MSRC Reports
61 subscribers
2.99K links
Microsoft Security Response Center Reports
(Unofficial).

Reports usually come in bursts, because that's just how Microsoft releases them.
Download Telegram
CVE-2026-32249 NFA regex engine NULL pointer dereference affects Vim < 9.2.0137

Information published.

https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-32249
CVE-2026-23943 Pre-auth SSH DoS via unbounded zlib inflate

Information published.

https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23943
CVE-2026-23941 Request smuggling via first-wins Content-Length parsing in inets httpd

Information published.

https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23941
CVE-2026-23069 vsock/virtio: fix potential underflow in virtio_transport_get_credit()

Information published.

https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23069
CVE-2026-1703 Limited path traversal when installing wheel archives

Information published.

https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-1703
CVE-2026-23066 rxrpc: Fix recvmsg() unconditional requeue

Information published.

https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23066
CVE-2025-71239 audit: add fchmodat2() to change attributes class

Information published.

https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-71239
CVE-2026-23241 audit: add missing syscalls to read class

Information published.

https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23241