Recent Advisories

Severity ID Title Vendor Product Date Type
HIGH 7.8 MS:CVE-2026-20837

Windows Media Remote Code Execution Vulnerability_MS:CVE-2026-20837

Heap-based buffer overflow in Windows Media allows an unauthorized attacker to execute code locally.

N/A N/A MSCVE
MEDIUM 5.5 MS:CVE-2026-20835

Capability Access Management Service (camsvc) Information Disclosure Vulnerability_MS:CVE-2026-20835

Out-of-bounds read in Capability Access Management Service (camsvc) allows an authorized attacker to disclose information locally.

N/A N/A MSCVE
MEDIUM 6.2 MS:CVE-2026-20821

Remote Procedure Call Information Disclosure Vulnerability_MS:CVE-2026-20821

Exposure of sensitive information to an unauthorized actor in Windows Remote Procedure Call allows an unauthorized attacker to disclose information...

N/A N/A MSCVE
MEDIUM 6.2 MS:CVE-2026-20818

Windows Kernel Information Disclosure Vulnerability_MS:CVE-2026-20818

Insertion of sensitive information into log file in Windows Kernel allows an unauthorized attacker to disclose information locally.

N/A N/A MSCVE
HIGH 7.8 MS:CVE-2026-20955

Microsoft Excel Remote Code Execution Vulnerability_MS:CVE-2026-20955

Untrusted pointer dereference in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

N/A N/A MSCVE
HIGH 8.4 MS:CVE-2026-20952

Microsoft Office Remote Code Execution Vulnerability_MS:CVE-2026-20952

Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.

N/A N/A MSCVE
HIGH 7.8 MS:CVE-2026-20950

Microsoft Excel Remote Code Execution Vulnerability_MS:CVE-2026-20950

Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

N/A N/A MSCVE
HIGH 7.8 MS:CVE-2026-20940

Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability_MS:CVE-2026-20940

Heap-based buffer overflow in Windows Cloud Files Mini Filter Driver allows an authorized attacker to elevate privileges locally.

N/A N/A MSCVE
MEDIUM 6.5 MS:CVE-2026-20925

NTLM Hash Disclosure Spoofing Vulnerability_MS:CVE-2026-20925

External control of file name or path in Windows NTLM allows an unauthorized attacker to perform spoofing over a network.

N/A N/A MSCVE
HIGH 7.5 MS:CVE-2026-20921

Windows SMB Server Elevation of Privilege Vulnerability_MS:CVE-2026-20921

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows SMB Server allows an authorized attacker to ...

N/A N/A MSCVE