An information disclosure vulnerability exists when DirectWrite improperly discloses the contents of its memory, aka 'Di...
CVE-2019-1409MEDIUM5.5An information disclosure vulnerability exists when the Windows Remote Procedure Call (RPC) runtime improperly initializ...
CVE-2019-1402MEDIUM5.5An information disclosure vulnerability exists in Microsoft Office software when the software fails to properly handle o...
CVE-2019-1399MEDIUM6.2A denial of service vulnerability exists when Microsoft Hyper-V on a host server fails to properly validate input from a...
CVE-2019-1391MEDIUM5.5A denial of service vulnerability exists when Windows improperly handles objects in memory, aka 'Windows Denial of Servi...
CVE-2019-1382MEDIUM5.5An elevation of privilege vulnerability exists when ActiveX Installer service may allow access to files without proper a...
CVE-2019-1381MEDIUM5.5An information disclosure vulnerability exists when the Windows Servicing Stack allows access to unprivileged file locat...
CVE-2019-1374MEDIUM5.5An information disclosure vulnerability exists in the way Windows Error Reporting (WER) handles objects in memory, aka '...
CVE-2019-1370MEDIUM5.5An information disclosure vulnerability exists when affected Open Enclave SDK versions improperly handle objects in memo...
CVE-2019-1324MEDIUM5.3An information disclosure vulnerability exists when the Windows TCP/IP stack improperly handles IPv6 flowlabel filled in...
CVE-2019-1310MEDIUM6.8A denial of service vulnerability exists when Microsoft Hyper-V Network Switch on a host server fails to properly valida...
CVE-2019-1309MEDIUM6.8A denial of service vulnerability exists when Microsoft Hyper-V Network Switch on a host server fails to properly valida...
CVE-2019-0712MEDIUM6.8A denial of service vulnerability exists when Microsoft Hyper-V Network Switch on a host server fails to properly valida...
CVE-2019-15815MEDIUM6.5ZyXEL P-1302-T10D v3 devices with firmware version 2.00(ABBX.3) and earlier do not properly enforce access control and c...
CVE-2019-18926MEDIUM6.1Systematic IRIS Standards Management (ISM) v2.1 SP1 89 is vulnerable to unauthenticated reflected Cross Site Scripting (...
CVE-2019-18924MEDIUM5.3Systematic IRIS WebForms 5.4 is vulnerable to directory traversal. By manipulating variables that reference files with ....
CVE-2019-17236MEDIUM6.1includes/class-coming-soon-creator.php in the igniteup plugin through 3.4 for WordPress is vulnerable to stored XSS.

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now