Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6649
Adobe 6383
Ibm 6266
Cisco 5746
Debian 3919
Apache 2864
Mozilla 2857
Redhat 2581
CRITICAL 9.8
CVE-2026-65768
Improper limitation of a pathname to a restricted directory ('path traversal') in Microsoft Teams for Android allows an unauthorized attacker to exec…
Teams
1.0.0.2026133602+
HIGH 8.8
CVE-2026-49163
Improper limitation of a pathname to a restricted directory ('path traversal') in Application Insights Profiler allows an authorized attacker to elev…
Application Insights Profiler
No fix yet
MEDIUM 5.5
CVE-2026-45496
Improper limitation of a pathname to a restricted directory ('path traversal') in Visual Studio Code allows an unauthorized attacker to bypass a secu…
Visual Studio Code
1.128.1+
HIGH 8.4
CVE-2026-45482
Improper limitation of a pathname to a restricted directory ('path traversal') in GitHub Copilot and Visual Studio Code allows an unauthorized attack…
Visual Studio Code
1.123.2+
HIGH 8.8
CVE-2026-45454
Improper limitation of a pathname to a restricted directory ('path traversal') in Microsoft Office SharePoint allows an authorized attacker to execut…
Sharepoint Server
16.0.19725.20384+
HIGH 8.8
CVE-2026-32193
Improper limitation of a pathname to a restricted directory ('path traversal') in Microsoft Azure Kubernetes Service allows an authorized attacker to…
Azure Kubernetes Service
2026-02-13.5+
MEDIUM 5.5
CVE-2026-41612
Relative path traversal in Visual Studio Code allows an unauthorized attacker to disclose information locally.
Live Preview
0.4.19+
MEDIUM 6.7
CVE-2026-26124
'.../...//' in Azure Compute Gallery allows an authorized attacker to elevate privileges locally.
Aci Confidential Containers
No fix yet
CRITICAL 9.8
CVE-2026-21227
Improper limitation of a pathname to a restricted directory ('path traversal') in Azure Logic Apps allows an unauthorized attacker to elevate privile…
Azure Logic Apps
Mitigation only
MEDIUM 6.8
CVE-2025-62449
Improper limitation of a pathname to a restricted directory ('path traversal') in Visual Studio Code CoPilot Chat Extension allows an authorized atta…
Github Copilot Chat
0.32.0+
MEDIUM 6.5
CVE-2025-60722
Improper limitation of a pathname to a restricted directory ('path traversal') in OneDrive for Android allows an authorized attacker to elevate privi…
Onedrive
7.42+
HIGH 7.5
CVE-2025-53793
Improper authentication in Azure Stack allows an unauthorized attacker to disclose information over a network.
Azure Stack Hub
1.2406.1.23 / 1.2408.1.50+
HIGH 7.8
CVE-2025-47176
'.../...//' in Microsoft Office Outlook allows an authorized attacker to execute code locally.
365 Apps
No fix yet
CRITICAL 9.8
CVE-2025-30387
Improper limitation of a pathname to a restricted directory ('path traversal') in Azure allows an unauthorized attacker to elevate privileges over a …
Azure Ai Document Intelligence Studio
Mitigation only
MEDIUM 6.8
CVE-2024-49082
Windows File Explorer Information Disclosure Vulnerability
Windows 10 1507
10.0.10240.20857 / 10.0.14393.7606+
HIGH 8.8
CVE-2024-29053
Microsoft Defender for IoT Remote Code Execution Vulnerability
Defender For Iot
24.1.3+
CRITICAL 9.0
CVE-2024-21400
Microsoft Azure Kubernetes Service Confidential Container Elevation of Privilege Vulnerability
Confidental Containers
0.3.3+
HIGH 7.0
CVE-2023-38176
Azure Arc-Enabled Servers Elevation of Privilege Vulnerability
Azure Arc Enabled Servers
1.33.02399.0+
HIGH 7.8
CVE-2022-4510EPSS 22%
A path traversal vulnerability was identified in ReFirm Labs binwalk from version 2.1.2b through 2.3.3 included. By crafting a malicious PFS filesyst…
Binwalk
2.3.3+
MEDIUM 5.5
CVE-2022-29799EPSS 12%
A vulnerability was found in networkd-dispatcher. This flaw exists because no functions are sanitized by the OperationalState or the AdministrativeSt…
Windows Defender For Endpoint
Patch available
HIGH 7.8
CVE-2022-21999 KEVEPSS 42%
Windows Print Spooler Elevation of Privilege Vulnerability
Windows 10 1507
10.0.10240.19204 / 10.0.14393.4946+
HIGH 8.8
CVE-2021-40444 KEVEPSS 97%
Microsoft is investigating reports of a remote code execution vulnerability in MSHTML that affects Microsoft Windows. Microsoft is aware of targeted …
Windows 10 1507
10.0.10240.19060 / 10.0.14393.4651+
HIGH 7.8
CVE-2021-27065 KEVEPSS 100%
Microsoft Exchange Server Remote Code Execution Vulnerability
Exchange Server
Patch available
HIGH 7.8
CVE-2020-1082
An elevation of privilege vulnerability exists in Windows Error Reporting (WER) when WER handles and executes files, aka 'Windows Error Reporting Ele…
Windows 10
Patch available
HIGH 7.8
CVE-2019-16765EPSS 5%
If an attacker can get a user to open a specially prepared directory tree as a workspace in Visual Studio Code with the CodeQL extension active, arbi…
Codeql
1.0.1+
MEDIUM 5.5
CVE-2019-1142
An elevation of privilege vulnerability exists when the .NET Framework common language runtime (CLR) allows file creation in arbitrary locations, aka…
.net Framework
Patch available
HIGH 8.0
CVE-2019-0887EPSS 71%
A remote code execution vulnerability exists in Remote Desktop Services - formerly known as Terminal Services - when an authenticated attacker abuses…
Remote Desktop Client
1.2.2691+
HIGH 7.5
CVE-2018-8495EPSS 51%
A remote code execution vulnerability exists when Windows Shell improperly handles URIs, aka "Windows Shell Remote Code Execution Vulnerability." Thi…
Windows 10
Patch available
HIGH 7.8
CVE-2015-0016 KEVEPSS 76%
Directory traversal vulnerability in the TS WebProxy (aka TSWbPrxy) component in Microsoft Windows Vista SP2, Windows 7 SP1, Windows Server 2008 R2 S…
Windows 7
Patch available
HIGH 7.5
CVE-2013-0084EPSS 21%
Directory traversal vulnerability in Microsoft SharePoint Server 2010 SP1 and SharePoint Foundation 2010 SP1 allows remote attackers to bypass intend…
Sharepoint Foundation
Mitigation only