Vulnerabilities (CVE)
Yack CVE helps teams search and track vulnerabilities.
TOTAL
357,784 CVE
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Microsoft 7365 Apps Microsoft 365Office 2016+4 moreJun 11, 2026 Jun 9, 2026 N/A· v4 8.4 HIGH· v3 N/A· v2 Access of resource using incompatible type ('type confusion') in Microsoft Office allows an unauthorized attacker to execute code locally. |
1Microsoft 7365 Apps Microsoft 365Office 2016+4 moreJun 11, 2026 Jun 9, 2026 N/A· v4 7.8 HIGH· v3 N/A· v2 Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally. |
1Microsoft 7365 Apps Microsoft 365Office 2016+4 moreJun 11, 2026 Jun 9, 2026 N/A· v4 5.5 MEDIUM· v3 N/A· v2 Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally. |
1Microsoft 12Windows 10 1607 Windows 10 1809Windows 10 21h2+9 moreJun 11, 2026 Jun 9, 2026 N/A· v4 7.8 HIGH· v3 N/A· v2 Use after free in Windows Bluetooth Service allows an authorized attacker to elevate privileges locally. |
1Microsoft 7365 Apps Microsoft 365Office 2016+4 moreJun 11, 2026 Jun 9, 2026 N/A· v4 7.8 HIGH· v3 N/A· v2 Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally. |
1Microsoft 13Windows 10 1607 Windows 10 1809Windows 10 21h2+10 moreJun 11, 2026 Jun 9, 2026 N/A· v4 5.5 MEDIUM· v3 N/A· v2 Out-of-bounds read in Microsoft UxTheme Library (uxtheme.dll) allows an authorized attacker to deny service locally. |
1Microsoft 4365 Apps Microsoft 365Office 2021+1 moreJun 11, 2026 Jun 9, 2026 N/A· v4 7.8 HIGH· v3 N/A· v2 Untrusted pointer dereference in Microsoft Office Word allows an unauthorized attacker to execute code locally. |
1Microsoft 7365 Apps ExcelMicrosoft 365+4 moreJun 11, 2026 Jun 9, 2026 N/A· v4 7.8 HIGH· v3 N/A· v2 Integer underflow (wrap or wraparound) in Microsoft Office Excel allows an unauthorized attacker to execute code locally. |
1Microsoft 7365 Apps ExcelMicrosoft 365+4 moreJun 11, 2026 Jun 9, 2026 N/A· v4 7.0 HIGH· v3 N/A· v2 Integer underflow (wrap or wraparound) in Microsoft Office Excel allows an unauthorized attacker to execute code locally. |
1Microsoft 7365 Apps ExcelMicrosoft 365+4 moreJun 11, 2026 Jun 9, 2026 N/A· v4 7.8 HIGH· v3 N/A· v2 Integer underflow (wrap or wraparound) in Microsoft Office Excel allows an unauthorized attacker to execute code locally. |
1Microsoft 7365 Apps ExcelMicrosoft 365+4 moreJun 11, 2026 Jun 9, 2026 N/A· v4 8.2 HIGH· v3 N/A· v2 Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information over a network. |
1Microsoft 4365 Apps Microsoft 365Office 2021+1 moreJun 11, 2026 Jun 9, 2026 N/A· v4 3.3 LOW· v3 N/A· v2 Protection mechanism failure in Microsoft Office Excel allows an unauthorized attacker to bypass a security feature locally. |
1Microsoft 7365 Apps ExcelMicrosoft 365+4 moreJun 11, 2026 Jun 9, 2026 N/A· v4 7.8 HIGH· v3 N/A· v2 Integer underflow (wrap or wraparound) in Microsoft Office Excel allows an unauthorized attacker to execute code locally. |
1Microsoft 7365 Apps Microsoft 365Office 2016+4 moreJun 11, 2026 Jun 9, 2026 N/A· v4 3.3 LOW· v3 N/A· v2 Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally. |
1Microsoft 12Windows 10 1607 Windows 10 1809Windows 10 21h2+9 moreJun 11, 2026 Jun 9, 2026 N/A· v4 7.8 HIGH· v3 N/A· v2 Out-of-bounds read in Windows Hyper-V allows an unauthorized attacker to execute code locally. |
1Microsoft 4365 Apps Microsoft 365Office 2021+1 moreJun 11, 2026 Jun 9, 2026 N/A· v4 7.8 HIGH· v3 N/A· v2 Untrusted pointer dereference in Microsoft Office Word allows an unauthorized attacker to execute code locally. |
1Microsoft 4365 Apps Microsoft 365Office 2021+1 moreJun 11, 2026 Jun 9, 2026 N/A· v4 7.8 HIGH· v3 N/A· v2 Untrusted pointer dereference in Microsoft Office Word allows an unauthorized attacker to execute code locally. |
2Redhat X.org3Enterprise Linux X ServerXwaylandJun 11, 2026 Jun 5, 2026 N/A· v4 7.8 HIGH· v3 N/A· v2 A use-after-free flaw was found in the X.Org X server and Xwayland in FreeCounter(). A client that sets up multiple SyncCounters and awaits on those triggers can trigger a use-after-free when destroying those counters vi...Show more |
Access of resource using incompatible type ('type confusion') in Microsoft Office allows an unauthorized attacker to execute code locally. |
1Microsoft 13Windows 10 1607 Windows 10 1809Windows 10 21h2+10 moreJun 11, 2026 Jun 9, 2026 N/A· v4 8.1 HIGH· v3 N/A· v2 Use after free in Universal Plug and Play (upnp.dll) allows an unauthorized attacker to execute code over a network. |
1Microsoft 13Windows 10 1607 Windows 10 1809Windows 10 21h2+10 moreJun 11, 2026 Jun 9, 2026 N/A· v4 7.8 HIGH· v3 N/A· v2 Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to execute code locally. |
The template upload feature in Emlog Pro v2.6.9 has a path traversal vulnerability, allowing authenticated administrators to execute arbitrary PHP code. By uploading a malicious ZIP archive containing directory traversal...Show more |
In the Linux kernel, the following vulnerability has been resolved: cgroup: Defer css percpu_ref kill on rmdir until cgroup is depopulated A chain of commits going back to v7.0 reworked rmdir to satisfy the controller...Show more |
lldpd is an implementation of IEEE 802.1ab (LLDP). Prior to version 1.0.22, lldpd_decode() in src/daemon/lldpd.c strips 802.1Q VLAN tags from received Ethernet frames by calling memmove() to shift the frame payload 4 byt...Show more |
1Microsoft 10Windows 10 1809 Windows 10 21h2Windows 10 22h2+7 moreJun 11, 2026 Jun 9, 2026 N/A· v4 7.8 HIGH· v3 N/A· v2 Use after free in Windows DWM Core Library allows an authorized attacker to elevate privileges locally. |