Export limit exceeded: 388875 CVEs match your query. Please refine your search to export 10,000 CVEs or fewer.
Export limit exceeded: 388875 CVEs match your query. Please refine your search to export 10,000 CVEs or fewer.
Export limit exceeded: 388875 CVEs match your query. Please refine your search to export 10,000 CVEs or fewer.
Search
Search Results (388875 CVEs found)
| CVE | Vendors | Products | Updated | CVSS v3.1 |
|---|---|---|---|---|
| CVE-2026-81956 | 1 Microsoft | 9 365 Apps, Excel 2016, Office 2016 and 6 more | 2026-09-08 | 7.8 High |
| Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to execute code locally. | ||||
| CVE-2026-81397 | 1 Microsoft | 9 365 Apps, Excel 2016, Office 2016 and 6 more | 2026-09-08 | 7.8 High |
| Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally. | ||||
| CVE-2026-81392 | 1 Microsoft | 9 365 Apps, Excel 2016, Office 2016 and 6 more | 2026-09-08 | 5.5 Medium |
| Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information locally. | ||||
| CVE-2026-81396 | 1 Microsoft | 9 365 Apps, Excel 2016, Office 2016 and 6 more | 2026-09-08 | 7.8 High |
| Stack-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally. | ||||
| CVE-2026-81954 | 1 Microsoft | 9 365 Apps, Excel 2016, Office 2016 and 6 more | 2026-09-08 | 7.8 High |
| Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally. | ||||
| CVE-2026-81947 | 1 Microsoft | 9 365 Apps, Excel 2016, Office 2016 and 6 more | 2026-09-08 | 7.8 High |
| Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally. | ||||
| CVE-2026-81386 | 1 Microsoft | 9 365 Apps, Excel 2016, Office 2016 and 6 more | 2026-09-08 | 7.8 High |
| Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally. | ||||
| CVE-2026-81398 | 1 Microsoft | 9 365 Apps, Excel 2016, Office 2016 and 6 more | 2026-09-08 | 7.8 High |
| Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally. | ||||
| CVE-2026-81354 | 1 Microsoft | 8 Windows 10 1809, Windows 10 21h2, Windows 10 22h2 and 5 more | 2026-09-08 | 8.2 High |
| Heap-based buffer overflow in Windows Hello allows an authorized attacker to elevate privileges locally. | ||||
| CVE-2026-81353 | 1 Microsoft | 1 Heif Image Extension | 2026-09-08 | 7.8 High |
| Heap-based buffer overflow in Microsoft Windows Codecs Library allows an unauthorized attacker to execute code locally. | ||||
| CVE-2026-81352 | 1 Microsoft | 1 Web Media Extensions | 2026-09-08 | 8.8 High |
| Heap-based buffer overflow in Microsoft Windows Codecs Library allows an unauthorized attacker to execute code over a network. | ||||
| CVE-2026-80096 | 1 Microsoft | 14 Windows 10 1607, Windows 10 1809, Windows 10 21h2 and 11 more | 2026-09-08 | 8.8 High |
| Out-of-bounds read in Windows Remote Desktop Services allows an authorized attacker to elevate privileges over a network. | ||||
| CVE-2026-80081 | 1 Microsoft | 1 365 Apps | 2026-09-08 | 8.8 High |
| Use after free in Microsoft Office PowerPoint allows an unauthorized attacker to execute code over a network. | ||||
| CVE-2026-78525 | 1 Microsoft | 8 365 Apps, Office 2019, Office 2021 and 5 more | 2026-09-08 | 8.8 High |
| Use after free in Microsoft Office Outlook allows an unauthorized attacker to execute code over a network. | ||||
| CVE-2026-78524 | 1 Microsoft | 8 365 Apps, Office 2016, Office 2019 and 5 more | 2026-09-08 | 8.8 High |
| Out-of-bounds write in Microsoft Office allows an unauthorized attacker to execute code over a network. | ||||
| CVE-2026-78520 | 1 Microsoft | 8 365 Apps, Office 2019, Office 2021 and 5 more | 2026-09-08 | 6.5 Medium |
| Out-of-bounds read in Microsoft Office Outlook allows an unauthorized attacker to execute code over a network. | ||||
| CVE-2026-86510 | 1 D-link | 1 Dir-822a | 2026-09-08 | 9.9 Critical |
| A vulnerability has been found in D-Link DIR-822A A_101. Affected is the function tunnel_set_params of the component L2TP Control Message Parser. Such manipulation leads to out-of-bounds write. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. | ||||
| CVE-2026-86296 | 1 D-link | 1 Dir-822a | 2026-09-08 | 10 Critical |
| A vulnerability was determined in D-Link DIR-822A A_101. This vulnerability affects the function strcpy of the file udhcpcd/serverpacket.c of the component udhcpcd. This manipulation causes stack-based buffer overflow. The attack is possible to be carried out remotely. The exploit has been publicly disclosed and may be utilized. | ||||
| CVE-2026-86274 | 1 Projeto-siga | 1 Siga | 2026-09-08 | 5.3 Medium |
| A security vulnerability has been detected in projeto-siga siga up to 11.0.2.10/11.0.2.13/11.1.1. This affects the function ExAutenticacaoController.autenticar of the file sigaex/src/main/java/br/gov/jfrj/siga/vraptor/ExAutenticacaoController.java of the component Authentication Flow. Such manipulation of the argument cod/jwt leads to missing authorization. The attack may be launched remotely. The exploit has been disclosed publicly and may be used. The project was informed of the problem early through an issue report but has not responded yet. | ||||
| CVE-2026-85613 | 1 Openpanel | 1 Openpanel | 2026-09-08 | 8.2 High |
| OpenPanel before 2.3.0 contains a cross-site scripting vulnerability in the unauthenticated favicon proxy endpoint GET /misc/favicon that allows remote attackers to execute scripts by supplying an SVG file URL. Attackers can host malicious SVG files with embedded scripts that execute in the victim's browser on the API origin, enabling same-origin credentialed requests to authenticated endpoints. | ||||