Total
3154 CVE
| CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
|---|---|---|---|---|---|
| CVE-2026-62811 | 1 Microsoft | 6 Windows 11 23h2, Windows 11 24h2, Windows 11 25h2 and 3 more | 2026-08-13 | N/A | 7.8 HIGH |
| Heap-based buffer overflow in Windows HTTP.sys allows an authorized attacker to elevate privileges locally. | |||||
| CVE-2026-62736 | 1 Microsoft | 5 Windows 11 23h2, Windows 11 24h2, Windows 11 25h2 and 2 more | 2026-08-13 | N/A | 7.8 HIGH |
| Heap-based buffer overflow in Windows DHCP Client allows an authorized attacker to elevate privileges locally. | |||||
| CVE-2026-68815 | 1 Microsoft | 6 365 Apps, Excel, Microsoft 365 and 3 more | 2026-08-13 | N/A | 7.8 HIGH |
| Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally. | |||||
| CVE-2026-68812 | 1 Microsoft | 6 365 Apps, Excel, Microsoft 365 and 3 more | 2026-08-13 | N/A | 7.8 HIGH |
| Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally. | |||||
| CVE-2026-68807 | 1 Microsoft | 6 365 Apps, Excel, Microsoft 365 and 3 more | 2026-08-13 | N/A | 7.8 HIGH |
| Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally. | |||||
| CVE-2026-68805 | 1 Microsoft | 6 365 Apps, Excel, Microsoft 365 and 3 more | 2026-08-13 | N/A | 7.8 HIGH |
| Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally. | |||||
| CVE-2026-68804 | 1 Microsoft | 6 365 Apps, Excel, Microsoft 365 and 3 more | 2026-08-13 | N/A | 7.8 HIGH |
| Numeric truncation error in Microsoft Office Excel allows an unauthorized attacker to execute code locally. | |||||
| CVE-2026-68801 | 1 Microsoft | 6 365 Apps, Excel, Microsoft 365 and 3 more | 2026-08-13 | N/A | 7.8 HIGH |
| Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally. | |||||
| CVE-2026-68800 | 1 Microsoft | 6 365 Apps, Excel, Microsoft 365 and 3 more | 2026-08-13 | N/A | 7.8 HIGH |
| Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally. | |||||
| CVE-2026-68796 | 1 Microsoft | 6 365 Apps, Excel, Microsoft 365 and 3 more | 2026-08-13 | N/A | 7.8 HIGH |
| Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally. | |||||
| CVE-2026-68794 | 1 Microsoft | 6 365 Apps, Excel, Microsoft 365 and 3 more | 2026-08-13 | N/A | 7.8 HIGH |
| Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally. | |||||
| CVE-2026-62772 | 1 Microsoft | 1 Windows 11 26h1 | 2026-08-13 | N/A | 7.8 HIGH |
| Heap-based buffer overflow in Windows Container Isolation FS Filter Driver (unionfs.sys) allows an authorized attacker to elevate privileges locally. | |||||
| CVE-2026-62688 | 1 Microsoft | 3 Windows 11 24h2, Windows 11 25h2, Windows 11 26h1 | 2026-08-13 | N/A | 7.8 HIGH |
| Heap-based buffer overflow in Windows MIDI Service Module allows an authorized attacker to elevate privileges locally. | |||||
| CVE-2026-62695 | 1 Microsoft | 6 Windows 11 23h2, Windows 11 24h2, Windows 11 25h2 and 3 more | 2026-08-13 | N/A | 7.8 HIGH |
| Heap-based buffer overflow in Windows Storage allows an authorized attacker to elevate privileges locally. | |||||
| CVE-2026-61355 | 1 Microsoft | 8 Windows 10 21h2, Windows 10 22h2, Windows 11 23h2 and 5 more | 2026-08-13 | N/A | 7.8 HIGH |
| Heap-based buffer overflow in Windows Sensor Data Service allows an authorized attacker to elevate privileges locally. | |||||
| CVE-2026-61359 | 1 Microsoft | 6 Windows 11 23h2, Windows 11 24h2, Windows 11 25h2 and 3 more | 2026-08-13 | N/A | 7.8 HIGH |
| Heap-based buffer overflow in Windows Storage allows an authorized attacker to elevate privileges locally. | |||||
| CVE-2026-8987 | 1 Autel | 2 Maxicharger Single Charger, Maxicharger Single Charger Firmware | 2026-08-13 | N/A | 8.8 HIGH |
| Autel Maxi Charger Single firmware through V1.03.51 contains a heap-based buffer overflow in the set_ap_param command handled by the /localcfg endpoint. An authenticated attacker can supply oversized input, resulting in denial of service and potentially arbitrary code execution. | |||||
| CVE-2026-19206 | 2026-08-12 | 4.3 MEDIUM | 5.3 MEDIUM | ||
| A security flaw has been discovered in MZ Automation libiec61850 up to 1.6.1. This affects the function SVReceiver_stopThreadless of the file src/sampled_values/sv_subscriber.c of the component ASDU Element Handler. Performing a manipulation results in heap-based buffer overflow. The attack must be initiated from a local position. The exploit has been released to the public and may be used for attacks. Upgrading to version 1.6.2 is able to mitigate this issue. The patch is named a96bd674e0238276dd1387d31d52e55229d0771e. The affected component should be upgraded. | |||||
| CVE-2026-18585 | 2026-08-12 | 4.0 MEDIUM | 4.3 MEDIUM | ||
| A vulnerability was detected in GL.iNet MT3000, MT6000, BE9300, BE3600, MT3600BE, E5800, BE6500, MT5000, X3000, XE3000 and MT2500 up to 20260707. The affected element is the function nas-web.get_file_list of the component APPS-NAS Module. Performing a manipulation results in heap-based buffer overflow. The attack may be initiated remotely. The vendor was contacted early about this disclosure and confirmed the existence of the vulnerability. | |||||
| CVE-2024-14043 | 2026-08-12 | 6.5 MEDIUM | 6.3 MEDIUM | ||
| A vulnerability was determined in Open5GS up to 2.7.1. This vulnerability affects the function mme_s6a_subscription_data_from_avp of the file src/mme/mme-fd-path.c of the component Diameter S6a Interface. Executing a manipulation of the argument msisdn_len can lead to heap-based buffer overflow. It is possible to launch the attack remotely. The exploit has been publicly disclosed and may be utilized. Upgrading to version 2.7.2 is able to resolve this issue. This patch is called 7ea82cb87bb65c3694d8d7c7a5efed1c4d3c9304. Upgrading the affected component is recommended. | |||||
