Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6649
Adobe 6383
Ibm 6266
Cisco 5746
Debian 3919
Apache 2864
Mozilla 2857
Redhat 2581
MEDIUM 6.5
CVE-2026-62839
Insufficiently protected credentials in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.
Sharepoint Server
16.0.19725.20522+
MEDIUM 6.5
CVE-2026-47282
Insufficiently protected credentials in GitHub Copilot and Visual Studio Code allows an unauthorized attacker to disclose information over a network.
Visual Studio Code
1.128.1+
HIGH 8.8
CVE-2026-32171
Insufficiently protected credentials in Azure Logic Apps allows an authorized attacker to elevate privileges over a network.
Azure Logic Apps
Mitigation only
CRITICAL 9.8
CVE-2026-23658
Insufficiently protected credentials in Azure DevOps allows an unauthorized attacker to elevate privileges over a network.
Azure Devops
No fix yet
MEDIUM 5.5
CVE-2025-26628
Insufficiently protected credentials in Azure Local Cluster allows an authorized attacker to disclose information locally.
Azure Local Cluster
2411.2+
MEDIUM 5.5
CVE-2024-29992
Azure Identity Library for .NET Information Disclosure Vulnerability
Azure Identity Library For .net
1.11.0+
MEDIUM 6.5
CVE-2023-35348
Active Directory Federation Service Security Feature Bypass Vulnerability
Windows Server 2016
Patch available
HIGH 7.5
CVE-2023-30846
typed-rest-client is a library for Node Rest and Http Clients with typings for use with TypeScript. Users of the typed-rest-client library version 1.…
Typed Rest Client
1.8.0+
HIGH 8.1
CVE-2021-42306
An information disclosure vulnerability manifests when a user or an application uploads unprotected private key data as part of an authentication cer…
Azure Active Directory
2021-10-15 / 2021-10-30+
HIGH 7.5
CVE-2021-40476
Windows AppContainer Elevation Of Privilege Vulnerability
Windows 10
Patch available
MEDIUM 5.5
CVE-2021-1731
PFX Encryption Security Feature Bypass Vulnerability
Windows 10
Patch available
CRITICAL 9.9
CVE-2019-1384EPSS 6%
A security feature bypass vulnerability exists where a NETLOGON message is able to obtain the session key and sign messages.To exploit this vulnerabi…
Windows 10
Patch available
HIGH 7.8
CVE-2019-0881
An elevation of privilege vulnerability exists when the Windows Kernel improperly handles key enumeration, aka 'Windows Kernel Elevation of Privilege…
Windows 10
Patch available
HIGH 7.8
CVE-2018-0828
Windows 10 version 1607 and Windows Server 2016 allow an elevation of privilege vulnerability due to how the MultiPoint management account password i…
Windows 10
Patch available
HIGH 8.8
CVE-2014-1812 KEVEPSS 65%
The Group Policy implementation in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, and Window…
Windows 7
Patch available