Recent Advisories

Severity ID Title Vendor Product Date Type
HIGH 7.8 MS:CVE-2026-21509

Microsoft Office Security Feature Bypass Vulnerability_MS:CVE-2026-21509

Reliance on untrusted inputs in a security decision in Microsoft Office allows an unauthorized attacker to bypass a security feature locally.

N/A N/A MSCVE
CRITICAL 9.3 MS:CVE-2026-24305

Azure Entra ID Elevation of Privilege Vulnerability_MS:CVE-2026-24305

Azure Entra ID Elevation of Privilege Vulnerability

N/A N/A MSCVE
CRITICAL 9.3 MS:CVE-2026-21264

Microsoft Account Spoofing Vulnerability_MS:CVE-2026-21264

Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Account allows an unauthorized attacker to perfor...

N/A N/A MSCVE
NONE MS:CVE-2026-20960

Microsoft Power Apps Remote Code Execution Vulnerability_MS:CVE-2026-20960

Improper authorization in Microsoft Power Apps allows an authorized attacker to execute code over a network.

N/A N/A MSCVE
NONE MS:CVE-2026-21223

Microsoft Edge (Chromium-based) Security Feature Bypass Vulnerability_MS:CVE-2026-21223

Microsoft Edge Elevation Service exposes a privileged COM interface that inadequately validates the privileges of the calling process. A standard (...

N/A N/A MSCVE
NONE MS:CVE-2026-0899

Chromium: CVE-2026-0899 Out of bounds memory access in V8_MS:CVE-2026-0899

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Rel...

N/A N/A MSCVE
NONE MS:CVE-2026-0900

Chromium: CVE-2026-0900 Inappropriate implementation in V8_MS:CVE-2026-0900

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Rel...

N/A N/A MSCVE
NONE MS:CVE-2026-0901

Chromium: CVE-2026-0901 Inappropriate implementation in Blink_MS:CVE-2026-0901

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Rel...

N/A N/A MSCVE
NONE MS:CVE-2026-0902

Chromium: CVE-2026-0902 Inappropriate implementation in V8_MS:CVE-2026-0902

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Rel...

N/A N/A MSCVE
NONE MS:CVE-2026-0903

Chromium: CVE-2026-0903 Insufficient validation of untrusted input in Downloads_MS:CVE-2026-0903

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Rel...

N/A N/A MSCVE