Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Edge Chromium HIGH 8.8
CVE-2026-66326

Missing authorization in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network.

Fix: 151.0.4129.59+
Fix from $1,950 2026-08-04
Edge Chromium HIGH 8.1
CVE-2026-66318

Origin validation error in Microsoft Edge (Chromium-based) allows an unauthorized attacker to disclose information over a network.

Fix: 151.0.4129.59+
Fix from $1,950 2026-08-04
Edge Chromium MEDIUM 6.1
CVE-2026-66325

Server-side request forgery (ssrf) in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform spoofing over a network.

Fix: 151.0.4129.59+
Fix from $1,600 2026-08-04
Edge Chromium MEDIUM 5.4
CVE-2026-66316

Origin validation error in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform spoofing over a network.

Fix: 151.0.4129.59+
Fix from $1,600 2026-08-04
Edge Chromium MEDIUM 5.4
CVE-2026-66317

Origin validation error in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform tampering over a network.

Fix: 151.0.4129.59+
Fix from $1,600 2026-08-04
Edge Chromium MEDIUM 5.4
CVE-2026-66322

Origin validation error in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform spoofing over a network.

Fix: 151.0.4129.59+
Fix from $1,600 2026-08-04
Edge Chromium HIGH 8.8
CVE-2026-66312

Buffer over-read in Microsoft Edge (Chromium-based) allows an authorized attacker to execute code over a network.

Fix: 151.0.4129.59+
Fix from $1,950 2026-08-04
Edge Chromium HIGH 7.5
CVE-2026-66315

Use after free in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network.

Fix: 151.0.4129.59+
Fix from $1,950 2026-08-04
Edge HIGH 7.1
CVE-2026-66310

External control of file name or path in Microsoft Edge for Android allows an unauthorized attacker to disclose information locally.

Fix: 151.0.4129.59+
Fix from $1,950 2026-08-04
Edge Chromium MEDIUM 6.8
CVE-2026-66313

Origin validation error in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform tampering locally.

Fix: 151.0.4129.59+
Fix from $1,600 2026-08-04
Edge Chromium MEDIUM 6.2
CVE-2026-66311

Missing authorization in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform tampering locally.

Fix: 151.0.4129.59+
Fix from $1,600 2026-08-04
Edge Chromium MEDIUM 6.1
CVE-2026-65804

Improper control of generation of code ('code injection') in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform spoofing over…

Fix: 151.0.4129.59+
Fix from $1,600 2026-08-04
Edge Chromium MEDIUM 5.3
CVE-2026-66314

Time-of-check time-of-use (toctou) race condition in Microsoft Edge (Chromium-based) allows an unauthorized attacker to disclose information over a n…

Fix: 151.0.4129.59+
Fix from $1,600 2026-08-04
365 Apps HIGH 8.8
CVE-2026-62870

Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code over a network.

No fix yet
Fix from $1,950 2026-08-04
Edge Chromium HIGH 7.4
CVE-2026-65802

External control of file name or path in Microsoft Edge for Android allows an unauthorized attacker to disclose information over a network.

Fix: 151.0.4129.59+
Fix from $1,950 2026-08-04
Azure Cosmos Db CRITICAL 10.0
CVE-2026-66803

Improper access control in Azure Cosmos DB allows an unauthorized attacker to execute code over a network.

No fix yet
Fix from $2,300 2026-07-30
Edge MEDIUM 5.4
CVE-2026-62828

Improper input validation in Microsoft Edge for Android allows an unauthorized attacker to perform tampering over a network.

No fix yet
Fix from $1,600 2026-07-28
Edge Chromium HIGH 7.4
CVE-2026-57989

Origin validation error in Microsoft Edge (Chromium-based) allows an unauthorized attacker to disclose information over a network.

Fix: 150.0.4078.99+
Fix from $1,950 2026-07-26
Edge Chromium HIGH 7.4
CVE-2026-57990

Files or directories accessible to external parties in Microsoft Edge (Chromium-based) allows an unauthorized attacker to disclose information over a…

No fix yet
Fix from $1,950 2026-07-26
Edge Chromium MEDIUM 5.4
CVE-2026-57978

Origin validation error in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform spoofing over a network.

Fix: 150.0.4078.99+
Fix from $1,600 2026-07-26
Azure Portal HIGH 7.5
CVE-2026-62835

Improper authorization in Azure Portal allows an unauthorized attacker to disclose information over a network.

No fix yet
Fix from $1,950 2026-07-24
Azure App Service For Linux CRITICAL 9.8
CVE-2026-58630

Improper access control in Azure App Service allows an unauthorized attacker to elevate privileges over a network.

No fix yet
Fix from $2,300 2026-07-24
Purview Data Governance CRITICAL 10.0
CVE-2026-57106

Server-side request forgery (ssrf) in Data Quality allows an unauthorized attacker to elevate privileges over a network.

No fix yet
Fix from $2,300 2026-07-24
Azure Kubernetes Service CRITICAL 10.0
CVE-2026-56163

Missing authentication for critical function in Microsoft Azure Kubernetes Service allows an unauthorized attacker to elevate privileges over a netwo…

No fix yet
Fix from $2,300 2026-07-24
Azure Key Vault CRITICAL 9.8
CVE-2026-62825

Improper authentication in Azure Key Vault allows an unauthorized attacker to elevate privileges over a network.

No fix yet
Fix from $2,300 2026-07-24
Azure Dns CRITICAL 9.8
CVE-2026-58275

Missing authorization in Azure DNS allows an unauthorized attacker to elevate privileges over a network.

No fix yet
Fix from $2,300 2026-07-24
Exchange Online CRITICAL 10.0
CVE-2026-56191

Improper authentication in Microsoft Exchange Online allows an unauthorized attacker to perform tampering over a network.

No fix yet
Fix from $2,300 2026-07-24
Azure Red Hat Openshift CRITICAL 9.9
CVE-2026-56160

Improper authorization in Azure Red Hat OpenShift (ARO) allows an authorized attacker to elevate privileges over a network.

No fix yet
Fix from $2,300 2026-07-24
Account CRITICAL 9.8
CVE-2026-56165

Heap-based buffer overflow in Microsoft Account allows an unauthorized attacker to execute code over a network.

No fix yet
Fix from $2,300 2026-07-24
Azure Ai Search HIGH 8.8
CVE-2026-56167

Server-side request forgery (ssrf) in Azure AI Search allows an authorized attacker to elevate privileges over a network.

No fix yet
Fix from $1,950 2026-07-24