Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 7.8 CVE-2026-63522 Incorrect permission assignment for critical resource in Azure SQL Database allows an authorized attacker to elevate privileges locally. Azure Sql Database No fix yet Fix from $4,9002026-08-11 HIGH 7.8 CVE-2026-63519 Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally. 365 Apps No fix yet Fix from $4,9002026-08-11 MEDIUM 5.5 CVE-2026-63517 Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally. 365 Apps No fix yet Fix from $4,0002026-08-11 HIGH 7.8 CVE-2026-63515 Out-of-bounds read in Microsoft Office allows an unauthorized attacker to execute code locally. 365 Apps No fix yet Fix from $4,9002026-08-11 HIGH 7.8 CVE-2026-63513 Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally. 365 Apps No fix yet Fix from $4,9002026-08-11 HIGH 8.8 CVE-2026-62869 Insufficient verification of data authenticity in Azure Entra ID allows an authorized attacker to perform spoofing over a network. Entra Id No fix yet Fix from $4,9002026-08-11 MEDIUM 5.5 CVE-2026-62842 Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally. 365 Apps No fix yet Fix from $4,0002026-08-11 HIGH 7.8 CVE-2026-58651 Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code locally. 365 Apps No fix yet Fix from $4,9002026-08-11 HIGH 7.8 CVE-2026-54981 Inclusion of functionality from untrusted control sphere in Visual Studio Code - Python extension allows an unauthorized attacker to bypass a securit… Python No fix yet Fix from $4,9002026-08-11 CRITICAL 9.4 CVE-2026-50516 Missing authentication for critical function in Microsoft Azure Kubernetes Service allows an unauthorized attacker to elevate privileges over a netwo… Azure Kubernetes Service No fix yet Fix from $5,7502026-08-11 HIGH 8.1 CVE-2026-48440 ColdFusion is affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user… Coldfusion No fix yet Fix from $4,9002026-08-11 HIGH 7.5 CVE-2026-48386 ColdFusion is affected by a Use of a Broken or Risky Cryptographic Algorithm vulnerability that could lead to disclosure of sensitive memory. An atta… Coldfusion No fix yet Fix from $4,9002026-08-11 HIGH 7.7 CVE-2026-48385 ColdFusion is affected by an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability that could resu… Coldfusion No fix yet Fix from $4,9002026-08-11 MEDIUM 5.4 CVE-2026-48376 is affected by an Improper Encoding or Escaping of Output vulnerability that could result in a Security feature bypass. A low-privileged attacker cou… Coldfusion No fix yet Fix from $4,0002026-08-11 MEDIUM 6.5 CVE-2026-48375 ColdFusion is affected by an Incorrect Authorization vulnerability that could result in an application denial-of-service. A low-privileged attacker c… Coldfusion No fix yet Fix from $4,0002026-08-11 CRITICAL 10.0 CVE-2026-48362 ColdFusion is affected by an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability that could resu… Coldfusion No fix yet Fix from $5,7502026-08-11 HIGH 8.5 CVE-2026-43606 Observable Timing Discrepancy in the AMD Vitis Libraries ECDSA secp256k1 component could allow attackers with local access to potentially perform tim… No fix yet Fix from $4,9002026-08-11 MEDIUM 6.3 CVE-2026-39452 Protection mechanism failure for some Intel(R) Transfer Learning Tool before version v0.7 within Ring 3: User Applications may allow an escalation of… No fix yet Fix from $4,0002026-08-11 HIGH 8.4 CVE-2026-34635 is affected by a Use of Hard-coded Cryptographic Key vulnerability that could result in a Security feature bypass. A low-privileged attacker could le… Coldfusion No fix yet Fix from $4,9002026-08-11 MEDIUM 5.4 CVE-2026-34175 Uncontrolled search path for some Hardware-Aware-Automated-MachineLearning NA before version 45cd723 within Ring 3: User Applications may allow an es… No fix yet Fix from $4,0002026-08-11 MEDIUM 5.4 CVE-2026-32791 Untrusted search path for some Intel(R) Performance Counter Monitor (Intel(R) PCM) before version tag 202604 within Ring 3: User Applications may all… No fix yet Fix from $4,0002026-08-11 MEDIUM 5.4 CVE-2026-32788 Uncontrolled search path for some Approximate Bayesian Inference Framework before version on commit #484c949 within Ring 3: User Applications may all… No fix yet Fix from $4,0002026-08-11 MEDIUM 5.4 CVE-2026-32677 Path traversal for some gaudi-container-runtime before version 1.24.0 within Ring 3: User Applications may allow an escalation of privilege. Unprivil… No fix yet Fix from $4,0002026-08-11 MEDIUM 5.4 CVE-2026-28757 Protection mechanism failure for some Intel(R) Workload Services Framework software within Ring 3: User Applications may allow an escalation of privi… No fix yet Fix from $4,0002026-08-11 MEDIUM 5.4 CVE-2026-28707 Protection mechanism failure for some LLM-on-Ray before version 1.0 within Ring 3: User Applications may allow an escalation of privilege. Unprivileg… No fix yet Fix from $4,0002026-08-11 MEDIUM 5.4 CVE-2026-28700 Uncontrolled search path for some EquiTriton before version f5ddbb5 within Ring 3: User Applications may allow an escalation of privilege. Unprivileg… No fix yet Fix from $4,0002026-08-11 MEDIUM 6.8 CVE-2026-27765 Improper input validation for some vLLM Hardware Plugin for Intel(R) Gaudi(R) software before version 0.16.0 within Ring 3: User Applications may all… No fix yet Fix from $4,0002026-08-11 HIGH 7.8 CVE-2026-25652 is affected by an Incorrect Authorization vulnerability that could result in privilege escalation. A low-privileged attacker could exploit this vulne… Coldfusion No fix yet Fix from $4,9002026-08-11 HIGH 8.3 CVE-2026-24911 Stack-based buffer overflow for some Intel(R) PROSet/Wireless WiFi Software for Windows within Ring 0: Kernel may allow a denial of service. Unprivil… No fix yet Fix from $4,9002026-08-11 MEDIUM 5.4 CVE-2026-24693 Protection mechanism failure for some Intel(R) oneCCL Bindings for PyTorch before version v2.8.0 within Ring 3: User Applications may allow an escala… No fix yet Fix from $4,0002026-08-11