CVE Vulnerability Database

Search and browse 375,898 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.

CVE IDSeverityCVSSDescription
CVE-2026-63530MEDIUM5.5Out-of-bounds read in Microsoft Office Word allows an unauthorized attacker to disclose information locally.
CVE-2026-63529MEDIUM5.5Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally.
CVE-2026-63528MEDIUM5.5Out-of-bounds read in Microsoft Office Word allows an unauthorized attacker to disclose information locally.
CVE-2026-63527HIGH7.8Stack-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code locally.
CVE-2026-63526HIGH7.8Stack-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally.
CVE-2026-63525HIGH7.8Numeric truncation error in Microsoft Office Word allows an unauthorized attacker to execute code locally.
CVE-2026-63524MEDIUM5.5Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally.
CVE-2026-63522HIGH7.8Incorrect permission assignment for critical resource in Azure SQL Database allows an authorized attacker to elevate pri...
CVE-2026-63521MEDIUM5.5Out-of-bounds read in Microsoft Office Word allows an unauthorized attacker to disclose information locally.
CVE-2026-63520HIGH8.1Improper input validation in Microsoft Office SharePoint allows an unauthorized attacker to execute code over a network.
CVE-2026-63519HIGH7.8Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally.
CVE-2026-63518HIGH7.8Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code locally.
CVE-2026-63517MEDIUM5.5Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally.
CVE-2026-63516MEDIUM6.5Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over ...
CVE-2026-63515HIGH7.8Out-of-bounds read in Microsoft Office allows an unauthorized attacker to execute code locally.
CVE-2026-63514HIGH8.8Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a ne...
CVE-2026-63513HIGH7.8Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally.
CVE-2026-63512MEDIUM6.5Incorrect authorization in Microsoft Office SharePoint allows an authorized attacker to perform tampering over a network...
CVE-2026-62917MEDIUM4.6Improper input validation in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a networ...
CVE-2026-62915MEDIUM6.5Missing authorization in Microsoft Exchange Server allows an authorized attacker to bypass a security feature over a net...
CVE-2026-62914HIGH7.3Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Exchange Server allows...
CVE-2026-62913HIGH8.8Heap-based buffer overflow in Microsoft Exchange Server allows an authorized attacker to execute code over a network.
CVE-2026-62912MEDIUM6.5Deserialization of untrusted data in Microsoft Exchange Server allows an authorized attacker to deny service over a netw...
CVE-2026-62911HIGH8Authentication bypass by capture-replay in Microsoft Exchange Server allows an authorized attacker to elevate privileges...
CVE-2026-62910HIGH7.2Improper control of resource identifiers ('resource injection') in Microsoft Exchange Server allows an authorized attack...