Total
9711 CVE
| CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
|---|---|---|---|---|---|
| CVE-2026-69739 | 1 Microsoft | 5 365 Apps, Office 2016, Office 2019 and 2 more | 2026-09-09 | N/A | 6.5 MEDIUM |
| Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information over a network. | |||||
| CVE-2026-85090 | 1 Freerdp | 1 Freerdp | 2026-09-09 | N/A | 5.4 MEDIUM |
| FreeRDP before 3.31.0 contains a heap out-of-bounds read vulnerability in the general_ChromaV1ToYUV444 function during AVC444 chroma plane reconstruction. A malicious RDP server can craft a RFX_AVC444_BITMAP_STREAM with specific frame geometry to trigger an out-of-bounds memory read past the allocated luma plane. | |||||
| CVE-2026-69619 | 2026-09-09 | N/A | 8.0 HIGH | ||
| Out-of-bounds read in Windows exFAT File System allows an authorized attacker to elevate privileges over a network. | |||||
| CVE-2026-69549 | 2026-09-09 | N/A | 7.0 HIGH | ||
| Out-of-bounds read in Virtual Hard Disk (VHD) Miniport Driver allows an authorized attacker to elevate privileges locally. | |||||
| CVE-2026-56198 | 2026-09-09 | N/A | 7.8 HIGH | ||
| Out-of-bounds read in Microsoft Trace Data Helper allows an authorized attacker to elevate privileges locally. | |||||
| CVE-2026-78520 | 1 Microsoft | 6 365 Apps, Microsoft 365, Office 2019 and 3 more | 2026-09-09 | N/A | 6.5 MEDIUM |
| Out-of-bounds read in Microsoft Office Outlook allows an unauthorized attacker to execute code over a network. | |||||
| CVE-2026-80073 | 1 Microsoft | 5 365 Apps, Office 2019, Office 2021 and 2 more | 2026-09-09 | N/A | 6.5 MEDIUM |
| Out-of-bounds read in Microsoft Office Outlook allows an unauthorized attacker to disclose information over a network. | |||||
| CVE-2026-80076 | 1 Microsoft | 5 365 Apps, Microsoft 365, Office 2019 and 2 more | 2026-09-09 | N/A | 6.5 MEDIUM |
| Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information over a network. | |||||
| CVE-2026-80078 | 1 Microsoft | 5 365 Apps, Microsoft 365, Office 2019 and 2 more | 2026-09-09 | N/A | 6.5 MEDIUM |
| Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information over a network. | |||||
| CVE-2026-78513 | 1 Microsoft | 6 365 Apps, Microsoft 365, Office 2019 and 3 more | 2026-09-09 | N/A | 5.5 MEDIUM |
| Out-of-bounds read in Microsoft Office PowerPoint allows an unauthorized attacker to disclose information locally. | |||||
| CVE-2026-72975 | 1 Microsoft | 6 365 Apps, Microsoft 365, Office 2019 and 3 more | 2026-09-09 | N/A | 6.5 MEDIUM |
| Out-of-bounds read in Microsoft Office PowerPoint allows an unauthorized attacker to disclose information over a network. | |||||
| CVE-2026-72977 | 1 Microsoft | 6 365 Apps, Microsoft 365, Office 2019 and 3 more | 2026-09-09 | N/A | 6.5 MEDIUM |
| Out-of-bounds read in Microsoft Office PowerPoint allows an unauthorized attacker to disclose information over a network. | |||||
| CVE-2026-69427 | 2026-09-09 | N/A | 8.0 HIGH | ||
| Out-of-bounds read in Windows VOLSNAP.SYS allows an authorized attacker to elevate privileges over a network. | |||||
| CVE-2026-69365 | 2026-09-09 | N/A | 8.0 HIGH | ||
| Out-of-bounds read in Microsoft Local Security Authority Server (lsasrv) allows an authorized attacker to elevate privileges over a network. | |||||
| CVE-2026-69334 | 2026-09-09 | N/A | 8.8 HIGH | ||
| Heap-based buffer overflow in Windows Volume Manager Extension Driver allows an unauthorized attacker to execute code over a network. | |||||
| CVE-2026-67865 | 2026-09-09 | N/A | 7.5 HIGH | ||
| S2OPC 1.7.3 contains an out-of-bounds read in RepublishResponse handling. This allows a remote attacker to cause a denial of service | |||||
| CVE-2026-75370 | 2026-09-09 | N/A | 6.5 MEDIUM | ||
| An out-of-bounds read/write vulnerability in the MessageParser::parseECSSTCHeader component of SpaceDot AcubeSAT OBC software commit eaf90ec allows attackers to cause a Denial of Service (DoS) via supplying a crafted CAN message. | |||||
| CVE-2026-75369 | 2026-09-09 | N/A | 7.1 HIGH | ||
| An out-of-bounds read vulnerability in the CAN::Application::parsePerformFunctionMessage component of SpaceDot AcubeSAT OBC software commit eaf90ec allows attackers to cause a Denial of Service (DoS) via supplying a crafted CAN message. | |||||
| CVE-2026-85505 | 2026-09-09 | N/A | 7.5 HIGH | ||
| ipmi-oem in FreeIPMI before 1.6.19 has a stack-based buffer over-read in ipmi_oem_fujitsu_get_sel_entry_long_text in ipmi-oem/ipmi-oem-fujitsu.c when a BMC provides a short response, a different vulnerability than CVE-2026-50031 (which has different affected versions). | |||||
| CVE-2026-56136 | 2026-09-09 | N/A | 4.7 MEDIUM | ||
| In NTFS-3G through 2026.2.25, an out-of-bounds read exists in ntfs_ir_nill() in libntfs-3g/index.c that allows an attacker to read possibly confidential information in an ntfs-3g process by crafting a malicious NTFS image. This read operation is triggered by creation of a file with a crafted name. | |||||
