CVE-2026-50407 Windows Resilient File System (ReFS) Elevation of Privilege Vulnerability MSRC Security Update Guide 22 juillet 2026 à 16:00 Updated an acknowledgement. This is an informational change only.
CVE-2026-50377 Windows Kernel Elevation of Privilege Vulnerability MSRC Security Update Guide 22 juillet 2026 à 16:00 Updated an acknowledgement. This is an informational change only.
CVE-2026-50466 Microsoft Brokering File System Elevation of Privilege Vulnerability MSRC Security Update Guide 22 juillet 2026 à 16:00 Updated an acknowledgement. This is an informational change only.
CVE-2026-50441 Windows Resilient File System (ReFS) Elevation of Privilege Vulnerability MSRC Security Update Guide 22 juillet 2026 à 16:00 Updated an acknowledgement. This is an informational change only.
CVE-2026-50458 Microsoft Brokering File System Elevation of Privilege Vulnerability MSRC Security Update Guide 22 juillet 2026 à 16:00 Updated an acknowledgement. This is an informational change only.
CVE-2026-56434 NGINX ngx_http_ssi_module vulnerability MSRC Security Update Guide 22 juillet 2026 à 10:41 Information published.
CVE-2026-42533 NGINX Map directive and Regex matching vulnerability MSRC Security Update Guide 22 juillet 2026 à 10:41 Information published.
CVE-2026-59886 pyasn1: Uncontrolled resource consumption when converting decoded REAL values MSRC Security Update Guide 22 juillet 2026 à 10:41 Information published.
CVE-2026-59884 pyasn1 BER/CER/DER decoder denial of service via unbounded long-form tag IDs MSRC Security Update Guide 22 juillet 2026 à 10:41 Information published.
CVE-2026-59885 pyasn1: Quadratic complexity in OBJECT IDENTIFIER and RELATIVE-OID processing allows denial of service MSRC Security Update Guide 22 juillet 2026 à 10:41 Information published.
CVE-2026-57215 RabbitMQ: Direct-reply-to binding persistence can lead to unauthorized reply-channel injection and persistent phantom MSRC Security Update Guide 22 juillet 2026 à 10:41 Information published.
CVE-2026-57211 RabbitMQ: UNC SSRF affecting the management UI on Windows MSRC Security Update Guide 22 juillet 2026 à 10:40 Information published.
CVE-2026-57216 RabbitMQ: AMQP 1.0, AMQP 0-9-1, Stream Protocol loopback enforcement can lead to remote guest sessions due to listener-address loopback checks MSRC Security Update Guide 22 juillet 2026 à 10:40 Information published.
CVE-2026-57213 RabbitMQ: Stored XSS federation management plugin via unsanitized consumer_tag rendering MSRC Security Update Guide 22 juillet 2026 à 10:40 Information published.
CVE-2026-57217 RabbitMQ: Topic authorization can lead to cross-tenant routing-key bypass MSRC Security Update Guide 22 juillet 2026 à 10:40 Information published.
CVE-2026-57220 RabbitMQ: Stream listener does not enforce configured frame-size limit during authentication, permitting unauth'd mem-exhaust DoS MSRC Security Update Guide 22 juillet 2026 à 10:39 Information published.
CVE-2026-57219 RabbitMQ: Unauthenticated disclosure of OAuth client credentials via an HTTP API endpoint with certain less common OAuth 2 configurations MSRC Security Update Guide 22 juillet 2026 à 10:39 Information published.
CVE-2026-15028 Libarchive: heap overflow oob read while parsing a tar archive contains a pax extended header MSRC Security Update Guide 22 juillet 2026 à 10:39 Information published.
CVE-2026-39879 SQL injection in syslog-ng SQL destionation driver MSRC Security Update Guide 22 juillet 2026 à 10:02 Information published.
CVE-2026-64191 i2c: stub: Reject I2C block transfers with invalid length MSRC Security Update Guide 22 juillet 2026 à 10:02 Information published.
CVE-2026-64188 net: qualcomm: rmnet: fix endpoint use-after-free in rmnet_dellink() MSRC Security Update Guide 22 juillet 2026 à 10:02 Information published.
CVE-2026-64189 netfilter: ipset: fix race between dump and ip_set_list resize MSRC Security Update Guide 22 juillet 2026 à 10:02 Information published.
CVE-2026-64206 Bluetooth: L2CAP: cancel pending_rx_work before taking conn->lock MSRC Security Update Guide 22 juillet 2026 à 10:01 Information published.
CVE-2026-64190 net: team: fix NULL pointer dereference in team_xmit during mode change MSRC Security Update Guide 22 juillet 2026 à 10:01 Information published.
CVE-2026-64205 i2c: i801: fix hardware state machine corruption in error path MSRC Security Update Guide 22 juillet 2026 à 10:01 Information published.
CVE-2026-64192 bpf: Reject BPF_MAP_TYPE_INODE_STORAGE creation if BPF LSM is uninitialized MSRC Security Update Guide 22 juillet 2026 à 10:01 Information published.
CVE-2026-64187 xfs: fail recovery on a committed log item with no regions MSRC Security Update Guide 22 juillet 2026 à 10:01 Information published.
CVE-2026-26199 Buffer underflow in `H5Iget_name `/`H5G_get_name` if size is zero MSRC Security Update Guide 22 juillet 2026 à 10:01 Information published.
CVE-2026-26197 Array full size, element count, and element size are not checked to make sure they match in H5Odtype.c MSRC Security Update Guide 22 juillet 2026 à 10:01 Information published.
CVE-2026-58640 Windows NTFS Remote Code Execution Vulnerability MSRC Security Update Guide 21 juillet 2026 à 16:00 Updated an acknowledgement. This is an informational change only.
CVE-2026-50462 Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability MSRC Security Update Guide 21 juillet 2026 à 16:00 Updated an acknowledgement. This is an informational change only.
CVE-2026-63831 mac802154: llsec: add skb_cow_data() before in-place crypto MSRC Security Update Guide 21 juillet 2026 à 10:44 Information published.
CVE-2026-63796 ocfs2: reject oversized group bitmap descriptors MSRC Security Update Guide 21 juillet 2026 à 10:44 Information published.
CVE-2026-63800 pNFS: Fix use-after-free in pnfs_update_layout() MSRC Security Update Guide 21 juillet 2026 à 10:44 Information published.
CVE-2026-63824 KEYS: fix overflow in keyctl_pkey_params_get_2() MSRC Security Update Guide 21 juillet 2026 à 10:44 Information published.
CVE-2026-3842 Qemu-kvm: hyperv/syndbg: missing mapped-length guard after cpu_physical_memory_map causes host oob write MSRC Security Update Guide 21 juillet 2026 à 10:42 Information published.
CVE-2026-38755 A heap overflow in the evalcommand() function (shell/ash.c) of Busybox v1.38.0 allows attackers to cause a Denial of Service (DoS) via supplying a crafted input. MSRC Security Update Guide 21 juillet 2026 à 10:42 Information published.
CVE-2026-38754 A heap overflow in the ifsbreakup() function (shell/ash.c) of Busybox v1.38.0 allows attackers to cause a Denial of Service (DoS) via supplying a crafted input. MSRC Security Update Guide 21 juillet 2026 à 10:41 Information published.
CVE-2026-62299 CoreDNS: rewrite-plugin EDNS0 response-revert nil-pointer panic (remote DoS) when a downstream plugin returns a response with no OPT record MSRC Security Update Guide 21 juillet 2026 à 10:41 Information published.
CVE-2026-60081 DBI::ProfileData versions before 1.651 for Perl do not limit the path index MSRC Security Update Guide 21 juillet 2026 à 10:41 Information published.