| | CVE-2026-62900 | Microsoft | medium | 5.9 | 0.6%
| | Improper removal of sensitive information before storage or transfer in .NET allows an unauthorized … | Aug 11, 2026 | Aug 14, 2026 |
| | CVE-2026-62899 | Microsoft | medium | 5.9 | 0.7%
| | Inconsistent interpretation of http requests ('http request/response smuggling') in .NET allows an u… | Aug 11, 2026 | Aug 14, 2026 |
| | CVE-2026-62898 | Microsoft | high | 7.5 | 1.1%
| | Use after free in Microsoft QUIC allows an unauthorized attacker to disclose information over a netw… | Aug 11, 2026 | Aug 14, 2026 |
| | CVE-2026-62897 | Microsoft | high | 7.0 | 0.3%
| | Integer overflow or wraparound in .NET Framework allows an unauthorized attacker to execute code loc… | Aug 11, 2026 | Aug 14, 2026 |
| | CVE-2026-62886 | Microsoft | high | 7.8 | 0.4%
| | Integer overflow or wraparound in .NET allows an unauthorized attacker to elevate privileges locally… | Aug 11, 2026 | Aug 14, 2026 |
| | CVE-2026-62882 | Microsoft | medium | 4.3 | 0.6%
| | Insufficiently protected credentials in Microsoft Office Outlook allows an unauthorized attacker to … | Aug 11, 2026 | Aug 14, 2026 |
| | CVE-2026-62872 | Microsoft | high | 8.8 | 0.5%
| | Incorrect authorization in .NET Framework allows an authorized attacker to elevate privileges over a… | Aug 11, 2026 | Aug 14, 2026 |
| | CVE-2026-62871 | Microsoft | high | 7.8 | 0.4%
| | Out-of-bounds write in .NET allows an unauthorized attacker to execute code locally. | Aug 11, 2026 | Aug 13, 2026 |
| | CVE-2026-62869 | Microsoft | high | 8.8 | 0.4%
| | Insufficient verification of data authenticity in Azure Entra ID allows an authorized attacker to pe… | Aug 11, 2026 | Aug 13, 2026 |
| | CVE-2026-62842 | Microsoft | medium | 5.5 | 0.4%
| | Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information local… | Aug 11, 2026 | Aug 13, 2026 |
| | CVE-2026-62839 | Microsoft | medium | 6.5 | 0.6%
| | Insufficiently protected credentials in Microsoft Office SharePoint allows an authorized attacker to… | Aug 11, 2026 | Aug 13, 2026 |
| | CVE-2026-62837 | Microsoft | medium | 6.5 | — | | Relative path traversal in Microsoft Office SharePoint allows an authorized attacker to disclose inf… | Aug 11, 2026 | Aug 11, 2026 |
| | CVE-2026-62829 | Microsoft | medium | 4.6 | — | | Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Of… | Aug 11, 2026 | Aug 11, 2026 |
| | CVE-2026-62827 | Microsoft | high | 8.8 | 0.6%
| | Improper authentication in Microsoft Office SharePoint allows an authorized attacker to elevate priv… | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-59133 | Microsoft | high | 8.8 | 0.9%
| | Execution with unnecessary privileges in Microsoft High Performance Computing (HPC) Pack allows an a… | Aug 11, 2026 | Aug 28, 2026 |
| | CVE-2026-59124 | Microsoft | critical | 9.8 | 1.7%
| | Deserialization of untrusted data in Microsoft High Performance Computing (HPC) Pack allows an unaut… | Aug 11, 2026 | Aug 16, 2026 |
| | CVE-2026-59119 | Microsoft | high | 7.3 | 0.4%
| | Incorrect default permissions in Microsoft PowerShell allows an authorized attacker to elevate privi… | Aug 11, 2026 | Aug 17, 2026 |
| | CVE-2026-59113 | Microsoft | high | 8.8 | 0.7%
| | Missing authorization in Visual Studio Code allows an unauthorized attacker to execute code over a n… | Aug 11, 2026 | Sep 2, 2026 |
| | CVE-2026-58651 | Microsoft | high | 7.8 | 0.4%
| | Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code … | Aug 11, 2026 | Aug 14, 2026 |
| | CVE-2026-58650 | Microsoft | high | 7.8 | 0.3%
| | Authorization bypass through user-controlled key in Visual Studio Code allows an unauthorized attack… | Aug 11, 2026 | Sep 2, 2026 |
| | CVE-2026-58641 | Microsoft | high | 7.8 | 0.4%
| | Integer overflow or wraparound in .NET allows an unauthorized attacker to elevate privileges locally… | Aug 11, 2026 | Sep 3, 2026 |
| | CVE-2026-58639 | Microsoft | medium | 6.5 | 0.8%
| | Server-side request forgery (ssrf) in Microsoft Office SharePoint allows an authorized attacker to p… | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-58612 | Microsoft | high | 7.4 | 0.8%
| | Server-side request forgery (ssrf) in Microsoft PowerShell Core allows an unauthorized attacker to d… | Aug 11, 2026 | Aug 17, 2026 |
| | CVE-2026-57105 | Microsoft | high | 8.0 | — | | Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Of… | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-54981 | Microsoft | high | 7.8 | 0.4%
| | Inclusion of functionality from untrusted control sphere in Visual Studio Code - Python extension al… | Aug 11, 2026 | Aug 22, 2026 |
| | CVE-2026-54123 | Microsoft | medium | 5.5 | 0.4%
| | Exposure of sensitive information to an unauthorized actor in Microsoft Defender for Endpoint allows… | Aug 11, 2026 | Aug 17, 2026 |
| | CVE-2026-50516 | Microsoft | critical | 9.4 | 0.8%
| | Missing authentication for critical function in Microsoft Azure Kubernetes Service allows an unautho… | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-47299 | Microsoft | high | 7.2 | 1.0%
| | Improper neutralization of special elements used in a command ('command injection') in Azure Monitor… | Aug 11, 2026 | Aug 13, 2026 |
| | CVE-2026-47285 | Microsoft | medium | 6.5 | 0.9%
| | Improper neutralization of special elements used in a command ('command injection') in Visual Studio… | Aug 11, 2026 | Sep 2, 2026 |
| | CVE-2026-40375 | Microsoft | medium | 6.5 | 0.8%
| | Missing authorization in Dynamics Business Central allows an authorized attacker to disclose informa… | Aug 11, 2026 | Aug 13, 2026 |
| | CVE-2026-20349 | Cisco | high | 8.6 | 1.0%
| ⚠ KEV | A vulnerability in the Remote Access SSL VPN service for Cisco Secure Firewall Adaptive Security App… | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-71331 | Microsoft | high | 8.1 | — | | Integer overflow or wraparound in Microsoft Azure Attestation service and Device Health Attestation … | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-66802 | Microsoft | high | 8.1 | — | | Concurrent execution using shared resource with improper synchronization ('race condition') in Micro… | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-65798 | Microsoft | medium | 6.7 | — | | Numeric truncation error in Windows DNS allows an authorized attacker to elevate privileges locally. | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-65799 | Microsoft | medium | 6.7 | — | | Integer overflow or wraparound in Windows DNS allows an authorized attacker to elevate privileges lo… | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-65797 | Microsoft | medium | 6.7 | — | | Numeric truncation error in Windows DNS allows an authorized attacker to elevate privileges locally. | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-65795 | Microsoft | medium | 6.7 | — | | No cwe for this issue in Windows DNS allows an authorized attacker to elevate privileges locally. | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-65791 | Microsoft | critical | 9.8 | — | | Heap-based buffer overflow in Windows iSCSI Target Service allows an unauthorized attacker to execut… | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-65776 | Microsoft | high | 7.0 | — | | Use after free in Windows Win32K allows an authorized attacker to elevate privileges locally. | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-65775 | Microsoft | high | 7.8 | — | | Use after free in Windows Win32K allows an authorized attacker to elevate privileges locally. | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-65774 | Microsoft | high | 7.8 | — | | Heap-based buffer overflow in Windows Installer allows an authorized attacker to elevate privileges … | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-65773 | Microsoft | high | 7.8 | — | | Improper access control in Windows Kernel allows an authorized attacker to elevate privileges locall… | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-62888 | Microsoft | high | 7.8 | — | | Use after free in Windows DWM Core Library allows an authorized attacker to elevate privileges local… | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-62885 | Microsoft | high | 7.8 | — | | Heap-based buffer overflow in Windows Win32K allows an authorized attacker to elevate privileges loc… | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-62883 | Microsoft | medium | 6.7 | — | | Numeric truncation error in Windows DNS allows an authorized attacker to elevate privileges locally. | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-62881 | Microsoft | medium | 6.7 | — | | Numeric truncation error in Windows DNS allows an authorized attacker to elevate privileges locally. | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-62880 | Microsoft | high | 7.8 | — | | Out-of-bounds read in Windows NTFS allows an authorized attacker to elevate privileges locally. | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-62832 | Microsoft | high | 7.8 | — | | Improper link resolution before file access ('link following') in Windows User Profile Service allow… | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-62822 | Microsoft | high | 8.8 | — | | Integer overflow or wraparound in Windows GDI+ allows an unauthorized attacker to execute code over … | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-62824 | Microsoft | high | 8.8 | — | | Stack-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code… | Aug 11, 2026 | Aug 12, 2026 |