CVE Datenbank

Durchsuchbare Datenbank mit Sicherheitslücken. Filtere nach Hersteller, Schweregrad oder Zeitraum.

Zurücksetzen
324 CVEs gefunden (Seite 1/2)

CVE-2026-72970 - Heap-based buffer overflow in Microsoft Edge (Chromium-based) allows an unauthorized attacker to exe

🏢 Microsoft 📅 14.8.2026 📊 CVSS: 8.3
8.3

CVE-2026-46671 - Rust OneNote File Parser is a parser for Microsoft OneNote files implemented in Rust. Prior to versi

🏢 Microsoft 📅 20.7.2026 📊 CVSS: 4.4
4.4

CVE-2026-57980 - Authentication bypass using an alternate path or channel in Microsoft Edge (Chromium-based) allows a

🏢 Microsoft 📅 17.7.2026 📊 CVSS: 5.4
5.4

CVE-2026-21770 - HCL Traveler for Microsoft Outlook (HTMO) is susceptible to a DLL hijacking vulnerability which coul

🏢 Microsoft 📅 17.7.2026 📊 CVSS: 6.5
6.5

CVE-2026-62826 - Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Of

🏢 Microsoft 📅 16.7.2026 📊 CVSS: 4.6
4.6

CVE-2026-59864 - Kiota is an OpenAPI based HTTP Client code generator. Prior to 1.32.5, `kiota plugin add` and `kiota

🏢 Microsoft 📅 16.7.2026 📊 CVSS: 0.0
0.0

CVE-2026-55440 - Microsoft UFO open-source framework for intelligent automation across devices and platforms. Prior t

🏢 Microsoft 📅 16.7.2026 📊 CVSS: 6.5
6.5

CVE-2026-54568 - Microsoft UFO open-source framework for intelligent automation across devices and platforms. From 3.

🏢 Microsoft 📅 16.7.2026 📊 CVSS: 4.3
4.3

CVE-2026-61371 - Microsoft AVML before 0.17.0 could follow a symlink when opening a destination output path on Unix,

🏢 Microsoft 📅 15.7.2026 📊 CVSS: 7.5
7.5

CVE-2026-47301 - Improper access control in Microsoft Configuration Manager allows an authorized attacker to elevate

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 8.8
8.8

CVE-2026-58617 - Improper access control in Microsoft 365 Copilot for iOS allows an unauthorized attacker to elevate

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 8.1
8.1

CVE-2026-58537 - Use after free in Microsoft NAT Helper Components (ipnathlp.dll) allows an authorized attacker to el

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 7.8
7.8

CVE-2026-58534 - Heap-based buffer overflow in Microsoft Input Method Editor (IME) allows an authorized attacker to e

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 8.8
8.8

CVE-2026-58277 - Improper authorization in Microsoft Office SharePoint allows an authorized attacker to elevate privi

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 8.8
8.8

CVE-2026-57094 - Heap-based buffer overflow in Microsoft Windows Media Foundation allows an unauthorized attacker to

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 8.8
8.8

CVE-2026-57090 - Heap-based buffer overflow in Microsoft Windows Media Foundation allows an unauthorized attacker to

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 8.8
8.8

CVE-2026-57087 - Heap-based buffer overflow in Microsoft Windows Media Foundation allows an unauthorized attacker to

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 8.8
8.8

CVE-2026-57083 - Use of uninitialized resource in Microsoft Windows Codecs Library allows an unauthorized attacker to

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 5.5
5.5

CVE-2026-56642 - Stack-based buffer overflow in Microsoft Fabric Data Warehouse allows an authorized attacker to exec

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 8.8
8.8

CVE-2026-56195 - Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information local

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 5.5
5.5

CVE-2026-56192 - Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information local

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 5.5
5.5

CVE-2026-56189 - Heap-based buffer overflow in Microsoft Windows Media Foundation allows an unauthorized attacker to

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 7.8
7.8

CVE-2026-56178 - Time-of-check time-of-use (toctou) race condition in Microsoft Defender for Endpoint allows an autho

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 5.5
5.5

CVE-2026-56157 - Improper access control in Microsoft Office SharePoint allows an authorized attacker to perform spoo

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 5.4
5.4

CVE-2026-56156 - Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 7.8
7.8

CVE-2026-55949 - Use of uninitialized resource in Microsoft Office Excel allows an unauthorized attacker to execute c

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 7.8
7.8

CVE-2026-55947 - Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 7.8
7.8

CVE-2026-55944 - Deserialization of untrusted data in Microsoft Dynamics NAV allows an unauthorized attacker to execu

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 9.8
9.8

CVE-2026-55898 - Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 6.1
6.1

CVE-2026-55142 - Numeric truncation error in Microsoft Office Word allows an unauthorized attacker to disclose inform

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 5.5
5.5

CVE-2026-55141 - Stack-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute cod

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 7.8
7.8

CVE-2026-55140 - Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code local

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 7.8
7.8

CVE-2026-55139 - Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information local

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 5.5
5.5

CVE-2026-55138 - Untrusted pointer dereference in Microsoft Office Excel allows an unauthorized attacker to disclose

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 5.5
5.5

CVE-2026-55137 - Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 7.8
7.8

CVE-2026-55136 - Untrusted pointer dereference in Microsoft Office Excel allows an unauthorized attacker to execute c

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 7.8
7.8

CVE-2026-55135 - Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Of

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 4.6
4.6

CVE-2026-55134 - Stack-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 7.8
7.8

CVE-2026-55133 - Heap-based buffer overflow in Microsoft Office OneNote allows an unauthorized attacker to execute co

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 7.8
7.8

CVE-2026-55132 - Double free in Microsoft Office Word allows an unauthorized attacker to execute code locally.

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 7.8
7.8

CVE-2026-55131 - Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 7.8
7.8

CVE-2026-55130 - Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 7.8
7.8

CVE-2026-55129 - Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code local

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 7.8
7.8

CVE-2026-55128 - Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally.

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 7.8
7.8

CVE-2026-55127 - Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 7.8
7.8

CVE-2026-55126 - Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Of

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 7.3
7.3

CVE-2026-55125 - Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code local

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 7.8
7.8

CVE-2026-55124 - Improper validation of specified type of input in Microsoft Office Word allows an unauthorized attac

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 5.5
5.5

CVE-2026-55123 - Heap-based buffer overflow in Microsoft Office PowerPoint allows an unauthorized attacker to execute

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 7.8
7.8

CVE-2026-55122 - Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 7.1
7.1

CVE-2026-55121 - Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information local

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 5.5
5.5

CVE-2026-55120 - Heap-based buffer overflow in Microsoft Office PowerPoint allows an unauthorized attacker to execute

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 7.8
7.8

CVE-2026-55058 - Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to execute code locally

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 7.8
7.8

CVE-2026-55057 - Integer overflow or wraparound in Microsoft Office allows an unauthorized attacker to disclose infor

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 5.5
5.5

CVE-2026-55056 - Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code local

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 7.8
7.8

CVE-2026-55055 - Stack-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 7.8
7.8

CVE-2026-55054 - Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 6.5
6.5

CVE-2026-55053 - Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 7.8
7.8

CVE-2026-55052 - Missing authorization in Microsoft Office SharePoint allows an authorized attacker to elevate privil

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 8.8
8.8

CVE-2026-55051 - Server-side request forgery (ssrf) in Microsoft Office SharePoint allows an authorized attacker to d

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 6.5
6.5

CVE-2026-55050 - Out-of-bounds read in Microsoft Office Word allows an unauthorized attacker to disclose information

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 5.5
5.5

CVE-2026-55049 - Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code local

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 7.8
7.8

CVE-2026-55048 - Integer overflow or wraparound in Microsoft Office Excel allows an unauthorized attacker to execute

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 7.8
7.8

CVE-2026-55047 - Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information local

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 5.5
5.5

CVE-2026-55046 - Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 5.5
5.5

CVE-2026-55045 - Out-of-bounds read in Microsoft Office allows an unauthorized attacker to execute code locally.

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 8.4
8.4

CVE-2026-55044 - Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to execute code locally

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 7.8
7.8

CVE-2026-55043 - Heap-based buffer overflow in Microsoft Office PowerPoint allows an unauthorized attacker to execute

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 7.8
7.8

CVE-2026-55042 - Use of uninitialized resource in Microsoft Office allows an unauthorized attacker to disclose inform

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 5.5
5.5

CVE-2026-55041 - Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 7.8
7.8

CVE-2026-55040 - Weak authentication in Microsoft Office SharePoint allows an unauthorized attacker to bypass a secur

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 9.1
9.1

CVE-2026-55039 - Integer underflow (wrap or wraparound) in Microsoft Office Excel allows an unauthorized attacker to

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 7.8
7.8

CVE-2026-55038 - Stack-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 7.8
7.8

CVE-2026-55037 - Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 7.8
7.8

CVE-2026-55036 - Buffer over-read in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 7.8
7.8

CVE-2026-55035 - Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information local

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 5.5
5.5

CVE-2026-55034 - Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Of

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 7.3
7.3

CVE-2026-55033 - Integer overflow or wraparound in Microsoft Office Word allows an unauthorized attacker to execute c

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 7.8
7.8

CVE-2026-55032 - Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally.

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 7.8
7.8

CVE-2026-55031 - Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to execute code locally

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 7.8
7.8

CVE-2026-55030 - Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Of

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 4.6
4.6

CVE-2026-55029 - Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 7.8
7.8

CVE-2026-55028 - Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information local

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 5.5
5.5

CVE-2026-55027 - Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information local

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 5.5
5.5

CVE-2026-55026 - Integer overflow or wraparound in Microsoft Office allows an unauthorized attacker to disclose infor

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 6.2
6.2

CVE-2026-55025 - Access of resource using incompatible type ('type confusion') in Microsoft Office Excel allows an un

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 7.8
7.8

CVE-2026-55024 - Access of resource using incompatible type ('type confusion') in Microsoft Office Excel allows an un

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 7.8
7.8

CVE-2026-55023 - Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information local

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 5.5
5.5

CVE-2026-55022 - Access of resource using incompatible type ('type confusion') in Microsoft Office allows an unauthor

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 7.8
7.8

CVE-2026-55021 - Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Of

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 7.3
7.3

CVE-2026-55020 - Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Of

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 4.6
4.6

CVE-2026-55019 - Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Of

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 4.6
4.6

CVE-2026-55018 - Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 7.8
7.8

CVE-2026-55017 - Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code local

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 7.8
7.8

CVE-2026-55016 - Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Of

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 4.6
4.6

CVE-2026-54131 - Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 7.8
7.8

CVE-2026-50679 - Heap-based buffer overflow in Microsoft Windows Search Component allows an authorized attacker to el

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 7.8
7.8

CVE-2026-50665 - Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information local

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 7.8
7.8

CVE-2026-50658 - Time-of-check time-of-use (toctou) race condition in Microsoft Defender allows an authorized attacke

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 7.0
7.0

CVE-2026-50657 - Exposure of private personal information to an unauthorized actor in Microsoft Defender allows an au

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 4.7
4.7

CVE-2026-50495 - Improper access control in Microsoft Windows DNS allows an authorized attacker to perform tampering

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 6.1
6.1

CVE-2026-50487 - Use after free in Microsoft Windows DNS allows an unauthorized attacker to elevate privileges over a

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 8.1
8.1

CVE-2026-50483 - Exposure of sensitive information to an unauthorized actor in Microsoft Graphics Component allows an

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 5.5
5.5

CVE-2026-50476 - Use after free in Microsoft Windows allows an authorized attacker to elevate privileges locally.

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 7.8
7.8

CVE-2026-50467 - Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 7.8
7.8

CVE-2026-50465 - Improper access control in Microsoft Windows DNS allows an authorized attacker to perform tampering

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 7.1
7.1

CVE-2026-50458 - Use after free in Microsoft Brokering File System allows an authorized attacker to elevate privilege

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 7.8
7.8

CVE-2026-50439 - Use after free in Microsoft Message Queuing Queue Manager allows an unauthorized attacker to execute

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 8.1
8.1

CVE-2026-50438 - Improper link resolution before file access ('link following') in Microsoft PC Manager allows an aut

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 8.8
8.8

CVE-2026-50408 - Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 5.5
5.5

CVE-2026-50373 - Improper access control in Microsoft Windows Search Component allows an authorized attacker to eleva

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 7.8
7.8

CVE-2026-50361 - Double free in Microsoft Brokering File System allows an authorized attacker to elevate privileges l

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 7.8
7.8

CVE-2026-50359 - Use after free in Microsoft XML Core Services allows an authorized attacker to elevate privileges lo

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 7.0
7.0

CVE-2026-50343 - Improper privilege management in Microsoft Install Service allows an authorized attacker to elevate

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 7.8
7.8

CVE-2026-50314 - Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 7.8
7.8

CVE-2026-50305 - Use after free in Microsoft Brokering File System allows an authorized attacker to elevate privilege

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 7.8
7.8

CVE-2026-50301 - Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code local

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 7.8
7.8

CVE-2026-48580 - Untrusted pointer dereference in Microsoft Office Excel allows an unauthorized attacker to disclose

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 5.5
5.5

CVE-2026-47642 - Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 7.8
7.8

CVE-2026-47290 - Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 7.8
7.8

CVE-2026-58644 - Deserialization of untrusted data in Microsoft Office SharePoint allows an unauthorized attacker to

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 9.8
9.8

CVE-2026-58618 - Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 7.8
7.8

CVE-2026-58610 - Heap-based buffer overflow in Microsoft Windows Media Foundation allows an unauthorized attacker to

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 7.8
7.8

CVE-2026-58609 - Out-of-bounds read in Microsoft Graphics Component allows an unauthorized attacker to execute code l

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 7.8
7.8

CVE-2026-58595 - Improper restriction of rendered ui layers or frames in Microsoft Bing App for IOS allows an unautho

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 8.1
8.1

CVE-2026-57097 - Untrusted search path in Microsoft XML allows an unauthorized attacker to bypass a security feature

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 6.4
6.4

CVE-2026-56193 - Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information local

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 7.1
7.1

CVE-2026-56164 - Missing authentication for critical function in Microsoft Office SharePoint allows an unauthorized a

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 5.3
5.3

CVE-2026-55948 - Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 7.8
7.8

CVE-2026-55899 - Stack-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute cod

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 7.8
7.8

CVE-2026-55012 - Integer overflow or wraparound in Microsoft Defender allows an unauthorized attacker to execute code

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 7.8
7.8

CVE-2026-55011 - Integer underflow (wrap or wraparound) in Microsoft Defender allows an unauthorized attacker to exec

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 7.8
7.8

CVE-2026-55009 - Deserialization of untrusted data in Microsoft Exchange Server allows an authorized attacker to elev

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 7.8
7.8

CVE-2026-55008 - Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Ex

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 9.6
9.6

CVE-2026-55006 - Insufficient granularity of access control in Microsoft Exchange Server allows an authorized attacke

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 7.8
7.8

CVE-2026-55005 - Heap-based buffer overflow in Microsoft Exchange Server allows an authorized attacker to execute cod

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 8.8
8.8

CVE-2026-55004 - Double free in Microsoft Printer Drivers allows an authorized attacker to elevate privileges locally

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 7.8
7.8

CVE-2026-54993 - Heap-based buffer overflow in Microsoft Windows Media Foundation allows an unauthorized attacker to

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 7.8
7.8

CVE-2026-54988 - Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 6.1
6.1

CVE-2026-54108 - External control of file name or path in Microsoft Office SharePoint allows an authorized attacker t

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 6.5
6.5

CVE-2026-50678 - Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to disclose inf

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 6.6
6.6

CVE-2026-50675 - Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 7.8
7.8

CVE-2026-50522 - Deserialization of untrusted data in Microsoft Office SharePoint allows an unauthorized attacker to

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 9.8
9.8

CVE-2026-50356 - Concurrent execution using shared resource with improper synchronization ('race condition') in Micro

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 7.0
7.0

CVE-2026-50295 - Improper privilege management in Microsoft Windows DNS allows an authorized attacker to bypass a sec

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 5.5
5.5

CVE-2026-49784 - Concurrent execution using shared resource with improper synchronization ('race condition') in Micro

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 7.0
7.0

CVE-2026-49174 - Missing authentication for critical function in Microsoft Windows DNS allows an authorized attacker

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 6.1
6.1

CVE-2026-49171 - Use after free in Microsoft Windows Speech allows an authorized attacker to elevate privileges local

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 7.5
7.5

CVE-2026-49166 - Use after free in Microsoft Printer Drivers allows an authorized attacker to elevate privileges loca

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 7.8
7.8

CVE-2026-49165 - Use of uninitialized resource in Microsoft Windows App Store allows an authorized attacker to disclo

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 7.1
7.1

CVE-2026-49162 - Use after free in Microsoft Brokering File System allows an authorized attacker to elevate privilege

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 7.0
7.0

CVE-2026-48581 - Insufficient granularity of access control in Microsoft Surface allows an authorized attacker to ele

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 7.8
7.8

CVE-2026-48561 - Improper neutralization of special elements used in a command ('command injection') in Copilot Chat

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 9.6
9.6

CVE-2026-0487 - SAProuter on Microsoft Windows allows an unauthenticated attacker to load library (DLL) files from a

🏢 Microsoft 📅 14.7.2026 📊 CVSS: 8.4
8.4

CVE-2026-58596 - Untrusted pointer dereference in Microsoft Edge (Chromium-based) allows an unauthorized attacker to

🏢 Microsoft 📅 12.7.2026 📊 CVSS: 8.3
8.3

CVE-2026-58281 - Deserialization of untrusted data in Microsoft Edge (Chromium-based) allows an unauthorized attacker

🏢 Microsoft 📅 11.7.2026 📊 CVSS: 8.3
8.3

CVE-2026-59162 - Excelize is a Go language library for reading and writing Microsoft Excel spreadsheets. Prior to 2.1

🏢 Microsoft 📅 10.7.2026 📊 CVSS: 7.5
7.5

CVE-2026-59161 - Excelize is a Go language library for reading and writing Microsoft Excel spreadsheets. Prior to 2.1

🏢 Microsoft 📅 10.7.2026 📊 CVSS: 7.5
7.5

CVE-2026-54063 - Excelize is a Go language library for reading and writing Microsoft Excel spreadsheets. Prior to 2.1

🏢 Microsoft 📅 10.7.2026 📊 CVSS: 7.5
7.5

CVE-2026-58525 - Improper access control in Microsoft Edge (Chromium-based) allows an unauthorized attacker to bypass

🏢 Microsoft 📅 8.7.2026 📊 CVSS: 8.2
8.2

CVE-2026-54893 - URL path injection in the Microsoft Graph adapter of Swoosh. Swoosh.Adapters.MsGraph builds its Micr

🏢 Microsoft 📅 6.7.2026 📊 CVSS: 0.0
0.0

CVE-2026-58523 - Improper access control in Microsoft Edge for Android allows an unauthorized attacker to bypass a se

🏢 Microsoft 📅 3.7.2026 📊 CVSS: 6.5
6.5

CVE-2026-58597 - Insufficient ui warning of dangerous operations in Microsoft Edge (Chromium-based) allows an unautho

🏢 Microsoft 📅 3.7.2026 📊 CVSS: 4.3
4.3

CVE-2026-58524 - Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Ed

🏢 Microsoft 📅 3.7.2026 📊 CVSS: 5.4
5.4

CVE-2026-58522 - Relative path traversal in Microsoft Edge for Android allows an unauthorized attacker to disclose in

🏢 Microsoft 📅 3.7.2026 📊 CVSS: 6.8
6.8

CVE-2026-58300 - Absolute path traversal in Microsoft Edge for Android allows an unauthorized attacker to disclose in

🏢 Microsoft 📅 3.7.2026 📊 CVSS: 6.2
6.2

CVE-2026-58299 - Time-of-check time-of-use (toctou) race condition in Microsoft Edge for Android allows an unauthoriz

🏢 Microsoft 📅 3.7.2026 📊 CVSS: 7.5
7.5

CVE-2026-58298 - Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Ed

🏢 Microsoft 📅 3.7.2026 📊 CVSS: 7.2
7.2

CVE-2026-58297 - Exposure of private personal information to an unauthorized actor in Microsoft Edge for Android allo

🏢 Microsoft 📅 3.7.2026 📊 CVSS: 7.1
7.1

CVE-2026-58296 - Exposure of private personal information to an unauthorized actor in Microsoft Edge for Android allo

🏢 Microsoft 📅 3.7.2026 📊 CVSS: 7.1
7.1

CVE-2026-58295 - Access of resource using incompatible type ('type confusion') in Microsoft Edge (Chromium-based) all

🏢 Microsoft 📅 3.7.2026 📊 CVSS: 8.3
8.3

CVE-2026-58294 - Use after free in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code ov

🏢 Microsoft 📅 3.7.2026 📊 CVSS: 7.5
7.5

CVE-2026-58293 - External control of file name or path in Microsoft Edge (Chromium-based) allows an unauthorized atta

🏢 Microsoft 📅 3.7.2026 📊 CVSS: 8.1
8.1

CVE-2026-58292 - Improper input validation in Microsoft Edge (Chromium-based) allows an unauthorized attacker to exec

🏢 Microsoft 📅 3.7.2026 📊 CVSS: 7.5
7.5

CVE-2026-58291 - Operation on a resource after expiration or release in Microsoft Edge (Chromium-based) allows an una

🏢 Microsoft 📅 3.7.2026 📊 CVSS: 6.1
6.1

CVE-2026-58290 - Access of resource using incompatible type ('type confusion') in Microsoft Edge (Chromium-based) all

🏢 Microsoft 📅 3.7.2026 📊 CVSS: 7.5
7.5

CVE-2026-58289 - Access of resource using incompatible type ('type confusion') in Microsoft Edge (Chromium-based) all

🏢 Microsoft 📅 3.7.2026 📊 CVSS: 9.0
9.0

CVE-2026-58288 - Use after free in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code ov

🏢 Microsoft 📅 3.7.2026 📊 CVSS: 8.3
8.3

CVE-2026-58287 - Use after free in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code ov

🏢 Microsoft 📅 3.7.2026 📊 CVSS: 8.3
8.3

CVE-2026-58286 - Improper access control in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perfor

🏢 Microsoft 📅 3.7.2026 📊 CVSS: 8.1
8.1

CVE-2026-58285 - Access of resource using incompatible type ('type confusion') in Microsoft Edge (Chromium-based) all

🏢 Microsoft 📅 3.7.2026 📊 CVSS: 8.3
8.3

CVE-2026-58284 - Improper authorization in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute

🏢 Microsoft 📅 3.7.2026 📊 CVSS: 8.3
8.3

CVE-2026-58283 - Access of resource using incompatible type ('type confusion') in Microsoft Edge (Chromium-based) all

🏢 Microsoft 📅 3.7.2026 📊 CVSS: 8.1
8.1

CVE-2026-58282 - Improper access control in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perfor

🏢 Microsoft 📅 3.7.2026 📊 CVSS: 8.1
8.1

CVE-2026-58278 - Server-side request forgery (ssrf) in Microsoft Edge (Chromium-based) allows an unauthorized attacke

🏢 Microsoft 📅 3.7.2026 📊 CVSS: 5.4
5.4

CVE-2026-58276 - Use after free in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code ov

🏢 Microsoft 📅 3.7.2026 📊 CVSS: 7.5
7.5

CVE-2026-57993 - Server-side request forgery (ssrf) in Microsoft Edge (Chromium-based) allows an unauthorized attacke

🏢 Microsoft 📅 3.7.2026 📊 CVSS: 7.4
7.4

CVE-2026-57992 - Use after free in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code ov

🏢 Microsoft 📅 3.7.2026 📊 CVSS: 7.5
7.5

CVE-2026-57991 - Improper link resolution before file access ('link following') in Microsoft Edge (Chromium-based) al

🏢 Microsoft 📅 3.7.2026 📊 CVSS: 7.4
7.4

CVE-2026-57988 - Relative path traversal in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execut

🏢 Microsoft 📅 3.7.2026 📊 CVSS: 7.1
7.1

CVE-2026-57987 - Server-side request forgery (ssrf) in Microsoft Edge (Chromium-based) allows an unauthorized attacke

🏢 Microsoft 📅 3.7.2026 📊 CVSS: 6.5
6.5

CVE-2026-57986 - Use after free in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code ov

🏢 Microsoft 📅 3.7.2026 📊 CVSS: 7.5
7.5

CVE-2026-57985 - Improper input validation in Microsoft Edge (Chromium-based) allows an unauthorized attacker to exec

🏢 Microsoft 📅 3.7.2026 📊 CVSS: 7.6
7.6

CVE-2026-57984 - Use after free in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code ov

🏢 Microsoft 📅 3.7.2026 📊 CVSS: 7.5
7.5

CVE-2026-57983 - Improper authorization in Microsoft Edge (Chromium-based) allows an unauthorized attacker to bypass

🏢 Microsoft 📅 3.7.2026 📊 CVSS: 8.7
8.7

CVE-2026-57981 - Use after free in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code ov

🏢 Microsoft 📅 3.7.2026 📊 CVSS: 8.8
8.8

CVE-2026-57977 - Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Ed

🏢 Microsoft 📅 3.7.2026 📊 CVSS: 7.1
7.1

CVE-2026-57975 - Access of resource using incompatible type ('type confusion') in Microsoft Edge (Chromium-based) all

🏢 Microsoft 📅 3.7.2026 📊 CVSS: 7.5
7.5

CVE-2026-57974 - Integer overflow or wraparound in Microsoft Edge (Chromium-based) allows an unauthorized attacker to

🏢 Microsoft 📅 3.7.2026 📊 CVSS: 8.8
8.8

CVE-2026-56646 - Exposure of sensitive information to an unauthorized actor in Microsoft Edge (Chromium-based) allows

🏢 Microsoft 📅 3.7.2026 📊 CVSS: 6.5
6.5

CVE-2026-56645 - Heap-based buffer overflow in Microsoft Edge (Chromium-based) allows an unauthorized attacker to exe

🏢 Microsoft 📅 3.7.2026 📊 CVSS: 8.8
8.8

CVE-2026-55945 - Concurrent execution using shared resource with improper synchronization ('race condition') in Micro

🏢 Microsoft 📅 3.7.2026 📊 CVSS: 4.2
4.2

CVE-2026-45489 - Microsoft Edge (Chromium-based) Spoofing Vulnerability

🏢 Microsoft 📅 3.7.2026 📊 CVSS: 6.5
6.5

CVE-2026-45488 - User interface (ui) misrepresentation of critical information in Microsoft Edge (Chromium-based) all

🏢 Microsoft 📅 3.7.2026 📊 CVSS: 5.4
5.4

CVE-2026-57100 - Server-side request forgery (ssrf) in Microsoft Entra Provisioning Service (SyncFabric) allows an au

🏢 Microsoft 📅 2.7.2026 📊 CVSS: 9.9
9.9

CVE-2026-54998 - Incorrect authorization in Microsoft Exchange Online allows an authorized attacker to elevate privil

🏢 Microsoft 📅 2.7.2026 📊 CVSS: 8.8
8.8

CVE-2026-50521 - Use after free in Microsoft Edge (Chromium-based) allows an authorized attacker to execute code over

🏢 Microsoft 📅 1.7.2026 📊 CVSS: 8.3
8.3

CVE-2026-49451 - The OpenAPI.NET SDK contains a useful object model for OpenAPI documents in .NET along with common s

🏢 Microsoft 📅 30.6.2026 📊 CVSS: 7.5
7.5

CVE-2025-59868 - HCL Traveler for Microsoft Outlook (HTMO) is susceptible to a sensitive data exposure vulnerability

🏢 Microsoft 📅 27.6.2026 📊 CVSS: 5.5
5.5

CVE-2023-37524 - HCL Traveler for Microsoft Outlook (HTMO) is susceptible to vulnerabilities due to .NET Framework 4.

🏢 Microsoft 📅 27.6.2026 📊 CVSS: 7.7
7.7

CVE-2024-23581 - The HCL Traveler for Microsoft Outlook libraries are being flagged as potentially malicious software

🏢 Microsoft 📅 26.6.2026 📊 CVSS: 6.7
6.7

CVE-2026-45677 - Rocket.Chat is an open-source, secure, fully customizable communications platform. Prior to 8.5.0, 8

🏢 Microsoft 📅 24.6.2026 📊 CVSS: 0.0
0.0

CVE-2026-56351 - n8n before version 2.4.0 contains a sql injection vulnerability in MySQL, PostgreSQL, and Microsoft

🏢 Microsoft 📅 24.6.2026 📊 CVSS: 8.2
8.2

CVE-2026-47693 - Poweradmin is a web-based DNS administration tool for PowerDNS server. Versions prior to 4.2.4 and 4

🏢 Microsoft 📅 23.6.2026 📊 CVSS: 6.9
6.9

CVE-2026-54308 - n8n is an open source workflow automation platform. Prior to 2.25.7 and 2.26.2, the MicrosoftAgent36

🏢 Microsoft 📅 23.6.2026 📊 CVSS: 7.2
7.2

CVE-2026-54312 - n8n is an open source workflow automation platform. Prior to 2.24.0, an authenticated user with perm

🏢 Microsoft 📅 23.6.2026 📊 CVSS: 8.5
8.5

CVE-2026-54303 - n8n is an open source workflow automation platform. Prior to 2.24.0, an endpoint in the Meta and Mic

🏢 Microsoft 📅 23.6.2026 📊 CVSS: 5.4
5.4

CVE-2026-48582 - Missing authorization in Microsoft Exchange Online allows an authorized attacker to elevate privileg

🏢 Microsoft 📅 19.6.2026 📊 CVSS: 9.6
9.6

CVE-2026-47645 - Url redirection to untrusted site ('open redirect') in Microsoft 365 Copilot's Business Chat allows

🏢 Microsoft 📅 19.6.2026 📊 CVSS: 8.8
8.8

CVE-2026-42895 - Improper neutralization of special elements used in a command ('command injection') in Microsoft Cop

🏢 Microsoft 📅 19.6.2026 📊 CVSS: 6.5
6.5

CVE-2026-32208 - Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft En

🏢 Microsoft 📅 19.6.2026 📊 CVSS: 8.8
8.8

CVE-2026-49336 - @microsoft/kiota-http-fetchlibrary provides TypeScript libraries for Kiota-generated API clients. In

🏢 Microsoft 📅 19.6.2026 📊 CVSS: 0.0
0.0

CVE-2025-62821 - Microsoft HEIF Image Extensions 1.2.22.0 has an out-of-bounds read because CHEIFItemInfoEntry_GetDat

🏢 Microsoft 📅 19.6.2026 📊 CVSS: 9.1
9.1

CVE-2026-47647 - Improper access control in Microsoft Dynamics 365 allows an authorized attacker to elevate privilege

🏢 Microsoft 📅 18.6.2026 📊 CVSS: 9.9
9.9

CVE-2026-50656 - Microsoft is aware of an elevation of privilege in the Microsoft Malware Protection Engine in Micros

🏢 Microsoft 📅 16.6.2026 📊 CVSS: 7.8
7.8

CVE-2026-8863 - Multiple Microsoft-sigend UEFI SHIM bootloaders are vulnerable to SecureBoot bypass. An attacker wit

🏢 Microsoft 📅 9.6.2026 📊 CVSS: 7.8
7.8

CVE-2026-50512 - Missing authentication for critical function in Microsoft PC Manager allows an authorized attacker t

🏢 Microsoft 📅 9.6.2026 📊 CVSS: 7.8
7.8

CVE-2026-50511 - Improper link resolution before file access ('link following') in Microsoft PC Manager allows an aut

🏢 Microsoft 📅 9.6.2026 📊 CVSS: 7.8
7.8

CVE-2026-49161 - Improper access control in Microsoft PC Manager allows an authorized attacker to bypass a security f

🏢 Microsoft 📅 9.6.2026 📊 CVSS: 7.8
7.8

CVE-2026-48562 - Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Of

🏢 Microsoft 📅 9.6.2026 📊 CVSS: 4.6
4.6

CVE-2026-48560 - Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to pe

🏢 Microsoft 📅 9.6.2026 📊 CVSS: 5.4
5.4

CVE-2026-47641 - Improper input validation in Microsoft Office SharePoint allows an authorized attacker to perform sp

🏢 Microsoft 📅 9.6.2026 📊 CVSS: 4.6
4.6

CVE-2026-47640 - Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Of

🏢 Microsoft 📅 9.6.2026 📊 CVSS: 4.6
4.6

CVE-2026-47639 - Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Of

🏢 Microsoft 📅 9.6.2026 📊 CVSS: 5.4
5.4

CVE-2026-47638 - Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Of

🏢 Microsoft 📅 9.6.2026 📊 CVSS: 4.6
4.6

CVE-2026-47637 - Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Of

🏢 Microsoft 📅 9.6.2026 📊 CVSS: 4.6
4.6

CVE-2026-47636 - Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Of

🏢 Microsoft 📅 9.6.2026 📊 CVSS: 5.4
5.4

CVE-2026-47635 - Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code local

🏢 Microsoft 📅 9.6.2026 📊 CVSS: 8.4
8.4

CVE-2026-47634 - Improper neutralization of special elements in output used by a downstream component ('injection') i

🏢 Microsoft 📅 9.6.2026 📊 CVSS: 7.3
7.3

CVE-2026-47631 - Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Ex

🏢 Microsoft 📅 9.6.2026 📊 CVSS: 8.1
8.1

CVE-2026-47298 - Improper authorization in Microsoft Office SharePoint allows an authorized attacker to execute code

🏢 Microsoft 📅 9.6.2026 📊 CVSS: 8.0
8.0

CVE-2026-47293 - Use after free in Microsoft Office Click-To-Run allows an authorized attacker to elevate privileges

🏢 Microsoft 📅 9.6.2026 📊 CVSS: 7.0
7.0

CVE-2026-45650 - User interface (ui) misrepresentation of critical information in Microsoft Bing allows an unauthoriz

🏢 Microsoft 📅 9.6.2026 📊 CVSS: 4.3
4.3

CVE-2026-45647 - Time-of-check time-of-use (toctou) race condition in Microsoft Defender for Endpoint allows an autho

🏢 Microsoft 📅 9.6.2026 📊 CVSS: 5.5
5.5

CVE-2026-45645 - Untrusted pointer dereference in Microsoft Office allows an unauthorized attacker to execute code lo

🏢 Microsoft 📅 9.6.2026 📊 CVSS: 7.8
7.8

CVE-2026-45644 - Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Li

🏢 Microsoft 📅 9.6.2026 📊 CVSS: 8.0
8.0

CVE-2026-45643 - Untrusted pointer dereference in Microsoft Office Word allows an unauthorized attacker to execute co

🏢 Microsoft 📅 9.6.2026 📊 CVSS: 7.8
7.8

CVE-2026-45606 - Out-of-bounds read in Microsoft UxTheme Library (uxtheme.dll) allows an authorized attacker to deny

🏢 Microsoft 📅 9.6.2026 📊 CVSS: 5.5
5.5

CVE-2026-45583 - Improper control of generation of code ('code injection') in Microsoft Exchange Server allows an una

🏢 Microsoft 📅 9.6.2026 📊 CVSS: 7.5
7.5

CVE-2026-45504 - Server-side request forgery (ssrf) in Microsoft Exchange Server allows an authorized attacker to ele

🏢 Microsoft 📅 9.6.2026 📊 CVSS: 8.8
8.8
Seite 1 von 2 Weiter » »»

🏢 CVE nach Hersteller

Empfohlene Sicherheitstools

Unterstütze uns durch einen Kauf - wir erhalten eine kleine Provision.