Search Results (861 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2023-36910 1 Microsoft 20 Windows 10, Windows 10 1507, Windows 10 1607 and 17 more 2026-08-10 9.8 Critical
Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability
CVE-2021-34473 1 Microsoft 1 Exchange Server 2026-08-10 9.1 Critical
Microsoft Exchange Server Remote Code Execution Vulnerability
CVE-2021-34523 1 Microsoft 1 Exchange Server 2026-08-10 9 Critical
Microsoft Exchange Server Elevation of Privilege Vulnerability
CVE-2023-21709 1 Microsoft 2 Exchange Server, Exchange Server 2016 2026-08-10 9.8 Critical
Microsoft Exchange Server Elevation of Privilege Vulnerability
CVE-2021-38647 1 Microsoft 11 Azure Automation State Configuration, Azure Automation Update Management, Azure Diagnostics and 8 more 2026-08-10 9.8 Critical
Open Management Infrastructure (OMI) Remote Code Execution Vulnerability
CVE-2021-26432 1 Microsoft 15 Windows 10, Windows 10 1507, Windows 10 1607 and 12 more 2026-08-10 9.8 Critical
Windows Services for NFS ONCRPC XDR Driver Remote Code Execution Vulnerability
CVE-2021-26424 1 Microsoft 19 Windows 10, Windows 10 1507, Windows 10 1607 and 16 more 2026-08-10 9.9 Critical
Windows TCP/IP Remote Code Execution Vulnerability
CVE-2026-19171 2 Google, Microsoft 2 Chrome, Windows 2026-08-08 9.6 Critical
Use after free in Media in Google Chrome on Windows prior to 151.0.7922.109 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
CVE-2026-68823 1 Microsoft 1 Azure Confidential Ledger 2026-08-07 9.1 Critical
Exposed dangerous method or function in Azure Confidential Ledger allows an authorized attacker to execute code over a network.
CVE-2026-70332 1 Microsoft 1 Sharepoint Online 2026-08-07 9.6 Critical
Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an unauthorized attacker to perform spoofing over a network.
CVE-2026-63508 1 Microsoft 2 Planetary Computer, Planetary Computer Pro 2026-08-07 10 Critical
Missing authentication for critical function in Microsoft Planetary Computer Pro allows an unauthorized attacker to elevate privileges over a network.
CVE-2026-50515 1 Microsoft 1 Azure Service Bus 2026-08-07 9.9 Critical
Deserialization of untrusted data in Azure Service Bus allows an authorized attacker to execute code over a network.
CVE-2026-62830 1 Microsoft 1 Azure Sre Agent 2026-08-07 9.9 Critical
Missing authorization in Azure SRE Agent allows an authorized attacker to elevate privileges over a network.
CVE-2026-56162 1 Microsoft 1 Azure Sql Database 2026-08-07 10 Critical
Improper authentication in Azure SQL Database allows an unauthorized attacker to elevate privileges over a network.
CVE-2026-57092 1 Microsoft 24 Windows 10 1607, Windows 10 1809, Windows 10 21h2 and 21 more 2026-08-07 9.9 Critical
Use after free in Windows VMSwitch allows an authorized attacker to elevate privileges over a network.
CVE-2026-56159 1 Microsoft 14 Windows 10 1607, Windows 10 1809, Windows Server 2012 and 11 more 2026-08-07 9.8 Critical
Heap-based buffer overflow in Windows DHCP Server allows an unauthorized attacker to execute code over a network.
CVE-2026-56190 1 Microsoft 24 Windows 10 1607, Windows 10 1809, Windows 10 21h2 and 21 more 2026-08-07 9.8 Critical
Use of uninitialized resource in Windows RDP allows an unauthorized attacker to execute code over a network.
CVE-2026-56188 1 Microsoft 24 Windows 10 1607, Windows 10 1809, Windows 10 21h2 and 21 more 2026-08-07 9.8 Critical
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Server Network driver allows an unauthorized attacker to execute code over a network.
CVE-2026-62873 1 Microsoft 2 365 Admin Center, Windows Admin Center 2026-08-07 9.8 Critical
Improper verification of cryptographic signature in Microsoft 365 Admin Center allows an unauthorized attacker to elevate privileges over a network.
CVE-2026-56161 1 Microsoft 1 Azure Logic Apps 2026-08-07 9.6 Critical
Improper access control in Azure Logic Apps allows an authorized attacker to disclose information over a network.