Common Vulnerabilities and Exposures (CVE)

CVE-2026-59124

Aug 17, 2026 17:48:27 UTC

Deserialization of untrusted data in Microsoft High Performance Computing (HPC) Pack allows an unauthorized attacker to execute code over a network.

CVE-2026-62869

Aug 17, 2026 17:48:26 UTC

Insufficient verification of data authenticity in Azure Entra ID allows an authorized attacker to perform spoofing over a network.

CVE-2026-68823

Aug 17, 2026 17:48:25 UTC

Exposed dangerous method or function in Azure Confidential Ledger allows an authorized attacker to execute code over a network.

CVE-2026-49163

Aug 17, 2026 17:48:25 UTC

Improper limitation of a pathname to a restricted directory ('path traversal') in Application Insights Profiler allows an authorized attacker to elevate privileges over a network.

CVE-2026-65667

Aug 17, 2026 17:48:24 UTC

Missing authorization in Microsoft Teams allows an unauthorized attacker to elevate privileges over a network.

CVE-2026-56162

Aug 17, 2026 17:48:24 UTC

Improper authentication in Azure SQL Database allows an unauthorized attacker to elevate privileges over a network.

CVE-2026-50516

Aug 17, 2026 17:48:23 UTC

Missing authentication for critical function in Microsoft Azure Kubernetes Service allows an unauthorized attacker to elevate privileges over a network.

CVE-2026-59118

Aug 17, 2026 17:48:22 UTC

Improper authorization in Copilot Cowork allows an unauthorized attacker to elevate privileges over a network.

CVE-2026-56161

Aug 17, 2026 17:48:22 UTC

Improper access control in Azure Logic Apps allows an authorized attacker to disclose information over a network.

CVE-2026-62830

Aug 17, 2026 17:48:21 UTC

Missing authorization in Azure SRE Agent allows an authorized attacker to elevate privileges over a network.

CVE-2026-62917

Aug 17, 2026 17:48:21 UTC

Improper input validation in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.

CVE-2026-62839

Aug 17, 2026 17:48:20 UTC

Insufficiently protected credentials in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.

CVE-2026-58639

Aug 17, 2026 17:48:20 UTC

Server-side request forgery (ssrf) in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.

CVE-2026-65767

Aug 17, 2026 17:48:19 UTC

Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Teams for Android allows an authorized attacker to perform spoofing over a network.

CVE-2026-62898

Aug 17, 2026 17:48:19 UTC

Use after free in Microsoft QUIC allows an unauthorized attacker to disclose information over a network.