🚨 CVE-2026-62898
Use after free in Microsoft QUIC allows an unauthorized attacker to disclose information over a network.
🎖@cveNotify
Use after free in Microsoft QUIC allows an unauthorized attacker to disclose information over a network.
🎖@cveNotify
🚨 CVE-2026-62899
Inconsistent interpretation of http requests ('http request/response smuggling') in .NET allows an unauthorized attacker to bypass a security feature over a network.
🎖@cveNotify
Inconsistent interpretation of http requests ('http request/response smuggling') in .NET allows an unauthorized attacker to bypass a security feature over a network.
🎖@cveNotify
🚨 CVE-2026-62900
Improper removal of sensitive information before storage or transfer in .NET allows an unauthorized attacker to disclose information over a network.
🎖@cveNotify
Improper removal of sensitive information before storage or transfer in .NET allows an unauthorized attacker to disclose information over a network.
🎖@cveNotify
🚨 CVE-2026-62901
Unchecked input for loop condition in .NET allows an unauthorized attacker to deny service over a network.
🎖@cveNotify
Unchecked input for loop condition in .NET allows an unauthorized attacker to deny service over a network.
🎖@cveNotify
🚨 CVE-2026-62902
Inclusion of functionality from untrusted control sphere in .NET allows an unauthorized attacker to disclose information over a network.
🎖@cveNotify
Inclusion of functionality from untrusted control sphere in .NET allows an unauthorized attacker to disclose information over a network.
🎖@cveNotify
🚨 CVE-2026-62908
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Backup Engine allows an authorized attacker to elevate privileges locally.
🎖@cveNotify
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Backup Engine allows an authorized attacker to elevate privileges locally.
🎖@cveNotify
🚨 CVE-2026-62909
Uncaught exception in .NET allows an authorized attacker to elevate privileges locally.
🎖@cveNotify
Uncaught exception in .NET allows an authorized attacker to elevate privileges locally.
🎖@cveNotify
🚨 CVE-2026-62910
Improper control of resource identifiers ('resource injection') in Microsoft Exchange Server allows an authorized attacker to elevate privileges over a network.
🎖@cveNotify
Improper control of resource identifiers ('resource injection') in Microsoft Exchange Server allows an authorized attacker to elevate privileges over a network.
🎖@cveNotify
🚨 CVE-2026-62911
Authentication bypass by capture-replay in Microsoft Exchange Server allows an authorized attacker to elevate privileges over a network.
🎖@cveNotify
Authentication bypass by capture-replay in Microsoft Exchange Server allows an authorized attacker to elevate privileges over a network.
🎖@cveNotify
🚨 CVE-2026-62912
Deserialization of untrusted data in Microsoft Exchange Server allows an authorized attacker to deny service over a network.
🎖@cveNotify
Deserialization of untrusted data in Microsoft Exchange Server allows an authorized attacker to deny service over a network.
🎖@cveNotify
🚨 CVE-2026-62913
Heap-based buffer overflow in Microsoft Exchange Server allows an authorized attacker to execute code over a network.
🎖@cveNotify
Heap-based buffer overflow in Microsoft Exchange Server allows an authorized attacker to execute code over a network.
🎖@cveNotify
🚨 CVE-2026-62914
Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Exchange Server allows an authorized attacker to perform spoofing over a network.
🎖@cveNotify
Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Exchange Server allows an authorized attacker to perform spoofing over a network.
🎖@cveNotify
🚨 CVE-2026-62915
Missing authorization in Microsoft Exchange Server allows an authorized attacker to bypass a security feature over a network.
🎖@cveNotify
Missing authorization in Microsoft Exchange Server allows an authorized attacker to bypass a security feature over a network.
🎖@cveNotify
🚨 CVE-2026-62917
Improper input validation in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.
🎖@cveNotify
Improper input validation in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.
🎖@cveNotify
🚨 CVE-2026-63512
Incorrect authorization in Microsoft Office SharePoint allows an authorized attacker to perform tampering over a network.
🎖@cveNotify
Incorrect authorization in Microsoft Office SharePoint allows an authorized attacker to perform tampering over a network.
🎖@cveNotify
🚨 CVE-2026-63513
Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally.
🎖@cveNotify
Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally.
🎖@cveNotify
🚨 CVE-2026-63514
Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.
🎖@cveNotify
Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.
🎖@cveNotify
🚨 CVE-2026-63515
Out-of-bounds read in Microsoft Office allows an unauthorized attacker to execute code locally.
🎖@cveNotify
Out-of-bounds read in Microsoft Office allows an unauthorized attacker to execute code locally.
🎖@cveNotify
🚨 CVE-2026-63516
Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.
🎖@cveNotify
Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.
🎖@cveNotify
🚨 CVE-2026-63518
Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code locally.
🎖@cveNotify
Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code locally.
🎖@cveNotify
🚨 CVE-2026-63519
Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally.
🎖@cveNotify
Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally.
🎖@cveNotify