CVE-2026-55949 Microsoft Excel Remote Code Execution Vulnerability
Use of uninitialized resource in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
Categories: Microsoft
CVE-2026-56156 Microsoft Excel Remote Code Execution Vulnerability
Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
Categories: Microsoft
CVE-2026-56157 Microsoft SharePoint Server Spoofing Vulnerability
Improper access control in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.
Categories: Microsoft
CVE-2026-41109 GitHub Copilot and Visual Studio Code Security Feature Bypass Vulnerability
Improper neutralization of special elements in output used by a downstream component ('injection') in GitHub Copilot and Visual Studio allows an unauthorized attacker to bypass a security feature over a network.
Categories: Microsoft
CVE-2026-56159 DHCP Server Service Remote Code Execution Vulnerability
Heap-based buffer overflow in Windows DHCP Server allows an unauthorized attacker to execute code over a network.
Categories: Microsoft
CVE-2026-50359 Microsoft XML Core Services Elevation of Privilege Vulnerability
Use after free in Microsoft XML Core Services allows an authorized attacker to elevate privileges locally.
Categories: Microsoft
CVE-2026-56168 Windows SMB Server Denial of Service Vulnerability
Information published.
Categories: Microsoft
CVE-2026-56173 Windows WebView Elevation of Privilege Vulnerability
Use after free in Windows WebView allows an authorized attacker to elevate privileges locally.
Categories: Microsoft
CVE-2026-56176 Windows Win32k Elevation of Privilege Vulnerability
Out-of-bounds read in Windows Win32K - GRFX allows an authorized attacker to elevate privileges locally.
Categories: Microsoft
CVE-2026-56175 Windows NTFS Elevation of Privilege Vulnerability
Heap-based buffer overflow in Windows NTFS allows an authorized attacker to elevate privileges locally.
Categories: Microsoft
CVE-2026-56182 Windows NTFS Elevation of Privilege Vulnerability
Integer overflow or wraparound in Windows NTFS allows an authorized attacker to elevate privileges locally.
Categories: Microsoft
CVE-2026-56183 Windows MIDI Service Module Elevation of Privileges Vulnerability
Use after free in Windows MIDI Service Module allows an authorized attacker to elevate privileges locally.
Categories: Microsoft
CVE-2026-56190 Remote Desktop Protocol Remote Code Execution Vulnerability
Use of uninitialized resource in Windows RDP allows an unauthorized attacker to execute code over a network.
Categories: Microsoft
CVE-2026-56184 Win32k Information Disclosure Vulnerability
Exposure of sensitive information to an unauthorized actor in Windows Win32K allows an authorized attacker to disclose information locally.
Categories: Microsoft
CVE-2026-56187 Windows MIDI Service Module Elevation of Privileges Vulnerability
Use after free in Windows MIDI Service Module allows an authorized attacker to elevate privileges locally.
Categories: Microsoft
CVE-2026-56186 Windows Secure Channel Information Disclosure Vulnerability
Out-of-bounds read in Windows Schannel allows an authorized attacker to disclose information over a network.
Categories: Microsoft
CVE-2026-56188 Windows Server Network driver Remote Code Execution Vulnerability
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Server Network driver allows an unauthorized attacker to execute code over a network.
Categories: Microsoft
CVE-2026-56189 Microsoft Windows Media Foundation Remote Code Execution Vulnerability
Heap-based buffer overflow in Microsoft Windows Media Foundation allows an unauthorized attacker to execute code locally.
Categories: Microsoft
CVE-2026-50665 Microsoft Office Information Disclosure Vulnerability
Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally.
Categories: Microsoft
CVE-2026-56192 Microsoft Office Information Disclosure Vulnerability
Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally.
Categories: Microsoft


