Recent Advisories

Severity ID Title Vendor Product Date Type
MEDIUM 6.5 MS:CVE-2026-21528

Azure IoT Explorer Information Disclosure Vulnerability_MS:CVE-2026-21528

Binding to an unrestricted ip address in Azure IoT SDK allows an unauthorized attacker to disclose information over a network.

N/A N/A MSCVE
HIGH 7.8 MS:CVE-2026-21239

Windows Kernel Elevation of Privilege Vulnerability_MS:CVE-2026-21239

Heap-based buffer overflow in Windows Kernel allows an authorized attacker to elevate privileges locally.

N/A N/A MSCVE
HIGH 8.8 MS:CVE-2026-1862

Chromium: CVE-2026-1862 Type Confusion in V8_MS:CVE-2026-1862

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Rel...

N/A N/A MSCVE
CRITICAL 9.8 MS:CVE-2026-24300

Azure Front Door Elevation of Privilege Vulnerability_MS:CVE-2026-24300

{“lastseen”:”2026-02-05T23:38:03″,”description”:””,”published”:”2026-02-05T08:00:...

N/A N/A MSCVE
MEDIUM 6.5 MS:CVE-2026-0391

Microsoft Edge (Chromium-based) for Android Spoofing Vulnerability_MS:CVE-2026-0391

User interface (ui) misrepresentation of critical information in Microsoft Edge for Android allows an unauthorized attacker to perform spoofing ove...

N/A N/A MSCVE
HIGH 8.2 MS:CVE-2026-21532

Azure Function Information Disclosure Vulnerability_MS:CVE-2026-21532

{“lastseen”:”2026-02-05T23:38:03″,”description”:””,”published”:”2026-02-05T08:00:...

N/A N/A MSCVE
HIGH 8.6 MS:CVE-2026-24302

Azure Arc Elevation of Privilege Vulnerability_MS:CVE-2026-24302

{“lastseen”:”2026-02-05T23:38:03″,”description”:””,”published”:”2026-02-05T08:00:...

N/A N/A MSCVE
HIGH 8.8 MS:CVE-2026-1861

Chromium: CVE-2026-1861 Heap buffer overflow in libvpx_MS:CVE-2026-1861

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Rel...

N/A N/A MSCVE
MEDIUM 6.5 MS:CVE-2026-1504

Chromium: CVE-2026-1504 Inappropriate implementation in Background Fetch API_MS:CVE-2026-1504

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Rel...

N/A N/A MSCVE
HIGH 7.8 MS:CVE-2026-21509

Microsoft Office Security Feature Bypass Vulnerability_MS:CVE-2026-21509

Reliance on untrusted inputs in a security decision in Microsoft Office allows an unauthorized attacker to bypass a security feature locally.

N/A N/A MSCVE