Recent Advisories

Severity ID Title Vendor Product Date Type
HIGH 7.8 MS:CVE-2026-40417

Microsoft Dynamics 365 Business Central Elevation of Privilege Vulnerability_MS:CVE-2026-40417

Weak authentication in Dynamics Business Central allows an authorized attacker to elevate privileges locally.

N/A N/A MSCVE
CRITICAL 9.9 MS:CVE-2026-42898

Microsoft Dynamics 365 On-Premises Remote Code Execution Vulnerability_MS:CVE-2026-42898

Improper control of generation of code ('code injection') in Microsoft Dynamics 365 (on-premises) allows an authorized attacker to execute code ove...

N/A N/A MSCVE
HIGH 8.8 MS:CVE-2026-33110

Microsoft SharePoint Server Remote Code Execution Vulnerability_MS:CVE-2026-33110

Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.

N/A N/A MSCVE
HIGH 7.3 MS:CVE-2026-32177

.NET Elevation of Privilege Vulnerability_MS:CVE-2026-32177

Heap-based buffer overflow in .NET allows an unauthorized attacker to elevate privileges locally.

N/A N/A MSCVE
CRITICAL 9.1 MS:CVE-2026-33117

Azure SDK for Java Security Feature Bypass Vulnerability_MS:CVE-2026-33117

Improper authentication in Azure SDK allows an unauthorized attacker to bypass a security feature over a network.

N/A N/A MSCVE
HIGH 7.8 MS:CVE-2026-35418

Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability_MS:CVE-2026-35418

Use after free in Windows Cloud Files Mini Filter Driver allows an authorized attacker to elevate privileges locally.

N/A N/A MSCVE
HIGH 7 MS:CVE-2026-34345

Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability_MS:CVE-2026-34345

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Ancillary Function Driver for WinSock allows...

N/A N/A MSCVE
HIGH 7.8 MS:CVE-2026-35415

Windows Storage Spaces Controller Elevation of Privilege Vulnerability_MS:CVE-2026-35415

Integer overflow or wraparound in Windows Storage Spaces Controller allows an authorized attacker to elevate privileges locally.

N/A N/A MSCVE
MEDIUM 6.2 MS:CVE-2026-40380

Windows Volume Manager Extension Driver Remote Code Execution Vulnerability_MS:CVE-2026-40380

Heap-based buffer overflow in Volume Manager Extension Driver allows an authorized attacker to execute code with a physical attack.

N/A N/A MSCVE
HIGH 7.8 MS:CVE-2026-40397

Windows Common Log File System Driver Elevation of Privilege Vulnerability_MS:CVE-2026-40397

Integer underflow (wrap or wraparound) in Windows Common Log File System Driver allows an authorized attacker to elevate privileges locally.

N/A N/A MSCVE