CVE-2019-0746

MEDIUM

Microsoft Edge - Information Disclosure via Scripting Engine Memory Handling

Title source: llm
STIX 2.1

Description

An information disclosure vulnerability exists when the scripting engine does not properly handle objects in memory in Microsoft Edge, aka 'Scripting Engine Information Disclosure Vulnerability'.

References (1)

Core 1
Core References

Scores

CVSS v3 6.5
EPSS 0.2251
EPSS Percentile 95.9%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N

Details

Status published
Products (6)
microsoft/chakracore
microsoft/edge
microsoft/internet_explorer 10
microsoft/internet_explorer 11
microsoft/internet_explorer 9
nuget/Microsoft.ChakraCore 0 - 1.11.7NuGet
Published Apr 09, 2019
Tracked Since Feb 18, 2026