VYPR
High severity7.5NVD Advisory· Published Nov 12, 2019· Updated Jun 17, 2026

CVE-2019-1427

CVE-2019-1427

Description

A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Microsoft Edge (HTML-based), aka 'Scripting Engine Memory Corruption Vulnerability'. This CVE ID is unique from CVE-2019-1426, CVE-2019-1428, CVE-2019-1429.

Affected products

11
  • cpe:2.3:a:microsoft:chakracore:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:microsoft:chakracore:*:*:*:*:*:*:*:*range: <1.11.15
    • (no CPE)range: unspecified
  • Microsoft/Edge2 versions
    cpe:2.3:a:microsoft:edge:-:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:microsoft:edge:-:*:*:*:*:*:*:*
    • (no CPE)
  • Microsoft/Microsoft Edge (EdgeHTML-based) on Windows 10 Version 1809 for 32-bit Systemsv5
    Range: unspecified
  • Microsoft/Microsoft Edge (EdgeHTML-based) on Windows 10 Version 1809 for ARM64-based Systemsv5
    Range: unspecified
  • Microsoft/Microsoft Edge (EdgeHTML-based) on Windows 10 Version 1809 for x64-based Systemsv5
    Range: unspecified
  • Microsoft/Microsoft Edge (EdgeHTML-based) on Windows 10 Version 1903 for 32-bit Systemsv5
    Range: unspecified
  • Microsoft/Microsoft Edge (EdgeHTML-based) on Windows 10 Version 1903 for ARM64-based Systemsv5
    Range: unspecified
  • Microsoft/Microsoft Edge (EdgeHTML-based) on Windows 10 Version 1903 for x64-based Systemsv5
    Range: unspecified
  • Microsoft/Microsoft Edge (EdgeHTML-based) on Windows Server 2019v5
    Range: unspecified

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.