Feed aggregator

CVE-2026-12439 Use after free in Digital Credentials

Microsoft Security Center Center News - Fri, 06/19/2026 - 20:52
This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2025) for more information.
Categories: Microsoft

CVE-2026-24289 Windows Kernel Elevation of Privilege Vulnerability

Microsoft Security Center Center News - Fri, 06/19/2026 - 14:00
Acknowledgement added. This is an informational change only.
Categories: Microsoft

CVE-2025-6965 Integer Truncation on SQLite

Microsoft Security Center Center News - Fri, 06/19/2026 - 14:00
Added Visual Studio software to the Security Updates table. Customers that are running supported version of Visual Studio are encouraged to update to the indicated version to be protected from this vulnerability.
Categories: Microsoft

CVE-2026-53689

Microsoft Security Center Center News - Fri, 06/19/2026 - 08:01
Information published.
Categories: Microsoft

CVE-2026-47633 Microsoft Cost Management Information Disclosure Vulnerability

Microsoft Security Center Center News - Thu, 06/18/2026 - 14:00
Exposure of sensitive information to an unauthorized actor in Cost Management Interactive Experiences allows an unauthorized attacker to disclose information over a network.
Categories: Microsoft

CVE-2026-32208 Microsoft Edge (Chromium-based) Spoofing Vulnerability

Microsoft Security Center Center News - Thu, 06/18/2026 - 14:00
Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Edge (Chromium-based) allows an authorized attacker to perform spoofing over a network.
Categories: Microsoft

CVE-2026-32174 Azure Bot Service Elevation of Privilege Vulnerability

Microsoft Security Center Center News - Thu, 06/18/2026 - 14:00
Improper authentication in Azure Bot Service allows an authorized attacker to elevate privileges over a network.
Categories: Microsoft

CVE-2026-45480 Azure Active Directory Elevation of Privilege Vulnerability

Microsoft Security Center Center News - Thu, 06/18/2026 - 14:00
Improper authentication in Azure Active Directory allows an unauthorized attacker to elevate privileges over a network.
Categories: Microsoft

CVE-2026-42895 Microsoft Copilot Tampering Vulnerability

Microsoft Security Center Center News - Thu, 06/18/2026 - 14:00
Improper neutralization of special elements used in a command ('command injection') in Microsoft Copilot allows an unauthorized attacker to perform tampering over a network.
Categories: Microsoft

CVE-2026-54130 M365 Copilot Information Disclosure Vulnerability

Microsoft Security Center Center News - Thu, 06/18/2026 - 14:00
Missing authentication for critical function in M365 Copilot allows an unauthorized attacker to disclose information over a network.
Categories: Microsoft

CVE-2026-47647 Dynamics 365 Elevation of Privilege Vulnerability

Microsoft Security Center Center News - Thu, 06/18/2026 - 14:00
Improper access control in Microsoft Dynamics 365 allows an authorized attacker to elevate privileges over a network.
Categories: Microsoft

CVE-2026-48584 Microsoft Azure Synapse Elevation of Privilege Vulnerability

Microsoft Security Center Center News - Thu, 06/18/2026 - 14:00
Execution with unnecessary privileges in Azure Synapse allows an authorized attacker to elevate privileges over a network.
Categories: Microsoft

Pages

Subscribe to Geeksultant aggregator