Vulnerabilities (CVE)

Filtered by CWE-20
Total 13237 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2024-21413 1 Microsoft 4 365 Apps, Office 2016, Office 2019 and 1 more 2026-08-10 N/A 9.8 CRITICAL
Microsoft Outlook Remote Code Execution Vulnerability
CVE-2024-21374 1 Microsoft 1 Teams 2026-08-10 N/A 5.0 MEDIUM
Microsoft Teams for Android Information Disclosure Vulnerability
CVE-2024-21315 1 Microsoft 14 Defender For Endpoint, Windows 10 1507, Windows 10 1607 and 11 more 2026-08-10 N/A 7.8 HIGH
Microsoft Defender for Endpoint Protection Elevation of Privilege Vulnerability
CVE-2024-21304 1 Microsoft 8 Windows 10 1809, Windows 10 21h2, Windows 10 22h2 and 5 more 2026-08-10 N/A 4.1 MEDIUM
Trusted Compute Base Elevation of Privilege Vulnerability
CVE-2024-20684 1 Microsoft 5 Windows 11 21h2, Windows 11 22h2, Windows 11 23h2 and 2 more 2026-08-10 N/A 6.5 MEDIUM
Windows Hyper-V Denial of Service Vulnerability
CVE-2023-38254 1 Microsoft 12 Windows 10 1507, Windows 10 1607, Windows 10 1809 and 9 more 2026-08-10 N/A 6.5 MEDIUM
Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability
CVE-2023-36912 1 Microsoft 12 Windows 10, Windows 10 1607, Windows 10 1809 and 9 more 2026-08-10 N/A 7.5 HIGH
Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability
CVE-2023-36899 1 Microsoft 10 .net Framework, Windows 10 1809, Windows 10 21h2 and 7 more 2026-08-10 N/A 8.8 HIGH
ASP.NET Elevation of Privilege Vulnerability
CVE-2023-36897 1 Microsoft 7 365 Apps, Office, Office Long Term Servicing Channel and 4 more 2026-08-10 N/A 8.1 HIGH
Visual Studio Tools for Office Runtime Spoofing Vulnerability
CVE-2023-36893 1 Microsoft 4 365 Apps, Office, Office Long Term Servicing Channel and 1 more 2026-08-10 N/A 6.5 MEDIUM
Microsoft Outlook Spoofing Vulnerability
CVE-2023-36873 1 Microsoft 12 .net Framework, Windows 10 1607, Windows 10 1809 and 9 more 2026-08-10 N/A 7.4 HIGH
.NET Framework Spoofing Vulnerability
CVE-2023-35377 1 Microsoft 12 Windows 10 1507, Windows 10 1607, Windows 10 1809 and 9 more 2026-08-10 N/A 6.5 MEDIUM
Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability
CVE-2023-35376 1 Microsoft 12 Windows 10 1507, Windows 10 1607, Windows 10 1809 and 9 more 2026-08-10 N/A 6.5 MEDIUM
Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability
CVE-2023-35368 1 Microsoft 1 Exchange Server 2026-08-10 N/A 8.8 HIGH
Microsoft Exchange Remote Code Execution Vulnerability
CVE-2021-34516 1 Microsoft 8 Windows 10, Windows 7, Windows 8.1 and 5 more 2026-08-10 4.6 MEDIUM 7.8 HIGH
Win32k Elevation of Privilege Vulnerability
CVE-2025-13909 1 Wso2 1 Identity Server 2026-08-10 N/A 4.3 MEDIUM
The system accepts authentication requests without sufficient validation to enforce tenant isolation when using Email OTP, SMS OTP, or Magic Link as first-factor authenticators. This failure to adequately separate user data between tenants can lead to the exposure of personally identifiable information. Successful exploitation allows an attacker to disclose personally identifiable information of users in different tenants, resulting in privacy violations and potential regulatory non-compliance. This may include unauthorized access to user details such as mobile numbers.
CVE-2026-17749 1 Google 1 Chrome 2026-08-10 N/A 9.6 CRITICAL
Insufficient validation of untrusted input in Extensions in Google Chrome prior to 151.0.7922.72 allowed an attacker who convinced a user to install a malicious extension to potentially perform a sandbox escape via a crafted Chrome Extension. (Chromium security severity: Medium)
CVE-2026-17738 1 Google 1 Chrome 2026-08-10 N/A 9.6 CRITICAL
Insufficient validation of untrusted input in Payments in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-17735 1 Google 1 Chrome 2026-08-10 N/A 8.7 HIGH
Insufficient validation of untrusted input in BFCache in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-17706 2 Google, Microsoft 2 Chrome, Windows 2026-08-10 N/A 4.3 MEDIUM
Insufficient validation of untrusted input in Media in Google Chrome on Windows prior to 151.0.7922.72 allowed a remote attacker who had compromised the renderer process to leak cross-origin data via a crafted HTML page. (Chromium security severity: High)