Skip to content
Appaloosa Scout
Language selector
fr en

Vulnerabilities

Tracked app vulnerabilities

318 CVEs affect a tracked app or OS (all severities, Windows). 213 of them are in the CISA KEV catalog, meaning exploitation is confirmed.

Matching CVEs
318
Actively exploited
213
Publication window
2004-08-06 → 2026-04-14

Chronological sort: newest to oldest. Use the KEV / severity filters above to prioritize.

318 entries Windows Public exploit Clear all
CVE
CVE-2019-1245
HIGH 6.5

DirectWrite Information Disclosure Vulnerability

CVE-2019-1244
HIGH 6.5

DirectWrite Information Disclosure Vulnerability

CVE-2019-1215
HIGH 7.8 KEV

Windows Elevation of Privilege Vulnerability

CVE-2019-1184
HIGH 6.7

Windows Elevation of Privilege Vulnerability

CVE-2019-1170
HIGH 7.9

Windows NTFS Elevation of Privilege Vulnerability

CVE-2019-1153
HIGH 5.5

Microsoft Graphics Component Information Disclosure Vulnerability

CVE-2019-1152
CRITICAL 8.8

Microsoft Graphics Remote Code Execution Vulnerability

CVE-2019-1151
CRITICAL 8.8

Microsoft Graphics Remote Code Execution Vulnerability

CVE-2019-1150
CRITICAL 8.8

Microsoft Graphics Remote Code Execution Vulnerability

CVE-2019-1149
CRITICAL 8.8

Microsoft Graphics Remote Code Execution Vulnerability

CVE-2019-1148
HIGH 5.5

Microsoft Graphics Component Information Disclosure Vulnerability

CVE-2019-1145
CRITICAL 8.8

Microsoft Graphics Remote Code Execution Vulnerability

CVE-2019-1144
CRITICAL 8.8

Microsoft Graphics Remote Code Execution Vulnerability

CVE-2019-1125
HIGH 5.6

Windows Kernel Information Disclosure Vulnerability

CVE-2019-9816
MEDIUM 5.9 1 app

A possible vulnerability exists where type confusion can occur when manipulating JavaScript objects in object groups, allowing for the bypassing of security ch…

CVE-2019-11708
CRITICAL 10.0 KEV 1 app

Insufficient vetting of parameters passed with the Prompt:Open IPC message between child and parent processes can result in the non-sandboxed parent process op…

CVE-2019-11707
HIGH 8.8 KEV 1 app

A type confusion vulnerability can occur when manipulating JavaScript objects due to issues in Array.pop. This can allow for an exploitable crash. We are aware…

CVE-2019-11706
HIGH 7.5 1 app

A flaw in Thunderbird's implementation of iCal causes a type confusion in icaltimezone_get_vtimezone_properties when processing certain email messages, resulti…

CVE-2019-11705
CRITICAL 9.8 1 app

A flaw in Thunderbird's implementation of iCal causes a stack buffer overflow in icalrecur_add_bydayrules when processing certain email messages, resulting in …

CVE-2019-11704
CRITICAL 9.8 1 app

A flaw in Thunderbird's implementation of iCal causes a heap buffer overflow in icalmemory_strdup_and_dequote when processing certain email messages, resulting…

CVE-2019-11703
CRITICAL 9.8 1 app

A flaw in Thunderbird's implementation of iCal causes a heap buffer overflow in parser_get_next_char when processing certain email messages, resulting in a pot…

CVE-2019-1128
HIGH 7.8

DirectWrite Remote Code Execution Vulnerability

CVE-2019-1127
HIGH 7.8

DirectWrite Remote Code Execution Vulnerability

CVE-2019-1124
HIGH 7.8

DirectWrite Remote Code Execution Vulnerability

CVE-2019-1123
HIGH 7.8

DirectWrite Remote Code Execution Vulnerability

CVE-2019-1122
HIGH 7.8

DirectWrite Remote Code Execution Vulnerability

CVE-2019-1121
HIGH 7.8

DirectWrite Remote Code Execution Vulnerability

CVE-2019-1120
HIGH 7.8

DirectWrite Remote Code Execution Vulnerability

CVE-2019-1119
HIGH 7.8

DirectWrite Remote Code Execution Vulnerability

CVE-2019-1118
HIGH 7.8

DirectWrite Remote Code Execution Vulnerability

CVE-2019-1117
HIGH 7.8

DirectWrite Remote Code Execution Vulnerability

CVE-2019-1089
HIGH 7.8

Windows RPCSS Elevation of Privilege Vulnerability

CVE-2019-1019
HIGH 8.5

Microsoft Windows Security Feature Bypass Vulnerability

CVE-2019-0959
HIGH 7.0

Windows Common Log File System Driver Elevation of Privilege Vulnerability

CVE-2019-0948
MEDIUM 4.7

Windows Event Viewer Information Disclosure Vulnerability

CVE-2019-0943
HIGH 7.8

Windows ALPC Elevation of Privilege Vulnerability

CVE-2019-0881
HIGH 8.8

Windows Kernel Elevation of Privilege Vulnerability

CVE-2019-0863
HIGH 7.8 KEV

Windows Error Reporting Elevation of Privilege Vulnerability

CVE-2019-9813
HIGH 8.8 1 app

Incorrect handling of __proto__ mutations may lead to type confusion in IonMonkey JIT code and can be leveraged for arbitrary memory read and write. This vulne…

CVE-2019-9810
HIGH 8.8 1 app

Incorrect alias information in IonMonkey JIT compiler for Array.prototype.slice method may lead to missing bounds check and a buffer overflow. This vulnerabili…

CVE-2019-9792
CRITICAL 9.8 1 app

The IonMonkey just-in-time (JIT) compiler can leak an internal JS_OPTIMIZED_OUT magic value to the running script during a bailout. This magic value can then b…

CVE-2019-9791
CRITICAL 9.8 1 app

The type inference system allows the compilation of functions that can cause type confusions between arbitrary objects when compiled through the IonMonkey just…

CVE-2019-0841
HIGH 6.8 KEV

Windows Elevation of Privilege Vulnerability

CVE-2019-0836
HIGH 7.0

Windows Elevation of Privilege Vulnerability

CVE-2019-0805
HIGH 6.7

Windows Elevation of Privilege Vulnerability

CVE-2019-0803
HIGH 7.0 KEV

Win32k Elevation of Privilege Vulnerability

CVE-2019-0796
HIGH 6.3

Windows Elevation of Privilege Vulnerability

CVE-2019-0735
HIGH 7.0

Windows CSRSS Elevation of Privilege Vulnerability

CVE-2019-0732
HIGH 5.3

Windows Security Feature Bypass Vulnerability

CVE-2019-0731
HIGH 6.8

Windows Elevation of Privilege Vulnerability