Latest CVE Feed

Vulnerabilities published in the last 30 days. Filter by severity, exploit status, or attack vector.

Score
Vulnerability
Published
5.5 MEDIUM
CVE-2026-66809 — Microsoft Office Graphics Component Information Disclosure Vulnerability

Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally.

Aug 11, 2026 Aug 14, 2026
Aug 11, 2026
Aug 14, 2026
8.8 HIGH
CVE-2026-66808 — Microsoft SharePoint Server Remote Code Execution Vulnerability

Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.

Aug 11, 2026 Aug 13, 2026
Aug 11, 2026
Aug 13, 2026
7.8 HIGH
CVE-2026-66807 — Microsoft Office Graphics Component Remote Code Execution Vulnerability

Stack-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally.

Aug 11, 2026 Aug 14, 2026
Aug 11, 2026
Aug 14, 2026
5.5 MEDIUM
CVE-2026-66806 — Microsoft Office Word Information Disclosure Vulnerability

Off-by-one error in Microsoft Office Word allows an unauthorized attacker to disclose information locally.

Aug 11, 2026 Aug 14, 2026
Aug 11, 2026
Aug 14, 2026
8.8 HIGH
CVE-2026-66805 — Microsoft SharePoint Server Remote Code Execution Vulnerability

Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.

Aug 11, 2026 Aug 13, 2026
Aug 11, 2026
Aug 13, 2026
7.8 HIGH
CVE-2026-66804 — Microsoft Windows Cross Device Service Elevation of Privilege Vulnerability

Improper access control in Windows Cross Device Service allows an authorized attacker to elevate privileges locally.

Aug 11, 2026 Aug 14, 2026
Aug 11, 2026
Aug 14, 2026
8.1 HIGH
CVE-2026-66802 — Windows Device Health Attestation (DHA) Remote Code Execution Vulnerability

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Device Health Attestation (DHA) allows an unauthorized attacker to execute code over a network.

Aug 11, 2026 Aug 20, 2026
Aug 11, 2026
Aug 20, 2026
7.8 HIGH
CVE-2026-66799 — Windows Key Guard Elevation of Privilege Vulnerability

Heap-based buffer overflow in Windows Key Guard allows an authorized attacker to elevate privileges locally.

Aug 11, 2026 Aug 16, 2026
Aug 11, 2026
Aug 16, 2026
6.5 MEDIUM
CVE-2026-66301 — Microsoft Dynamics 365 (On-Premises) Information Disclosure Vulnerability

Exposure of sensitive information to an unauthorized actor in Microsoft Dynamics 365 (on-premises) allows an authorized attacker to disclose information over a network.

Aug 11, 2026 Aug 17, 2026
Aug 11, 2026
Aug 17, 2026
8.8 HIGH
CVE-2026-65815 — Microsoft Dynamics 365 On-Premises Remote Code Execution Vulnerability

Deserialization of untrusted data in Microsoft Dynamics 365 (on-premises) allows an authorized attacker to execute code over a network.

Aug 11, 2026 Aug 17, 2026
Aug 11, 2026
Aug 17, 2026
7.8 HIGH
CVE-2026-65814 — Microsoft Windows Storage Port Driver Elevation of Privilege Vulnerability

Heap-based buffer overflow in Windows Storage Port Driver allows an authorized attacker to elevate privileges locally.

Aug 11, 2026 Aug 16, 2026
Aug 11, 2026
Aug 16, 2026
8.8 HIGH
CVE-2026-65813 — Microsoft Exchange Server Elevation of Privilege Vulnerability

Server-side request forgery (ssrf) in Microsoft Exchange Server allows an authorized attacker to elevate privileges over a network.

Aug 11, 2026 Aug 17, 2026
Aug 11, 2026
Aug 17, 2026
8.8 HIGH
CVE-2026-65811 — Power BI Remote Code Execution Vulnerability

Improper input validation in Power BI allows an authorized attacker to execute code over a network.

Aug 11, 2026 Aug 19, 2026
Aug 11, 2026
Aug 19, 2026
7.8 HIGH
CVE-2026-65810 — .NET Framework Elevation of Privilege Vulnerability

Relative path traversal in .NET Framework allows an unauthorized attacker to elevate privileges locally.

Aug 11, 2026 Aug 14, 2026
Aug 11, 2026
Aug 14, 2026
8.8 HIGH
CVE-2026-65807 — Microsoft Excel Remote Code Execution Vulnerability

Access of resource using incompatible type ('type confusion') in Microsoft Office Excel allows an unauthorized attacker to execute code over a network.

Aug 11, 2026 Aug 13, 2026
Aug 11, 2026
Aug 13, 2026
6.5 MEDIUM
CVE-2026-65806 — Azure CycleCloud Information Disclosure Vulnerability

Missing authorization in Azure CycleCloud allows an authorized attacker to disclose information over a network.

Aug 11, 2026 Aug 17, 2026
Aug 11, 2026
Aug 17, 2026
7.8 HIGH
CVE-2026-65799 — Windows DNS Elevation of Privilege Vulnerability

Integer overflow or wraparound in Windows DNS allows an authorized attacker to elevate privileges locally.

Aug 11, 2026 Aug 17, 2026
Aug 11, 2026
Aug 17, 2026
6.7 MEDIUM
CVE-2026-65798 — Windows DNS Elevation of Privilege Vulnerability

Numeric truncation error in Windows DNS allows an authorized attacker to elevate privileges locally.

Aug 11, 2026 Aug 17, 2026
Aug 11, 2026
Aug 17, 2026
6.7 MEDIUM
CVE-2026-65797 — Windows DNS Elevation of Privilege Vulnerability

Numeric truncation error in Windows DNS allows an authorized attacker to elevate privileges locally.

Aug 11, 2026 Aug 17, 2026
Aug 11, 2026
Aug 17, 2026
8.1 HIGH
CVE-2026-65796 — Windows iSCSI Target Service Remote Code Execution Vulnerability

Heap-based buffer overflow in Windows iSCSI Target Service allows an unauthorized attacker to execute code over a network.

Aug 11, 2026 Aug 16, 2026
Aug 11, 2026
Aug 16, 2026
Showing 20 of 14281 Results