Loading market data...

CVE Feed

Latest vulnerabilities from the National Vulnerability Database.

52171
Total
4143
Critical
15453
High
15185
Medium
CVE ID Severity Score Description Published
CVE-2026-55028 MEDIUM 5.5 Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally. Jul 14, 2026
CVE-2026-55027 MEDIUM 5.5 Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally. Jul 14, 2026
CVE-2026-55026 MEDIUM 6.2 Integer overflow or wraparound in Microsoft Office allows an unauthorized attacker to disclose information locally. Jul 14, 2026
CVE-2026-55025 HIGH 7.8 Access of resource using incompatible type ('type confusion') in Microsoft Office Excel allows an unauthorized attacker to execute code locally. Jul 14, 2026
CVE-2026-55024 HIGH 7.8 Access of resource using incompatible type ('type confusion') in Microsoft Office Excel allows an unauthorized attacker to execute code locally. Jul 14, 2026
CVE-2026-55023 MEDIUM 5.5 Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally. Jul 14, 2026
CVE-2026-55022 HIGH 7.8 Access of resource using incompatible type ('type confusion') in Microsoft Office allows an unauthorized attacker to execute code locally. Jul 14, 2026
CVE-2026-55021 HIGH 7.3 Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network. Jul 14, 2026
CVE-2026-55020 MEDIUM 4.6 Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network. Jul 14, 2026
CVE-2026-55019 MEDIUM 4.6 Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network. Jul 14, 2026
CVE-2026-55018 HIGH 7.8 Use after free in Microsoft Office allows an unauthorized attacker to execute code locally. Jul 14, 2026
CVE-2026-55017 HIGH 7.8 Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally. Jul 14, 2026
CVE-2026-55016 MEDIUM 4.6 Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network. Jul 14, 2026
CVE-2026-55010 CRITICAL 9.8 Heap-based buffer overflow in Minecraft Bedrock Dedicated Server allows an unauthorized attacker to execute code over a network. Jul 14, 2026
CVE-2026-54131 HIGH 7.8 Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally. Jul 14, 2026
CVE-2026-54128 HIGH 8.4 Use after free in Windows DHCP Client allows an unauthorized attacker to execute code locally. Jul 14, 2026
CVE-2026-54126 MEDIUM 6.5 Out-of-bounds read in Windows RDP allows an unauthorized attacker to disclose information over a network. Jul 14, 2026
CVE-2026-54125 HIGH 7.8 Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Runtime allows an authorized attacker to elevate privileges locally. Jul 14, 2026
CVE-2026-54124 HIGH 7.8 Integer overflow or wraparound in Windows Terminal allows an unauthorized attacker to execute code locally. Jul 14, 2026
CVE-2026-54121 HIGH 8.8 Improper authorization in Active Directory Certificate Services (AD CS) allows an authorized attacker to elevate privileges over a network. Jul 14, 2026
CVE-2026-54116 MEDIUM 6.5 Access of resource using incompatible type ('type confusion') in SQL Server allows an authorized attacker to disclose information over a network. Jul 14, 2026
CVE-2026-54115 HIGH 7.8 Integer overflow or wraparound in Windows Active Directory allows an authorized attacker to elevate privileges locally. Jul 14, 2026
CVE-2026-50692 HIGH 8.8 Heap-based buffer overflow in Desktop Window Manager allows an authorized attacker to elevate privileges locally. Jul 14, 2026
CVE-2026-50690 MEDIUM 5.5 Use of uninitialized resource in Windows SMB allows an authorized attacker to disclose information locally. Jul 14, 2026
CVE-2026-50689 HIGH 7.8 Use after free in Windows Clipboard Server allows an authorized attacker to elevate privileges locally. Jul 14, 2026