Recent Advisories

Severity ID Title Vendor Product Date Type
NONE MS:CVE-2026-42893

Microsoft Outlook for iOS Tampering Vulnerability_MS:CVE-2026-42893

Improper neutralization of special elements used in a command ('command injection') in M365 Copilot allows an unauthorized attacker to perform tamp...

N/A N/A MSCVE
NONE MS:CVE-2026-42830

Azure Monitor Agent Metrics Extension Elevation of Privilege Vulnerability_MS:CVE-2026-42830

Untrusted search path in Azure Monitor Agent allows an authorized attacker to elevate privileges locally.

N/A N/A MSCVE
NONE MS:CVE-2026-41613

Visual Studio Code Elevation of Privilege Vulnerability_MS:CVE-2026-41613

Session fixation in Visual Studio Code allows an unauthorized attacker to elevate privileges over a network.

N/A N/A MSCVE
NONE MS:CVE-2025-54518

AMD: CVE-2025-54518 CPU OP Cache Corruption_MS:CVE-2025-54518

This vulnerability was found and addressed by AMD. We are documenting it in the Security Update Guide to encourage customers to install the May 202...

N/A N/A MSCVE
MEDIUM 4.3 MS:CVE-2026-7915

Chromium: CVE-2026-7915 Insufficient data validation in DevTools_MS:CVE-2026-7915

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Rel...

N/A N/A MSCVE
HIGH 8.3 MS:CVE-2026-7905

Chromium: CVE-2026-7905 Insufficient validation of untrusted input in Media_MS:CVE-2026-7905

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Rel...

N/A N/A MSCVE
MEDIUM 4.2 MS:CVE-2026-7912

Chromium: CVE-2026-7912 Integer overflow in GPU_MS:CVE-2026-7912

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Rel...

N/A N/A MSCVE
MEDIUM 5.4 MS:CVE-2026-7931

Chromium: CVE-2026-7931 Insufficient validation of untrusted input in iOS_MS:CVE-2026-7931

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Rel...

N/A N/A MSCVE
NONE MS:CVE-2026-35429

Microsoft Edge (Chromium-based) for Android Spoofing Vulnerability_MS:CVE-2026-35429

User interface (ui) misrepresentation of critical information in Microsoft Edge for Android allows an unauthorized attacker to perform spoofing ove...

N/A N/A MSCVE
HIGH 7.5 MS:CVE-2026-7897

Chromium: CVE-2026-7897 Use after free in Mobile_MS:CVE-2026-7897

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Rel...

N/A N/A MSCVE