CVE Vulnerability Database
Search and browse 396,244 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-45490 | HIGH | 7.8 | 0.4% | Jun 9, 2026 | Improper authorization in .NET allows an authorized attacker to elevate privileges locally. |
| CVE-2026-45487 | HIGH | 7 | 0.2% | Jun 9, 2026 | Time-of-check time-of-use (TOCTOU) race condition in Program Compatibility Assistant Service allows an authorized attack... |
| CVE-2026-45486 | HIGH | 7.8 | 0.4% | Jun 9, 2026 | Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally. |
| CVE-2026-45485 | LOW | 3.3 | 0.4% | Jun 9, 2026 | Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally. |
| CVE-2026-45484 | HIGH | 8.8 | 2.0% | Jun 9, 2026 | Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to elevate privileges ove... |
| CVE-2026-45483 | MEDIUM | 5.4 | 0.5% | Jun 9, 2026 | Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office Project Server ... |
| CVE-2026-45482 | HIGH | 8.4 | 0.3% | Jun 9, 2026 | Improper limitation of a pathname to a restricted directory ('path traversal') in GitHub Copilot and Visual Studio Code ... |
| CVE-2026-45481 | MEDIUM | 5.4 | 0.7% | Jun 9, 2026 | Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allo... |
| CVE-2026-45479 | MEDIUM | 5.4 | 0.5% | Jun 9, 2026 | Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allo... |
| CVE-2026-45476 | HIGH | 8.2 | 0.3% | Jun 9, 2026 | Use after free in Linux MANA Driver allows an authorized attacker to elevate privileges locally. |
| CVE-2026-45475 | HIGH | 7.8 | 0.5% | Jun 9, 2026 | Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally. |
| CVE-2026-45474 | HIGH | 8.4 | 0.4% | Jun 9, 2026 | Use after free in Microsoft Office allows an unauthorized attacker to execute code locally. |
| CVE-2026-45472 | HIGH | 8.4 | 0.3% | Jun 9, 2026 | Use after free in Microsoft Office allows an unauthorized attacker to execute code locally. |
| CVE-2026-45471 | HIGH | 7.8 | 0.5% | Jun 9, 2026 | Untrusted pointer dereference in Microsoft Office Word allows an unauthorized attacker to execute code locally. |
| CVE-2026-45469 | HIGH | 7.8 | 0.4% | Jun 9, 2026 | Integer underflow (wrap or wraparound) in Microsoft Office Excel allows an unauthorized attacker to execute code locally... |
| CVE-2026-45468 | MEDIUM | 5.4 | 0.5% | Jun 9, 2026 | Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allo... |
| CVE-2026-45467 | MEDIUM | 5.4 | 0.5% | Jun 9, 2026 | Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allo... |
| CVE-2026-45466 | LOW | 3.3 | 0.4% | Jun 9, 2026 | Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to disclose information locally. |
| CVE-2026-45465 | MEDIUM | 5.4 | 0.5% | Jun 9, 2026 | Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allo... |
| CVE-2026-45464 | MEDIUM | 5.4 | 0.5% | Jun 9, 2026 | Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allo... |
| CVE-2026-45463 | HIGH | 8.4 | 0.3% | Jun 9, 2026 | Integer underflow (wrap or wraparound) in Microsoft Office allows an unauthorized attacker to execute code locally. |
| CVE-2026-45462 | MEDIUM | 5.4 | 0.5% | Jun 9, 2026 | Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allo... |
| CVE-2026-45461 | HIGH | 8.4 | 0.4% | Jun 9, 2026 | Use after free in Microsoft Office allows an unauthorized attacker to execute code locally. |
| CVE-2026-45460 | MEDIUM | 4.7 | 0.4% | Jun 9, 2026 | Buffer over-read in Microsoft Office allows an unauthorized attacker to disclose information locally. |
| CVE-2026-45459 | LOW | 3.3 | 0.4% | Jun 9, 2026 | Protection mechanism failure in Microsoft Office Excel allows an unauthorized attacker to bypass a security feature loca... |
