Chromium: CVE-2026-79276 Improper privilege management in FileSystem
Chromium: CVE-2026-79283 UI misrepresentation in Geometry
Chromium: CVE-2026-79284 UI misrepresentation in Core
Chromium: CVE-2026-79285 Uninitialized resource in ANGLE
Chromium: CVE-2026-79287 Observable discrepancy in Forms
Chromium: CVE-2026-79289 Improper control of a resource through its lifetime in Workers
Chromium: CVE-2026-79290 Use after free in Aura
Chromium: CVE-2026-79291 Information leak in CSS
Chromium: CVE-2026-79292 Integer overflow in Chromecast
Chromium: CVE-2026-79293 Information leak in Animation
CVE-2026-70309 Microsoft Edge (Chromium-based) Security Feature Bypass Vulnerability
Origin validation error in Microsoft Edge (Chromium-based) allows an unauthorized attacker to bypass a security feature over a network.
CVE-2026-69550 Windows App for Mac Information Disclosure Vulnerability
CVE-2026-32202 Windows Shell Spoofing Vulnerability
New - Citrix Infra Monitor
CVE-2026-62834 Azure Data Factory Elevation of Privilege Vulnerability
Improper verification of cryptographic signature in Azure Data Factory allows an unauthorized attacker to elevate privileges over a network.
CVE-2026-65801 Microsoft Exchange Online Elevation of Privilege Vulnerability
Server-side request forgery (ssrf) in Microsoft Exchange Online allows an unauthorized attacker to elevate privileges over a network.
CVE-2026-68789 Azure SQL Database Elevation of Privilege Vulnerability
Improper neutralization of special elements used in an sql command ('sql injection') in Azure SQL Database allows an authorized attacker to elevate privileges over a network.
CVE-2026-69519 Azure Stack HCI Information Disclosure Vulnerability
Observable response discrepancy in Azure Stack HCI allows an unauthorized attacker to disclose information over a network.
CVE-2026-69851 Microsoft Entra ID Elevation of Privilege Vulnerability
Server-side request forgery (ssrf) in Azure Active Directory allows an authorized attacker to elevate privileges over a network.
CVE-2026-69836 Microsoft Entra ID Remote Code Execution Vulnerability
Deserialization of untrusted data in Microsoft Entra ID allows an unauthorized attacker to execute code over a network.


