Common Vulnerabilities and Exposures (CVE)

CVE-2025-26663

Feb 13, 2026 19:32:23 UTC

Use after free in Windows LDAP - Lightweight Directory Access Protocol allows an unauthorized attacker to execute code over a network.

CVE-2026-20641

Feb 13, 2026 19:27:51 UTC

A privacy issue was addressed with improved checks. This issue is fixed in watchOS 26.3, tvOS 26.3, macOS Tahoe 26.3, macOS Sonoma 14.8.4, macOS Sequoia 15.7.4, iOS 18.7.5 and iPadOS 18.7.5, visionOS 26.3, iOS 26.3 and iPadOS 26.3. An app m...

CVE-2026-26208

Feb 13, 2026 19:21:56 UTC

ADB Explorer is a fluent UI for ADB on Windows. Prior to Beta 0.9.26020, ADB Explorer is vulnerable to Insecure Deserialization leading to Remote Code Execution. The application attempts to deserialize the App.txt settings file using Newton...

CVE-2025-24063

Feb 13, 2026 19:21:38 UTC

Heap-based buffer overflow in Windows Kernel allows an authorized attacker to elevate privileges locally.

CVE-2025-47161

Feb 13, 2026 19:21:37 UTC

Improper access control in Microsoft Defender for Endpoint allows an authorized attacker to elevate privileges locally.

CVE-2025-47732

Feb 13, 2026 19:21:36 UTC

Deserialization of untrusted data in Microsoft Dataverse allows an authorized attacker to execute code over a network.

CVE-2025-47733

Feb 13, 2026 19:21:36 UTC

Server-Side Request Forgery (SSRF) in Microsoft Power Apps allows an unauthorized attacker to disclose information over a network

CVE-2025-29813

Feb 13, 2026 19:21:35 UTC

Authentication bypass by assumed-immutable data in Azure DevOps allows an unauthorized attacker to elevate privileges over a network.

CVE-2025-29827

Feb 13, 2026 19:21:35 UTC

Improper authorization in Azure Automation allows an authorized attacker to elevate privileges over a network.

CVE-2025-29972

Feb 13, 2026 19:21:34 UTC

Server-side request forgery (ssrf) in Azure Storage Resource Provider allows an authorized attacker to perform spoofing over a network.

CVE-2025-32707

Feb 13, 2026 19:21:34 UTC

Out-of-bounds read in Windows NTFS allows an unauthorized attacker to elevate privileges locally.

CVE-2025-32705

Feb 13, 2026 19:21:33 UTC

Out-of-bounds read in Microsoft Office Outlook allows an unauthorized attacker to execute code locally.

CVE-2025-32704

Feb 13, 2026 19:21:32 UTC

Buffer over-read in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

CVE-2025-32702

Feb 13, 2026 19:21:32 UTC

Improper neutralization of special elements used in a command ('command injection') in Visual Studio allows an unauthorized attacker to execute code locally.

CVE-2025-30397

Feb 13, 2026 19:21:31 UTC

Access of resource using incompatible type ('type confusion') in Microsoft Scripting Engine allows an unauthorized attacker to execute code over a network.