Vendor CVEs
Microsoft
All CVEs
15,658 total · sorted by risk| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-1999-0253 | 0.01 | — | 0.08 | Jan 1, 1997 | IIS 3.0 with the iis-fix hotfix installed allows remote intruders to read source code for ASP programs by using a %2e instead of a . (dot) in the URL. | |||
| CVE-2026-66803 | Cri | 0.00 | 10.0 | 0.01 | Jul 30, 2026 | Improper access control in Azure Cosmos DB allows an unauthorized attacker to execute code over a network. | ||
| CVE-2026-57990 | Hig | 0.00 | 7.4 | 0.01 | Jul 26, 2026 | Files or directories accessible to external parties in Microsoft Edge (Chromium-based) allows an unauthorized attacker to disclose information over a network. | ||
| CVE-2026-57989 | Hig | 0.00 | 7.4 | 0.00 | Jul 26, 2026 | Origin validation error in Microsoft Edge (Chromium-based) allows an unauthorized attacker to disclose information over a network. | ||
| CVE-2026-57978 | Med | 0.00 | 5.4 | 0.00 | Jul 26, 2026 | Origin validation error in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform spoofing over a network. | ||
| CVE-2026-62835 | Cri | 0.00 | 9.3 | 0.01 | Jul 24, 2026 | Improper authorization in Azure Portal allows an unauthorized attacker to disclose information over a network. | ||
| CVE-2026-57106 | Cri | 0.00 | 10.0 | 0.00 | Jul 24, 2026 | Server-side request forgery (ssrf) in Data Quality allows an unauthorized attacker to elevate privileges over a network. | ||
| CVE-2026-56163 | Cri | 0.00 | 10.0 | 0.00 | Jul 24, 2026 | Missing authentication for critical function in Microsoft Azure Kubernetes Service allows an unauthorized attacker to elevate privileges over a network. | ||
| CVE-2026-56191 | Cri | 0.00 | 10.0 | 0.01 | Jul 24, 2026 | Improper authentication in Microsoft Exchange Online allows an unauthorized attacker to perform tampering over a network. | ||
| CVE-2026-56167 | Hig | 0.00 | 8.5 | 0.00 | Jul 24, 2026 | Server-side request forgery (ssrf) in Azure AI Search allows an authorized attacker to elevate privileges over a network. | ||
| CVE-2026-56165 | Cri | 0.00 | 9.8 | 0.01 | Jul 24, 2026 | Heap-based buffer overflow in Microsoft Account allows an unauthorized attacker to execute code over a network. | ||
| CVE-2026-50517 | Cri | 0.00 | 9.9 | 0.01 | Jul 24, 2026 | Deserialization of untrusted data in M365 Copilot allows an authorized attacker to execute code over a network. | ||
| CVE-2026-49159 | Med | 0.00 | 6.5 | 0.01 | Jul 24, 2026 | Exposure of sensitive information to an unauthorized actor in Microsoft Graph allows an authorized attacker to disclose information over a network. | ||
| CVE-2025-66390 | Cri | 0.00 | 9.8 | 0.01 | Jul 21, 2026 | In Microsoft Azure API Management through 2025-10-17, when self-service signup (username/password Basic Authentication) is enabled in Tenant A, an attacker can reuse the registration flow by changing the hostname or tenant identifier to Tenant B, even when Tenant B has signup… | ||
| CVE-2026-57980 | Med | 0.00 | 5.4 | 0.00 | Jul 17, 2026 | Authentication bypass using an alternate path or channel in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform tampering over a network. | ||
| CVE-2026-56171 | Hig | 0.00 | 7.1 | 0.01 | Jul 17, 2026 | Exposure of private personal information to an unauthorized actor in Windows RDP allows an unauthorized attacker to disclose information over a network. | ||
| CVE-2026-62826 | Med | 0.00 | 4.6 | 0.01 | Jul 16, 2026 | Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network. | ||
| CVE-2026-59117 | Hig | 0.00 | 7.5 | 0.01 | Jul 16, 2026 | Integer overflow or wraparound in Windows Terminal allows an unauthorized attacker to execute code over a network. | ||
| CVE-2026-58598 | Hig | 0.00 | 7.0 | 0.00 | Jul 16, 2026 | Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Backup Engine allows an authorized attacker to elevate privileges locally. | ||
| CVE-2026-57206 | Hig | 0.00 | 8.6 | 0.01 | Jul 16, 2026 | SimpleChat is a secure AI conversation application with personal and group workspaces for document-grounded interactions. Prior to 0.241.206, several plugin validation routes in application/single_app/plugin_validation_endpoint.py, including `POST… | ||
| CVE-2026-57205 | Med | 0.00 | 4.3 | 0.01 | Jul 16, 2026 | SimpleChat is a secure AI conversation application with personal and group workspaces for document-grounded interactions. Prior to 0.241.203, the authenticated GET /api/user/info/<user_id> and GET /api/user/profile-image/<user_id> endpoints in… | ||
| CVE-2026-55440 | Med | 0.00 | 6.5 | 0.01 | Jul 16, 2026 | Microsoft UFO open-source framework for intelligent automation across devices and platforms. Prior to 3.0.7, the COMMAND_RESULTS handler in ufo/server/ws/handler.py called get_or_create_session in ufo/server/services/session_manager.py without owner_client_id, allowing an… | ||
| CVE-2026-54733 | Cri | 0.00 | — | 0.01 | Jul 16, 2026 | The Microsoft 365 and Microsoft Entra ID Plugins for Moodle provide Office 365 and Azure Active Directory integration for Moodle. Prior to 4.5.6, 5.0.5, and 5.1.1, the Microsoft Office 365 Integration plugin local_o365 Teams SSO endpoint sso_login.php base64-decodes a JWT… | ||
| CVE-2026-54568 | Med | 0.00 | 4.3 | 0.01 | Jul 16, 2026 | Microsoft UFO open-source framework for intelligent automation across devices and platforms. From 3.0.0 until 3.0.6, a client connected to the UFO WebSocket server as a DEVICE could call DEVICE_INFO_REQUEST with another device's target_id and receive that device's server-side… | ||
| CVE-2026-61371 | Hig | 0.00 | 7.5 | 0.01 | Jul 15, 2026 | Microsoft AVML before 0.17.0 could follow a symlink when opening a destination output path on Unix, allowing truncation/overwrite of the symlink target. The destructive effect is performed at open-time via O_TRUNC, and can happen before full input validation completes… | ||
| CVE-2026-47305 | Hig | 0.00 | 7.8 | 0.00 | Jul 14, 2026 | Protection mechanism failure in Visual Studio allows an unauthorized attacker to execute code locally. | ||
| CVE-2026-47301 | Hig | 0.00 | 8.8 | 0.01 | Jul 14, 2026 | Improper access control in Microsoft Configuration Manager allows an authorized attacker to elevate privileges over a network. | ||
| CVE-2026-58638 | Med | 0.00 | 6.0 | 0.00 | Jul 14, 2026 | Missing cryptographic step in Windows Boot Loader allows an authorized attacker to bypass a security feature locally. | ||
| CVE-2026-58637 | Hig | 0.00 | 7.0 | 0.00 | Jul 14, 2026 | Use after free in Windows Client-Side Caching (CSC) Service allows an authorized attacker to elevate privileges locally. | ||
| CVE-2026-58634 | Hig | 0.00 | 7.8 | 0.00 | Jul 14, 2026 | Use after free in Desktop Window Manager allows an authorized attacker to elevate privileges locally. | ||
| CVE-2026-58633 | Hig | 0.00 | 7.8 | 0.00 | Jul 14, 2026 | Use after free in Desktop Window Manager allows an authorized attacker to elevate privileges locally. | ||
| CVE-2026-58632 | Hig | 0.00 | 7.8 | 0.00 | Jul 14, 2026 | Use after free in Windows Win32K allows an authorized attacker to elevate privileges locally. | ||
| CVE-2026-58629 | Hig | 0.00 | 7.0 | 0.00 | Jul 14, 2026 | Use after free in Windows DirectX allows an authorized attacker to elevate privileges locally. | ||
| CVE-2026-58628 | Hig | 0.00 | 7.8 | 0.00 | Jul 14, 2026 | Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Wireless Networking allows an authorized attacker to elevate privileges locally. | ||
| CVE-2026-58627 | Hig | 0.00 | 7.5 | 0.01 | Jul 14, 2026 | Uncontrolled resource consumption in Windows DHCP Server allows an unauthorized attacker to deny service over a network. | ||
| CVE-2026-58626 | Hig | 0.00 | 8.8 | 0.01 | Jul 14, 2026 | Use after free in Windows Remote Desktop Services allows an authorized attacker to execute code over a network. | ||
| CVE-2026-58619 | Hig | 0.00 | 7.0 | 0.00 | Jul 14, 2026 | Use after free in Windows Sensor Data Service allows an authorized attacker to elevate privileges locally. | ||
| CVE-2026-58617 | Hig | 0.00 | 8.1 | 0.01 | Jul 14, 2026 | Improper access control in Microsoft 365 Copilot for iOS allows an unauthorized attacker to elevate privileges over a network. | ||
| CVE-2026-58613 | Hig | 0.00 | 7.8 | 0.00 | Jul 14, 2026 | Use after free in Windows Cloud Files Mini Filter Driver allows an authorized attacker to elevate privileges locally. | ||
| CVE-2026-58594 | Hig | 0.00 | 8.8 | 0.01 | Jul 14, 2026 | Integer overflow or wraparound in Windows RDP allows an unauthorized attacker to execute code over a network. | ||
| CVE-2026-58547 | Med | 0.00 | 5.5 | 0.00 | Jul 14, 2026 | Heap-based buffer overflow in Universal Plug and Play (upnp.dll) allows an authorized attacker to elevate privileges locally. | ||
| CVE-2026-58546 | Med | 0.00 | 6.5 | 0.01 | Jul 14, 2026 | Use of uninitialized resource in Windows RDP allows an unauthorized attacker to disclose information over a network. | ||
| CVE-2026-58545 | Med | 0.00 | 5.5 | 0.00 | Jul 14, 2026 | Improper access control in Windows Kernel allows an authorized attacker to bypass a security feature locally. | ||
| CVE-2026-58544 | Hig | 0.00 | 7.0 | 0.00 | Jul 14, 2026 | Use after free in Windows Management Services allows an authorized attacker to elevate privileges locally. | ||
| CVE-2026-58543 | Med | 0.00 | 6.3 | 0.00 | Jul 14, 2026 | Concurrent execution using shared resource with improper synchronization ('race condition') in Windows USB Print Driver allows an authorized attacker to elevate privileges with a physical attack. | ||
| CVE-2026-58542 | Hig | 0.00 | 7.8 | 0.00 | Jul 14, 2026 | Heap-based buffer overflow in Windows Media allows an unauthorized attacker to execute code locally. | ||
| CVE-2026-58541 | Hig | 0.00 | 7.8 | 0.00 | Jul 14, 2026 | Access of resource using incompatible type ('type confusion') in Windows DWM allows an authorized attacker to elevate privileges locally. | ||
| CVE-2026-58540 | Hig | 0.00 | 7.8 | 0.00 | Jul 14, 2026 | Improper authorization in Windows Installer allows an authorized attacker to elevate privileges locally. | ||
| CVE-2026-58539 | Med | 0.00 | 6.5 | 0.01 | Jul 14, 2026 | Out-of-bounds read in Windows RDP allows an unauthorized attacker to disclose information over a network. | ||
| CVE-2026-58538 | Hig | 0.00 | 7.8 | 0.00 | Jul 14, 2026 | Heap-based buffer overflow in Windows Bluetooth Service allows an authorized attacker to elevate privileges locally. |
- CVE-1999-0253Jan 1, 1997risk 0.01cvss —epss 0.08
IIS 3.0 with the iis-fix hotfix installed allows remote intruders to read source code for ASP programs by using a %2e instead of a . (dot) in the URL.
- risk 0.00cvss 10.0epss 0.01
Improper access control in Azure Cosmos DB allows an unauthorized attacker to execute code over a network.
- risk 0.00cvss 7.4epss 0.01
Files or directories accessible to external parties in Microsoft Edge (Chromium-based) allows an unauthorized attacker to disclose information over a network.
- risk 0.00cvss 7.4epss 0.00
Origin validation error in Microsoft Edge (Chromium-based) allows an unauthorized attacker to disclose information over a network.
- risk 0.00cvss 5.4epss 0.00
Origin validation error in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform spoofing over a network.
- risk 0.00cvss 9.3epss 0.01
Improper authorization in Azure Portal allows an unauthorized attacker to disclose information over a network.
- risk 0.00cvss 10.0epss 0.00
Server-side request forgery (ssrf) in Data Quality allows an unauthorized attacker to elevate privileges over a network.
- risk 0.00cvss 10.0epss 0.00
Missing authentication for critical function in Microsoft Azure Kubernetes Service allows an unauthorized attacker to elevate privileges over a network.
- risk 0.00cvss 10.0epss 0.01
Improper authentication in Microsoft Exchange Online allows an unauthorized attacker to perform tampering over a network.
- risk 0.00cvss 8.5epss 0.00
Server-side request forgery (ssrf) in Azure AI Search allows an authorized attacker to elevate privileges over a network.
- risk 0.00cvss 9.8epss 0.01
Heap-based buffer overflow in Microsoft Account allows an unauthorized attacker to execute code over a network.
- risk 0.00cvss 9.9epss 0.01
Deserialization of untrusted data in M365 Copilot allows an authorized attacker to execute code over a network.
- risk 0.00cvss 6.5epss 0.01
Exposure of sensitive information to an unauthorized actor in Microsoft Graph allows an authorized attacker to disclose information over a network.
- risk 0.00cvss 9.8epss 0.01
In Microsoft Azure API Management through 2025-10-17, when self-service signup (username/password Basic Authentication) is enabled in Tenant A, an attacker can reuse the registration flow by changing the hostname or tenant identifier to Tenant B, even when Tenant B has signup…
- risk 0.00cvss 5.4epss 0.00
Authentication bypass using an alternate path or channel in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform tampering over a network.
- risk 0.00cvss 7.1epss 0.01
Exposure of private personal information to an unauthorized actor in Windows RDP allows an unauthorized attacker to disclose information over a network.
- risk 0.00cvss 4.6epss 0.01
Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.
- risk 0.00cvss 7.5epss 0.01
Integer overflow or wraparound in Windows Terminal allows an unauthorized attacker to execute code over a network.
- risk 0.00cvss 7.0epss 0.00
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Backup Engine allows an authorized attacker to elevate privileges locally.
- risk 0.00cvss 8.6epss 0.01
SimpleChat is a secure AI conversation application with personal and group workspaces for document-grounded interactions. Prior to 0.241.206, several plugin validation routes in application/single_app/plugin_validation_endpoint.py, including `POST…
- risk 0.00cvss 4.3epss 0.01
SimpleChat is a secure AI conversation application with personal and group workspaces for document-grounded interactions. Prior to 0.241.203, the authenticated GET /api/user/info/<user_id> and GET /api/user/profile-image/<user_id> endpoints in…
- risk 0.00cvss 6.5epss 0.01
Microsoft UFO open-source framework for intelligent automation across devices and platforms. Prior to 3.0.7, the COMMAND_RESULTS handler in ufo/server/ws/handler.py called get_or_create_session in ufo/server/services/session_manager.py without owner_client_id, allowing an…
- risk 0.00cvss —epss 0.01
The Microsoft 365 and Microsoft Entra ID Plugins for Moodle provide Office 365 and Azure Active Directory integration for Moodle. Prior to 4.5.6, 5.0.5, and 5.1.1, the Microsoft Office 365 Integration plugin local_o365 Teams SSO endpoint sso_login.php base64-decodes a JWT…
- risk 0.00cvss 4.3epss 0.01
Microsoft UFO open-source framework for intelligent automation across devices and platforms. From 3.0.0 until 3.0.6, a client connected to the UFO WebSocket server as a DEVICE could call DEVICE_INFO_REQUEST with another device's target_id and receive that device's server-side…
- risk 0.00cvss 7.5epss 0.01
Microsoft AVML before 0.17.0 could follow a symlink when opening a destination output path on Unix, allowing truncation/overwrite of the symlink target. The destructive effect is performed at open-time via O_TRUNC, and can happen before full input validation completes…
- risk 0.00cvss 7.8epss 0.00
Protection mechanism failure in Visual Studio allows an unauthorized attacker to execute code locally.
- risk 0.00cvss 8.8epss 0.01
Improper access control in Microsoft Configuration Manager allows an authorized attacker to elevate privileges over a network.
- risk 0.00cvss 6.0epss 0.00
Missing cryptographic step in Windows Boot Loader allows an authorized attacker to bypass a security feature locally.
- risk 0.00cvss 7.0epss 0.00
Use after free in Windows Client-Side Caching (CSC) Service allows an authorized attacker to elevate privileges locally.
- risk 0.00cvss 7.8epss 0.00
Use after free in Desktop Window Manager allows an authorized attacker to elevate privileges locally.
- risk 0.00cvss 7.8epss 0.00
Use after free in Desktop Window Manager allows an authorized attacker to elevate privileges locally.
- risk 0.00cvss 7.8epss 0.00
Use after free in Windows Win32K allows an authorized attacker to elevate privileges locally.
- risk 0.00cvss 7.0epss 0.00
Use after free in Windows DirectX allows an authorized attacker to elevate privileges locally.
- risk 0.00cvss 7.8epss 0.00
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Wireless Networking allows an authorized attacker to elevate privileges locally.
- risk 0.00cvss 7.5epss 0.01
Uncontrolled resource consumption in Windows DHCP Server allows an unauthorized attacker to deny service over a network.
- risk 0.00cvss 8.8epss 0.01
Use after free in Windows Remote Desktop Services allows an authorized attacker to execute code over a network.
- risk 0.00cvss 7.0epss 0.00
Use after free in Windows Sensor Data Service allows an authorized attacker to elevate privileges locally.
- risk 0.00cvss 8.1epss 0.01
Improper access control in Microsoft 365 Copilot for iOS allows an unauthorized attacker to elevate privileges over a network.
- risk 0.00cvss 7.8epss 0.00
Use after free in Windows Cloud Files Mini Filter Driver allows an authorized attacker to elevate privileges locally.
- risk 0.00cvss 8.8epss 0.01
Integer overflow or wraparound in Windows RDP allows an unauthorized attacker to execute code over a network.
- risk 0.00cvss 5.5epss 0.00
Heap-based buffer overflow in Universal Plug and Play (upnp.dll) allows an authorized attacker to elevate privileges locally.
- risk 0.00cvss 6.5epss 0.01
Use of uninitialized resource in Windows RDP allows an unauthorized attacker to disclose information over a network.
- risk 0.00cvss 5.5epss 0.00
Improper access control in Windows Kernel allows an authorized attacker to bypass a security feature locally.
- risk 0.00cvss 7.0epss 0.00
Use after free in Windows Management Services allows an authorized attacker to elevate privileges locally.
- risk 0.00cvss 6.3epss 0.00
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows USB Print Driver allows an authorized attacker to elevate privileges with a physical attack.
- risk 0.00cvss 7.8epss 0.00
Heap-based buffer overflow in Windows Media allows an unauthorized attacker to execute code locally.
- risk 0.00cvss 7.8epss 0.00
Access of resource using incompatible type ('type confusion') in Windows DWM allows an authorized attacker to elevate privileges locally.
- risk 0.00cvss 7.8epss 0.00
Improper authorization in Windows Installer allows an authorized attacker to elevate privileges locally.
- risk 0.00cvss 6.5epss 0.01
Out-of-bounds read in Windows RDP allows an unauthorized attacker to disclose information over a network.
- risk 0.00cvss 7.8epss 0.00
Heap-based buffer overflow in Windows Bluetooth Service allows an authorized attacker to elevate privileges locally.
Page 289 of 314