Exact snapshot results

353,537 CVE records

CVE ID descending · no relevance ranking

CVE-2026-20962

Use of uninitialized resource in Dynamic Root of Trust for Measurement (DRTM) allows an authorized attacker to disclose information locally.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows Server 2025 (Server Core installation), Windows Server 2022, Windows 11 version 23H2, Windows 10 Version 1809, Windows 11 Version 23H2, Windows Server 2019, Windows 11 Version 24H2, Windows 10 Version 21H2, Windows 11 Version 25H2, Windows Server 2019 (Server Core installation), Windows 10 Version 22H2, Windows Server 2022, 23H2 Edition (Server Core installation), Windows Server 2025
Provider severity
MEDIUM
Conflicts
1

CVE-2026-20960

Improper authorization in Microsoft Power Apps allows an authorized attacker to execute code over a network.

PUBLISHED
Vendor
Microsoft
Product
Microsoft Power Apps Desktop Client
Provider severity
HIGH
Conflicts
0

CVE-2026-2096

Agentflow developed by Flowring has a Missing Authentication vulnerability, allowing unauthenticated remote attackers to read, modify, and delete database contents by using a specific functionality.

PUBLISHED
Vendor
Flowring
Product
Agentflow
Provider severity
CRITICAL
Conflicts
1

CVE-2026-20959

Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft
Product
Microsoft SharePoint Server 2019, Microsoft SharePoint Enterprise Server 2016, Microsoft SharePoint Server Subscription Edition
Provider severity
MEDIUM
Conflicts
1

CVE-2026-20958

Server-side request forgery (ssrf) in Microsoft Office SharePoint allows an authorized attacker to disclose information over a network.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft
Product
Microsoft SharePoint Enterprise Server 2016, Microsoft SharePoint Server 2019, Microsoft SharePoint Server Subscription Edition
Provider severity
MEDIUM
Conflicts
1

CVE-2026-20957

Integer underflow (wrap or wraparound) in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Microsoft 365 Apps for Enterprise, Microsoft Office 2019, Microsoft Excel 2016, Office Online Server, Microsoft Office LTSC 2024, Microsoft Office LTSC for Mac 2024, Microsoft Office LTSC for Mac 2021, Microsoft Office LTSC 2021
Provider severity
HIGH
Conflicts
2

CVE-2026-20956

Untrusted pointer dereference in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Microsoft Office LTSC 2024, Microsoft Office LTSC 2021, Microsoft Office LTSC for Mac 2024, Microsoft 365 Apps for Enterprise, Microsoft Office LTSC for Mac 2021
Provider severity
HIGH
Conflicts
1

CVE-2026-20955

Untrusted pointer dereference in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Microsoft Office LTSC for Mac 2024, Office Online Server, Microsoft Office LTSC for Mac 2021, Microsoft 365 Apps for Enterprise, Microsoft Office LTSC 2024, Microsoft Office LTSC 2021, Microsoft Office 2019
Provider severity
HIGH
Conflicts
1

CVE-2026-20953

Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Microsoft Office LTSC for Mac 2024, Microsoft 365 Apps for Enterprise, Microsoft Office LTSC for Mac 2021, Microsoft Office LTSC 2021, Microsoft Office LTSC 2024, Microsoft Office 2019, Microsoft Office 2016
Provider severity
HIGH
Conflicts
1

CVE-2026-20952

Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Microsoft Office 2019, Microsoft Office LTSC for Mac 2021, Microsoft Office 2016, Microsoft Office LTSC 2024, Microsoft Office LTSC for Mac 2024, Microsoft Office LTSC 2021, Microsoft 365 Apps for Enterprise
Provider severity
HIGH
Conflicts
1

CVE-2026-20951

Improper input validation in Microsoft Office SharePoint allows an unauthorized attacker to execute code locally.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft
Product
Microsoft SharePoint Enterprise Server 2016, Microsoft SharePoint Server 2019, Microsoft SharePoint Server Subscription Edition
Provider severity
HIGH
Conflicts
1

CVE-2026-20950

Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Microsoft Office LTSC 2021, Microsoft Office 2019, Microsoft Office LTSC for Mac 2021, Microsoft Office LTSC 2024, Microsoft Excel 2016, Microsoft Office LTSC for Mac 2024, Microsoft 365 Apps for Enterprise, Office Online Server
Provider severity
HIGH
Conflicts
1

CVE-2026-2095

Agentflow developed by Flowring has an Authentication Bypass vulnerability, allowing unauthenticated remote attackers to exploit a specific functionality to obtain arbitrary user authentication token and log into the system as any user.

PUBLISHED
Vendor
Flowring
Product
Agentflow
Provider severity
CRITICAL
Conflicts
1

CVE-2026-20949

Improper access control in Microsoft Office Excel allows an unauthorized attacker to bypass a security feature locally.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Microsoft Office LTSC 2021, Microsoft Office LTSC for Mac 2021, Microsoft 365 Apps for Enterprise, Microsoft Office LTSC 2024, Microsoft Office LTSC for Mac 2024
Provider severity
HIGH
Conflicts
1

CVE-2026-20948

Untrusted pointer dereference in Microsoft Office Word allows an unauthorized attacker to execute code locally.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Microsoft 365 Apps for Enterprise, Microsoft Office 2019, Microsoft Office LTSC 2021, Microsoft SharePoint Enterprise Server 2016, Microsoft Word 2016, Microsoft Office LTSC 2024, Microsoft Office LTSC for Mac 2021, Microsoft Office LTSC for Mac 2024, Microsoft SharePoint Server 2019
Provider severity
HIGH
Conflicts
1

CVE-2026-20947

Improper neutralization of special elements used in an sql command ('sql injection') in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft
Product
Microsoft SharePoint Server Subscription Edition, Microsoft SharePoint Server 2019, Microsoft SharePoint Enterprise Server 2016
Provider severity
HIGH
Conflicts
1

CVE-2026-20946

Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Microsoft Office LTSC for Mac 2021, Microsoft 365 Apps for Enterprise, Microsoft Excel 2016, Microsoft Office LTSC 2021, Microsoft Office 2019, Microsoft Office LTSC 2024, Microsoft Office LTSC for Mac 2024
Provider severity
HIGH
Conflicts
1

CVE-2026-20945

Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft
Product
Microsoft SharePoint Server Subscription Edition, Microsoft SharePoint Enterprise Server 2016, Microsoft SharePoint Server 2019
Provider severity
MEDIUM
Conflicts
1

CVE-2026-20944

Out-of-bounds read in Microsoft Office Word allows an unauthorized attacker to execute code locally.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft
Product
Microsoft Office LTSC for Mac 2024, Microsoft 365 Apps for Enterprise, Microsoft Office LTSC for Mac 2021
Provider severity
HIGH
Conflicts
1

CVE-2026-20943

Untrusted search path in Microsoft Office allows an unauthorized attacker to execute code locally.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Microsoft SharePoint Server Subscription Edition, Microsoft Office Deployment Tool, Microsoft SharePoint Server 2019, Microsoft SharePoint Enterprise Server 2016, Microsoft Office 2016
Provider severity
HIGH
Conflicts
1

CVE-2026-20941

Improper link resolution before file access ('link following') in Host Process for Windows Tasks allows an authorized attacker to elevate privileges locally.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows 11 Version 25H2, Windows Server 2025, Windows Server 2025 (Server Core installation), Windows 11 Version 24H2
Provider severity
HIGH
Conflicts
1

CVE-2026-20940

Heap-based buffer overflow in Windows Cloud Files Mini Filter Driver allows an authorized attacker to elevate privileges locally.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows 11 version 23H2, Windows Server 2012, Windows Server 2019, Windows Server 2012 R2, Windows 11 Version 23H2, Windows 10 Version 22H2, Windows 10 Version 1607, Windows Server 2008 Service Pack 2, Windows Server 2022, Windows Server 2016 (Server Core installation), Windows Server 2008 R2 Service Pack 1, Windows Server 2019 (Server Core installation), Windows 10 Version 21H2, Windows Server 2008 R2 Service Pack 1 (Server Core installation), Windows Server 2016, Windows Server 2012 (Server Core installation), Windows Server 2012 R2 (Server Core installation), Windows 10 Version 1809, Windows Server 2008 Service Pack 2 (Server Core installation)
Provider severity
HIGH
Conflicts
1

CVE-2026-2094

Docpedia developed by Flowring has a SQL Injection vulnerability, allowing authenticated remote attackers to inject arbitrary SQL commands to read, modify, and delete database contents.

PUBLISHED
Vendor
Flowring
Product
Docpedia
Provider severity
HIGH
Conflicts
1

CVE-2026-20939

Exposure of sensitive information to an unauthorized actor in Windows File Explorer allows an authorized attacker to disclose information locally.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows Server 2025 (Server Core installation), Windows Server 2019 (Server Core installation), Windows 11 Version 25H2, Windows 10 Version 21H2, Windows 10 Version 1607, Windows Server 2016, Windows Server 2019, Windows Server 2016 (Server Core installation), Windows 10 Version 22H2, Windows Server 2022, Windows Server 2025, Windows 11 Version 24H2, Windows Server 2022, 23H2 Edition (Server Core installation), Windows 11 version 23H2, Windows 10 Version 1809, Windows 11 Version 23H2
Provider severity
MEDIUM
Conflicts
1

CVE-2026-20938

Untrusted pointer dereference in Windows Virtualization-Based Security (VBS) Enclave allows an authorized attacker to elevate privileges locally.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows 11 Version 25H2, Windows 11 Version 23H2, Windows 11 Version 24H2, Windows 11 version 23H2
Provider severity
HIGH
Conflicts
1

CVE-2026-20937

Exposure of sensitive information to an unauthorized actor in Windows File Explorer allows an authorized attacker to disclose information locally.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows Server 2019 (Server Core installation), Windows 10 Version 1607, Windows Server 2025, Windows Server 2022, 23H2 Edition (Server Core installation), Windows Server 2016 (Server Core installation), Windows 11 Version 23H2, Windows 10 Version 1809, Windows Server 2019, Windows Server 2016, Windows 10 Version 22H2, Windows 11 version 23H2, Windows Server 2025 (Server Core installation), Windows 10 Version 21H2, Windows 11 Version 24H2, Windows 11 Version 25H2, Windows Server 2022
Provider severity
MEDIUM
Conflicts
1

CVE-2026-20936

Out-of-bounds read in Windows NDIS allows an authorized attacker to disclose information with a physical attack.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows 10 Version 1809, Windows Server 2008 R2 Service Pack 1, Windows Server 2025, Windows 11 Version 23H2, Windows Server 2008 Service Pack 2 (Server Core installation), Windows 10 Version 21H2, Windows Server 2012 R2 (Server Core installation), Windows 10 Version 22H2, Windows Server 2012 (Server Core installation), Windows Server 2016 (Server Core installation), Windows Server 2012, Windows Server 2008 Service Pack 2, Windows Server 2019, Windows 11 version 23H2, Windows Server 2012 R2, Windows Server 2022, Windows Server 2025 (Server Core installation), Windows 11 Version 25H2, Windows 10 Version 1607, Windows Server 2022, 23H2 Edition (Server Core installation), Windows Server 2019 (Server Core installation), Windows Server 2016, Windows 11 Version 24H2, Windows Server 2008 R2 Service Pack 1 (Server Core installation)
Provider severity
MEDIUM
Conflicts
1

CVE-2026-20935

Untrusted pointer dereference in Windows Virtualization-Based Security (VBS) Enclave allows an unauthorized attacker to disclose information locally.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows 11 version 23H2, Windows 11 Version 24H2, Windows 11 Version 25H2, Windows 11 Version 23H2
Provider severity
MEDIUM
Conflicts
1

CVE-2026-20934

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows SMB Server allows an authorized attacker to elevate privileges over a network.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows 10 Version 22H2, Windows Server 2012 R2 (Server Core installation), Windows 11 version 23H2, Windows Server 2019, Windows Server 2022, 23H2 Edition (Server Core installation), Windows 10 Version 1607, Windows Server 2012 (Server Core installation), Windows 10 Version 21H2, Windows 11 Version 24H2, Windows Server 2016 (Server Core installation), Windows Server 2016, Windows Server 2025, Windows Server 2019 (Server Core installation), Windows Server 2012 R2, Windows Server 2025 (Server Core installation), Windows Server 2012, Windows 11 Version 25H2, Windows 11 Version 23H2, Windows 10 Version 1809, Windows Server 2022
Provider severity
HIGH
Conflicts
1

CVE-2026-20932

Exposure of sensitive information to an unauthorized actor in Windows File Explorer allows an authorized attacker to disclose information locally.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows Server 2022, 23H2 Edition (Server Core installation), Windows 10 Version 21H2, Windows Server 2016, Windows 10 Version 1607, Windows Server 2016 (Server Core installation), Windows Server 2022, Windows 10 Version 1809, Windows Server 2025 (Server Core installation), Windows 11 Version 25H2, Windows Server 2019, Windows 11 Version 23H2, Windows 10 Version 22H2, Windows Server 2025, Windows Server 2019 (Server Core installation), Windows 11 version 23H2, Windows 11 Version 24H2
Provider severity
MEDIUM
Conflicts
1

CVE-2026-20931

External control of file name or path in Windows Telephony Service allows an authorized attacker to elevate privileges over an adjacent network.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows Server 2012 R2 (Server Core installation), Windows Server 2008 R2 Service Pack 1 (Server Core installation), Windows 10 Version 21H2, Windows Server 2012, Windows Server 2012 R2, Windows 11 Version 24H2, Windows Server 2016, Windows Server 2022, 23H2 Edition (Server Core installation), Windows Server 2025, Windows Server 2008 Service Pack 2, Windows 11 Version 23H2, Windows Server 2008 R2 Service Pack 1, Windows Server 2012 (Server Core installation), Windows Server 2008 Service Pack 2 (Server Core installation), Windows 11 Version 25H2, Windows Server 2025 (Server Core installation), Windows Server 2022, Windows Server 2016 (Server Core installation), Windows Server 2019 (Server Core installation), Windows 10 Version 22H2, Windows 10 Version 1607, Windows 10 Version 1809, Windows Server 2019, Windows 11 version 23H2
Provider severity
HIGH
Conflicts
1

CVE-2026-20930

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Management Services allows an authorized attacker to elevate privileges locally.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows Server 2022, Windows 11 Version 24H2, Windows Server 2022, 23H2 Edition (Server Core installation), Windows 10 Version 1809, Windows 10 Version 21H2, Windows 11 Version 25H2, Windows Server 2019, Windows Server 2025, Windows Server 2025 (Server Core installation), Windows 11 version 22H3, Windows 11 Version 23H2, Windows Server 2019 (Server Core installation), Windows 10 Version 22H2
Provider severity
HIGH
Conflicts
1

CVE-2026-2093

Docpedia developed by Flowring has a SQL Injection vulnerability, allowing unauthenticated remote attackers to inject arbitrary SQL commands to read database contents.

PUBLISHED
Vendor
Flowring
Product
Docpedia
Provider severity
HIGH
Conflicts
1

CVE-2026-20929

Improper access control in Windows HTTP.sys allows an authorized attacker to elevate privileges over a network.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows Server 2008 Service Pack 2 (Server Core installation), Windows Server 2019, Windows 10 Version 1809, Windows 10 Version 21H2, Windows Server 2012 R2, Windows Server 2012 (Server Core installation), Windows Server 2022, 23H2 Edition (Server Core installation), Windows 10 Version 1607, Windows Server 2022, Windows Server 2012, Windows 10 Version 22H2, Windows Server 2012 R2 (Server Core installation), Windows 11 version 23H2, Windows Server 2008 Service Pack 2, Windows 11 Version 23H2, Windows Server 2016, Windows Server 2008 R2 Service Pack 1, Windows Server 2016 (Server Core installation), Windows Server 2008 R2 Service Pack 1 (Server Core installation), Windows Server 2019 (Server Core installation)
Provider severity
HIGH
Conflicts
1

CVE-2026-20928

Improper removal of sensitive information before storage or transfer in Windows Recovery Environment Agent allows an unauthorized attacker to bypass a security feature with a physical attack.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows Server 2022, 23H2 Edition (Server Core installation), Windows 10 Version 1809, Windows Server 2019, Windows 10 Version 22H2, Windows 10 Version 1607, Windows Server 2022, Windows 11 version 22H3, Windows 11 Version 23H2, Windows Server 2025, Windows 10 Version 21H2, Windows Server 2016 (Server Core installation), Windows 11 Version 25H2, Windows 11 Version 24H2, Windows 11 version 26H1, Windows Server 2016, Windows Server 2025 (Server Core installation), Windows Server 2019 (Server Core installation)
Provider severity
MEDIUM
Conflicts
1

CVE-2026-20927

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows SMB Server allows an authorized attacker to deny service over a network.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows Server 2022, 23H2 Edition (Server Core installation), Windows 10 Version 22H2, Windows Server 2016, Windows Server 2008 Service Pack 2 (Server Core installation), Windows Server 2019, Windows 10 Version 1607, Windows Server 2008 R2 Service Pack 1 (Server Core installation), Windows 10 Version 21H2, Windows 11 Version 23H2, Windows Server 2019 (Server Core installation), Windows Server 2012 R2, Windows Server 2012 (Server Core installation), Windows Server 2022, Windows Server 2012 R2 (Server Core installation), Windows Server 2008 R2 Service Pack 1, Windows 11 Version 25H2, Windows 10 Version 1809, Windows Server 2016 (Server Core installation), Windows Server 2008 Service Pack 2, Windows 11 version 23H2, Windows Server 2025 (Server Core installation), Windows Server 2012, Windows Server 2025, Windows 11 Version 24H2
Provider severity
MEDIUM
Conflicts
1

CVE-2026-20926

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows SMB Server allows an authorized attacker to elevate privileges over a network.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows Server 2012, Windows Server 2022, Windows 10 Version 1809, Windows Server 2012 R2, Windows 11 Version 25H2, Windows 10 Version 1607, Windows Server 2019, Windows Server 2025, Windows Server 2012 R2 (Server Core installation), Windows Server 2019 (Server Core installation), Windows 10 Version 21H2, Windows Server 2016, Windows Server 2012 (Server Core installation), Windows 11 Version 23H2, Windows Server 2022, 23H2 Edition (Server Core installation), Windows Server 2025 (Server Core installation), Windows 10 Version 22H2, Windows Server 2016 (Server Core installation), Windows 11 Version 24H2, Windows 11 version 23H2
Provider severity
HIGH
Conflicts
1

CVE-2026-20925

External control of file name or path in Windows NTLM allows an unauthorized attacker to perform spoofing over a network.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows 11 Version 24H2, Windows Server 2008 R2 Service Pack 1 (Server Core installation), Windows Server 2012 R2, Windows Server 2019, Windows Server 2025 (Server Core installation), Windows 11 version 23H2, Windows 10 Version 1809, Windows Server 2025, Windows 11 Version 25H2, Windows Server 2008 Service Pack 2, Windows 10 Version 1607, Windows Server 2019 (Server Core installation), Windows Server 2016 (Server Core installation), Windows 10 Version 21H2, Windows Server 2012 R2 (Server Core installation), Windows Server 2022, Windows 10 Version 22H2, Windows Server 2016, Windows Server 2012, Windows Server 2022, 23H2 Edition (Server Core installation), Windows Server 2012 (Server Core installation), Windows Server 2008 R2 Service Pack 1, Windows 11 Version 23H2, Windows Server 2008 Service Pack 2 (Server Core installation)
Provider severity
MEDIUM
Conflicts
1

CVE-2026-20924

Use after free in Windows Management Services allows an authorized attacker to elevate privileges locally.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows Server 2019 (Server Core installation), Windows Server 2019, Windows Server 2025, Windows Server 2022, Windows Server 2022, 23H2 Edition (Server Core installation), Windows 11 Version 24H2, Windows Server 2025 (Server Core installation), Windows 10 Version 22H2, Windows 10 Version 21H2, Windows 11 version 23H2, Windows 10 Version 1809, Windows 11 Version 25H2, Windows 11 Version 23H2
Provider severity
HIGH
Conflicts
2

CVE-2026-20923

Use after free in Windows Management Services allows an authorized attacker to elevate privileges locally.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows 11 Version 24H2, Windows 11 version 23H2, Windows 10 Version 22H2, Windows Server 2025, Windows 10 Version 1809, Windows Server 2019 (Server Core installation), Windows Server 2019, Windows 10 Version 21H2, Windows 11 Version 23H2, Windows Server 2025 (Server Core installation), Windows Server 2022, 23H2 Edition (Server Core installation), Windows Server 2022, Windows 11 Version 25H2
Provider severity
HIGH
Conflicts
1

CVE-2026-20922

Heap-based buffer overflow in Windows NTFS allows an authorized attacker to execute code locally.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows 10 Version 21H2, Windows Server 2022, Windows 11 Version 24H2, Windows 11 Version 25H2, Windows Server 2019 (Server Core installation), Windows Server 2008 R2 Service Pack 1, Windows Server 2008 Service Pack 2 (Server Core installation), Windows 10 Version 1607, Windows Server 2022, 23H2 Edition (Server Core installation), Windows Server 2012, Windows 10 Version 22H2, Windows Server 2016 (Server Core installation), Windows Server 2012 R2, Windows Server 2012 R2 (Server Core installation), Windows Server 2008 Service Pack 2, Windows Server 2025 (Server Core installation), Windows Server 2019, Windows Server 2012 (Server Core installation), Windows Server 2016, Windows Server 2008 R2 Service Pack 1 (Server Core installation), Windows 10 Version 1809, Windows 11 Version 23H2, Windows 11 version 23H2, Windows Server 2025
Provider severity
HIGH
Conflicts
1

CVE-2026-20921

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows SMB Server allows an authorized attacker to elevate privileges over a network.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows Server 2008 Service Pack 2, Windows Server 2008 Service Pack 2 (Server Core installation), Windows Server 2022, 23H2 Edition (Server Core installation), Windows Server 2016, Windows Server 2019 (Server Core installation), Windows Server 2012, Windows Server 2008 R2 Service Pack 1, Windows 11 Version 23H2, Windows Server 2012 R2 (Server Core installation), Windows Server 2025, Windows 11 Version 25H2, Windows Server 2022, Windows Server 2008 R2 Service Pack 1 (Server Core installation), Windows Server 2016 (Server Core installation), Windows 10 Version 1809, Windows Server 2012 R2, Windows 11 version 23H2, Windows 11 Version 24H2, Windows Server 2019, Windows 10 Version 22H2, Windows Server 2025 (Server Core installation), Windows Server 2012 (Server Core installation), Windows 10 Version 1607, Windows 10 Version 21H2
Provider severity
HIGH
Conflicts
1

CVE-2026-20920

Use after free in Windows Win32K - ICOMP allows an authorized attacker to elevate privileges locally.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows Server 2022, Windows 11 version 23H2, Windows 11 Version 23H2, Windows Server 2022, 23H2 Edition (Server Core installation)
Provider severity
HIGH
Conflicts
1

CVE-2026-2092

A flaw was found in Keycloak. Keycloak's Security Assertion Markup Language (SAML) broker endpoint does not properly validate encrypted assertions when the overall SAML response is not signed. An attacker with a valid signed SAML assertion can exploit this by crafting a malicious SAML response. This allows the attacker to inject an encrypted assertion for an arbitrary principal, leading to unauthorized access and potential information disclosure.

PUBLISHED
Vendor
Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat
Product
Red Hat build of Keycloak 26.4.10, Red Hat build of Keycloak 26.4, Red Hat build of Keycloak 26.2, Red Hat build of Keycloak 26.4, Red Hat build of Keycloak 26.2, Red Hat build of Keycloak 26.2.14, Red Hat build of Keycloak 26.2, Red Hat build of Keycloak 26.4, Red Hat build of Keycloak 26.2.14, Red Hat build of Keycloak 26.2, Red Hat build of Keycloak 26.4, Red Hat build of Keycloak 26.4.10, Red Hat build of Keycloak 26.4, Red Hat build of Keycloak 26.2, Red Hat build of Keycloak 26.2, Red Hat build of Keycloak 26.4
Provider severity
HIGH
Conflicts
1

CVE-2026-20919

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows SMB Server allows an authorized attacker to elevate privileges over a network.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows 10 Version 1607, Windows 10 Version 21H2, Windows 10 Version 1809, Windows Server 2025 (Server Core installation), Windows 11 Version 25H2, Windows Server 2019, Windows Server 2012 (Server Core installation), Windows Server 2012 R2 (Server Core installation), Windows 11 Version 24H2, Windows Server 2016 (Server Core installation), Windows Server 2022, 23H2 Edition (Server Core installation), Windows Server 2016, Windows Server 2019 (Server Core installation), Windows Server 2022, Windows Server 2012 R2, Windows 10 Version 22H2, Windows 11 Version 23H2, Windows Server 2012, Windows Server 2025, Windows 11 version 23H2
Provider severity
HIGH
Conflicts
1

CVE-2026-20918

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Management Services allows an authorized attacker to elevate privileges locally.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows Server 2025, Windows Server 2022, 23H2 Edition (Server Core installation), Windows Server 2022, Windows 10 Version 22H2, Windows Server 2019, Windows 10 Version 21H2, Windows 11 Version 24H2, Windows 11 version 23H2, Windows 11 Version 23H2, Windows Server 2019 (Server Core installation), Windows 10 Version 1809, Windows 11 Version 25H2, Windows Server 2025 (Server Core installation)
Provider severity
HIGH
Conflicts
2

CVE-2026-20916

An authenticated iControl REST user with low privileges can create or modify arbitrary files through an undisclosed iControl REST endpoint on the BIG-IQ system.  Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.

PUBLISHED
Vendor
F5
Product
BIG-IQ
Provider severity
HIGH
Conflicts
1

CVE-2026-20915

Stored cross-site scripting (XSS) in Checkmk version 2.5.0 (beta) before 2.5.0b2 allows authenticated users with permission to create pending changes to inject malicious JavaScript into the Pending Changes sidebar, which will execute in the browsers of other users viewing the sidebar.

PUBLISHED
Vendor
Checkmk GmbH
Product
Checkmk
Provider severity
HIGH
Conflicts
0

CVE-2026-20914

Null pointer dereference for some Intel(R) QAT software drivers for Windows before version 2.6.0 within Ring 3: User Applications may allow a denial of service. Unprivileged software adversary with an authenticated user combined with a low complexity attack may enable denial of service. This result may potentially occur via local access when attack requirements are not present without special internal knowledge and requires no user interaction. The potential vulnerability may impact the confiden

PUBLISHED
Vendor
n/a
Product
Intel(R) QAT software drivers for Windows
Provider severity
MEDIUM
Conflicts
1

CVE-2026-20912

Gitea does not properly validate repository ownership when linking attachments to releases. An attachment uploaded to a private repository could potentially be linked to a release in a different public repository, making it accessible to unauthorized users.

PUBLISHED
Vendor
Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Gitea, Red Hat, Red Hat, Red Hat, Red Hat
Product
OpenShift Pipelines, OpenShift Pipelines, OpenShift Pipelines, OpenShift Pipelines, OpenShift Pipelines, Gitea Open Source Git Server, OpenShift Pipelines, OpenShift Pipelines, OpenShift Pipelines, OpenShift Pipelines
Provider severity
CRITICAL
Conflicts
2