Search
Search Results (861 CVEs found)
| CVE | Vendors | Products | Updated | CVSS v3.1 |
|---|---|---|---|---|
| CVE-2023-36910 | 1 Microsoft | 20 Windows 10, Windows 10 1507, Windows 10 1607 and 17 more | 2026-08-10 | 9.8 Critical |
| Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability | ||||
| CVE-2021-34473 | 1 Microsoft | 1 Exchange Server | 2026-08-10 | 9.1 Critical |
| Microsoft Exchange Server Remote Code Execution Vulnerability | ||||
| CVE-2021-34523 | 1 Microsoft | 1 Exchange Server | 2026-08-10 | 9 Critical |
| Microsoft Exchange Server Elevation of Privilege Vulnerability | ||||
| CVE-2023-21709 | 1 Microsoft | 2 Exchange Server, Exchange Server 2016 | 2026-08-10 | 9.8 Critical |
| Microsoft Exchange Server Elevation of Privilege Vulnerability | ||||
| CVE-2021-38647 | 1 Microsoft | 11 Azure Automation State Configuration, Azure Automation Update Management, Azure Diagnostics and 8 more | 2026-08-10 | 9.8 Critical |
| Open Management Infrastructure (OMI) Remote Code Execution Vulnerability | ||||
| CVE-2021-26432 | 1 Microsoft | 15 Windows 10, Windows 10 1507, Windows 10 1607 and 12 more | 2026-08-10 | 9.8 Critical |
| Windows Services for NFS ONCRPC XDR Driver Remote Code Execution Vulnerability | ||||
| CVE-2021-26424 | 1 Microsoft | 19 Windows 10, Windows 10 1507, Windows 10 1607 and 16 more | 2026-08-10 | 9.9 Critical |
| Windows TCP/IP Remote Code Execution Vulnerability | ||||
| CVE-2026-19171 | 2 Google, Microsoft | 2 Chrome, Windows | 2026-08-08 | 9.6 Critical |
| Use after free in Media in Google Chrome on Windows prior to 151.0.7922.109 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High) | ||||
| CVE-2026-68823 | 1 Microsoft | 1 Azure Confidential Ledger | 2026-08-07 | 9.1 Critical |
| Exposed dangerous method or function in Azure Confidential Ledger allows an authorized attacker to execute code over a network. | ||||
| CVE-2026-70332 | 1 Microsoft | 1 Sharepoint Online | 2026-08-07 | 9.6 Critical |
| Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an unauthorized attacker to perform spoofing over a network. | ||||
| CVE-2026-63508 | 1 Microsoft | 2 Planetary Computer, Planetary Computer Pro | 2026-08-07 | 10 Critical |
| Missing authentication for critical function in Microsoft Planetary Computer Pro allows an unauthorized attacker to elevate privileges over a network. | ||||
| CVE-2026-50515 | 1 Microsoft | 1 Azure Service Bus | 2026-08-07 | 9.9 Critical |
| Deserialization of untrusted data in Azure Service Bus allows an authorized attacker to execute code over a network. | ||||
| CVE-2026-62830 | 1 Microsoft | 1 Azure Sre Agent | 2026-08-07 | 9.9 Critical |
| Missing authorization in Azure SRE Agent allows an authorized attacker to elevate privileges over a network. | ||||
| CVE-2026-56162 | 1 Microsoft | 1 Azure Sql Database | 2026-08-07 | 10 Critical |
| Improper authentication in Azure SQL Database allows an unauthorized attacker to elevate privileges over a network. | ||||
| CVE-2026-57092 | 1 Microsoft | 24 Windows 10 1607, Windows 10 1809, Windows 10 21h2 and 21 more | 2026-08-07 | 9.9 Critical |
| Use after free in Windows VMSwitch allows an authorized attacker to elevate privileges over a network. | ||||
| CVE-2026-56159 | 1 Microsoft | 14 Windows 10 1607, Windows 10 1809, Windows Server 2012 and 11 more | 2026-08-07 | 9.8 Critical |
| Heap-based buffer overflow in Windows DHCP Server allows an unauthorized attacker to execute code over a network. | ||||
| CVE-2026-56190 | 1 Microsoft | 24 Windows 10 1607, Windows 10 1809, Windows 10 21h2 and 21 more | 2026-08-07 | 9.8 Critical |
| Use of uninitialized resource in Windows RDP allows an unauthorized attacker to execute code over a network. | ||||
| CVE-2026-56188 | 1 Microsoft | 24 Windows 10 1607, Windows 10 1809, Windows 10 21h2 and 21 more | 2026-08-07 | 9.8 Critical |
| Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Server Network driver allows an unauthorized attacker to execute code over a network. | ||||
| CVE-2026-62873 | 1 Microsoft | 2 365 Admin Center, Windows Admin Center | 2026-08-07 | 9.8 Critical |
| Improper verification of cryptographic signature in Microsoft 365 Admin Center allows an unauthorized attacker to elevate privileges over a network. | ||||
| CVE-2026-56161 | 1 Microsoft | 1 Azure Logic Apps | 2026-08-07 | 9.6 Critical |
| Improper access control in Azure Logic Apps allows an authorized attacker to disclose information over a network. | ||||