Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

365 Apps MEDIUM 5.5
CVE-2026-70318

Improper input validation in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.

No fix yet
Fix from $4,000 2026-08-11
365 Apps MEDIUM 5.5
CVE-2026-70319

Improper input validation in Microsoft Office Word allows an unauthorized attacker to disclose information locally.

No fix yet
Fix from $4,000 2026-08-11
365 Apps MEDIUM 5.5
CVE-2026-70320

Improper input validation in Microsoft Office PowerPoint allows an unauthorized attacker to disclose information locally.

No fix yet
Fix from $4,000 2026-08-11
365 Apps MEDIUM 5.5
CVE-2026-70322

Improper input validation in Microsoft Office PowerPoint allows an unauthorized attacker to disclose information locally.

No fix yet
Fix from $4,000 2026-08-11
365 Apps HIGH 7.8
CVE-2026-70311

Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally.

No fix yet
Fix from $4,900 2026-08-11
365 Apps HIGH 7.8
CVE-2026-70313

Improper input validation in Microsoft Office PowerPoint allows an unauthorized attacker to disclose information locally.

No fix yet
Fix from $4,900 2026-08-11
Windows 10 1607 HIGH 7.0
CVE-2026-70307

Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.

Fix: 10.0.14393.9418 / 10.0.17763.9115+
Fix from $4,900 2026-08-11
365 Apps MEDIUM 5.5
CVE-2026-70310

Out-of-bounds read in Microsoft Office Word allows an unauthorized attacker to disclose information locally.

No fix yet
Fix from $4,000 2026-08-11
365 Apps MEDIUM 5.5
CVE-2026-70312

Improper input validation in Microsoft Office PowerPoint allows an unauthorized attacker to disclose information locally.

No fix yet
Fix from $4,000 2026-08-11
365 Apps MEDIUM 5.5
CVE-2026-70314

Improper input validation in Microsoft Office allows an unauthorized attacker to disclose information locally.

No fix yet
Fix from $4,000 2026-08-11
365 Apps MEDIUM 5.5
CVE-2026-70315

Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally.

No fix yet
Fix from $4,000 2026-08-11
Sharepoint Server CRITICAL 9.3
CVE-2026-70306

Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an unauthorized attacker t…

Fix: 16.0.19725.20434+
Fix from $5,750 2026-08-11
Visual Studio Code HIGH 8.8
CVE-2026-69320

Improper neutralization of special elements used in an os command ('os command injection') in Visual Studio Code allows an unauthorized attacker to e…

Fix: 1.132.1+
Fix from $4,900 2026-08-11
Visual Studio Code HIGH 8.2
CVE-2026-69306

Not failing securely ('failing open') in Visual Studio Code allows an unauthorized attacker to bypass a security feature over a network.

Fix: 1.132.1+
Fix from $4,900 2026-08-11
365 Apps HIGH 7.8
CVE-2026-70130

Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally.

No fix yet
Fix from $4,900 2026-08-11
Windows 10 1607 HIGH 7.8
CVE-2026-70304

Heap-based buffer overflow in Windows DNS allows an authorized attacker to elevate privileges locally.

No fix yet
Fix from $4,900 2026-08-11
365 Apps HIGH 7.8
CVE-2026-68817

Stack-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

No fix yet
Fix from $4,900 2026-08-11
App Installer HIGH 7.8
CVE-2026-68821

Improper privilege management in Windows Package Manager allows an authorized attacker to elevate privileges locally.

Fix: 1.30.80+
Fix from $4,900 2026-08-11
Visual Studio Code HIGH 7.8
CVE-2026-69278

Incorrect authorization in Visual Studio Code allows an unauthorized attacker to bypass a security feature locally.

Fix: 1.132.1+
Fix from $4,900 2026-08-11
Windows 10 1607 HIGH 7.5
CVE-2026-68819

Buffer over-read in Windows Network File System allows an unauthorized attacker to deny service over a network.

Fix: 10.0.14393.9418 / 10.0.17763.9115+
Fix from $4,900 2026-08-11
Windows 10 1607 HIGH 7.0
CVE-2026-68820 KEV

Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.

Fix: 10.0.14393.9418 / 10.0.17763.9115+
Fix from $4,900 2026-08-11
365 Apps HIGH 7.8
CVE-2026-68810

Untrusted pointer dereference in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

No fix yet
Fix from $4,900 2026-08-11
365 Apps HIGH 7.8
CVE-2026-68811

Access of resource using incompatible type ('type confusion') in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

No fix yet
Fix from $4,900 2026-08-11
365 Apps HIGH 7.8
CVE-2026-68812

Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

No fix yet
Fix from $4,900 2026-08-11
365 Apps HIGH 7.8
CVE-2026-68814

Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

No fix yet
Fix from $4,900 2026-08-11
365 Apps HIGH 7.8
CVE-2026-68815

Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

No fix yet
Fix from $4,900 2026-08-11
365 Apps HIGH 7.8
CVE-2026-68816

Stack-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

No fix yet
Fix from $4,900 2026-08-11
365 Apps MEDIUM 5.5
CVE-2026-68809

Incomplete cleanup in Microsoft Office PowerPoint allows an unauthorized attacker to disclose information locally.

No fix yet
Fix from $4,000 2026-08-11
365 Apps MEDIUM 5.5
CVE-2026-68813

Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.

No fix yet
Fix from $4,000 2026-08-11
365 Apps HIGH 7.8
CVE-2026-68803

Access of resource using incompatible type ('type confusion') in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

No fix yet
Fix from $4,900 2026-08-11