Search Results (24812 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2026-69306 1 Microsoft 1 Visual Studio Code 2026-08-11 8.2 High
Not failing securely ('failing open') in Visual Studio Code allows an unauthorized attacker to bypass a security feature over a network.
CVE-2026-65811 1 Microsoft 1 Power Bi Report Server 2026-08-11 8.8 High
Improper input validation in Power BI allows an authorized attacker to execute code over a network.
CVE-2026-48373 3 Adobe, Apple, Microsoft 6 Acrobat, Acrobat Dc, Acrobat Reader and 3 more 2026-08-11 7.8 High
Acrobat Reader is affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
CVE-2026-70335 1 Microsoft 1 Visual Studio Code 2026-08-11 7.8 High
Improper neutralization of special elements used in an os command ('os command injection') in GitHub Copilot and Visual Studio Code allows an unauthorized attacker to elevate privileges locally.
CVE-2026-59118 1 Microsoft 3 Copilot Cowork, Power-apps, Power Apps 2026-08-11 9.3 Critical
Improper authorization in Copilot Cowork allows an unauthorized attacker to elevate privileges over a network.
CVE-2021-34535 1 Microsoft 18 Remote Desktop, Remote Desktop Client, Windows 10 and 15 more 2026-08-10 8.8 High
Remote Desktop Client Remote Code Execution Vulnerability
CVE-2026-19158 2 Google, Microsoft 2 Chrome, Windows 2026-08-08 7.5 High
Use after free in Views in Google Chrome on Windows prior to 151.0.7922.109 allowed a remote attacker who convinced a user to engage in specific UI gestures to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
CVE-2024-4944 2 Microsoft, Watchguard 3 Windows, Mobile Vpn With Ssl, Mobile Vpn With Ssl Client 2026-08-07 7.8 High
A local privilege escalation vlnerability in the WatchGuard Mobile VPN with SSL client on Windows enables a local user to execute arbitrary commands with elevated privileged.
CVE-2026-68823 1 Microsoft 1 Azure Confidential Ledger 2026-08-07 9.1 Critical
Exposed dangerous method or function in Azure Confidential Ledger allows an authorized attacker to execute code over a network.
CVE-2026-62836 1 Microsoft 1 Azure Sql Managed Instance 2026-08-07 8.7 High
Improper restriction of communication channel to intended endpoints in Azure SQL Managed Instance allows an unauthorized attacker to elevate privileges over a network.
CVE-2026-70332 1 Microsoft 1 Sharepoint Online 2026-08-07 9.6 Critical
Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an unauthorized attacker to perform spoofing over a network.
CVE-2026-19163 2 Google, Microsoft 2 Chrome, Windows 2026-08-07 8.3 High
Use after free in Media in Google Chrome on Windows prior to 151.0.7922.109 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
CVE-2026-63508 1 Microsoft 2 Planetary Computer, Planetary Computer Pro 2026-08-07 10 Critical
Missing authentication for critical function in Microsoft Planetary Computer Pro allows an unauthorized attacker to elevate privileges over a network.
CVE-2026-50515 1 Microsoft 1 Azure Service Bus 2026-08-07 9.9 Critical
Deserialization of untrusted data in Azure Service Bus allows an authorized attacker to execute code over a network.
CVE-2026-62830 1 Microsoft 1 Azure Sre Agent 2026-08-07 9.9 Critical
Missing authorization in Azure SRE Agent allows an authorized attacker to elevate privileges over a network.
CVE-2026-19139 2 Google, Microsoft 2 Chrome, Windows 2026-08-07 7.4 High
Race in CredentialProvider in Google Chrome on Windows prior to 151.0.7922.109 allowed a local attacker to perform OS-level privilege escalation via a malicious file. (Chromium security severity: High)
CVE-2026-56162 1 Microsoft 1 Azure Sql Database 2026-08-07 10 Critical
Improper authentication in Azure SQL Database allows an unauthorized attacker to elevate privileges over a network.
CVE-2026-55031 1 Microsoft 17 365 Apps, Excel, Excel 2016 and 14 more 2026-08-07 7.8 High
Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
CVE-2026-55029 1 Microsoft 17 365 Apps, Excel, Excel 2016 and 14 more 2026-08-07 7.8 High
Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
CVE-2026-55047 1 Microsoft 21 365 Apps, Microsoft 365, Microsoft 365 Apps For Enterprise and 18 more 2026-08-07 5.5 Medium
Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally.