Filtered by vendor Microsoft
Subscribe
Total
25613 CVE
| CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
|---|---|---|---|---|---|
| CVE-2026-57973 | 1 Microsoft | 1 Windows Subsystem For Linux | 2026-07-20 | N/A | 6.3 MEDIUM |
| Time-of-check time-of-use (toctou) race condition in Windows Subsystem for Linux allows an authorized attacker to perform tampering locally. | |||||
| CVE-2026-7872 | 4 Apple, Langflow, Linux and 1 more | 4 Macos, Langflow, Linux Kernel and 1 more | 2026-07-20 | N/A | 7.5 HIGH |
| IBM Langflow OSS 1.0.0 through 1.10.0 allows an authenticated attacker to read arbitrary files including the JWT signing key and forge authentication tokens for any user. | |||||
| CVE-2026-50422 | 1 Microsoft | 12 Windows 10 1607, Windows 10 1809, Windows 10 21h2 and 9 more | 2026-07-20 | N/A | 7.8 HIGH |
| Out-of-bounds read in Windows NTFS allows an authorized attacker to elevate privileges locally. | |||||
| CVE-2026-50357 | 1 Microsoft | 11 Windows 10 1607, Windows 10 1809, Windows 10 21h2 and 8 more | 2026-07-20 | N/A | 7.8 HIGH |
| Numeric truncation error in Windows Resilient File System (ReFS) allows an authorized attacker to execute code locally. | |||||
| CVE-2026-54995 | 1 Microsoft | 12 Windows 10 1607, Windows 10 1809, Windows 10 21h2 and 9 more | 2026-07-20 | N/A | 8.1 HIGH |
| Use after free in Reliable Multicast Transport Driver (RMCAST) allows an unauthorized attacker to execute code over a network. | |||||
| CVE-2026-54997 | 1 Microsoft | 12 Windows 10 1607, Windows 10 1809, Windows 10 21h2 and 9 more | 2026-07-20 | N/A | 5.5 MEDIUM |
| Use of uninitialized resource in Windows SMB allows an authorized attacker to disclose information locally. | |||||
| CVE-2026-54996 | 1 Microsoft | 4 Windows 11 24h2, Windows 11 25h2, Windows 11 26h1 and 1 more | 2026-07-20 | N/A | 7.0 HIGH |
| Concurrent execution using shared resource with improper synchronization ('race condition') in Windows USB Print Driver allows an authorized attacker to elevate privileges locally. | |||||
| CVE-2026-50341 | 1 Microsoft | 12 Windows 10 1607, Windows 10 1809, Windows 10 21h2 and 9 more | 2026-07-20 | N/A | 5.5 MEDIUM |
| Buffer over-read in Windows NTFS allows an authorized attacker to disclose information locally. | |||||
| CVE-2026-50328 | 1 Microsoft | 7 Windows 10 1607, Windows 10 1809, Windows Server 2012 and 4 more | 2026-07-20 | N/A | 7.5 HIGH |
| Uncaught exception in Windows Server Update Service allows an unauthorized attacker to perform tampering over a network. | |||||
| CVE-2024-38093 | 1 Microsoft | 1 Edge | 2026-07-20 | N/A | 4.3 MEDIUM |
| Microsoft Edge (Chromium-based) Spoofing Vulnerability | |||||
| CVE-2024-38083 | 1 Microsoft | 1 Edge Chromium | 2026-07-20 | N/A | 4.3 MEDIUM |
| Microsoft Edge (Chromium-based) Spoofing Vulnerability | |||||
| CVE-2024-38082 | 1 Microsoft | 1 Edge | 2026-07-20 | N/A | 4.7 MEDIUM |
| Microsoft Edge (Chromium-based) Spoofing Vulnerability | |||||
| CVE-2024-37325 | 1 Microsoft | 1 Azure Data Science Virtual Machine | 2026-07-20 | N/A | 8.1 HIGH |
| Azure Science Virtual Machine (DSVM) Elevation of Privilege Vulnerability | |||||
| CVE-2024-35265 | 1 Microsoft | 7 Windows 10 1809, Windows 10 21h2, Windows 10 22h2 and 4 more | 2026-07-20 | N/A | 7.0 HIGH |
| Windows Perception Service Elevation of Privilege Vulnerability | |||||
| CVE-2024-35263 | 1 Microsoft | 1 Dynamics 365 | 2026-07-20 | N/A | 5.7 MEDIUM |
| Microsoft Dynamics 365 (On-Premises) Information Disclosure Vulnerability | |||||
| CVE-2024-35260 | 1 Microsoft | 1 Power Platform | 2026-07-20 | N/A | 8.0 HIGH |
| An authenticated attacker can exploit an untrusted search path vulnerability in Microsoft Dataverse to execute code over a network. | |||||
| CVE-2024-35255 | 1 Microsoft | 2 Authentication Library, Azure Identity Sdk | 2026-07-20 | N/A | 5.5 MEDIUM |
| Azure Identity Libraries and Microsoft Authentication Library Elevation of Privilege Vulnerability | |||||
| CVE-2024-35254 | 1 Microsoft | 1 Azure Monitor Agent | 2026-07-20 | N/A | 7.1 HIGH |
| Azure Monitor Agent Elevation of Privilege Vulnerability | |||||
| CVE-2024-35253 | 1 Microsoft | 1 Azure File Sync | 2026-07-20 | N/A | 4.4 MEDIUM |
| Microsoft Azure File Sync Elevation of Privilege Vulnerability | |||||
| CVE-2024-35252 | 1 Microsoft | 1 Azure Storage Data Movement Library | 2026-07-20 | N/A | 7.5 HIGH |
| Azure Storage Movement Client Library Denial of Service Vulnerability | |||||
