CVE Feed

    Dashboard / CVE

    6.5
    Medium

    CVE-2026-80078

    Last Modified: 9 Sept 2026

    Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information over a network.

    Published: 8 Sept 2026
    8.8
    High

    CVE-2026-78524

    Last Modified: 9 Sept 2026

    Out-of-bounds write in Microsoft Office allows an unauthorized attacker to execute code over a network.

    Published: 8 Sept 2026
    6.5
    Medium

    CVE-2026-78520

    Last Modified: 10 Sept 2026

    Out-of-bounds read in Microsoft Office Outlook allows an unauthorized attacker to execute code over a network.

    Published: 8 Sept 2026
    6.5
    Medium

    CVE-2026-78522

    Last Modified: 8 Sept 2026

    Out-of-bounds read in Microsoft Office Word allows an unauthorized attacker to disclose information over a network.

    Published: 8 Sept 2026
    6.5
    Medium

    CVE-2026-80073

    Last Modified: 10 Sept 2026

    Out-of-bounds read in Microsoft Office Outlook allows an unauthorized attacker to disclose information over a network.

    Published: 8 Sept 2026
    8.8
    High

    CVE-2026-78521

    Last Modified: 9 Sept 2026

    Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code over a network.

    Published: 8 Sept 2026
    6.5
    Medium

    CVE-2026-80079

    Last Modified: 8 Sept 2026

    Out-of-bounds read in Microsoft Office Word allows an unauthorized attacker to disclose information over a network.

    Published: 8 Sept 2026
    8.8
    High

    CVE-2026-78519

    Last Modified: 10 Sept 2026

    Use of uninitialized resource in Microsoft Office Outlook allows an unauthorized attacker to execute code over a network.

    Published: 8 Sept 2026
    8.8
    High

    CVE-2026-77481

    Last Modified: 9 Sept 2026

    Heap-based buffer overflow in SQL Server allows an authorized attacker to execute code over a network.

    Published: 8 Sept 2026
    6.5
    Medium

    CVE-2026-67645

    Last Modified: 8 Sept 2026

    Out-of-bounds read in SQL Server allows an authorized attacker to disclose information over a network.

    Published: 8 Sept 2026
    6.5
    Medium

    CVE-2026-67624

    Last Modified: 8 Sept 2026

    Out-of-bounds read in SQL Server allows an authorized attacker to disclose information over a network.

    Published: 8 Sept 2026
    4.3
    Medium

    CVE-2026-78516

    Last Modified: 10 Sept 2026

    Buffer over-read in Windows Storage allows an unauthorized attacker to disclose information with a physical attack.

    Published: 8 Sept 2026
    6.5
    Medium

    CVE-2026-78503

    Last Modified: 10 Sept 2026

    Out-of-bounds read in Microsoft Office Word allows an unauthorized attacker to disclose information over a network.

    Published: 8 Sept 2026
    8.8
    High

    CVE-2026-78514

    Last Modified: 11 Sept 2026

    Use after free in Microsoft Office Word allows an unauthorized attacker to execute code over a network.

    Published: 8 Sept 2026
    8.8
    High

    CVE-2026-78512

    Last Modified: 10 Sept 2026

    Numeric truncation error in Microsoft Office Word allows an unauthorized attacker to execute code over a network.

    Published: 8 Sept 2026
    5.5
    Medium

    CVE-2026-78506

    Last Modified: 8 Sept 2026

    Improper null termination in Microsoft Office Word allows an unauthorized attacker to disclose information locally.

    Published: 8 Sept 2026
    8.8
    High

    CVE-2026-78507

    Last Modified: 9 Sept 2026

    Use after free in Microsoft Office Word allows an unauthorized attacker to execute code over a network.

    Published: 8 Sept 2026
    6.5
    Medium

    CVE-2026-67369

    Last Modified: 8 Sept 2026

    Out-of-bounds read in SQL Server allows an authorized attacker to disclose information over a network.

    Published: 8 Sept 2026
    8.8
    High

    CVE-2026-66819

    Last Modified: 9 Sept 2026

    Improper neutralization of special elements used in an sql command ('sql injection') in SQL Server allows an authorized attacker to elevate privileges over a network.

    Published: 8 Sept 2026
    7
    High

    CVE-2026-78464

    Last Modified: 10 Sept 2026

    Time-of-check time-of-use (toctou) race condition in Windows MIDI Service Module allows an authorized attacker to elevate privileges locally.

    Published: 8 Sept 2026
    9.8
    Critical

    CVE-2026-69595

    Last Modified: 9 Sept 2026

    Use after free in Windows Services for NFS ONCRPC XDR Driver allows an unauthorized attacker to execute code over a network.

    Published: 8 Sept 2026
    8.8
    High

    CVE-2026-78462

    Last Modified: 11 Sept 2026

    Authorization bypass through user-controlled key in Visual Studio Code allows an unauthorized attacker to bypass a security feature over a network.

    Published: 8 Sept 2026
    7
    High

    CVE-2026-78457

    Last Modified: 11 Sept 2026

    Use after free in Windows Security Health Service allows an authorized attacker to elevate privileges locally.

    Published: 8 Sept 2026
    8.8
    High

    CVE-2026-78456

    Last Modified: 10 Sept 2026

    Heap-based buffer overflow in SQL Server allows an authorized attacker to execute code over a network.

    Published: 8 Sept 2026
    5.5
    Medium

    CVE-2026-78454

    Last Modified: 11 Sept 2026

    Out-of-bounds read in Windows CD-ROM Driver allows an authorized attacker to disclose information locally.

    Published: 8 Sept 2026
    4.6
    Medium

    CVE-2026-78452

    Last Modified: 11 Sept 2026

    Out-of-bounds read in Microsoft Windows SCSI Class System File allows an unauthorized attacker to disclose information with a physical attack.

    Published: 8 Sept 2026
    4.3
    Medium

    CVE-2026-78455

    Last Modified: 11 Sept 2026

    Out-of-bounds read in Xbox allows an unauthorized attacker to disclose information with a physical attack.

    Published: 8 Sept 2026
    6.5
    Medium

    CVE-2026-78453

    Last Modified: 11 Sept 2026

    Integer underflow (wrap or wraparound) in Microsoft Windows SCSI Class System File allows an unauthorized attacker to disclose information over a network.

    Published: 8 Sept 2026
    6.8
    Medium

    CVE-2026-78451

    Last Modified: 11 Sept 2026

    Untrusted pointer dereference in Microsoft Windows SCSI Class System File allows an unauthorized attacker to elevate privileges with a physical attack.

    Published: 8 Sept 2026
    7.8
    High

    CVE-2026-78448

    Last Modified: 10 Sept 2026

    Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally.

    Published: 8 Sept 2026
    7.8
    High

    CVE-2026-78447

    Last Modified: 9 Sept 2026

    Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally.

    Published: 8 Sept 2026
    8.1
    High

    CVE-2026-78450

    Last Modified: 10 Sept 2026

    Use after free in Reliable Multicast Transport Driver (RMCAST) allows an unauthorized attacker to execute code over a network.

    Published: 8 Sept 2026
    8.1
    High

    CVE-2026-78444

    Last Modified: 11 Sept 2026

    Untrusted pointer dereference in Windows Failover Cluster allows an unauthorized attacker to execute code over a network.

    Published: 8 Sept 2026
    8.1
    High

    CVE-2026-78449

    Last Modified: 11 Sept 2026

    Use after free in Reliable Multicast Transport Driver (RMCAST) allows an unauthorized attacker to execute code over a network.

    Published: 8 Sept 2026
    5.3
    Medium

    CVE-2026-78446

    Last Modified: 11 Sept 2026

    Use after free in Windows Distributed File System (DFS) allows an authorized attacker to deny service over a network.

    Published: 8 Sept 2026
    9.8
    Critical

    CVE-2026-78445

    Last Modified: 11 Sept 2026

    Use after free in Windows Services for NFS ONCRPC XDR Driver allows an unauthorized attacker to execute code over a network.

    Published: 8 Sept 2026
    6.5
    Medium

    CVE-2026-78441

    Last Modified: 10 Sept 2026

    Out-of-bounds read in Windows OLE DB allows an unauthorized attacker to disclose information over a network.

    Published: 8 Sept 2026
    8.8
    High

    CVE-2026-78442

    Last Modified: 10 Sept 2026

    Heap-based buffer overflow in Windows OLE DB allows an unauthorized attacker to execute code over a network.

    Published: 8 Sept 2026
    6.5
    Medium

    CVE-2026-69562

    Last Modified: 8 Sept 2026

    Out-of-bounds read in SQL Server allows an unauthorized attacker to disclose information over a network.

    Published: 8 Sept 2026
    6.5
    Medium

    CVE-2026-77911

    Last Modified: 10 Sept 2026

    Out-of-bounds read in Microsoft Office Word allows an unauthorized attacker to disclose information over a network.

    Published: 8 Sept 2026
    7
    High

    CVE-2026-77905

    Last Modified: 11 Sept 2026

    Use after free in Windows Management Instrumentation allows an authorized attacker to elevate privileges locally.

    Published: 8 Sept 2026
    9
    Critical

    CVE-2026-69854

    Last Modified: 11 Sept 2026

    Improper authentication in Spring Cloud Azure allows an unauthorized attacker to elevate privileges over a network.

    Published: 8 Sept 2026
    8.8
    High

    CVE-2026-77901

    Last Modified: 8 Sept 2026

    Null pointer dereference in Microsoft Office Word allows an unauthorized attacker to execute code over a network.

    Published: 8 Sept 2026
    5.5
    Medium

    CVE-2026-77488

    Last Modified: 10 Sept 2026

    Integer underflow (wrap or wraparound) in SQL Server allows an authorized attacker to disclose information locally.

    Published: 8 Sept 2026
    8.8
    High

    CVE-2026-77486

    Last Modified: 9 Sept 2026

    Integer overflow or wraparound in SQL Server allows an unauthorized attacker to execute code over a network.

    Published: 8 Sept 2026
    7
    High

    CVE-2026-77485

    Last Modified: 10 Sept 2026

    Use after free in SQL Server allows an authorized attacker to elevate privileges locally.

    Published: 8 Sept 2026
    8.8
    High

    CVE-2026-77487

    Last Modified: 10 Sept 2026

    Improper access control in SQL Server allows an authorized attacker to elevate privileges over a network.

    Published: 8 Sept 2026
    8.8
    High

    CVE-2026-77484

    Last Modified: 10 Sept 2026

    Deserialization of untrusted data in SQL Server allows an authorized attacker to execute code over a network.

    Published: 8 Sept 2026
    8.8
    High

    CVE-2026-77483

    Last Modified: 10 Sept 2026

    Weak authentication in SQL Server allows an authorized attacker to elevate privileges over a network.

    Published: 8 Sept 2026
    8.8
    High

    CVE-2026-77480

    Last Modified: 10 Sept 2026

    Insufficient granularity of access control in SQL Server allows an authorized attacker to elevate privileges over a network.

    Published: 8 Sept 2026
    Items Per Page