SEPTEMBER 23, 2026
Live Feed
Vulnerability Register

CVE Database

Synced from NVD, cross-referenced against CISA KEV and EPSS · ordered by last update

148,456 records on file
Page 1167 of 4,949
CVE ID Score Description
1mo ago
8.8

Deserialization of untrusted data in Web Deploy allows an authorized attacker to execute code over a network.

1mo ago
7.8

Use after free in Microsoft Office PowerPoint allows an unauthorized attacker to execute code locally.

1mo ago
7.1

Server-side request forgery (ssrf) in Microsoft Office SharePoint allows an authorized attacker to elevate privileges over a network.

1mo ago
7.8

Use of uninitialized resource in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

1mo ago
7.8

Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

1mo ago
8.4

Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.

1mo ago
7.8

Access of resource using incompatible type ('type confusion') in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

1mo ago
7.8

Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally.

1mo ago
7.8

Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

1mo ago
7.8

Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

1mo ago
7.8

Use after free in Microsoft Office Visio allows an unauthorized attacker to execute code locally.

1mo ago
8.4

Incorrect conversion between numeric types in Microsoft Office Word allows an unauthorized attacker to execute code locally.

1mo ago
7.8

Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally.

1mo ago
8.4

Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.

1mo ago
7.8

Use after free in Microsoft Office Visio allows an unauthorized attacker to execute code locally.

1mo ago
7.8

Improper access control in Azure File Sync allows an authorized attacker to elevate privileges locally.

1mo ago
8.8

Improper neutralization of special elements used in an sql command ('sql injection') in SQL Server allows an authorized attacker to elevate privileges over a network.

1mo ago
7.8

Access of resource using incompatible type ('type confusion') in Windows Push Notifications allows an authorized attacker to elevate privileges locally.

1mo ago
7.8

Access of resource using incompatible type ('type confusion') in Windows Push Notifications allows an authorized attacker to elevate privileges locally.

1mo ago
7.8

Access of resource using incompatible type ('type confusion') in Windows Push Notifications allows an authorized attacker to elevate privileges locally.

1mo ago
7.8

Numeric truncation error in Windows Hyper-V allows an authorized attacker to elevate privileges locally.

1mo ago
7.5

Uncontrolled resource consumption in Windows Remote Desktop Services allows an unauthorized attacker to deny service over a network.

1mo ago
7

Use after free in Windows Connected Devices Platform Service allows an authorized attacker to elevate privileges locally.

1mo ago
8

Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to execute code over a network.

1mo ago
7

Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.

1mo ago
7.8

Heap-based buffer overflow in Windows Hyper-V allows an authorized attacker to elevate privileges locally.

1mo ago
7.8

Null pointer dereference in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.

1mo ago
7.8

Use after free in Desktop Windows Manager allows an authorized attacker to execute code locally.

1mo ago
7.8

Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally.

1mo ago
7.8

Heap-based buffer overflow in Kernel Streaming WOW Thunk Service Driver allows an authorized attacker to elevate privileges locally.