Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Windows 10 1607 HIGH 8.1
CVE-2026-65679

Heap-based buffer overflow in Windows iSCSI Target Service allows an unauthorized attacker to execute code over a network.

Fix: 10.0.14393.9418 / 10.0.17763.9115+
Fix from $4,900 2026-08-11
Windows 10 1607 HIGH 7.8
CVE-2026-65671

Heap-based buffer overflow in Windows Remote Access API allows an authorized attacker to elevate privileges locally.

Fix: 10.0.14393.9418 / 10.0.17763.9115+
Fix from $4,900 2026-08-11
Windows 11 23h2 HIGH 7.8
CVE-2026-65672

Heap-based buffer overflow in Windows Remote Access API allows an authorized attacker to elevate privileges locally.

Fix: 10.0.20348.5440 / 10.0.22631.7517+
Fix from $4,900 2026-08-11
Entra Connect HIGH 7.8
CVE-2026-65673

Improper neutralization of special elements used in an sql command ('sql injection') in Microsoft Entra Connect Sync allows an authorized attacker to…

No fix yet
Fix from $4,900 2026-08-11
Teams HIGH 7.6
CVE-2026-65767

Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Teams for Android allows an authorized attacker to …

Fix: 1.0.76.202611302+
Fix from $4,900 2026-08-11
Windows 10 1607 HIGH 7.5
CVE-2026-65681

Null pointer dereference in Windows iSCSI Target Service allows an unauthorized attacker to deny service over a network.

Fix: 10.0.14393.9418 / 10.0.17763.9115+
Fix from $4,900 2026-08-11
Windows 10 1607 HIGH 7.0
CVE-2026-65678

Use after free in Windows Win32K allows an authorized attacker to elevate privileges locally.

Fix: 10.0.14393.9418 / 10.0.17763.9115+
Fix from $4,900 2026-08-11
Github Copilot Chat MEDIUM 6.5
CVE-2026-65675

No cwe for this issue in Visual Studio Code CoPilot Chat Extension allows an unauthorized attacker to bypass a security feature over a network.

No fix yet
Fix from $4,000 2026-08-11
Sharepoint Server HIGH 8.8
CVE-2026-65663

Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.

Fix: 16.0.19725.20522+
Fix from $4,900 2026-08-11
Sharepoint Server HIGH 8.8
CVE-2026-65665

Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.

Fix: 16.0.19725.20522+
Fix from $4,900 2026-08-11
365 Apps HIGH 7.8
CVE-2026-65661

Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally.

No fix yet
Fix from $4,900 2026-08-11
365 Apps HIGH 7.8
CVE-2026-65664

Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally.

No fix yet
Fix from $4,900 2026-08-11
Sharepoint Server MEDIUM 6.5
CVE-2026-65660

Improper control of generation of code ('code injection') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a net…

Fix: 16.0.19725.20522+
Fix from $4,000 2026-08-11
Windows 10 1607 MEDIUM 5.5
CVE-2026-65662

Out-of-bounds read in Windows GDI allows an authorized attacker to disclose information locally.

Fix: 10.0.14393.9418 / 10.0.17763.9115+
Fix from $4,000 2026-08-11
Sharepoint Server HIGH 8.8
CVE-2026-64921

Missing authentication for critical function in Microsoft Office SharePoint allows an authorized attacker to elevate privileges over a network.

Fix: 16.0.19725.20522+
Fix from $4,900 2026-08-11
Sharepoint Server HIGH 8.8
CVE-2026-65658

Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.

Fix: 16.0.19725.20522+
Fix from $4,900 2026-08-11
365 Apps HIGH 7.8
CVE-2026-64919

Stack-based buffer overflow in Microsoft Office Access allows an unauthorized attacker to execute code locally.

No fix yet
Fix from $4,900 2026-08-11
365 Apps HIGH 7.8
CVE-2026-64920

Heap-based buffer overflow in Microsoft Office Access allows an unauthorized attacker to execute code locally.

No fix yet
Fix from $4,900 2026-08-11
365 Apps HIGH 7.8
CVE-2026-65656

Improper neutralization of special elements used in a command ('command injection') in Microsoft Office allows an unauthorized attacker to execute co…

No fix yet
Fix from $4,900 2026-08-11
365 Apps HIGH 7.8
CVE-2026-65657

Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.

No fix yet
Fix from $4,900 2026-08-11
365 Apps MEDIUM 5.5
CVE-2026-64917

Out-of-bounds read in Microsoft Office Word allows an unauthorized attacker to disclose information locally.

No fix yet
Fix from $4,000 2026-08-11
Sharepoint Server MEDIUM 5.4
CVE-2026-64922

Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to …

Fix: 16.0.19725.20522+
Fix from $4,000 2026-08-11
365 Apps HIGH 7.8
CVE-2026-64910

Untrusted pointer dereference in Microsoft Office allows an unauthorized attacker to execute code locally.

No fix yet
Fix from $4,900 2026-08-11
365 Apps HIGH 7.8
CVE-2026-64911

Integer overflow or wraparound in Microsoft Office allows an unauthorized attacker to execute code locally.

No fix yet
Fix from $4,900 2026-08-11
365 Apps HIGH 7.8
CVE-2026-64912

Stack-based buffer overflow in Microsoft Office Access allows an unauthorized attacker to execute code locally.

No fix yet
Fix from $4,900 2026-08-11
365 Apps HIGH 7.8
CVE-2026-64914

Heap-based buffer overflow in Microsoft Office Access allows an unauthorized attacker to execute code locally.

No fix yet
Fix from $4,900 2026-08-11
365 Apps HIGH 7.8
CVE-2026-64915

Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code locally.

No fix yet
Fix from $4,900 2026-08-11
Sharepoint Server MEDIUM 5.4
CVE-2026-64916

Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to …

Fix: 16.0.19725.20522+
Fix from $4,000 2026-08-11
365 Apps HIGH 7.8
CVE-2026-64903

Integer overflow or wraparound in Microsoft Office allows an unauthorized attacker to execute code locally.

No fix yet
Fix from $4,900 2026-08-11
365 Apps HIGH 7.8
CVE-2026-64904

Access of resource using incompatible type ('type confusion') in Microsoft Office allows an unauthorized attacker to execute code locally.

No fix yet
Fix from $4,900 2026-08-11