Common Vulnerabilities and Exposures (CVE)

CVE-2026-59115

Aug 7, 2026 03:56:08 UTC

'.../...//' in Microsoft Entra Provisioning Service (SyncFabric) allows an authorized attacker to elevate privileges over a network.

CVE-2026-50481

Aug 7, 2026 03:56:07 UTC

Modification of assumed-immutable data (maid) in Azure Active Directory allows an authorized attacker to elevate privileges over a network.

CVE-2026-59118

Aug 7, 2026 03:56:06 UTC

Improper authorization in Microsoft Power Apps allows an unauthorized attacker to elevate privileges over a network.

CVE-2026-62896

Aug 7, 2026 03:56:05 UTC

Improper authentication in Microsoft Teams allows an authorized attacker to elevate privileges over a network.

CVE-2026-56162

Aug 7, 2026 03:56:03 UTC

Improper authentication in Azure SQL Database allows an unauthorized attacker to elevate privileges over a network.

CVE-2026-62873

Aug 7, 2026 03:56:02 UTC

Improper verification of cryptographic signature in Microsoft 365 Admin Center allows an unauthorized attacker to elevate privileges over a network.

CVE-2026-19140

Aug 7, 2026 03:56:01 UTC

Use after free in GPU in Google Chrome prior to 151.0.7922.109 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)

CVE-2026-19151

Aug 7, 2026 03:56:00 UTC

Use after free in V8 in Google Chrome prior to 151.0.7922.109 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)

CVE-2026-19155

Aug 7, 2026 03:55:59 UTC

Use after free in Payments in Google Chrome prior to 151.0.7922.109 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)

CVE-2026-19163

Aug 7, 2026 03:55:58 UTC

Use after free in Media in Google Chrome on Windows prior to 151.0.7922.109 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Hig...

CVE-2026-19177

Aug 7, 2026 03:55:57 UTC

Insufficient validation of untrusted input in UI in Google Chrome prior to 151.0.7922.109 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security...

CVE-2026-19165

Aug 7, 2026 03:55:55 UTC

Use after free in Extensions in Google Chrome prior to 151.0.7922.109 allowed an attacker who convinced a user to install a malicious extension to execute arbitrary code inside a sandbox via a crafted Chrome Extension. (Chromium security se...

CVE-2026-19176

Aug 7, 2026 03:55:54 UTC

Use after free in Skia in Google Chrome prior to 151.0.7922.109 allowed a remote attacker who had compromised the renderer process to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)

CVE-2026-19174

Aug 7, 2026 03:55:53 UTC

Integer overflow in V8 in Google Chrome prior to 151.0.7922.109 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)

CVE-2026-19145

Aug 7, 2026 03:55:52 UTC

Use after free in Translate in Google Chrome prior to 151.0.7922.109 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)