Cleartext storage of sensitive information in Microsoft PC Manager allows an unauthorized attacker to bypass a security feature locally.
Insufficient ui warning of dangerous operations in Microsoft Edge for Android allows an unauthorized attacker to perform spoofing over a network.
Ai command injection in Agentic AI and Visual Studio Code allows an unauthorized attacker to execute code over a network.
This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Rel...
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Connected Devices Platform Service allows an...
Use after free in Windows BitLocker allows an authorized attacker to elevate privileges locally.
Concurrent execution using shared resource with improper synchronization ('race condition') in Capability Access Management Service (camsvc) allows...
Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally.
Improper access control in Windows MultiPoint Services allows an authorized attacker to elevate privileges locally.
AI-powered asset discovery, dark web monitoring, CVE alerting, and vulnerability scanning — all in one platform.