Vulnerability index

Browse CVEs

11 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Uncontrolled Search Path (DLL Hijack)CWE-427 × clear
Power Apps HIGH 8.0
CVE-2026-32172

Uncontrolled search path element in Microsoft Power Apps allows an unauthorized attacker to execute code over a network.

Mitigation only
Fix from $1,950 2026-04-23
Power Automate For Desktop MEDIUM 5.7
CVE-2025-29817

Uncontrolled search path element in Power Automate allows an authorized attacker to disclose information over a network.

Fix: 2.51.349.24355+
Fix from $1,600 2025-04-15
Sql Server Management Studio HIGH 7.3
CVE-2025-29803

Uncontrolled search path element in Visual Studio Tools for Applications and SQL Server Management Studio allows an authorized attacker to elevate pr…

Fix: 16.0.35907.0 / 17.0.35906.0+
Fix from $1,950 2025-04-12
Visual Studio 2022 HIGH 7.3
CVE-2025-29802

Improper access control in Visual Studio allows an authorized attacker to elevate privileges locally.

Fix: 17.8.20 / 17.10.13+
Fix from $1,950 2025-04-08
Visual Studio Code HIGH 7.3
CVE-2025-26631

Uncontrolled search path element in Visual Studio Code allows an authorized attacker to elevate privileges locally.

Fix: 1.98.0+
Fix from $1,950 2025-03-11
Visual Studio 2019 HIGH 7.3
CVE-2025-25003

Uncontrolled search path element in Visual Studio allows an authorized attacker to elevate privileges locally.

Fix: 16.11.45 / 17.8.19+
Fix from $1,950 2025-03-11
Visual Studio 2017 HIGH 7.3
CVE-2025-24998

Uncontrolled search path element in Visual Studio allows an authorized attacker to elevate privileges locally.

Fix: 15.9.71 / 16.11.45+
Fix from $1,950 2025-03-11
Visual Studio Code HIGH 7.3
CVE-2025-24039

Visual Studio Code Elevation of Privilege Vulnerability

Fix: 1.97.1+
Fix from $1,950 2025-02-11
Visual Studio 2017 HIGH 7.3
CVE-2025-21206

Visual Studio Installer Elevation of Privilege Vulnerability

Fix: 15.9.70 / 16.11.44+
Fix from $1,950 2025-02-11
Visual Studio 2017 HIGH 7.8
CVE-2022-24767

GitHub: Git for Windows' uninstaller vulnerable to DLL hijacking when run under the SYSTEM user account.

Fix: 2.35.2 / 15.9.46+
Fix from $1,950 2022-04-12
Skype CRITICAL 9.8
CVE-2017-6517EPSS 46%

Microsoft Skype 7.16.0.102 contains a vulnerability that could allow an unauthenticated, remote attacker to execute arbitrary code on the targeted sy…

No fix yet
Fix from $2,300 2017-03-23