Recent Advisories

Severity ID Title Vendor Product Date Type
HIGH 8.3 MS:CVE-2026-10020

Chromium: CVE-2026-10020 Insufficient validation of untrusted input in Skia_MS:CVE-2026-10020

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Rel...

N/A N/A MSCVE
HIGH 7.5 MS:CVE-2026-9963

Chromium: CVE-2026-9963 Uninitialized Use in iOS_MS:CVE-2026-9963

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Rel...

N/A N/A MSCVE
CRITICAL 10 MS:CVE-2026-39821

Invoking failure to reject ASCII-only Punycode-encoded labels in golang.org/x/net/idna_MS:CVE-2026-39821

{“lastseen”:”2026-05-29T09:14:58″,”description”:””,”published”:”2026-05-27T08:03:...

N/A N/A MSCVE
MEDIUM 6.1 MS:CVE-2026-42506

Invoking incorrect handling of namespaced elements in foreign content in golang.org/x/net/html_MS:CVE-2026-42506

{“lastseen”:”2026-05-29T09:14:58″,”description”:””,”published”:”2026-05-27T08:05:...

N/A N/A MSCVE
MEDIUM 6.1 MS:CVE-2026-27136

Invoking duplicate attributes can cause XSS in golang.org/x/net/html_MS:CVE-2026-27136

{“lastseen”:”2026-05-29T09:14:58″,”description”:””,”published”:”2026-05-27T08:10:...

N/A N/A MSCVE
HIGH 7.5 MS:CVE-2026-39829

Invoking pathological RSA/DSA parameters may cause DoS in golang.org/x/crypto/ssh_MS:CVE-2026-39829

{“lastseen”:”2026-05-29T09:14:58″,”description”:””,”published”:”2026-05-27T08:12:...

N/A N/A MSCVE
CRITICAL 9.1 MS:CVE-2026-39830

Invoking client can cause server deadlock on unexpected responses in golang.org/x/crypto/ssh_MS:CVE-2026-39830

{“lastseen”:”2026-05-29T09:14:58″,”description”:””,”published”:”2026-05-27T08:12:...

N/A N/A MSCVE
HIGH 7.5 MS:CVE-2026-46597

Invoking byte arithmetic causes underflow and panic in golang.org/x/crypto/ssh_MS:CVE-2026-46597

{“lastseen”:”2026-05-29T09:14:58″,”description”:””,”published”:”2026-05-27T08:13:...

N/A N/A MSCVE
CRITICAL 9.1 MS:CVE-2026-39834

Invoking infinite loop on large channel writes in golang.org/x/crypto/ssh_MS:CVE-2026-39834

{“lastseen”:”2026-05-29T09:14:58″,”description”:””,”published”:”2026-05-27T08:15:...

N/A N/A MSCVE
CRITICAL 9.1 MS:CVE-2026-39832

Invoking agent constraints dropped when forwarding keys in golang.org/x/crypto/ssh/agent_MS:CVE-2026-39832

{“lastseen”:”2026-05-29T09:14:58″,”description”:””,”published”:”2026-05-27T08:16:...

N/A N/A MSCVE