Latest CVE Feed

Vulnerabilities published in the last 30 days. Filter by severity, exploit status, or attack vector.

Score
Vulnerability
Published
8.2 HIGH
CVE-2026-81378 — Visual Studio Code Security Feature Bypass Vulnerability

Interpretation conflict in Visual Studio Code allows an unauthorized attacker to bypass a security feature over a network.

Sep 08, 2026 Sep 08, 2026
Sep 08, 2026
Sep 08, 2026
6.5 MEDIUM
CVE-2026-81377 — Visual Studio Code Tampering Vulnerability

Improper limitation of a pathname to a restricted directory ('path traversal') in Visual Studio Code allows an unauthorized attacker to perform tampering over a network.

Sep 08, 2026 Sep 08, 2026
Sep 08, 2026
Sep 08, 2026
9.6 CRITICAL
CVE-2026-81376 — Visual Studio Code Security Feature Bypass Vulnerability

Incomplete comparison with missing factors in Visual Studio Code allows an unauthorized attacker to bypass a security feature over a network.

Sep 08, 2026 Sep 08, 2026
Sep 08, 2026
Sep 08, 2026
8.2 HIGH
CVE-2026-81357 — Visual Studio Code Security Feature Bypass Vulnerability

Server-side request forgery (ssrf) in Visual Studio Code allows an unauthorized attacker to bypass a security feature over a network.

Sep 08, 2026 Sep 08, 2026
Sep 08, 2026
Sep 08, 2026
8.2 HIGH
CVE-2026-81356 — Visual Studio Code Security Feature Bypass Vulnerability

Inconsistent interpretation of http requests ('http request/response smuggling') in Visual Studio Code allows an unauthorized attacker to bypass a security feature over a network.

Sep 08, 2026 Sep 08, 2026
Sep 08, 2026
Sep 08, 2026
7.5 HIGH
CVE-2026-81355 — Virtual Hard Disk (VHD) Miniport Driver Remote Code Execution Vulnerability

Heap-based buffer overflow in Virtual Hard Disk (VHD) Miniport Driver allows an authorized attacker to execute code locally.

Sep 08, 2026 Sep 08, 2026
Sep 08, 2026
Sep 08, 2026
8.2 HIGH
CVE-2026-81354 — Windows Hello Elevation of Privilege Vulnerability

Heap-based buffer overflow in Windows Hello allows an authorized attacker to elevate privileges locally.

Sep 08, 2026 Sep 08, 2026
Sep 08, 2026
Sep 08, 2026
7.8 HIGH
CVE-2026-81353 — HEIF Image Extensions Remote Code Execution Vulnerability

Heap-based buffer overflow in Microsoft Windows Codecs Library allows an unauthorized attacker to execute code locally.

Sep 08, 2026 Sep 08, 2026
Sep 08, 2026
Sep 08, 2026
8.8 HIGH
CVE-2026-81352 — Web Media Extensions Remote Code Execution Vulnerability

Heap-based buffer overflow in Microsoft Windows Codecs Library allows an unauthorized attacker to execute code over a network.

Sep 08, 2026 Sep 08, 2026
Sep 08, 2026
Sep 08, 2026
7.2 HIGH
CVE-2026-81349 — Azure HDInsight Ambari Elevation of Privilege Vulnerability

Improper neutralization of special elements used in an os command ('os command injection') in Azure HDInsights allows an authorized attacker to elevate privileges over a network.

azure_hdinsight | Remote
Sep 08, 2026 Sep 08, 2026
Sep 08, 2026
Sep 08, 2026
8.6 HIGH
CVE-2026-80097 — Microsoft Authenticator Elevation of Privilege Vulnerability

Improper authentication in Microsoft Authenticator allows an unauthorized attacker to elevate privileges locally.

Sep 08, 2026 Sep 08, 2026
Sep 08, 2026
Sep 08, 2026
8.8 HIGH
CVE-2026-80096 — Windows Remote Desktop Services Elevation of Privilege Vulnerability

Out-of-bounds read in Windows Remote Desktop Services allows an authorized attacker to elevate privileges over a network.

Sep 08, 2026 Sep 08, 2026
Sep 08, 2026
Sep 08, 2026
7.0 HIGH
CVE-2026-80093 — Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability

Use after free in Windows Cloud Files Mini Filter Driver allows an authorized attacker to elevate privileges locally.

Sep 08, 2026 Sep 08, 2026
Sep 08, 2026
Sep 08, 2026
6.5 MEDIUM
CVE-2026-80091 — Microsoft Office Information Disclosure Vulnerability

Use of uninitialized resource in Microsoft Office allows an unauthorized attacker to disclose information over a network.

Sep 08, 2026 Sep 08, 2026
Sep 08, 2026
Sep 08, 2026
6.5 MEDIUM
CVE-2026-80090 — Microsoft Office Word Information Disclosure Vulnerability

Out-of-bounds read in Microsoft Office Word allows an unauthorized attacker to disclose information over a network.

Sep 08, 2026 Sep 08, 2026
Sep 08, 2026
Sep 08, 2026
6.5 MEDIUM
CVE-2026-80089 — Microsoft Office Information Disclosure Vulnerability

Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information over a network.

Sep 08, 2026 Sep 08, 2026
Sep 08, 2026
Sep 08, 2026
6.5 MEDIUM
CVE-2026-80088 — Microsoft Office Word Information Disclosure Vulnerability

Out-of-bounds read in Microsoft Office Word allows an unauthorized attacker to disclose information over a network.

Sep 08, 2026 Sep 08, 2026
Sep 08, 2026
Sep 08, 2026
6.5 MEDIUM
CVE-2026-80087 — Microsoft Office Information Disclosure Vulnerability

Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to disclose information over a network.

Sep 08, 2026 Sep 08, 2026
Sep 08, 2026
Sep 08, 2026
6.5 MEDIUM
CVE-2026-80086 — Microsoft Office PowerPoint Information Disclosure Vulnerability

Out-of-bounds read in Microsoft Office PowerPoint allows an unauthorized attacker to disclose information over a network.

office_2019 | Remote
Sep 08, 2026 Sep 08, 2026
Sep 08, 2026
Sep 08, 2026
8.8 HIGH
CVE-2026-80085 — Microsoft Office Word Remote Code Execution Vulnerability

Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code over a network.

Sep 08, 2026 Sep 08, 2026
Sep 08, 2026
Sep 08, 2026
Showing 20 of 13752 Results