CVE Vulnerability Database
Search and browse 375,889 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-65678 | HIGH | 7 | — | Aug 11, 2026 | Use after free in Windows Win32K allows an authorized attacker to elevate privileges locally. |
| CVE-2026-65675 | HIGH | 7.1 | 0.5% | Aug 11, 2026 | No cwe for this issue in Visual Studio Code CoPilot Chat Extension allows an unauthorized attacker to bypass a security ... |
| CVE-2026-65673 | HIGH | 7.8 | 0.8% | Aug 11, 2026 | Improper neutralization of special elements used in an sql command ('sql injection') in Microsoft Entra Connect Sync all... |
| CVE-2026-65672 | HIGH | 7.8 | 0.3% | Aug 11, 2026 | Heap-based buffer overflow in Windows Remote Access API allows an authorized attacker to elevate privileges locally. |
| CVE-2026-65671 | HIGH | 7.8 | 0.3% | Aug 11, 2026 | Heap-based buffer overflow in Windows Remote Access API allows an authorized attacker to elevate privileges locally. |
| CVE-2026-65665 | HIGH | 8.8 | — | Aug 11, 2026 | Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a ne... |
| CVE-2026-65664 | HIGH | 7.8 | — | Aug 11, 2026 | Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally. |
| CVE-2026-65663 | HIGH | 8.8 | — | Aug 11, 2026 | Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a ne... |
| CVE-2026-65662 | MEDIUM | 5.5 | — | Aug 11, 2026 | Out-of-bounds read in Windows GDI allows an authorized attacker to disclose information locally. |
| CVE-2026-65661 | HIGH | 7.8 | — | Aug 11, 2026 | Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally. |
| CVE-2026-65660 | MEDIUM | 6.5 | — | Aug 11, 2026 | Improper control of generation of code ('code injection') in Microsoft Office SharePoint allows an authorized attacker t... |
| CVE-2026-65658 | HIGH | 8.8 | — | Aug 11, 2026 | Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a ne... |
| CVE-2026-65657 | HIGH | 7.8 | — | Aug 11, 2026 | Use after free in Microsoft Office allows an unauthorized attacker to execute code locally. |
| CVE-2026-65656 | HIGH | 7.8 | — | Aug 11, 2026 | Improper neutralization of special elements used in a command ('command injection') in Microsoft Office allows an unauth... |
| CVE-2026-64922 | MEDIUM | 4.6 | 0.3% | Aug 11, 2026 | Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allo... |
| CVE-2026-64921 | HIGH | 8.8 | — | Aug 11, 2026 | Missing authentication for critical function in Microsoft Office SharePoint allows an authorized attacker to elevate pri... |
| CVE-2026-64920 | HIGH | 7.8 | — | Aug 11, 2026 | Heap-based buffer overflow in Microsoft Office Access allows an unauthorized attacker to execute code locally. |
| CVE-2026-64919 | HIGH | 7.8 | — | Aug 11, 2026 | Stack-based buffer overflow in Microsoft Office Access allows an unauthorized attacker to execute code locally. |
| CVE-2026-64917 | MEDIUM | 5.5 | — | Aug 11, 2026 | Out-of-bounds read in Microsoft Office Word allows an unauthorized attacker to disclose information locally. |
| CVE-2026-64916 | MEDIUM | 4.6 | 0.3% | Aug 11, 2026 | Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allo... |
| CVE-2026-64915 | HIGH | 7.8 | — | Aug 11, 2026 | Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code locally. |
| CVE-2026-64914 | HIGH | 7.8 | — | Aug 11, 2026 | Heap-based buffer overflow in Microsoft Office Access allows an unauthorized attacker to execute code locally. |
| CVE-2026-64912 | HIGH | 7.8 | — | Aug 11, 2026 | Stack-based buffer overflow in Microsoft Office Access allows an unauthorized attacker to execute code locally. |
| CVE-2026-64911 | HIGH | 7.8 | — | Aug 11, 2026 | Integer overflow or wraparound in Microsoft Office allows an unauthorized attacker to execute code locally. |
| CVE-2026-64910 | HIGH | 7.8 | — | Aug 11, 2026 | Untrusted pointer dereference in Microsoft Office allows an unauthorized attacker to execute code locally. |
