VYPR
Medium severity6.5NVD Advisory· Published Apr 9, 2019· Updated Jun 17, 2026

CVE-2019-0746

CVE-2019-0746

Description

An information disclosure vulnerability exists when the scripting engine does not properly handle objects in memory in Microsoft Edge, aka 'Scripting Engine Information Disclosure Vulnerability'.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected packages

Versions sourced from the GitHub Security Advisory.

PackageAffected versionsPatched versions
Microsoft.ChakraCoreNuGet
< 1.11.71.11.7

Affected products

11
  • ghsa-coords
    Range: < 1.11.7
  • Microsoft/Internet Explorercpe-rescue6 versions
    Windows Server 2008 for 32-bit Systems Service Pack 2+ 5 more
    • (no CPE)range: Windows Server 2008 for 32-bit Systems Service Pack 2
    • (no CPE)range: Windows 7 for 32-bit Systems Service Pack 1
    • (no CPE)range: Windows Server 2008 R2 for x64-based Systems Service Pack 1
    • cpe:2.3:a:microsoft:internet_explorer:10:*:*:*:*:*:*:*
    • cpe:2.3:a:microsoft:internet_explorer:11:-:*:*:*:*:*:*
    • cpe:2.3:a:microsoft:internet_explorer:9:*:*:*:*:*:*:*
  • Microsoft/Chakracorecpe-rescue2 versions
    Windows 10 for 32-bit Systems+ 1 more
    • (no CPE)range: Windows 10 for 32-bit Systems
    • cpe:2.3:a:microsoft:chakracore:-:*:*:*:*:*:*:*
  • Microsoft/Edgecpe-rescue2 versions
    Windows Server 2012+ 1 more
    • (no CPE)range: Windows Server 2012
    • cpe:2.3:a:microsoft:edge:-:*:*:*:*:*:*:*

Patches

Vulnerability mechanics

References

3

News mentions

0

No linked articles in our index yet.