Common Vulnerabilities and Exposures (CVE)

CVE-2026-55145

Aug 7, 2026 18:20:44 UTC

Improper neutralization of special elements used in a command ('command injection') in Outlook Copilot allows an authorized attacker to perform tampering over a network.

CVE-2026-54116

Aug 7, 2026 18:20:44 UTC

Access of resource using incompatible type ('type confusion') in SQL Server allows an authorized attacker to disclose information over a network.

CVE-2026-50468

Aug 7, 2026 18:20:43 UTC

Buffer over-read in SQL Server allows an authorized attacker to disclose information over a network.

CVE-2026-55135

Aug 7, 2026 18:20:43 UTC

Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.

CVE-2026-55052

Aug 7, 2026 18:20:42 UTC

Missing authorization in Microsoft Office SharePoint allows an authorized attacker to elevate privileges over a network.

CVE-2026-55120

Aug 7, 2026 18:20:42 UTC

Heap-based buffer overflow in Microsoft Office PowerPoint allows an unauthorized attacker to execute code locally.

CVE-2026-55123

Aug 7, 2026 18:20:41 UTC

Heap-based buffer overflow in Microsoft Office PowerPoint allows an unauthorized attacker to execute code locally.

CVE-2026-55133

Aug 7, 2026 18:20:41 UTC

Heap-based buffer overflow in Microsoft Office OneNote allows an unauthorized attacker to execute code locally.

CVE-2026-55043

Aug 7, 2026 18:20:40 UTC

Heap-based buffer overflow in Microsoft Office PowerPoint allows an unauthorized attacker to execute code locally.

CVE-2026-55139

Aug 7, 2026 18:20:40 UTC

Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally.

CVE-2026-55042

Aug 7, 2026 18:20:39 UTC

Use of uninitialized resource in Microsoft Office allows an unauthorized attacker to disclose information locally.

CVE-2026-55130

Aug 7, 2026 18:20:39 UTC

Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code locally.

CVE-2026-55128

Aug 7, 2026 18:20:38 UTC

Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally.

CVE-2026-55140

Aug 7, 2026 18:20:37 UTC

Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally.

CVE-2026-55142

Aug 7, 2026 18:20:37 UTC

Numeric truncation error in Microsoft Office Word allows an unauthorized attacker to disclose information locally.