Common Vulnerabilities and Exposures (CVE)

CVE-2026-56171

Aug 3, 2026 22:59:13 UTC

Exposure of private personal information to an unauthorized actor in Windows RDP allows an unauthorized attacker to disclose information over a network.

CVE-2026-58529

Aug 3, 2026 22:59:12 UTC

Out-of-bounds read in Active Directory Federation Services (AD FS) allows an authorized attacker to disclose information over a network.

CVE-2026-62870

Aug 3, 2026 22:59:11 UTC

Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code over a network.

CVE-2026-66326

Aug 3, 2026 22:59:11 UTC

Missing authorization in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network.

CVE-2026-66325

Aug 3, 2026 22:59:10 UTC

Server-side request forgery (ssrf) in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform spoofing over a network.

CVE-2026-66322

Aug 3, 2026 22:59:10 UTC

Origin validation error in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform spoofing over a network.

CVE-2026-66317

Aug 3, 2026 22:59:09 UTC

Origin validation error in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform tampering over a network.

CVE-2026-66311

Aug 3, 2026 22:59:09 UTC

Missing authorization in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform tampering locally.

CVE-2026-65804

Aug 3, 2026 22:59:08 UTC

Improper control of generation of code ('code injection') in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform spoofing over a network.

CVE-2026-65802

Aug 3, 2026 22:59:08 UTC

External control of file name or path in Microsoft Edge for Android allows an unauthorized attacker to disclose information over a network.

CVE-2026-66803

Aug 3, 2026 22:59:07 UTC

Improper access control in Azure Cosmos DB allows an unauthorized attacker to execute code over a network.

CVE-2026-62828

Aug 3, 2026 22:59:07 UTC

Improper input validation in Microsoft Edge for Android allows an unauthorized attacker to perform tampering over a network.

CVE-2026-57989

Aug 3, 2026 22:59:06 UTC

Origin validation error in Microsoft Edge (Chromium-based) allows an unauthorized attacker to disclose information over a network.

CVE-2026-62826

Aug 3, 2026 22:59:05 UTC

Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.

CVE-2026-55121

Aug 3, 2026 22:59:05 UTC

Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally.