Latest CVE Feed

Vulnerabilities published in the last 30 days. Filter by severity, exploit status, or attack vector.

Score
Vulnerability
Published
5.5 MEDIUM
CVE-2026-68799 — Microsoft Excel Information Disclosure Vulnerability

Use of uninitialized resource in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.

Aug 11, 2026 Aug 13, 2026
Aug 11, 2026
Aug 13, 2026
7.8 HIGH
CVE-2026-68798 — Microsoft Excel Remote Code Execution Vulnerability

Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

Aug 11, 2026 Aug 12, 2026
Aug 11, 2026
Aug 12, 2026
5.5 MEDIUM
CVE-2026-68797 — Microsoft Excel Information Disclosure Vulnerability

Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.

Aug 11, 2026 Aug 13, 2026
Aug 11, 2026
Aug 13, 2026
7.8 HIGH
CVE-2026-68796 — Microsoft Excel Remote Code Execution Vulnerability

Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

Aug 11, 2026 Aug 13, 2026
Aug 11, 2026
Aug 13, 2026
7.8 HIGH
CVE-2026-68795 — Microsoft Excel Remote Code Execution Vulnerability

Stack-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

Aug 11, 2026 Aug 13, 2026
Aug 11, 2026
Aug 13, 2026
7.8 HIGH
CVE-2026-68794 — Microsoft Excel Remote Code Execution Vulnerability

Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

Aug 11, 2026 Aug 13, 2026
Aug 11, 2026
Aug 13, 2026
7.8 HIGH
CVE-2026-68793 — Microsoft Excel Remote Code Execution Vulnerability

Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

Aug 11, 2026 Aug 13, 2026
Aug 11, 2026
Aug 13, 2026
7.8 HIGH
CVE-2026-68792 — Microsoft Office Elevation of Privilege Vulnerability

Improper neutralization of special elements used in a command ('command injection') in Microsoft Office allows an authorized attacker to elevate privileges locally.

Aug 11, 2026 Aug 14, 2026
Aug 11, 2026
Aug 14, 2026
5.5 MEDIUM
CVE-2026-66810 — Microsoft Office Word Information Disclosure Vulnerability

Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to disclose information locally.

Aug 11, 2026 Aug 14, 2026
Aug 11, 2026
Aug 14, 2026
5.5 MEDIUM
CVE-2026-66809 — Microsoft Office Graphics Component Information Disclosure Vulnerability

Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally.

Aug 11, 2026 Aug 14, 2026
Aug 11, 2026
Aug 14, 2026
8.8 HIGH
CVE-2026-66808 — Microsoft SharePoint Server Remote Code Execution Vulnerability

Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.

Aug 11, 2026 Aug 13, 2026
Aug 11, 2026
Aug 13, 2026
7.8 HIGH
CVE-2026-66807 — Microsoft Office Graphics Component Remote Code Execution Vulnerability

Stack-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally.

Aug 11, 2026 Aug 14, 2026
Aug 11, 2026
Aug 14, 2026
5.5 MEDIUM
CVE-2026-66806 — Microsoft Office Word Information Disclosure Vulnerability

Off-by-one error in Microsoft Office Word allows an unauthorized attacker to disclose information locally.

Aug 11, 2026 Aug 14, 2026
Aug 11, 2026
Aug 14, 2026
8.8 HIGH
CVE-2026-66805 — Microsoft SharePoint Server Remote Code Execution Vulnerability

Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.

Aug 11, 2026 Aug 13, 2026
Aug 11, 2026
Aug 13, 2026
7.8 HIGH
CVE-2026-66804 — Microsoft Windows Cross Device Service Elevation of Privilege Vulnerability

Improper access control in Windows Cross Device Service allows an authorized attacker to elevate privileges locally.

Aug 11, 2026 Aug 14, 2026
Aug 11, 2026
Aug 14, 2026
8.1 HIGH
CVE-2026-66802 — Windows Device Health Attestation (DHA) Remote Code Execution Vulnerability

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Device Health Attestation (DHA) allows an unauthorized attacker to execute code over a network.

Aug 11, 2026 Aug 20, 2026
Aug 11, 2026
Aug 20, 2026
7.8 HIGH
CVE-2026-66799 — Windows Key Guard Elevation of Privilege Vulnerability

Heap-based buffer overflow in Windows Key Guard allows an authorized attacker to elevate privileges locally.

Aug 11, 2026 Aug 16, 2026
Aug 11, 2026
Aug 16, 2026
6.5 MEDIUM
CVE-2026-66301 — Microsoft Dynamics 365 (On-Premises) Information Disclosure Vulnerability

Exposure of sensitive information to an unauthorized actor in Microsoft Dynamics 365 (on-premises) allows an authorized attacker to disclose information over a network.

Aug 11, 2026 Aug 17, 2026
Aug 11, 2026
Aug 17, 2026
8.8 HIGH
CVE-2026-65815 — Microsoft Dynamics 365 On-Premises Remote Code Execution Vulnerability

Deserialization of untrusted data in Microsoft Dynamics 365 (on-premises) allows an authorized attacker to execute code over a network.

Aug 11, 2026 Aug 17, 2026
Aug 11, 2026
Aug 17, 2026
7.8 HIGH
CVE-2026-65814 — Microsoft Windows Storage Port Driver Elevation of Privilege Vulnerability

Heap-based buffer overflow in Windows Storage Port Driver allows an authorized attacker to elevate privileges locally.

Aug 11, 2026 Aug 16, 2026
Aug 11, 2026
Aug 16, 2026
Showing 20 of 14250 Results