AUGUST 19, 2026
Live Feed
Vulnerability Register

CVE Database

Synced from NVD, cross-referenced against CISA KEV and EPSS · ordered by last update

164,678 records on file
Page 156 of 5,490
CVE ID Score Description
5d ago
5.5

Time-of-check time-of-use (toctou) race condition in Microsoft Defender for Endpoint allows an authorized attacker to elevate privileges locally.

5d ago
6.5

Null pointer dereference in Windows SMB Server allows an authorized attacker to deny service over a network.

5d ago
5.4

Improper access control in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.

5d ago
6.1

Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.

5d ago
6.3

Improper neutralization of special elements used in a command ('command injection') in Outlook Copilot allows an authorized attacker to perform tampering over a network.

5d ago
5.5

Numeric truncation error in Microsoft Office Word allows an unauthorized attacker to disclose information locally.

5d ago
5.5

Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally.

5d ago
5.5

Untrusted pointer dereference in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.

5d ago
4.6

Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.

5d ago
5.5

Improper validation of specified type of input in Microsoft Office Word allows an unauthorized attacker to disclose information locally.

5d ago
5.5

Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally.

5d ago
5.5

Integer overflow or wraparound in Microsoft Office allows an unauthorized attacker to disclose information locally.

5d ago
6.5

Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information over a network.

5d ago
6.5

Server-side request forgery (ssrf) in Microsoft Office SharePoint allows an authorized attacker to disclose information over a network.

5d ago
5.5

Out-of-bounds read in Microsoft Office Word allows an unauthorized attacker to disclose information locally.

5d ago
5.5

Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally.

5d ago
5.5

Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.

5d ago
5.5

Use of uninitialized resource in Microsoft Office allows an unauthorized attacker to disclose information locally.

5d ago
5.5

Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally.

5d ago
4.6

Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.

5d ago
5.5

Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally.

5d ago
5.5

Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally.

5d ago
6.2

Integer overflow or wraparound in Microsoft Office allows an unauthorized attacker to disclose information locally.

5d ago
5.5

Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally.

5d ago
4.6

Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.

5d ago
4.6

Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.

5d ago
4.6

Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.

5d ago
6.5

Out-of-bounds read in Windows RDP allows an unauthorized attacker to disclose information over a network.

5d ago
6.5

Access of resource using incompatible type ('type confusion') in SQL Server allows an authorized attacker to disclose information over a network.

5d ago
5.5

Use of uninitialized resource in Windows SMB allows an authorized attacker to disclose information locally.