Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6649
Adobe 6383
Ibm 6266
Cisco 5746
Debian 3919
Apache 2864
Mozilla 2857
Redhat 2581
HIGH 8.1
CVE-2026-65679
Heap-based buffer overflow in Windows iSCSI Target Service allows an unauthorized attacker to execute code over a network.
Windows 10 1607
10.0.14393.9418 / 10.0.17763.9115+
HIGH 7.8
CVE-2026-65671
Heap-based buffer overflow in Windows Remote Access API allows an authorized attacker to elevate privileges locally.
Windows 10 1607
10.0.14393.9418 / 10.0.17763.9115+
HIGH 7.8
CVE-2026-65672
Heap-based buffer overflow in Windows Remote Access API allows an authorized attacker to elevate privileges locally.
Windows 11 23h2
10.0.20348.5440 / 10.0.22631.7517+
HIGH 7.8
CVE-2026-65673
Improper neutralization of special elements used in an sql command ('sql injection') in Microsoft Entra Connect Sync allows an authorized attacker to…
Entra Connect
No fix yet
HIGH 7.6
CVE-2026-65767
Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Teams for Android allows an authorized attacker to …
Teams
1.0.76.202611302+
HIGH 7.5
CVE-2026-65681
Null pointer dereference in Windows iSCSI Target Service allows an unauthorized attacker to deny service over a network.
Windows 10 1607
10.0.14393.9418 / 10.0.17763.9115+
HIGH 7.0
CVE-2026-65678
Use after free in Windows Win32K allows an authorized attacker to elevate privileges locally.
Windows 10 1607
10.0.14393.9418 / 10.0.17763.9115+
MEDIUM 6.5
CVE-2026-65675
No cwe for this issue in Visual Studio Code CoPilot Chat Extension allows an unauthorized attacker to bypass a security feature over a network.
Github Copilot Chat
No fix yet
HIGH 8.8
CVE-2026-65663
Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.
Sharepoint Server
16.0.19725.20522+
HIGH 8.8
CVE-2026-65665
Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.
Sharepoint Server
16.0.19725.20522+
HIGH 7.8
CVE-2026-65661
Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally.
365 Apps
No fix yet
HIGH 7.8
CVE-2026-65664
Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally.
365 Apps
No fix yet
MEDIUM 6.5
CVE-2026-65660
Improper control of generation of code ('code injection') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a net…
Sharepoint Server
16.0.19725.20522+
MEDIUM 5.5
CVE-2026-65662
Out-of-bounds read in Windows GDI allows an authorized attacker to disclose information locally.
Windows 10 1607
10.0.14393.9418 / 10.0.17763.9115+
HIGH 8.8
CVE-2026-64921
Missing authentication for critical function in Microsoft Office SharePoint allows an authorized attacker to elevate privileges over a network.
Sharepoint Server
16.0.19725.20522+
HIGH 8.8
CVE-2026-65658
Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.
Sharepoint Server
16.0.19725.20522+
HIGH 7.8
CVE-2026-64919
Stack-based buffer overflow in Microsoft Office Access allows an unauthorized attacker to execute code locally.
365 Apps
No fix yet
HIGH 7.8
CVE-2026-64920
Heap-based buffer overflow in Microsoft Office Access allows an unauthorized attacker to execute code locally.
365 Apps
No fix yet
HIGH 7.8
CVE-2026-65656
Improper neutralization of special elements used in a command ('command injection') in Microsoft Office allows an unauthorized attacker to execute co…
365 Apps
No fix yet
HIGH 7.8
CVE-2026-65657
Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.
365 Apps
No fix yet
MEDIUM 5.5
CVE-2026-64917
Out-of-bounds read in Microsoft Office Word allows an unauthorized attacker to disclose information locally.
365 Apps
No fix yet
MEDIUM 5.4
CVE-2026-64922
Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to …
Sharepoint Server
16.0.19725.20522+
HIGH 7.8
CVE-2026-64910
Untrusted pointer dereference in Microsoft Office allows an unauthorized attacker to execute code locally.
365 Apps
No fix yet
HIGH 7.8
CVE-2026-64911
Integer overflow or wraparound in Microsoft Office allows an unauthorized attacker to execute code locally.
365 Apps
No fix yet
HIGH 7.8
CVE-2026-64912
Stack-based buffer overflow in Microsoft Office Access allows an unauthorized attacker to execute code locally.
365 Apps
No fix yet
HIGH 7.8
CVE-2026-64914
Heap-based buffer overflow in Microsoft Office Access allows an unauthorized attacker to execute code locally.
365 Apps
No fix yet
HIGH 7.8
CVE-2026-64915
Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code locally.
365 Apps
No fix yet
MEDIUM 5.4
CVE-2026-64916
Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to …
Sharepoint Server
16.0.19725.20522+
HIGH 7.8
CVE-2026-64903
Integer overflow or wraparound in Microsoft Office allows an unauthorized attacker to execute code locally.
365 Apps
No fix yet
HIGH 7.8
CVE-2026-64904
Access of resource using incompatible type ('type confusion') in Microsoft Office allows an unauthorized attacker to execute code locally.
365 Apps
No fix yet