Vue normale
-
MSRC Security Update Guide
- CVE-2026-47292 Visual Studio Code MSSQL Extension Remote Code Execution Vulnerability
-
MSRC Security Update Guide
- CVE-2026-65787 Desktop Window Manager Elevation of Privilege Vulnerability
CVE-2026-65787 Desktop Window Manager Elevation of Privilege Vulnerability
-
MSRC Security Update Guide
- CVE-2026-54981 Visual Studio Code Python Extension Security Feature Bypass Vulnerability
CVE-2026-54981 Visual Studio Code Python Extension Security Feature Bypass Vulnerability
CVE-2026-69836 Microsoft Entra ID Remote Code Execution Vulnerability
-
MSRC Security Update Guide
- CVE-2026-50466 Microsoft Brokering File System Elevation of Privilege Vulnerability
CVE-2026-50466 Microsoft Brokering File System Elevation of Privilege Vulnerability
-
MSRC Security Update Guide
- CVE-2026-58547 Windows Universal Plug and Play (UPnP) Device Host Elevation of Privilege Vulnerability
CVE-2026-58547 Windows Universal Plug and Play (UPnP) Device Host Elevation of Privilege Vulnerability
-
MSRC Security Update Guide
- CVE-2026-49183 Windows Clipboard Server Elevation of Privilege Vulnerability
CVE-2026-49183 Windows Clipboard Server Elevation of Privilege Vulnerability
CVE-2026-55134 Microsoft Word Remote Code Execution Vulnerability
CVE-2026-68801 Microsoft Excel Remote Code Execution Vulnerability
CVE-2026-64903 Microsoft Office Remote Code Execution Vulnerability
CVE-2026-64899 Microsoft Office Information Disclosure Vulnerability
-
MSRC Security Update Guide
- CVE-2026-70335 GitHub Copilot and Visual Studio Code Elevation of Privilege Vulnerability
CVE-2026-70335 GitHub Copilot and Visual Studio Code Elevation of Privilege Vulnerability
CVE-2026-32202 Windows Shell Spoofing Vulnerability
CVE-2026-62834 Azure Data Factory Elevation of Privilege Vulnerability
Improper verification of cryptographic signature in Azure Data Factory allows an unauthorized attacker to elevate privileges over a network.
-
MSRC Security Update Guide
- CVE-2026-65801 Microsoft Exchange Online Elevation of Privilege Vulnerability
CVE-2026-65801 Microsoft Exchange Online Elevation of Privilege Vulnerability
Server-side request forgery (ssrf) in Microsoft Exchange Online allows an unauthorized attacker to elevate privileges over a network.
CVE-2026-68789 Azure SQL Database Elevation of Privilege Vulnerability
Improper neutralization of special elements used in an sql command ('sql injection') in Azure SQL Database allows an authorized attacker to elevate privileges over a network.
CVE-2026-69519 Azure Stack HCI Information Disclosure Vulnerability
Observable response discrepancy in Azure Stack HCI allows an unauthorized attacker to disclose information over a network.
CVE-2026-69851 Microsoft Entra ID Elevation of Privilege Vulnerability
Server-side request forgery (ssrf) in Azure Active Directory allows an authorized attacker to elevate privileges over a network.
CVE-2026-69836 Microsoft Entra ID Remote Code Execution Vulnerability
Deserialization of untrusted data in Microsoft Entra ID allows an unauthorized attacker to execute code over a network.
-
MSRC Security Update Guide
- CVE-2026-62703 Windows DWM Core Library Information Disclosure Vulnerability
CVE-2026-62703 Windows DWM Core Library Information Disclosure Vulnerability
-
MSRC Security Update Guide
- CVE-2026-62747 Windows Device Association Service Elevation of Privilege Vulnerability
CVE-2026-62747 Windows Device Association Service Elevation of Privilege Vulnerability
CVE-2026-62755 Windows DHCP Client Elevation of Privilege Vulnerability
-
MSRC Security Update Guide
- CVE-2026-65786 Desktop Window Manager Elevation of Privilege Vulnerability
CVE-2026-65786 Desktop Window Manager Elevation of Privilege Vulnerability
CVE-2026-55015 Microsoft Remote Help Denial of Service Vulnerability
Uncontrolled search path element in Windows Remote Help allows an authorized attacker to deny service locally.
CVE-2026-55013 Windows Remote Help Defense Spoofing Vulnerability
Uncontrolled search path element in Windows Remote Help Defense allows an authorized attacker to perform spoofing locally.
CVE-2026-61363 Remote Desktop Client Remote Code Execution Vulnerability
-
MSRC Security Update Guide
- CVE-2026-62728 Windows Common Log File System Driver Elevation of Privilege Vulnerability
CVE-2026-62728 Windows Common Log File System Driver Elevation of Privilege Vulnerability
CVE-2026-70105 Microsoft Word Information Disclosure Vulnerability
-
MSRC Security Update Guide
- CVE-2026-65770 Azure Managed Instance for Apache Cassandra Remote Code Execution Vulnerability
CVE-2026-65770 Azure Managed Instance for Apache Cassandra Remote Code Execution Vulnerability
Improper neutralization of argument delimiters in a command ('argument injection') in Azure Managed Instance for Apache Cassandra allows an unauthorized attacker to execute code over a network.
CVE-2026-63509 Microsoft Fabric Elevation of Privilege Vulnerability
Relative path traversal in Microsoft Fabric allows an authorized attacker to elevate privileges over a network.
CVE-2026-65816 Azure Arc Elevation of Privilege Vulnerability
Use of incorrectly-resolved name or reference in Azure Arc allows an unauthorized attacker to elevate privileges over a network.
CVE-2026-66309 Azure SQL Database Elevation of Privilege Vulnerability
Improper access control in Azure SQL Database allows an authorized attacker to elevate privileges over a network.
CVE-2026-66800 Azure Data Factory Information Disclosure Vulnerability
Server-side request forgery (ssrf) in Azure Data Factory allows an unauthorized attacker to disclose information over a network.
CVE-2026-68782 Azure SQL Database Elevation of Privilege Vulnerability
Improper neutralization of special elements used in an sql command ('sql injection') in Azure SQL Database allows an authorized attacker to elevate privileges over a network.
-
MSRC Security Update Guide
- CVE-2026-69419 Azure Data Manager for Energy Remote Code Execution Vulnerability
CVE-2026-69419 Azure Data Manager for Energy Remote Code Execution Vulnerability
Integer overflow or wraparound in Azure Data Manager for Energy allows an authorized attacker to execute code over a network.
CVE-2026-69502 Azure SQL Database Elevation of Privilege Vulnerability
Server-side request forgery (ssrf) in Azure SQL Database allows an unauthorized attacker to elevate privileges over a network.
CVE-2026-69400 Azure Logic Apps Elevation of Privilege Vulnerability
Improper limitation of a pathname to a restricted directory ('path traversal') in Azure Logic Apps allows an unauthorized attacker to elevate privileges over a network.
CVE-2026-69555 Azure Arc Elevation of Privilege Vulnerability
Incorrect authorization in Azure Arc allows an unauthorized attacker to elevate privileges over a network.
-
MSRC Security Update Guide
- CVE-2026-69558 Microsoft Partner Center Information Disclosure Vulnerability
CVE-2026-69558 Microsoft Partner Center Information Disclosure Vulnerability
Authorization bypass through user-controlled key in Microsoft Partner Center allows an unauthorized attacker to disclose information over a network.
-
MSRC Security Update Guide
- CVE-2026-69543 Azure Virtual Machines Elevation of Privilege Vulnerability
CVE-2026-69543 Azure Virtual Machines Elevation of Privilege Vulnerability
Server-side request forgery (ssrf) in Azure Virtual Machines allows an authorized attacker to elevate privileges over a network.