VYPR

CVEs

386,233 total · page 557 of 7,725

  • CVE-2026-62915MedAug 11, 2026
    risk 0.42cvss 6.5epss 0.01

    Missing authorization in Microsoft Exchange Server allows an authorized attacker to bypass a security feature over a network.

  • CVE-2026-62914HigAug 11, 2026
    risk 0.47cvss 7.3epss 0.00

    Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Exchange Server allows an authorized attacker to perform spoofing over a network.

  • CVE-2026-62913HigAug 11, 2026
    risk 0.57cvss 8.8epss 0.01

    Heap-based buffer overflow in Microsoft Exchange Server allows an authorized attacker to execute code over a network.

  • CVE-2026-62912MedAug 11, 2026
    risk 0.42cvss 6.5epss 0.02

    Deserialization of untrusted data in Microsoft Exchange Server allows an authorized attacker to deny service over a network.

  • CVE-2026-62911HigAug 11, 2026
    risk 0.52cvss 8.0epss 0.01

    Authentication bypass by capture-replay in Microsoft Exchange Server allows an authorized attacker to elevate privileges over a network.

  • CVE-2026-62910HigAug 11, 2026
    risk 0.47cvss 7.2epss 0.01

    Improper control of resource identifiers ('resource injection') in Microsoft Exchange Server allows an authorized attacker to elevate privileges over a network.

  • CVE-2026-62909HigAug 11, 2026
    risk 0.44cvss 7.8epss 0.00

    Uncaught exception in .NET allows an authorized attacker to elevate privileges locally.

  • CVE-2026-62908HigAug 11, 2026
    risk 0.46cvss 7.0epss 0.00

    Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Backup Engine allows an authorized attacker to elevate privileges locally.

  • CVE-2026-62902MedAug 11, 2026
    risk 0.35cvss 6.5epss 0.01

    Inclusion of functionality from untrusted control sphere in .NET allows an unauthorized attacker to disclose information over a network.

  • CVE-2026-62901HigAug 11, 2026
    risk 0.42cvss 7.5epss 0.01

    Unchecked input for loop condition in .NET allows an unauthorized attacker to deny service over a network.

  • CVE-2026-62900MedAug 11, 2026
    risk 0.31cvss 5.9epss 0.01

    Improper removal of sensitive information before storage or transfer in .NET allows an unauthorized attacker to disclose information over a network.

  • CVE-2026-62899MedAug 11, 2026
    risk 0.31cvss 5.9epss 0.01

    Inconsistent interpretation of http requests ('http request/response smuggling') in .NET allows an unauthorized attacker to bypass a security feature over a network.

  • CVE-2026-62898HigAug 11, 2026
    risk 0.42cvss 7.5epss 0.01

    Use after free in Microsoft QUIC allows an unauthorized attacker to disclose information over a network.

  • CVE-2026-62897HigAug 11, 2026
    risk 0.39cvss 7.0epss 0.00

    Integer overflow or wraparound in .NET Framework allows an unauthorized attacker to execute code locally.

  • CVE-2026-62894HigAug 11, 2026
    risk 0.51cvss 7.8epss 0.00

    Heap-based buffer overflow in Windows DWM Core Library allows an authorized attacker to elevate privileges locally.

  • CVE-2026-62893CriAug 11, 2026
    risk 0.64cvss 9.8epss 0.01

    Use after free in Windows Deployment Services allows an unauthorized attacker to execute code over a network.

  • CVE-2026-62892HigAug 11, 2026
    risk 0.46cvss 7.0epss 0.00

    Use after free in Capability Access Management Service (camsvc) allows an authorized attacker to elevate privileges locally.

  • CVE-2026-62890HigAug 11, 2026
    risk 0.51cvss 7.8epss 0.00

    Heap-based buffer overflow in Windows GDI+ allows an authorized attacker to execute code locally.

  • CVE-2026-62889HigAug 11, 2026
    risk 0.53cvss 8.1epss 0.01

    Double free in Windows Secure Socket Tunneling Protocol (SSTP) allows an unauthorized attacker to execute code over a network.

  • CVE-2026-62888HigAug 11, 2026
    risk 0.51cvss 7.8epss 0.00

    Use after free in Windows DWM Core Library allows an authorized attacker to elevate privileges locally.

  • CVE-2026-62887MedAug 11, 2026
    risk 0.36cvss 5.5epss 0.00

    Out-of-bounds read in Windows NTFS allows an authorized attacker to disclose information locally.

  • CVE-2026-62886HigAug 11, 2026
    risk 0.44cvss 7.8epss 0.00

    Integer overflow or wraparound in .NET allows an unauthorized attacker to elevate privileges locally.

  • CVE-2026-62885HigAug 11, 2026
    risk 0.51cvss 7.8epss 0.00

    Heap-based buffer overflow in Windows Win32K allows an authorized attacker to elevate privileges locally.

  • CVE-2026-62883MedAug 11, 2026
    risk 0.44cvss 6.7epss 0.00

    Numeric truncation error in Windows DNS allows an authorized attacker to elevate privileges locally.

  • CVE-2026-62882MedAug 11, 2026
    risk 0.28cvss 4.3epss 0.01

    Insufficiently protected credentials in Microsoft Office Outlook allows an unauthorized attacker to perform spoofing over a network.

  • CVE-2026-62881MedAug 11, 2026
    risk 0.44cvss 6.7epss 0.00

    Numeric truncation error in Windows DNS allows an authorized attacker to elevate privileges locally.

  • CVE-2026-62880HigAug 11, 2026
    risk 0.51cvss 7.8epss 0.00

    Out-of-bounds read in Windows NTFS allows an authorized attacker to elevate privileges locally.

  • CVE-2026-62878CriAug 11, 2026
    risk 0.64cvss 9.8epss 0.01

    Stack-based buffer overflow in Windows DNS allows an unauthorized attacker to execute code over a network.

  • CVE-2026-62877HigAug 11, 2026
    risk 0.51cvss 7.8epss 0.00

    Stack-based buffer overflow in Windows Win32K allows an authorized attacker to elevate privileges locally.

  • CVE-2026-62876HigAug 11, 2026
    risk 0.51cvss 7.8epss 0.00

    Out-of-bounds read in Windows Win32K allows an authorized attacker to elevate privileges locally.

  • CVE-2026-62872HigAug 11, 2026
    risk 0.57cvss 8.8epss 0.01

    Incorrect authorization in .NET Framework allows an authorized attacker to elevate privileges over a network.

  • CVE-2026-62871HigAug 11, 2026
    risk 0.44cvss 7.8epss 0.00

    Out-of-bounds write in .NET allows an unauthorized attacker to execute code locally.

  • CVE-2026-62869HigAug 11, 2026
    risk 0.57cvss 8.8epss 0.00

    Insufficient verification of data authenticity in Azure Entra ID allows an authorized attacker to perform spoofing over a network.

  • CVE-2026-62842MedAug 11, 2026
    risk 0.36cvss 5.5epss 0.01

    Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally.

  • CVE-2026-62839MedAug 11, 2026
    risk 0.42cvss 6.5epss 0.01

    Insufficiently protected credentials in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.

  • CVE-2026-62837MedAug 11, 2026
    risk 0.42cvss 6.5epss 0.01

    Relative path traversal in Microsoft Office SharePoint allows an authorized attacker to disclose information over a network.

  • CVE-2026-62832HigAug 11, 2026
    risk 0.51cvss 7.8epss 0.00

    Improper link resolution before file access ('link following') in Windows User Profile Service allows an authorized attacker to elevate privileges locally.

  • CVE-2026-62829MedAug 11, 2026
    risk 0.30cvss 4.6epss 0.00

    Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.

  • CVE-2026-62827HigAug 11, 2026
    risk 0.57cvss 8.8epss 0.01

    Improper authentication in Microsoft Office SharePoint allows an authorized attacker to elevate privileges over a network.

  • CVE-2026-62824HigAug 11, 2026
    risk 0.57cvss 8.8epss 0.01

    Stack-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code over a network.

  • CVE-2026-62823HigAug 11, 2026
    risk 0.57cvss 8.8epss 0.01

    Heap-based buffer overflow in Windows DHCP Server allows an unauthorized attacker to execute code over an adjacent network.

  • CVE-2026-62822HigAug 11, 2026
    risk 0.57cvss 8.8epss 0.01

    Integer overflow or wraparound in Windows GDI+ allows an unauthorized attacker to execute code over a network.

  • CVE-2026-62820HigAug 11, 2026
    risk 0.53cvss 8.1epss 0.01

    Concurrent execution using shared resource with improper synchronization ('race condition') in Windows DNS allows an unauthorized attacker to execute code over a network.

  • CVE-2026-62819HigAug 11, 2026
    risk 0.53cvss 8.1epss 0.01

    Remote Code Execution in Windows Routing and Remote Access Service (RRAS) allows attacker to gain an unauthorized access to victim's machine

  • CVE-2026-62818HigAug 11, 2026
    risk 0.57cvss 8.8epss 0.01

    Use after free in Active Directory Certificate Services (AD CS) allows an authorized attacker to execute code over a network.

  • CVE-2026-62817HigAug 11, 2026
    risk 0.57cvss 8.8epss 0.01

    Out-of-bounds write in Windows DNS allows an unauthorized attacker to execute code over an adjacent network.

  • CVE-2026-62816HigAug 11, 2026
    risk 0.57cvss 8.8epss 0.01

    Heap-based buffer overflow in Reliable Multicast Transport Driver (RMCAST) allows an unauthorized attacker to execute code over an adjacent network.

  • CVE-2026-62815CriAug 11, 2026
    risk 0.57cvss 9.8epss 0.01

    Use after free in Microsoft QUIC allows an unauthorized attacker to execute code over a network.

  • CVE-2026-62814MedAug 11, 2026
    risk 0.42cvss 6.5epss 0.01

    Integer underflow (wrap or wraparound) in Windows DHCP Server allows an unauthorized attacker to disclose information over an adjacent network.

  • CVE-2026-62812HigAug 11, 2026
    risk 0.51cvss 7.8epss 0.00

    Improper link resolution before file access ('link following') in Windows DHCP Server allows an authorized attacker to elevate privileges locally.