Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6649
Adobe 6383
Ibm 6266
Cisco 5746
Debian 3919
Apache 2864
Mozilla 2857
Redhat 2581
HIGH 7.7
CVE-2026-26147
Improper input validation in Azure Compute Gallery allows an authorized attacker to disclose information over a network.
Azure Stack Hci
Mitigation only
CRITICAL 9.8
CVE-2026-45495
Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
Edge Chromium
148.0.3967.70+
MEDIUM 5.4
CVE-2026-45492
Improper input validation in Microsoft Edge (Chromium-based) allows an unauthorized attacker to bypass a security feature over a network.
Edge Chromium
148.0.3967.70+
HIGH 7.3
CVE-2026-35433
Improper input validation in .NET allows an unauthorized attacker to elevate privileges locally.
.net Framework
8.0.27 / 9.0.16+
HIGH 7.3
CVE-2026-32177
Heap-based buffer overflow in .NET allows an unauthorized attacker to elevate privileges locally.
Visual Studio 2022
8.0.27 / 9.0.16+
CRITICAL 9.0
CVE-2026-33844
Improper access control in Azure Managed Instance for Apache Cassandra allows an authorized attacker to execute code over a network.
Azure Managed Instance For Apache Cassandra
Mitigation only
HIGH 8.0
CVE-2026-33826
Improper input validation in Windows Active Directory allows an authorized attacker to execute code over an adjacent network.
Windows Server 2012
10.0.14393.9060 / 10.0.17763.8644+
HIGH 7.5
CVE-2026-33116
Loop with unreachable exit condition ('infinite loop') in .NET, .NET Framework, Visual Studio allows an unauthorized attacker to deny service over a …
.net
8.0.26 / 9.0.15+
HIGH 7.5
CVE-2026-32203
Stack-based buffer overflow in .NET and Visual Studio allows an unauthorized attacker to deny service over a network.
.net
8.0.26 / 9.0.15+
MEDIUM 6.5
CVE-2026-32201 KEVEPSS 23%
Improper input validation in Microsoft Office SharePoint allows an unauthorized attacker to perform spoofing over a network.
Sharepoint Server
16.0.19725.20210+
HIGH 7.8
CVE-2026-32168
Improper input validation in Azure Monitor Agent allows an authorized attacker to elevate privileges locally.
Azure Monitor Agent
1.35.9+
HIGH 7.3
CVE-2026-32149
Improper input validation in Windows Hyper-V allows an authorized attacker to execute code locally.
Windows 10 1607
10.0.14393.9060 / 10.0.17763.8644+
HIGH 8.7
CVE-2026-27928
Improper input validation in Windows Hello allows an unauthorized attacker to bypass a security feature over a network.
Windows Server 2016
10.0.14393.9060 / 10.0.17763.8644+
HIGH 7.7
CVE-2026-27913
Improper input validation in Windows BitLocker allows an unauthorized attacker to bypass a security feature locally.
Windows Server 2012
10.0.14393.9060 / 10.0.17763.8644+
HIGH 7.8
CVE-2026-26170
Improper input validation in Microsoft PowerShell allows an authorized attacker to elevate privileges locally.
Windows 10 1607
10.0.14393.9060 / 10.0.17763.8644+
HIGH 7.8
CVE-2026-26161
Untrusted pointer dereference in Windows Sensor Data Service allows an authorized attacker to elevate privileges locally.
Windows 10 1809
10.0.17763.8644 / 10.0.19044.7184+
HIGH 7.8
CVE-2026-26156
Heap-based buffer overflow in Windows Hyper-V allows an unauthorized attacker to execute code locally.
Windows 10 1607
10.0.14393.9060 / 10.0.17763.8644+
HIGH 7.5
CVE-2026-26154
Improper input validation in Windows Server Update Service allows an unauthorized attacker to perform tampering over a network.
Windows Server 2012
10.0.14393.9060 / 10.0.17763.8644+
HIGH 7.8
CVE-2026-26143
Improper input validation in Microsoft PowerShell allows an unauthorized attacker to bypass a security feature locally.
Powershell
7.4.14 / 7.5.5+
HIGH 7.5
CVE-2026-26121
Server-side request forgery (ssrf) in Azure IoT Explorer allows an unauthorized attacker to perform spoofing over a network.
Azure Iot Explorer
0.15.14+
HIGH 8.8
CVE-2026-26106
Improper input validation in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.
Sharepoint Server
16.0.19725.20076+
HIGH 8.8
CVE-2026-20967
Improper input validation in System Center Operations Manager allows an authorized attacker to elevate privileges over a network.
System Center Operations Manager
Mitigation only
MEDIUM 5.5
CVE-2026-21258
Improper input validation in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.
365 Apps
16.0.10417.20097+
HIGH 7.3
CVE-2026-21247
Improper input validation in Windows Hyper-V allows an authorized attacker to execute code locally.
Windows 10 1607
10.0.14393.8868 / 10.0.17763.8389+
HIGH 8.8
CVE-2026-21229
Improper input validation in Power BI allows an authorized attacker to execute code over a network.
Power Bi Report Server
15.0.1120.113+
HIGH 7.8
CVE-2026-20951
Improper input validation in Microsoft Office SharePoint allows an unauthorized attacker to execute code locally.
Sharepoint Server
16.0.19127.20442+
HIGH 8.1
CVE-2026-20856
Improper input validation in Windows Server Update Service allows an unauthorized attacker to execute code over a network.
Windows 10 1607
10.0.14393.8783 / 10.0.17763.8276+
MEDIUM 6.5
CVE-2026-20812
Improper input validation in Windows LDAP - Lightweight Directory Access Protocol allows an authorized attacker to perform tampering over a network.
Windows 10 1607
10.0.14393.8783 / 10.0.17763.8276+
HIGH 7.5
CVE-2025-64666
Improper input validation in Microsoft Exchange Server allows an authorized attacker to elevate privileges over a network.
Exchange Server
15.02.2562.035+
HIGH 7.8
CVE-2025-62571
Improper input validation in Windows Installer allows an authorized attacker to elevate privileges locally.
Windows 10 1607
10.0.14393.8688 / 10.0.17763.8146+