{“lastseen”:”2025-12-30T09:44:22″,”description”:””,”published”:”2025-12-27T01:01:...
{“lastseen”:”2025-12-24T09:39:04″,”description”:””,”published”:”2025-12-21T01:01:...
Improper neutralization of input during web page generation ('cross-site scripting') in Office Out-of-Box Experience allows an unauthorized attacke...
Improper control of generation of code ('code injection') in Azure Container Apps allows an unauthorized attacker to execute code over a network.
Improper neutralization of input during web page generation ('cross-site scripting') in Azure Cosmos DB allows an unauthorized attacker to perform ...
'.../...//' in Microsoft Purview allows an authorized attacker to execute code over a network.
{“lastseen”:”2025-12-18T23:36:40″,”description”:””,”published”:”2025-12-18T08:00:...
Improper authorization in Microsoft Partner Center allows an unauthorized attacker to elevate privileges over a network.
This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Rel...
AI-powered asset discovery, dark web monitoring, CVE alerting, and vulnerability scanning — all in one platform.