Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-50648 |
|
Vulnerability in System.Security.Cryptography.Xml (CVE-2026-50648)
vulnerability in System.Security.Cryptography.Xml (CVE-2026-50648). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `8.0.4` or later.
|
| CVE-2026-50528 |
|
Vulnerability in Microsoft.NetCore.App.Runtime.linux-arm (CVE-2026-50528)
vulnerability in Microsoft.NetCore.App.Runtime.linux-arm (CVE-2026-50528). Data can be tampered with by attackers. Mitigation: upgrade to `8.0.29` or later.
|
| CVE-2026-50526 |
|
Vulnerability in Microsoft.NET.Build.Containers (CVE-2026-50526)
vulnerability in Microsoft.NET.Build.Containers (CVE-2026-50526). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `8.0.29` or later.
|
| CVE-2026-50527 |
|
Vulnerability in System.Security.Cryptography.Xml (CVE-2026-50527)
vulnerability in System.Security.Cryptography.Xml (CVE-2026-50527). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `8.0.4` or later.
|
| CVE-2026-50525 |
|
Vulnerability in System.Security.Cryptography.Xml (CVE-2026-50525)
vulnerability in System.Security.Cryptography.Xml (CVE-2026-50525). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `8.0.4` or later.
|
| CVE-2026-44891 |
|
Vulnerability in io.netty:netty-codec-stomp (CVE-2026-44891)
vulnerability in io.netty:netty-codec-stomp (CVE-2026-44891). Risk of unauthorized operations or information disclosure. Exploitable via ``maxLineLength``. Mitigation: upgrade to `4.1.136.Final` or later.
|
| CVE-2026-47304 |
|
Vulnerability in System.Security.Cryptography.Xml (CVE-2026-47304)
vulnerability in System.Security.Cryptography.Xml (CVE-2026-47304). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `8.0.4` or later.
|
| CVE-2026-47303 |
|
Vulnerability in Microsoft.AspNetCore.Authentication.Negotiate (CVE-2026-47303)
vulnerability in Microsoft.AspNetCore.Authentication.Negotiate (CVE-2026-47303). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `8.0.29` or later.
|
| CVE-2026-47301 |
|
Vulnerability in microsoft (CVE-2026-47301)
vulnerability in microsoft (CVE-2026-47301). Successful exploitation can lead to full system takeover.
|
| CVE-2026-47302 |
|
Vulnerability in System.Security.Cryptography.Xml (CVE-2026-47302)
vulnerability in System.Security.Cryptography.Xml (CVE-2026-47302). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `8.0.4` or later.
|
| CVE-2026-47300 |
|
Vulnerability in Microsoft.AspNetCore.Authentication.Negotiate (CVE-2026-47300)
vulnerability in Microsoft.AspNetCore.Authentication.Negotiate (CVE-2026-47300). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `8.0.29` or later.
|
| CVE-2026-47305 |
|
Vulnerability in microsoft (CVE-2026-47305)
vulnerability in microsoft (CVE-2026-47305). Successful exploitation can lead to full system takeover.
|
| CVE-2026-15637 |
|
Vulnerability in devolutions (CVE-2026-15637)
vulnerability in devolutions (CVE-2026-15637). Confidential information can be exposed externally.
|
| CVE-2026-15641 |
|
Authorization Flaw in devolutions (CVE-2026-15641)
vulnerability in devolutions (CVE-2026-15641). Confidential information can be exposed externally.
|
| CVE-2026-15720 |
|
Out-of-Bounds Read in dos (CVE-2026-15720)
vulnerability in dos (CVE-2026-15720). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-54115 |
|
Vulnerability in microsoft (CVE-2026-54115)
vulnerability in microsoft (CVE-2026-54115). Successful exploitation can lead to full system takeover.
|
| CVE-2026-50499 |
|
Vulnerability in microsoft (CVE-2026-50499)
vulnerability in microsoft (CVE-2026-50499). Successful exploitation can lead to full system takeover.
|
| CVE-2026-50500 |
|
Use-After-Free in microsoft (CVE-2026-50500)
vulnerability in microsoft (CVE-2026-50500). Successful exploitation can lead to full system takeover.
|
| CVE-2026-50498 |
|
Windows Universal Disk Format File System Driver (UDFS) Elevation of Privilege Vulnerability
Windows Universal Disk Format File System Driver (UDFS) Elevation of Privilege Vulnerability
|
| CVE-2026-50503 |
|
Vulnerability in microsoft (CVE-2026-50503)
vulnerability in microsoft (CVE-2026-50503). Successful exploitation can lead to full system takeover.
|
| CVE-2026-50510 |
|
Vulnerability in microsoft (CVE-2026-50510)
vulnerability in microsoft (CVE-2026-50510). Successful exploitation can lead to full system takeover.
|
| CVE-2026-50647 |
|
Vulnerability in microsoft (CVE-2026-50647)
vulnerability in microsoft (CVE-2026-50647). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-50501 |
|
Vulnerability in microsoft (CVE-2026-50501)
vulnerability in microsoft (CVE-2026-50501). Successful exploitation can lead to full system takeover.
|
| CVE-2026-50509 |
|
Unsafe Deserialization in deserialization (CVE-2026-50509)
vulnerability in deserialization (CVE-2026-50509). Successful exploitation can lead to full system takeover.
|
| CVE-2026-50505 |
|
Use-After-Free in microsoft (CVE-2026-50505)
vulnerability in microsoft (CVE-2026-50505). Successful exploitation can lead to full system takeover.
|
| CVE-2026-50655 |
|
Vulnerability in microsoft (CVE-2026-50655)
vulnerability in microsoft (CVE-2026-50655). Successful exploitation can lead to full system takeover.
|
| CVE-2026-50486 |
|
Use after free in Windows Runtime allows an authorized attacker to elevate privileges locally.
Use after free in Windows Runtime allows an authorized attacker to elevate privileges locally.
|
| CVE-2026-50484 |
|
Vulnerability in microsoft (CVE-2026-50484)
vulnerability in microsoft (CVE-2026-50484). Successful exploitation can lead to full system takeover.
|
| CVE-2026-50490 |
|
Use after free in Windows Installer allows an authorized attacker to elevate privileges locally.
Use after free in Windows Installer allows an authorized attacker to elevate privileges locally.
|
| CVE-2026-50487 |
|
Use-After-Free in microsoft (CVE-2026-50487)
vulnerability in microsoft (CVE-2026-50487). Successful exploitation can lead to full system takeover.
|
| CVE-2026-50488 |
|
Command Injection in microsoft (CVE-2026-50488)
command injection in microsoft (CVE-2026-50488). Successful exploitation can lead to full system takeover.
|
| CVE-2026-50493 |
|
Use-After-Free in microsoft (CVE-2026-50493)
vulnerability in microsoft (CVE-2026-50493). Successful exploitation can lead to full system takeover.
|
| CVE-2026-50489 |
|
Vulnerability in microsoft (CVE-2026-50489)
vulnerability in microsoft (CVE-2026-50489). Successful exploitation can lead to full system takeover.
|
| CVE-2026-50496 |
|
Out-of-Bounds Read in microsoft (CVE-2026-50496)
vulnerability in microsoft (CVE-2026-50496). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-50474 |
|
Use-After-Free in microsoft (CVE-2026-50474)
vulnerability in microsoft (CVE-2026-50474). Successful exploitation can lead to full system takeover.
|
| CVE-2026-50477 |
|
Vulnerability in microsoft (CVE-2026-50477)
vulnerability in microsoft (CVE-2026-50477). Successful exploitation can lead to full system takeover.
|
| CVE-2026-50482 |
|
Heap-based buffer overflow in Windows NTFS allows an authorized attacker to execute code locally.
Heap-based buffer overflow in Windows NTFS allows an authorized attacker to execute code locally.
|
| CVE-2026-50480 |
|
Vulnerability in microsoft (CVE-2026-50480)
vulnerability in microsoft (CVE-2026-50480). Successful exploitation can lead to full system takeover.
|
| CVE-2026-50478 |
|
Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally.
Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally.
|
| CVE-2026-50476 |
|
Use after free in Microsoft Windows allows an authorized attacker to elevate privileges locally.
Use after free in Microsoft Windows allows an authorized attacker to elevate privileges locally.
|
| CVE-2026-50471 |
|
Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to execute code locally.
Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to execute code locally.
|
| CVE-2026-50460 |
|
Vulnerability in microsoft (CVE-2026-50460)
vulnerability in microsoft (CVE-2026-50460). Successful exploitation can lead to full system takeover.
|
| CVE-2026-50466 |
|
Use-After-Free in microsoft (CVE-2026-50466)
vulnerability in microsoft (CVE-2026-50466). Successful exploitation can lead to full system takeover.
|
| CVE-2026-50458 |
|
Vulnerability in microsoft (CVE-2026-50458)
vulnerability in microsoft (CVE-2026-50458). Successful exploitation can lead to full system takeover.
|
| CVE-2026-50457 |
|
Use after free in Windows Runtime allows an authorized attacker to elevate privileges locally.
Use after free in Windows Runtime allows an authorized attacker to elevate privileges locally.
|
| CVE-2026-50462 |
|
Vulnerability in microsoft (CVE-2026-50462)
vulnerability in microsoft (CVE-2026-50462). Successful exploitation can lead to full system takeover.
|
| CVE-2026-50461 |
|
Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to execute code locally.
Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to execute code locally.
|
| CVE-2026-50459 |
|
Use after free in Windows Kernel allows an unauthorized attacker to elevate privileges locally.
Use after free in Windows Kernel allows an unauthorized attacker to elevate privileges locally.
|
| CVE-2026-50467 |
|
Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.
Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.
|
| CVE-2026-50469 |
|
Vulnerability in microsoft (CVE-2026-50469)
vulnerability in microsoft (CVE-2026-50469). Successful exploitation can lead to full system takeover.
|