2019 CVE Vulnerabilities
17,619 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-1442 | MEDIUM | 5.5 | 2.0% | Nov 12, 2019 | A security feature bypass vulnerability exists when Microsoft Office does not validate URLs.An attacker could send a vic... |
| CVE-2019-1440 | MEDIUM | 5.5 | 2.1% | Nov 12, 2019 | An information disclosure vulnerability exists when the win32k component improperly provides kernel information, aka 'Wi... |
| CVE-2019-1439 | MEDIUM | 6.5 | 75.9% | Nov 12, 2019 | An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its m... |
| CVE-2019-1436 | MEDIUM | 5.5 | 1.8% | Nov 12, 2019 | An information disclosure vulnerability exists when the win32k component improperly provides kernel information, aka 'Wi... |
| CVE-2019-1432 | MEDIUM | 6.5 | 5.2% | Nov 12, 2019 | An information disclosure vulnerability exists when DirectWrite improperly discloses the contents of its memory, aka 'Di... |
| CVE-2019-1425 | MEDIUM | 6.5 | 3.1% | Nov 12, 2019 | An elevation of privilege vulnerability exists when Visual Studio fails to properly validate hardlinks while extracting ... |
| CVE-2019-1413 | MEDIUM | 4.3 | 1.0% | Nov 12, 2019 | A security feature bypass vulnerability exists when Microsoft Edge improperly handles extension requests and fails to re... |
| CVE-2019-1412 | MEDIUM | 5.5 | 1.6% | Nov 12, 2019 | An information disclosure vulnerability exists in Windows Adobe Type Manager Font Driver (ATMFD.dll) when it fails to pr... |
| CVE-2019-1411 | MEDIUM | 6.5 | 4.9% | Nov 12, 2019 | An information disclosure vulnerability exists when DirectWrite improperly discloses the contents of its memory, aka 'Di... |
| CVE-2019-1409 | MEDIUM | 5.5 | 1.3% | Nov 12, 2019 | An information disclosure vulnerability exists when the Windows Remote Procedure Call (RPC) runtime improperly initializ... |
| CVE-2019-1402 | MEDIUM | 5.5 | 2.4% | Nov 12, 2019 | An information disclosure vulnerability exists in Microsoft Office software when the software fails to properly handle o... |
| CVE-2019-1399 | MEDIUM | 6.2 | 1.6% | Nov 12, 2019 | A denial of service vulnerability exists when Microsoft Hyper-V on a host server fails to properly validate input from a... |
| CVE-2019-1391 | MEDIUM | 5.5 | 1.2% | Nov 12, 2019 | A denial of service vulnerability exists when Windows improperly handles objects in memory, aka 'Windows Denial of Servi... |
| CVE-2019-1382 | MEDIUM | 5.5 | 1.2% | Nov 12, 2019 | An elevation of privilege vulnerability exists when ActiveX Installer service may allow access to files without proper a... |
| CVE-2019-1381 | MEDIUM | 5.5 | 1.5% | Nov 12, 2019 | An information disclosure vulnerability exists when the Windows Servicing Stack allows access to unprivileged file locat... |
| CVE-2019-1374 | MEDIUM | 5.5 | 6.6% | Nov 12, 2019 | An information disclosure vulnerability exists in the way Windows Error Reporting (WER) handles objects in memory, aka '... |
| CVE-2019-1370 | MEDIUM | 5.5 | 1.5% | Nov 12, 2019 | An information disclosure vulnerability exists when affected Open Enclave SDK versions improperly handle objects in memo... |
| CVE-2019-1324 | MEDIUM | 5.3 | 4.3% | Nov 12, 2019 | An information disclosure vulnerability exists when the Windows TCP/IP stack improperly handles IPv6 flowlabel filled in... |
| CVE-2019-1310 | MEDIUM | 6.8 | 5.1% | Nov 12, 2019 | A denial of service vulnerability exists when Microsoft Hyper-V Network Switch on a host server fails to properly valida... |
| CVE-2019-1309 | MEDIUM | 6.8 | 5.1% | Nov 12, 2019 | A denial of service vulnerability exists when Microsoft Hyper-V Network Switch on a host server fails to properly valida... |
| CVE-2019-0712 | MEDIUM | 6.8 | 5.2% | Nov 12, 2019 | A denial of service vulnerability exists when Microsoft Hyper-V Network Switch on a host server fails to properly valida... |
| CVE-2019-15815 | MEDIUM | 6.5 | 0.8% | Nov 12, 2019 | ZyXEL P-1302-T10D v3 devices with firmware version 2.00(ABBX.3) and earlier do not properly enforce access control and c... |
| CVE-2019-18926 | MEDIUM | 6.1 | 0.6% | Nov 12, 2019 | Systematic IRIS Standards Management (ISM) v2.1 SP1 89 is vulnerable to unauthenticated reflected Cross Site Scripting (... |
| CVE-2019-18924 | MEDIUM | 5.3 | 1.3% | Nov 12, 2019 | Systematic IRIS WebForms 5.4 is vulnerable to directory traversal. By manipulating variables that reference files with .... |
| CVE-2019-17236 | MEDIUM | 6.1 | 1.0% | Nov 12, 2019 | includes/class-coming-soon-creator.php in the igniteup plugin through 3.4 for WordPress is vulnerable to stored XSS. |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now