Recent Advisories

Severity ID Title Vendor Product Date Type
MEDIUM 5.3 MS:CVE-2026-8582

Chromium: CVE-2026-8582 Object lifecycle issue in Dawn_MS:CVE-2026-8582

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Rel...

N/A N/A MSCVE
HIGH 8.8 MS:CVE-2026-8581

Chromium: CVE-2026-8581 Use after free in GPU_MS:CVE-2026-8581

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Rel...

N/A N/A MSCVE
MEDIUM 4.2 MS:CVE-2026-8584

Chromium: CVE-2026-8584 Inappropriate implementation in Views_MS:CVE-2026-8584

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Rel...

N/A N/A MSCVE
MEDIUM 5.5 MS:CVE-2026-8586

Chromium: CVE-2026-8586 Inappropriate implementation in Chromoting_MS:CVE-2026-8586

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Rel...

N/A N/A MSCVE
HIGH 7.5 MS:CVE-2026-8585

Chromium: CVE-2026-8585 Inappropriate implementation in Media_MS:CVE-2026-8585

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Rel...

N/A N/A MSCVE
HIGH 8.8 MS:CVE-2026-8587

Chromium: CVE-2026-8587 Use after free in Extensions_MS:CVE-2026-8587

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Rel...

N/A N/A MSCVE
NONE MS:CVE-2026-41615

Microsoft Authenticator Information Disclosure Vulnerability_MS:CVE-2026-41615

Exposure of sensitive information to an unauthorized actor in Microsoft Authenticator allows an unauthorized attacker to disclose information over ...

N/A N/A MSCVE
NONE MS:CVE-2026-42897

Microsoft Exchange Server Spoofing Vulnerability_MS:CVE-2026-42897

Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Exchange Server allows an unauthorized attacker t...

N/A N/A MSCVE
HIGH 8 MS:CVE-2026-34332

Windows Kernel-Mode Driver Remote Code Execution Vulnerability_MS:CVE-2026-34332

Use after free in Windows Kernel-Mode Drivers allows an authorized attacker to execute code over a network.

N/A N/A MSCVE
HIGH 7.8 MS:CVE-2026-40360

Microsoft Excel Information Disclosure Vulnerability_MS:CVE-2026-40360

Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.

N/A N/A MSCVE