Common Vulnerabilities and Exposures (CVE)

CVE-2025-24053

Feb 13, 2026 19:39:11 UTC

Improper authentication in Microsoft Dataverse allows an authorized attacker to elevate privileges over a network.

CVE-2025-30392

Feb 13, 2026 19:39:11 UTC

Improper authorization in Azure Bot Framework SDK allows an unauthorized attacker to elevate privileges over a network.

CVE-2025-26634

Feb 13, 2026 19:39:10 UTC

Heap-based buffer overflow in Windows Core Messaging allows an authorized attacker to elevate privileges over a network.

CVE-2025-26645

Feb 13, 2026 19:39:10 UTC

Relative path traversal in Remote Desktop Client allows an unauthorized attacker to execute code over a network.

CVE-2025-26643

Feb 13, 2026 19:39:09 UTC

The UI performs the wrong action in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform spoofing over a network.

CVE-2025-26633

Feb 13, 2026 19:39:08 UTC

Improper neutralization in Microsoft Management Console allows an unauthorized attacker to bypass a security feature locally.

CVE-2025-26631

Feb 13, 2026 19:39:08 UTC

Uncontrolled search path element in Visual Studio Code allows an authorized attacker to elevate privileges locally.

CVE-2025-26630

Feb 13, 2026 19:39:07 UTC

Use after free in Microsoft Office Access allows an unauthorized attacker to execute code locally.

CVE-2025-26629

Feb 13, 2026 19:39:07 UTC

Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.

CVE-2025-26627

Feb 13, 2026 19:39:06 UTC

Improper neutralization of special elements used in a command ('command injection') in Azure Arc allows an authorized attacker to elevate privileges locally.

CVE-2025-24049

Feb 13, 2026 19:39:06 UTC

Improper neutralization of special elements used in a command ('command injection') in Azure Command Line Integration (CLI) allows an unauthorized attacker to elevate privileges locally.

CVE-2025-24994

Feb 13, 2026 19:39:05 UTC

Improper access control in Windows Cross Device Service allows an authorized attacker to elevate privileges locally.

CVE-2025-24993

Feb 13, 2026 19:39:04 UTC

Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to execute code locally.

CVE-2025-24992

Feb 13, 2026 19:39:04 UTC

Buffer over-read in Windows NTFS allows an unauthorized attacker to disclose information locally.

CVE-2025-24991

Feb 13, 2026 19:39:03 UTC

Out-of-bounds read in Windows NTFS allows an authorized attacker to disclose information locally.