Recent Advisories

Severity ID Title Vendor Product Date Type
HIGH 7 MS:CVE-2026-20815

Capability Access Management Service (camsvc) Elevation of Privilege Vulnerability_MS:CVE-2026-20815

Concurrent execution using shared resource with improper synchronization ('race condition') in Capability Access Management Service (camsvc) allows...

N/A N/A MSCVE
CRITICAL 9.8 MS:CVE-2024-55414

Windows Motorola Soft Modem Driver Elevation of Privilege Vulnerability_MS:CVE-2024-55414

Microsoft is aware of vulnerabilities in the third party Motorola Soft Modem drivers that ships natively with supported Windows operating systems. ...

N/A N/A MSCVE
HIGH 8.8 MS:CVE-2026-0628

Chromium: CVE-2026-0628 Insufficient policy enforcement in WebView tag_MS:CVE-2026-0628

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Rel...

N/A N/A MSCVE
NONE MS:CVE-2025-62224

Microsoft Edge (Chromium-based) for Android Spoofing Vulnerability_MS:CVE-2025-62224

User interface (ui) misrepresentation of critical information in Microsoft Edge for Android allows an authorized attacker to perform spoofing over ...

N/A N/A MSCVE
LOW 1.9 MS:CVE-2025-11961

OOBR and OOBW in pcap_ether_aton() in libpcap_MS:CVE-2025-11961

{“lastseen”:”2026-01-06T09:42:33″,”description”:””,”published”:”2026-01-03T01:01:...

N/A N/A MSCVE
LOW 1.9 MS:CVE-2025-11964

OOBW in utf_16le_to_utf_8_truncated() in libpcap_MS:CVE-2025-11964

{“lastseen”:”2026-01-06T09:42:33″,”description”:””,”published”:”2026-01-03T01:01:...

N/A N/A MSCVE
HIGH 7 MS:CVE-2025-13699

MariaDB mariadb-dump Utility Directory Traversal Remote Code Execution Vulnerability_MS:CVE-2025-13699

{“lastseen”:”2025-12-30T09:44:22″,”description”:””,”published”:”2025-12-27T01:01:...

N/A N/A MSCVE
HIGH 7.5 MS:CVE-2025-12105

Libsoup: heap use-after-free in libsoup message queue handling during http/2 read completion_MS:CVE-2025-12105

{“lastseen”:”2025-12-24T09:39:04″,”description”:””,”published”:”2025-12-21T01:01:...

N/A N/A MSCVE
HIGH 8.2 MS:CVE-2025-64677

Office Out-of-Box Experience Spoofing Vulnerability_MS:CVE-2025-64677

Improper neutralization of input during web page generation ('cross-site scripting') in Office Out-of-Box Experience allows an unauthorized attacke...

N/A N/A MSCVE
CRITICAL 10 MS:CVE-2025-65037

Azure Container Apps Remote Code Execution Vulnerability_MS:CVE-2025-65037

Improper control of generation of code ('code injection') in Azure Container Apps allows an unauthorized attacker to execute code over a network.

N/A N/A MSCVE