microsoft

15,045 tracked vulnerabilities.

CVE-2024-26167 MEDIUM
Microsoft Edge < 122.0.2365.92 - Spoofing via UI Layer Restriction Bypass
Mar 07, 2024
CVSS 4.3
EPSS 0.01
CVE-2024-0590 MEDIUM
Microsoft Clarity plugin <0.9.3 - CSRF
Feb 29, 2024
CVSS 6.1
EPSS 0.01
CVE-2024-27099 CRITICAL
Microsoft azure_uamqp < 2023-2-08 - Double Free in AMQP_VALUE State Processing
Feb 27, 2024
CVSS 9.8
EPSS 0.01
CVE-2024-26192 HIGH
Microsoft Edge Chromium < 122.0.2365.52 - Information Disclosure
Feb 23, 2024
CVSS 8.2
EPSS 0.02
CVE-2024-26188 MEDIUM
Microsoft Edge < 122.0.2365.52 - Spoofing via Insufficient UI Warning
Feb 23, 2024
CVSS 4.3
EPSS 0.01
CVE-2024-21423 MEDIUM
Microsoft Edge Chromium < 122.0.2365.52 - Information Disclosure
Feb 23, 2024
CVSS 4.8
EPSS 0.01
CVE-2024-21420 HIGH
Windows 10 1507-22H2 - Remote Code Execution via WDAC OLE DB Provider Integer Overflow
Feb 13, 2024
CVSS 8.8
EPSS 0.02
CVE-2024-21413 CRITICAL KEV
Microsoft 365 Apps and Office 2016-2019 - Remote Code Execution via Moniker Link
Feb 13, 2024
CVSS 9.8
EPSS 0.95
CVE-2024-21412 HIGH KEV
Internet Shortcut Files - Privilege Escalation
Feb 13, 2024
CVSS 8.1
EPSS 0.95
CVE-2024-21410 CRITICAL KEV
Microsoft Exchange Server - Elevation of Privilege via Improper Authentication
Feb 13, 2024
CVSS 9.8
EPSS 0.13
CVE-2024-21406 HIGH
Windows Printing Service - Cleartext Transmission of Sensitive Information
Feb 13, 2024
CVSS 7.5
EPSS 0.01
CVE-2024-21405 HIGH
Microsoft MSMQ - Privilege Escalation
Feb 13, 2024
CVSS 7.0
EPSS 0.00
CVE-2024-21404 HIGH
.NET 6.0.0-6.0.26 - Denial of Service via NULL Pointer Dereference
Feb 13, 2024
CVSS 7.5
EPSS 0.03
CVE-2024-21403 CRITICAL
Microsoft Azure Kubernetes Service - Privilege Escalation
Feb 13, 2024
CVSS 9.0
EPSS 0.01
CVE-2024-21402 HIGH
Microsoft 365 Apps < 2401.17231.20236 - Elevation of Privilege in Outlook
Feb 13, 2024
CVSS 7.1
EPSS 0.00
CVE-2024-21401 CRITICAL
Microsoft Entra Jira Single-Sign-On Plugin < 1.1.2 - Elevation of Privilege
Feb 13, 2024
CVSS 9.8
EPSS 0.01
CVE-2024-21397 MEDIUM
Microsoft Azure File Sync 14.0.0.0-16.1.x - Elevation of Privilege via Improper Link Resolution
Feb 13, 2024
CVSS 5.3
EPSS 0.00
CVE-2024-21396 HIGH
Dynamics 365 9.1-9.1.25.17 - Spoofing
Feb 13, 2024
CVSS 7.6
EPSS 0.01
CVE-2024-21395 HIGH
Microsoft Dynamics 365 9.1-<9.1.25.17 - Cross-Site Scripting
Feb 13, 2024
CVSS 8.2
EPSS 0.01
CVE-2024-21394 HIGH
Dynamics 365 9.1-9.1.25.17 - Spoofing
Feb 13, 2024
CVSS 7.6
EPSS 0.01
CVE-2024-21393 HIGH
Microsoft Dynamics 365 9.1-9.1.25.17 - Cross-Site Scripting
Feb 13, 2024
CVSS 7.6
EPSS 0.01
CVE-2024-21391 HIGH
Windows 10 1507-22H2, Windows 11 21H2-23H2, Windows Server 2008-2022 - Remote Code Execution via WDAC OLE DB Provider
Feb 13, 2024
CVSS 8.8
EPSS 0.02
CVE-2024-21389 HIGH
Microsoft Dynamics 365 9.1-9.1.25.17 - Cross-Site Scripting
Feb 13, 2024
CVSS 7.6
EPSS 0.01
CVE-2024-21386 HIGH
.NET 6.0.0-6.0.26 - Denial of Service
Feb 13, 2024
CVSS 7.5
EPSS 0.02
CVE-2024-21384 HIGH
Microsoft 365 Apps and Office Long Term Servicing Channel - Remote Code Execution via Use-After-Free
Feb 13, 2024
CVSS 7.8
EPSS 0.01