← Back

Microsoft

microsoft

15,351 CVEs • 1,060 products

Products (1,060)

Click to collapse
Toggle
Windows 10
windows_10
Windows 7
windows_7
Windows 8.1
windows_8.1
Office
office
Edge
edge
Windows Xp
windows_xp
365 Apps
365_apps
Windows 11
windows_11
Windows 2000
windows_2000
Excel
excel
Word
word
Windows Nt
windows_nt
Chakracore
chakracore
Windows 8
windows_8
Windows Rt
windows_rt
Ie
ie
Office 2024
office_2024
Office 2021
office_2021
Office 2019
office_2019
Excel Viewer
excel_viewer
Outlook
outlook
Sql Server
sql_server
.net
Dynamics 365
dynamics_365
Windows 98
windows_98
Word Viewer
word_viewer
Powerpoint
powerpoint
Windows
windows
Windows 98se
windows_98se
Works
works
Windows Me
windows_me
Visual Studio
visual_studio
Visio
visio
Office 2016
office_2016
365 Copilot
365_copilot
Windows 95
windows_95
Publisher
publisher
Lync
lync
Asp.net Core
asp.net_core

CVEs (15,351)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Microsoft
3Windows 10
Windows 11Windows Server 2022
Jun 17, 2026
Oct 11, 2022
N/A· v4
7.7 HIGH· v3
N/A· v2
Windows Local Session Manager (LSM) Denial of Service Vulnerability
1Microsoft
1Malware Protection Engine
Jun 17, 2026
Oct 11, 2022
N/A· v4
7.1 HIGH· v3
N/A· v2
Microsoft Windows Defender Elevation of Privilege Vulnerability
1Microsoft
4Windows 10
Windows 11Windows Server 2019+1 more
Jun 17, 2026
Oct 11, 2022
N/A· v4
7.8 HIGH· v3
N/A· v2
Windows DWM Core Library Elevation of Privilege Vulnerability
1Microsoft
2Azure Arc Enabled Kubernetes
Azure Stack Edge
Jun 17, 2026
Oct 11, 2022
N/A· v4
10.0 CRITICAL· v3
N/A· v2
Microsoft has identified a vulnerability affecting the cluster connect feature of Azure Arc-enabled Kubernetes clusters. This vulnerability could allow an unauthenticated user to elevate their privileges and potentially...Show more
Microsoft has identified a vulnerability affecting the cluster connect feature of Azure Arc-enabled Kubernetes clusters. This vulnerability could allow an unauthenticated user to elevate their privileges and potentially gain administrative control over the Kubernetes cluster. Additionally, because Azure Stack Edge allows customers to deploy Kubernetes workloads on their devices via Azure Arc, Azure Stack Edge devices are also vulnerable to this vulnerability.Show less
1Microsoft
8Windows 10
Windows 11Windows 8.1+5 more
Jun 17, 2026
Oct 11, 2022
N/A· v4
5.9 MEDIUM· v3
N/A· v2
Windows Point-to-Point Tunneling Protocol Denial of Service Vulnerability
1Microsoft
1Azure Service Fabric
Jun 17, 2026
Oct 11, 2022
N/A· v4
4.8 MEDIUM· v3
N/A· v2
Service Fabric Explorer Spoofing Vulnerability
1Microsoft
10Windows 10
Windows 11Windows 7+7 more
Jun 17, 2026
Oct 11, 2022
N/A· v4
6.5 MEDIUM· v3
N/A· v2
Windows NTLM Spoofing Vulnerability
1Microsoft
10Windows 10
Windows 11Windows 7+7 more
Jun 17, 2026
Oct 11, 2022
N/A· v4
7.5 HIGH· v3
N/A· v2
Windows CryptoAPI Spoofing Vulnerability
1Microsoft
10Windows 10
Windows 11Windows 7+7 more
Jun 17, 2026
Oct 11, 2022
N/A· v4
7.5 HIGH· v3
N/A· v2
Windows TCP/IP Driver Denial of Service Vulnerability
1Microsoft
10Windows 10
Windows 11Windows 7+7 more
Jun 17, 2026
Oct 11, 2022
N/A· v4
7.8 HIGH· v3
N/A· v2
Windows GDI+ Remote Code Execution Vulnerability
1Microsoft
10Windows 10
Windows 11Windows 7+7 more
Jun 17, 2026
Oct 11, 2022
N/A· v4
8.1 HIGH· v3
N/A· v2
Windows Point-to-Point Tunneling Protocol Remote Code Execution Vulnerability
1Microsoft
10Windows 10
Windows 11Windows 7+7 more
Jun 17, 2026
Oct 11, 2022
N/A· v4
8.1 HIGH· v3
N/A· v2
Windows Point-to-Point Tunneling Protocol Remote Code Execution Vulnerability
1Microsoft
10Windows 10
Windows 11Windows 7+7 more
Jun 17, 2026
Oct 11, 2022
N/A· v4
8.1 HIGH· v3
N/A· v2
Windows Point-to-Point Tunneling Protocol Remote Code Execution Vulnerability
1Microsoft
10Windows 10
Windows 11Windows 7+7 more
Jun 17, 2026
Oct 11, 2022
N/A· v4
8.1 HIGH· v3
N/A· v2
Windows Point-to-Point Tunneling Protocol Remote Code Execution Vulnerability
1Microsoft
1Exchange Server
Jun 17, 2026
Oct 3, 2022
N/A· v4
8.0 HIGH· v3
N/A· v2
Microsoft Exchange Server Remote Code Execution Vulnerability
1Microsoft
1Exchange Server
Jun 17, 2026
Oct 3, 2022
N/A· v4
8.8 HIGH· v3
N/A· v2
Microsoft Exchange Server Elevation of Privilege Vulnerability
1Microsoft
1Windows Defender For Endpoint
Jun 17, 2026
Sep 21, 2022
N/A· v4
4.7 MEDIUM· v3
N/A· v2
A time-of-check-time-of-use (TOCTOU) race condition vulnerability was found in networkd-dispatcher. This flaw exists because there is a certain time between the scripts being discovered and them being run. An attacker ca...Show more
A time-of-check-time-of-use (TOCTOU) race condition vulnerability was found in networkd-dispatcher. This flaw exists because there is a certain time between the scripts being discovered and them being run. An attacker can abuse this vulnerability to replace scripts that networkd-dispatcher believes to be owned by root with ones that are not.Show less
1Microsoft
1Windows Defender For Endpoint
Jun 17, 2026
Sep 21, 2022
N/A· v4
5.5 MEDIUM· v3
N/A· v2
A vulnerability was found in networkd-dispatcher. This flaw exists because no functions are sanitized by the OperationalState or the AdministrativeState of networkd-dispatcher. This attack leads to a directory traversal...Show more
A vulnerability was found in networkd-dispatcher. This flaw exists because no functions are sanitized by the OperationalState or the AdministrativeState of networkd-dispatcher. This attack leads to a directory traversal to escape from the “/etc/networkd-dispatcher” base directory.Show less
1Microsoft
1Endpoint Configuration Manager
Jun 17, 2026
Sep 20, 2022
N/A· v4
7.5 HIGH· v3
N/A· v2
Microsoft Endpoint Configuration Manager Spoofing Vulnerability
1Microsoft
1Visual Studio Code
Jun 17, 2026
Sep 13, 2022
N/A· v4
7.3 HIGH· v3
N/A· v2
Visual Studio Code Elevation of Privilege Vulnerability