Recent Advisories

Severity ID Title Vendor Product Date Type
HIGH 8.8 MS:CVE-2026-41086

Windows Admin Center in Azure Portal Elevation of Privilege Vulnerability_MS:CVE-2026-41086

Improper access control in Windows Admin Center allows an authorized attacker to elevate privileges over a network.

N/A N/A MSCVE
HIGH 7.1 MS:CVE-2026-40401

Windows TCP/IP Denial of Service Vulnerability_MS:CVE-2026-40401

Null pointer dereference in Windows TCP/IP allows an unauthorized attacker to deny service locally.

N/A N/A MSCVE
HIGH 7.8 MS:CVE-2026-40381

Azure Connected Machine Agent Elevation of Privilege Vulnerability_MS:CVE-2026-40381

Improper access control in Azure Connected Machine Agent allows an authorized attacker to elevate privileges locally.

N/A N/A MSCVE
HIGH 7.8 MS:CVE-2026-40369

Windows Kernel Elevation of Privilege Vulnerability_MS:CVE-2026-40369

Untrusted pointer dereference in Windows Kernel allows an authorized attacker to elevate privileges locally.

N/A N/A MSCVE
HIGH 7.8 MS:CVE-2026-40382

Windows Telephony Service Elevation of Privilege Vulnerability_MS:CVE-2026-40382

Use after free in Windows Telephony Service allows an authorized attacker to elevate privileges locally.

N/A N/A MSCVE
CRITICAL 9.1 MS:CVE-2026-41103

Microsoft SSO Plugin for Jira & Confluence Elevation of Privilege Vulnerability_MS:CVE-2026-41103

Incorrect implementation of authentication algorithm in Microsoft SSO Plugin for Jira & Confluence allows an unauthorized attacker to elevate privi...

N/A N/A MSCVE
MEDIUM 6.7 MS:CVE-2026-41097

Secure Boot Security Feature Bypass Vulnerability_MS:CVE-2026-41097

Reliance on a component that is not updateable in Windows Secure Boot allows an authorized attacker to bypass a security feature locally.

N/A N/A MSCVE
MEDIUM 4.4 MS:CVE-2026-32209

Windows Filtering Platform (WFP) Security Feature Bypass Vulnerability_MS:CVE-2026-32209

Improper access control in Windows Filtering Platform (WFP) allows an authorized attacker to bypass a security feature locally.

N/A N/A MSCVE
HIGH 8.8 MS:CVE-2026-40403

Windows Graphics Component Remote Code Execution Vulnerability_MS:CVE-2026-40403

Heap-based buffer overflow in Windows Win32K - GRFX allows an authorized attacker to execute code locally.

N/A N/A MSCVE
CRITICAL 9.1 MS:CVE-2026-42833

Microsoft Dynamics 365 On-Premises Remote Code Execution Vulnerability_MS:CVE-2026-42833

Execution with unnecessary privileges in Microsoft Dynamics 365 (on-premises) allows an authorized attacker to execute code over a network.

N/A N/A MSCVE