Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6673
Adobe 6383
Ibm 6286
Cisco 5751
Debian 3919
Mozilla 2886
Apache 2864
Redhat 2586
HIGH 7.8
CVE-2026-55038
Stack-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code locally.
365 Apps
16.0.19725.20434+
HIGH 7.8
CVE-2026-55039
Integer underflow (wrap or wraparound) in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
365 Apps
16.0.10417.20175+
HIGH 7.8
CVE-2026-55041
Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
365 Apps
16.0.10417.20175+
HIGH 7.8
CVE-2026-55043
Heap-based buffer overflow in Microsoft Office PowerPoint allows an unauthorized attacker to execute code locally.
365 Apps
Patch available
MEDIUM 5.5
CVE-2026-55042
Use of uninitialized resource in Microsoft Office allows an unauthorized attacker to disclose information locally.
365 Apps
Patch available
HIGH 8.7
CVE-2026-55034
Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to …
Sharepoint Server
16.0.19725.20434+
HIGH 7.8
CVE-2026-55031
Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
365 Apps
16.0.10417.20175+
HIGH 7.8
CVE-2026-55032
Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally.
365 Apps
16.0.19725.20434+
HIGH 7.8
CVE-2026-55033
Integer overflow or wraparound in Microsoft Office Word allows an unauthorized attacker to execute code locally.
365 Apps
16.0.19725.20434+
HIGH 7.8
CVE-2026-55036
Buffer over-read in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
365 Apps
16.0.10417.20175+
HIGH 7.8
CVE-2026-55037
Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
365 Apps
16.0.10417.20175+
HIGH 7.8
CVE-2026-55024
Access of resource using incompatible type ('type confusion') in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
365 Apps
16.0.10417.20175+
HIGH 7.8
CVE-2026-55025
Access of resource using incompatible type ('type confusion') in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
365 Apps
16.0.10417.20175+
HIGH 7.8
CVE-2026-55029
Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
365 Apps
16.0.10417.20175+
MEDIUM 5.5
CVE-2026-55026
Integer overflow or wraparound in Microsoft Office allows an unauthorized attacker to disclose information locally.
365 Apps
16.0.19725.20434+
MEDIUM 5.5
CVE-2026-55027
Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally.
365 Apps
16.0.19725.20434+
MEDIUM 5.5
CVE-2026-55028
Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally.
365 Apps
16.0.19725.20434+
MEDIUM 5.4
CVE-2026-55030
Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to …
Sharepoint Server
16.0.19725.20434+
HIGH 8.7
CVE-2026-55021
Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to …
Sharepoint Server
16.0.19725.20434+
HIGH 7.8
CVE-2026-55017
Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally.
365 Apps
Patch available
HIGH 7.8
CVE-2026-55018
Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.
365 Apps
Patch available
HIGH 7.8
CVE-2026-55022
Access of resource using incompatible type ('type confusion') in Microsoft Office allows an unauthorized attacker to execute code locally.
365 Apps
Patch available
MEDIUM 5.5
CVE-2026-55023
Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally.
365 Apps
16.0.19725.20434+
MEDIUM 5.4
CVE-2026-55016
Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to …
Sharepoint Server
16.0.19725.20434+
MEDIUM 5.4
CVE-2026-55019
Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to …
Sharepoint Server
16.0.19725.20434+
MEDIUM 5.4
CVE-2026-55020
Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to …
Sharepoint Server
16.0.19725.20434+
CRITICAL 9.8
CVE-2026-55010
Heap-based buffer overflow in Minecraft Bedrock Dedicated Server allows an unauthorized attacker to execute code over a network.
Minecraft Bedrock Dedicated Server
No fix yet
HIGH 7.8
CVE-2026-54131
Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
365 Apps
16.0.10417.20175+
HIGH 8.8
CVE-2026-54121
Improper authorization in Active Directory Certificate Services (AD CS) allows an authorized attacker to elevate privileges over a network.
Windows 10 1607
10.0.14393.9339 / 10.0.17763.9020+
HIGH 8.4
CVE-2026-54128
Use after free in Windows DHCP Client allows an unauthorized attacker to execute code locally.
Windows 10 1607
10.0.14393.9339 / 10.0.17763.9020+