Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6649
Adobe 6383
Ibm 6266
Cisco 5746
Debian 3919
Apache 2864
Mozilla 2857
Redhat 2581
HIGH 8.0
CVE-2026-32172
Uncontrolled search path element in Microsoft Power Apps allows an unauthorized attacker to execute code over a network.
Power Apps
Mitigation only
MEDIUM 5.7
CVE-2025-29817
Uncontrolled search path element in Power Automate allows an authorized attacker to disclose information over a network.
Power Automate For Desktop
2.51.349.24355+
HIGH 7.3
CVE-2025-29803
Uncontrolled search path element in Visual Studio Tools for Applications and SQL Server Management Studio allows an authorized attacker to elevate pr…
Sql Server Management Studio
16.0.35907.0 / 17.0.35906.0+
HIGH 7.3
CVE-2025-29802
Improper access control in Visual Studio allows an authorized attacker to elevate privileges locally.
Visual Studio 2022
17.8.20 / 17.10.13+
HIGH 7.3
CVE-2025-26631
Uncontrolled search path element in Visual Studio Code allows an authorized attacker to elevate privileges locally.
Visual Studio Code
1.98.0+
HIGH 7.3
CVE-2025-25003
Uncontrolled search path element in Visual Studio allows an authorized attacker to elevate privileges locally.
Visual Studio 2019
16.11.45 / 17.8.19+
HIGH 7.3
CVE-2025-24998
Uncontrolled search path element in Visual Studio allows an authorized attacker to elevate privileges locally.
Visual Studio 2017
15.9.71 / 16.11.45+
HIGH 7.3
CVE-2025-24039
Visual Studio Code Elevation of Privilege Vulnerability
Visual Studio Code
1.97.1+
HIGH 7.3
CVE-2025-21206
Visual Studio Installer Elevation of Privilege Vulnerability
Visual Studio 2017
15.9.70 / 16.11.44+
HIGH 7.8
CVE-2022-24767
GitHub: Git for Windows' uninstaller vulnerable to DLL hijacking when run under the SYSTEM user account.
Visual Studio 2017
2.35.2 / 15.9.46+
CRITICAL 9.8
CVE-2017-6517EPSS 46%
Microsoft Skype 7.16.0.102 contains a vulnerability that could allow an unauthenticated, remote attacker to execute arbitrary code on the targeted sy…
Skype
No fix yet