Vulnerability index

Browse CVEs

611 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Improper Input ValidationCWE-20 × clear
HIGH 7.7 CVE-2026-26147 Improper input validation in Azure Compute Gallery allows an authorized attacker to disclose information over a network. Azure Stack Hci Mitigation only Fix from $1,9502026-05-22 CRITICAL 9.8 CVE-2026-45495 Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability Edge Chromium 148.0.3967.70+ Fix from $2,3002026-05-18 MEDIUM 5.4 CVE-2026-45492 Improper input validation in Microsoft Edge (Chromium-based) allows an unauthorized attacker to bypass a security feature over a network. Edge Chromium 148.0.3967.70+ Fix from $1,6002026-05-18 HIGH 7.3 CVE-2026-35433 Improper input validation in .NET allows an unauthorized attacker to elevate privileges locally. .net Framework 8.0.27 / 9.0.16+ Fix from $1,9502026-05-12 HIGH 7.3 CVE-2026-32177 Heap-based buffer overflow in .NET allows an unauthorized attacker to elevate privileges locally. Visual Studio 2022 8.0.27 / 9.0.16+ Fix from $1,9502026-05-12 CRITICAL 9.0 CVE-2026-33844 Improper access control in Azure Managed Instance for Apache Cassandra allows an authorized attacker to execute code over a network. Azure Managed Instance For Apache Cassandra Mitigation only Fix from $2,3002026-05-07 HIGH 8.0 CVE-2026-33826 Improper input validation in Windows Active Directory allows an authorized attacker to execute code over an adjacent network. Windows Server 2012 10.0.14393.9060 / 10.0.17763.8644+ Fix from $1,9502026-04-14 HIGH 7.5 CVE-2026-33116 Loop with unreachable exit condition ('infinite loop') in .NET, .NET Framework, Visual Studio allows an unauthorized attacker to deny service over a … .net 8.0.26 / 9.0.15+ Fix from $1,9502026-04-14 HIGH 7.5 CVE-2026-32203 Stack-based buffer overflow in .NET and Visual Studio allows an unauthorized attacker to deny service over a network. .net 8.0.26 / 9.0.15+ Fix from $1,9502026-04-14 MEDIUM 6.5 CVE-2026-32201 KEVEPSS 23% Improper input validation in Microsoft Office SharePoint allows an unauthorized attacker to perform spoofing over a network. Sharepoint Server 16.0.19725.20210+ Fix from $1,6002026-04-14 HIGH 7.8 CVE-2026-32168 Improper input validation in Azure Monitor Agent allows an authorized attacker to elevate privileges locally. Azure Monitor Agent 1.35.9+ Fix from $1,9502026-04-14 HIGH 7.3 CVE-2026-32149 Improper input validation in Windows Hyper-V allows an authorized attacker to execute code locally. Windows 10 1607 10.0.14393.9060 / 10.0.17763.8644+ Fix from $1,9502026-04-14 HIGH 8.7 CVE-2026-27928 Improper input validation in Windows Hello allows an unauthorized attacker to bypass a security feature over a network. Windows Server 2016 10.0.14393.9060 / 10.0.17763.8644+ Fix from $1,9502026-04-14 HIGH 7.7 CVE-2026-27913 Improper input validation in Windows BitLocker allows an unauthorized attacker to bypass a security feature locally. Windows Server 2012 10.0.14393.9060 / 10.0.17763.8644+ Fix from $1,9502026-04-14 HIGH 7.8 CVE-2026-26170 Improper input validation in Microsoft PowerShell allows an authorized attacker to elevate privileges locally. Windows 10 1607 10.0.14393.9060 / 10.0.17763.8644+ Fix from $1,9502026-04-14 HIGH 7.8 CVE-2026-26161 Untrusted pointer dereference in Windows Sensor Data Service allows an authorized attacker to elevate privileges locally. Windows 10 1809 10.0.17763.8644 / 10.0.19044.7184+ Fix from $1,9502026-04-14 HIGH 7.8 CVE-2026-26156 Heap-based buffer overflow in Windows Hyper-V allows an unauthorized attacker to execute code locally. Windows 10 1607 10.0.14393.9060 / 10.0.17763.8644+ Fix from $1,9502026-04-14 HIGH 7.5 CVE-2026-26154 Improper input validation in Windows Server Update Service allows an unauthorized attacker to perform tampering over a network. Windows Server 2012 10.0.14393.9060 / 10.0.17763.8644+ Fix from $1,9502026-04-14 HIGH 7.8 CVE-2026-26143 Improper input validation in Microsoft PowerShell allows an unauthorized attacker to bypass a security feature locally. Powershell 7.4.14 / 7.5.5+ Fix from $1,9502026-04-14 HIGH 7.5 CVE-2026-26121 Server-side request forgery (ssrf) in Azure IoT Explorer allows an unauthorized attacker to perform spoofing over a network. Azure Iot Explorer 0.15.14+ Fix from $1,9502026-03-10 HIGH 8.8 CVE-2026-26106 Improper input validation in Microsoft Office SharePoint allows an authorized attacker to execute code over a network. Sharepoint Server 16.0.19725.20076+ Fix from $1,9502026-03-10 HIGH 8.8 CVE-2026-20967 Improper input validation in System Center Operations Manager allows an authorized attacker to elevate privileges over a network. System Center Operations Manager Mitigation only Fix from $1,9502026-03-10 MEDIUM 5.5 CVE-2026-21258 Improper input validation in Microsoft Office Excel allows an unauthorized attacker to disclose information locally. 365 Apps 16.0.10417.20097+ Fix from $1,6002026-02-10 HIGH 7.3 CVE-2026-21247 Improper input validation in Windows Hyper-V allows an authorized attacker to execute code locally. Windows 10 1607 10.0.14393.8868 / 10.0.17763.8389+ Fix from $1,9502026-02-10 HIGH 8.8 CVE-2026-21229 Improper input validation in Power BI allows an authorized attacker to execute code over a network. Power Bi Report Server 15.0.1120.113+ Fix from $1,9502026-02-10 HIGH 7.8 CVE-2026-20951 Improper input validation in Microsoft Office SharePoint allows an unauthorized attacker to execute code locally. Sharepoint Server 16.0.19127.20442+ Fix from $1,9502026-01-13 HIGH 8.1 CVE-2026-20856 Improper input validation in Windows Server Update Service allows an unauthorized attacker to execute code over a network. Windows 10 1607 10.0.14393.8783 / 10.0.17763.8276+ Fix from $1,9502026-01-13 MEDIUM 6.5 CVE-2026-20812 Improper input validation in Windows LDAP - Lightweight Directory Access Protocol allows an authorized attacker to perform tampering over a network. Windows 10 1607 10.0.14393.8783 / 10.0.17763.8276+ Fix from $1,6002026-01-13 HIGH 7.5 CVE-2025-64666 Improper input validation in Microsoft Exchange Server allows an authorized attacker to elevate privileges over a network. Exchange Server 15.02.2562.035+ Fix from $1,9502025-12-09 HIGH 7.8 CVE-2025-62571 Improper input validation in Windows Installer allows an authorized attacker to elevate privileges locally. Windows 10 1607 10.0.14393.8688 / 10.0.17763.8146+ Fix from $1,9502025-12-09