Vulnerabilities (CVE)

Filtered by vendor Microsoft Subscribe
Total 25621 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2026-0278 2 Microsoft, Paloaltonetworks 2 Windows, Prisma Access Agent 2026-07-16 N/A 7.8 HIGH
Multiple protection mechanism failures in the Prisma Access Agent Data Loss Prevention (DLP) component for Windows allow a local user to bypass DLP policy enforcement controls. The Prisma Access Agent on macOS is not affected.
CVE-2026-40952 2 Absolute, Microsoft 2 Secure Access, Windows 2026-07-16 N/A 7.8 HIGH
CVE-2026-40952 is a privilege misconfiguration in the Secure Access installer for the Windows client and server prior to version 14.55. Attackers with local access to the client or server can use it to elevate privileges to Administrator when Secure Access is installed in a non-default location.
CVE-2026-58529 1 Microsoft 1 Windows 11 26h1 2026-07-16 N/A 7.1 HIGH
Out-of-bounds read in Active Directory Federation Services (AD FS) allows an authorized attacker to disclose information over a network.
CVE-2026-56195 1 Microsoft 6 365 Apps, Microsoft 365, Office 2016 and 3 more 2026-07-16 N/A 5.5 MEDIUM
Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally.
CVE-2026-55142 1 Microsoft 7 365 Apps, Microsoft 365, Office 2019 and 4 more 2026-07-16 N/A 5.5 MEDIUM
Numeric truncation error in Microsoft Office Word allows an unauthorized attacker to disclose information locally.
CVE-2026-55134 1 Microsoft 7 365 Apps, Microsoft 365, Office 2019 and 4 more 2026-07-16 N/A 7.8 HIGH
Stack-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code locally.
CVE-2026-55132 1 Microsoft 7 365 Apps, Microsoft 365, Office 2019 and 4 more 2026-07-16 N/A 7.8 HIGH
Double free in Microsoft Office Word allows an unauthorized attacker to execute code locally.
CVE-2026-50696 1 Microsoft 9 Windows 10 1809, Windows 10 21h2, Windows 10 22h2 and 6 more 2026-07-16 N/A 7.5 HIGH
Heap-based buffer overflow in Windows Internet Key Exchange (IKE) Protocol allows an unauthorized attacker to deny service over a network.
CVE-2026-54122 1 Microsoft 12 Windows 10 1607, Windows 10 1809, Windows 10 21h2 and 9 more 2026-07-16 N/A 8.4 HIGH
Heap-based buffer overflow in Windows GDI+ allows an unauthorized attacker to execute code locally.
CVE-2026-55041 1 Microsoft 7 365 Apps, Excel, Microsoft 365 and 4 more 2026-07-16 N/A 7.8 HIGH
Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
CVE-2026-55044 1 Microsoft 7 365 Apps, Excel, Microsoft 365 and 4 more 2026-07-16 N/A 7.8 HIGH
Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
CVE-2026-54988 1 Microsoft 7 365 Apps, Excel, Microsoft 365 and 4 more 2026-07-16 N/A 6.1 MEDIUM
Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.
CVE-2026-55899 1 Microsoft 7 365 Apps, Excel, Microsoft 365 and 4 more 2026-07-16 N/A 7.8 HIGH
Stack-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
CVE-2026-55948 1 Microsoft 7 365 Apps, Excel, Microsoft 365 and 4 more 2026-07-16 N/A 7.8 HIGH
Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
CVE-2026-58618 1 Microsoft 7 365 Apps, Excel, Microsoft 365 and 4 more 2026-07-16 N/A 7.8 HIGH
Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
CVE-2026-47642 1 Microsoft 6 365 Apps, Microsoft 365, Office 2019 and 3 more 2026-07-16 N/A 7.8 HIGH
Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
CVE-2026-55037 1 Microsoft 7 365 Apps, Excel, Microsoft 365 and 4 more 2026-07-16 N/A 7.8 HIGH
Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
CVE-2026-55046 1 Microsoft 7 365 Apps, Excel, Microsoft 365 and 4 more 2026-07-16 N/A 5.5 MEDIUM
Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.
CVE-2026-55048 1 Microsoft 7 365 Apps, Excel, Microsoft 365 and 4 more 2026-07-15 N/A 7.8 HIGH
Integer overflow or wraparound in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
CVE-2026-55053 1 Microsoft 7 365 Apps, Excel, Microsoft 365 and 4 more 2026-07-15 N/A 7.8 HIGH
Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.