Brand
Microsoft: actively exploited vulnerabilities
389 vulnerabilities in Microsoft products (Windows, Internet Explorer / Edge (legacy), Office…) are in CISA’s catalog of exploited vulnerabilities, 12 of them added in the last 90 days. Last added: September 25, 2026.
The brand’s general security advisories page, not the advisory for a specific vulnerability (address checked September 28, 2026).
-
49 vulnerabilities added in the last 12 months
-
389 exploited vulnerabilities in the catalog, in total
-
3 added in the last 30 days
By category
Add just one Microsoft category to your radar, or open its page.
- Operating systems 232 vulnerabilities
- Browsers and web engines 47 vulnerabilities
- Office, PDF and utilities 44 vulnerabilities
- Email 21 vulnerabilities
- Collaboration, telephony and video conferencing 17 vulnerabilities
- Virtualization, VDI and cloud 7 vulnerabilities
- Identity and access 6 vulnerabilities
- Security products 6 vulnerabilities
- Frameworks and libraries 4 vulnerabilities
- ERP, business applications and databases 2 vulnerabilities
- Firewalls, VPNs and remote access 1 vulnerability
- Monitoring, ITSM and asset management 1 vulnerability
- Web and application servers 1 vulnerability
A high count also reflects how widely a product is deployed and how much attackers care about it: it is not a security rating.
Affected products
- Windows 232 vulnerabilities · Operating systems
- Internet Explorer / Edge (legacy) 44 vulnerabilities · Browsers
- Office 43 vulnerabilities · Office and PDF
- Exchange Server 19 vulnerabilities · Email
- SharePoint Server 16 vulnerabilities · Collaboration and video
- Defender 6 vulnerabilities · Security products
- Active Directory 5 vulnerabilities · Identity and access
- .NET / Visual Studio 4 vulnerabilities · Frameworks
- Open Management Infrastructure (OMI) 4 vulnerabilities · Virtualization and VDI
- Silverlight 3 vulnerabilities · Browsers
- Outlook 2 vulnerabilities · Email
- SQL Server 2 vulnerabilities · Business apps and data
Show 9 more products
- AD FS 1 vulnerability · Identity and access
- Configuration Manager 1 vulnerability · Monitoring and ITSM
- Forefront TMG 1 vulnerability · Firewalls and VPNs
- Hyper-V 1 vulnerability · Virtualization and VDI
- IIS 1 vulnerability · Web servers
- Partner Center 1 vulnerability · Virtualization and VDI
- Power Pages 1 vulnerability · Virtualization and VDI
- Skype for Business / Lync 1 vulnerability · Collaboration and video
- WordPad 1 vulnerability · Office and PDF
Name used by CISA: Microsoft. Product families: indicative classification by this site.
Pace and breakdown of Microsoft vulnerabilities
The pace of newly exploited Microsoft vulnerabilities
How many Microsoft vulnerabilities join the catalog, period after period.
| Period | Vulnerabilities added |
|---|---|
| Sep 4, 2025 to Oct 3, 2025 | 0 |
| Oct 4, 2025 to Nov 2, 2025 | 8 |
| Nov 3, 2025 to Dec 2, 2025 | 1 |
| Dec 3, 2025 to Jan 1, 2026 | 1 |
| Jan 2, 2026 to Jan 31, 2026 | 3 |
| Feb 1, 2026 to Mar 2, 2026 | 8 |
| Mar 3, 2026 to Apr 1, 2026 | 1 |
| Apr 2, 2026 to May 1, 2026 | 8 |
| May 2, 2026 to May 31, 2026 | 7 |
| Jun 1, 2026 to Jun 30, 2026 | 0 |
| Jul 1, 2026 to Jul 30, 2026 | 5 |
| Jul 31, 2026 to Aug 29, 2026 | 4 |
| Aug 30, 2026 to Sep 28, 2026 (in progress) | 3 |
The most affected Microsoft products
The 384 Microsoft vulnerabilities in the patch list, by product family.
- Office apps 42
- Browser and web engines 40
- Messaging and collaboration 36
- Windows: kernel and drivers 32
- Windows: services and components 16
- Servers and virtualization 8
- Other families (8) 33
- Unclassified (no component given) 177
Families: this site’s taxonomy, based on the products named by Microsoft and CISA.
Priority
Patch first at Microsoft
In the order of the main list: recent catalog additions first, then the most severe. The number is the rank among Microsoft vulnerabilities.
Rank 1Microsoft SharePoint Server
CVE-2026-65660Recently addedHunt for compromise (CISA)
Microsoft SharePoint Code Injection Vulnerability
Added to the catalog less than 30 days ago: ranked by date added.
- Added
- Sep 25, 2026
- CISA deadline
- 3 days
- CVSS severity
- 8.8 (high)
Rank 2Microsoft Windows
CVE-2026-81963Recently added
Microsoft Windows Link Following Vulnerability
Added to the catalog less than 30 days ago: ranked by date added.
- Added
- Sep 8, 2026
- CISA deadline
- 14 days
- CVSS severity
- 7.8 (high)
Rank 3Microsoft Windows
CVE-2026-85880Recently added
Microsoft Windows Heap-Based Buffer Overflow Vulnerability
Added to the catalog less than 30 days ago: ranked by date added.
- Added
- Sep 8, 2026
- CISA deadline
- 14 days
- CVSS severity
- 7.8 (high)
Rank 4Microsoft Windows
CVE-2026-33824Microsoft Internet Key Exchange (IKE) Service Extensions Double Free Vulnerability
Added in the last 12 months: ranked by severity.
- Added
- Aug 18, 2026
- CISA deadline
- 3 days
- CVSS severity
- 9.8 (critical)
Rank 5Microsoft SharePoint Server
CVE-2026-50522Hunt for compromise (CISA)
Microsoft SharePoint Deserialization of Untrusted Data Vulnerability
Added in the last 12 months: ranked by severity.
- Added
- Jul 22, 2026
- CISA deadline
- 3 days
- CVSS severity
- 9.8 (critical)
Show the other 379 Microsoft vulnerabilities
Rank 6Microsoft SharePoint Server
CVE-2026-58644Hunt for compromise (CISA)
Microsoft SharePoint Deserialization of Untrusted Data Vulnerability
Added in the last 12 months: ranked by severity.
- Added
- Jul 16, 2026
- CISA deadline
- 3 days
- CVSS severity
- 9.8 (critical)
Rank 7Microsoft SharePoint Server
CVE-2026-56164Hunt for compromise (CISA)
Microsoft SharePoint Server Missing Authentication for Critical Function Vulnerability
Added in the last 12 months: ranked by severity.
- Added
- Jul 14, 2026
- CISA deadline
- 3 days
- CVSS severity
- 9.8 (critical)
Rank 8Microsoft Windows
CVE-2008-4250CVE from 2008, added in 2026
Microsoft Windows Buffer Overflow Vulnerability
Added in the last 12 months: ranked by severity.
- Added
- May 20, 2026
- CISA deadline
- 14 days
- CVSS severity
- 9.8 (critical)
Rank 9Microsoft SharePoint Server
CVE-2026-20963Microsoft SharePoint Deserialization of Untrusted Data Vulnerability
Added in the last 12 months: ranked by severity.
- Added
- Mar 18, 2026
- CISA deadline
- 3 days
- CVSS severity
- 9.8 (critical)
Rank 10Microsoft Configuration Manager
CVE-2024-43468CVE from 2024, added in 2026
Microsoft Configuration Manager SQL Injection Vulnerability
Added in the last 12 months: ranked by severity.
- Added
- Feb 12, 2026
- CISA deadline
- 21 days
- CVSS severity
- 9.8 (critical)
Rank 11Microsoft Windows
CVE-2025-59287Microsoft Windows Server Update Service (WSUS) Deserialization of Untrusted Data Vulnerability
Added in the last 12 months: ranked by severity.
- Added
- Oct 24, 2025
- CISA deadline
- 21 days
- CVSS severity
- 9.8 (critical)
Rank 12Microsoft SharePoint Server
CVE-2026-55040Hunt for compromise (CISA)
Microsoft SharePoint Weak Authentication Vulnerability
Added in the last 12 months: ranked by severity.
- Added
- Aug 18, 2026
- CISA deadline
- 3 days
- CVSS severity
- 9.1 (critical)
Rank 13Microsoft SQL Server
CVE-2019-1068Hunt for compromise (CISA)CVE from 2019, added in 2026
Microsoft SQL Server Remote Code Execution Vulnerability
Added in the last 12 months: ranked by severity.
- Added
- Aug 26, 2026
- CISA deadline
- 3 days
- CVSS severity
- 8.8 (high)
Rank 14Microsoft SharePoint Server
CVE-2026-45659Hunt for compromise (CISA)Ransomware
Microsoft SharePoint Server Deserialization of Untrusted Data Vulnerability
Added in the last 12 months: ranked by severity.
- Added
- Jul 1, 2026
- CISA deadline
- 3 days
- CVSS severity
- 8.8 (high)
Rank 15Microsoft Windows
CVE-2009-1537CVE from 2009, added in 2026
Microsoft DirectX NULL Byte Overwrite Vulnerability
Added in the last 12 months: ranked by severity.
- Added
- May 20, 2026
- CISA deadline
- 14 days
- CVSS severity
- 8.8 (high)
Rank 16Microsoft Internet Explorer / Edge (legacy)
CVE-2010-0249CVE from 2010, added in 2026
Microsoft Internet Explorer Use-After-Free Vulnerability
Added in the last 12 months: ranked by severity.
- Added
- May 20, 2026
- CISA deadline
- 14 days
- CVSS severity
- 8.8 (high)
Rank 17Microsoft Internet Explorer / Edge (legacy)
CVE-2010-0806CVE from 2010, added in 2026
Microsoft Internet Explorer Use-After-Free Vulnerability
Added in the last 12 months: ranked by severity.
- Added
- May 20, 2026
- CISA deadline
- 14 days
- CVSS severity
- 8.8 (high)
Rank 18Microsoft Office
CVE-2009-0238CVE from 2009, added in 2026
Microsoft Office Remote Code Execution
Added in the last 12 months: ranked by severity.
- Added
- Apr 14, 2026
- CISA deadline
- 14 days
- CVSS severity
- 8.8 (high)
Rank 19Microsoft Exchange Server
CVE-2023-21529RansomwareCVE from 2023, added in 2026
Microsoft Exchange Server Deserialization of Untrusted Data Vulnerability
Added in the last 12 months: ranked by severity.
- Added
- Apr 13, 2026
- CISA deadline
- 14 days
- CVSS severity
- 8.8 (high)
Rank 20Microsoft Windows
CVE-2008-0015CVE from 2008, added in 2026
Microsoft Windows Video ActiveX Control Remote Code Execution Vulnerability
Added in the last 12 months: ranked by severity.
- Added
- Feb 17, 2026
- CISA deadline
- 21 days
- CVSS severity
- 8.8 (high)
Rank 21Microsoft Windows
CVE-2026-21510Microsoft Windows Shell Protection Mechanism Failure Vulnerability
Added in the last 12 months: ranked by severity.
- Added
- Feb 10, 2026
- CISA deadline
- 21 days
- CVSS severity
- 8.8 (high)
Rank 22Microsoft Windows
CVE-2026-21513Microsoft MSHTML Framework Protection Mechanism Failure Vulnerability
Added in the last 12 months: ranked by severity.
- Added
- Feb 10, 2026
- CISA deadline
- 21 days
- CVSS severity
- 8.8 (high)
Rank 23Microsoft Office
CVE-2009-0556CVE from 2009, added in 2026
Microsoft Office PowerPoint Code Injection Vulnerability
Added in the last 12 months: ranked by severity.
- Added
- Jan 7, 2026
- CISA deadline
- 21 days
- CVSS severity
- 8.8 (high)
Rank 24Microsoft Windows
CVE-2025-33073Microsoft Windows SMB Client Improper Access Control Vulnerability
Added in the last 12 months: ranked by severity.
- Added
- Oct 20, 2025
- CISA deadline
- 21 days
- CVSS severity
- 8.8 (high)
Rank 25Microsoft Windows
CVE-2011-3402CVE from 2011, added in 2025
Microsoft Windows Remote Code Execution Vulnerability
Added in the last 12 months: ranked by severity.
- Added
- Oct 6, 2025
- CISA deadline
- 21 days
- CVSS severity
- 8.8 (high)
Rank 26Microsoft Windows
CVE-2013-3918CVE from 2013, added in 2025
Microsoft Windows Out-of-Bounds Write Vulnerability
Added in the last 12 months: ranked by severity.
- Added
- Oct 6, 2025
- CISA deadline
- 21 days
- CVSS severity
- 8.8 (high)
Rank 27Microsoft Internet Explorer / Edge (legacy)
CVE-2010-3962CVE from 2010, added in 2025
Microsoft Internet Explorer Uninitialized Memory Corruption Vulnerability
Added in the last 12 months: ranked by severity.
- Added
- Oct 6, 2025
- CISA deadline
- 21 days
- CVSS severity
- 8.1 (high)
Rank 28Microsoft AD FS
CVE-2026-56155Microsoft Active Directory Federation Services Insufficient Granularity of Access Control Vulnerability
Added in the last 12 months: ranked by severity.
- Added
- Jul 14, 2026
- CISA deadline
- 14 days
- CVSS severity
- 7.8 (high)
Rank 29Microsoft Defender
CVE-2026-41091Microsoft Defender Link Following Vulnerability
Added in the last 12 months: ranked by severity.
- Added
- May 20, 2026
- CISA deadline
- 14 days
- CVSS severity
- 7.8 (high)
Rank 30Microsoft Defender
CVE-2026-33825Ransomware
Microsoft Defender Insufficient Granularity of Access Control Vulnerability
Added in the last 12 months: ranked by severity.
- Added
- Apr 22, 2026
- CISA deadline
- 14 days
- CVSS severity
- 7.8 (high)
Rank 31Microsoft Office
CVE-2012-1854CVE from 2012, added in 2026
Microsoft Visual Basic for Applications Insecure Library Loading Vulnerability
Added in the last 12 months: ranked by severity.
- Added
- Apr 13, 2026
- CISA deadline
- 14 days
- CVSS severity
- 7.8 (high)
Rank 32Microsoft Windows
CVE-2023-36424CVE from 2023, added in 2026
Microsoft Windows Out-of-Bounds Read Vulnerability
Added in the last 12 months: ranked by severity.
- Added
- Apr 13, 2026
- CISA deadline
- 14 days
- CVSS severity
- 7.8 (high)
Rank 33Microsoft Windows
CVE-2025-60710Ransomware
Microsoft Windows Link Following Vulnerability
Added in the last 12 months: ranked by severity.
- Added
- Apr 13, 2026
- CISA deadline
- 14 days
- CVSS severity
- 7.8 (high)
Rank 34Microsoft Office
CVE-2026-21514Microsoft Office Word Reliance on Untrusted Inputs in a Security Decision Vulnerability
Added in the last 12 months: ranked by severity.
- Added
- Feb 10, 2026
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 35Microsoft Windows
CVE-2026-21519Microsoft Windows Type Confusion Vulnerability
Added in the last 12 months: ranked by severity.
- Added
- Feb 10, 2026
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 36Microsoft Windows
CVE-2026-21533Microsoft Windows Improper Privilege Management Vulnerability
Added in the last 12 months: ranked by severity.
- Added
- Feb 10, 2026
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 37Microsoft Office
CVE-2026-21509Microsoft Office Security Feature Bypass Vulnerability
Added in the last 12 months: ranked by severity.
- Added
- Jan 26, 2026
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 38Microsoft Windows
CVE-2025-62221Microsoft Windows Use After Free Vulnerability
Added in the last 12 months: ranked by severity.
- Added
- Dec 9, 2025
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 39Microsoft Windows
CVE-2025-24990Microsoft Windows Untrusted Pointer Dereference Vulnerability
Added in the last 12 months: ranked by severity.
- Added
- Oct 14, 2025
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 40Microsoft Windows
CVE-2025-59230Microsoft Windows Improper Access Control Vulnerability
Added in the last 12 months: ranked by severity.
- Added
- Oct 14, 2025
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 41Microsoft Windows
CVE-2021-43226RansomwareCVE from 2021, added in 2025
Microsoft Windows Privilege Escalation Vulnerability
Added in the last 12 months: ranked by severity.
- Added
- Oct 6, 2025
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 42Microsoft Defender
CVE-2026-45498Microsoft Defender Denial of Service Vulnerability
Added in the last 12 months: ranked by severity.
- Added
- May 20, 2026
- CISA deadline
- 14 days
- CVSS severity
- 7.5 (high)
Rank 43Microsoft Windows
CVE-2026-68820Microsoft Windows Ancillary Function Driver for WinSock Use-After-Free Vulnerability
Added in the last 12 months: ranked by severity.
- Added
- Aug 11, 2026
- CISA deadline
- 14 days
- CVSS severity
- 7.0 (high)
Rank 44Microsoft Windows
CVE-2025-62215Microsoft Windows Race Condition Vulnerability
Added in the last 12 months: ranked by severity.
- Added
- Nov 12, 2025
- CISA deadline
- 21 days
- CVSS severity
- 7.0 (high)
Rank 45Microsoft SharePoint Server
CVE-2026-32201Microsoft SharePoint Server Improper Input Validation Vulnerability
Added in the last 12 months: ranked by severity.
- Added
- Apr 14, 2026
- CISA deadline
- 14 days
- CVSS severity
- 6.5 (medium)
Rank 46Microsoft Windows
CVE-2026-21525Microsoft Windows NULL Pointer Dereference Vulnerability
Added in the last 12 months: ranked by severity.
- Added
- Feb 10, 2026
- CISA deadline
- 21 days
- CVSS severity
- 6.2 (medium)
Rank 47Microsoft Exchange Server
CVE-2026-42897Microsoft Exchange Server Cross-Site Scripting Vulnerability
Added in the last 12 months: ranked by severity.
- Added
- May 15, 2026
- CISA deadline
- 14 days
- CVSS severity
- 6.1 (medium)
Rank 48Microsoft Windows
CVE-2026-20805Microsoft Windows Information Disclosure Vulnerability
Added in the last 12 months: ranked by severity.
- Added
- Jan 13, 2026
- CISA deadline
- 21 days
- CVSS severity
- 5.5 (medium)
Rank 49Microsoft Windows
CVE-2026-32202Microsoft Windows Protection Mechanism Failure Vulnerability
Added in the last 12 months: ranked by severity.
- Added
- Apr 28, 2026
- CISA deadline
- 14 days
- CVSS severity
- 4.3 (medium)
Rank 50Microsoft Windows
CVE-2020-0796RansomwareCVE from 2020, added in 2022
Microsoft SMBv3 Remote Code Execution Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Feb 10, 2022
- CISA deadline
- 181 days
- CVSS severity
- 10.0 (critical)
Rank 51Microsoft Windows
CVE-2020-1350Microsoft Windows DNS Server Remote Code Execution Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Nov 3, 2021
- CISA deadline
- 181 days
- CVSS severity
- 10.0 (critical)
Rank 52Microsoft Active Directory
CVE-2020-1472Ransomware
Microsoft Netlogon Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Nov 3, 2021
- CISA deadline
- 181 days
- CVSS severity
- 10.0 (critical)
Rank 53Microsoft SharePoint Server
CVE-2025-53770Ransomware
Microsoft SharePoint Deserialization of Untrusted Data Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Jul 20, 2025
- CISA deadline
- 1 day
- CVSS severity
- 9.8 (critical)
Rank 54Microsoft Partner Center
CVE-2024-49035Microsoft Partner Center Improper Access Control Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Feb 25, 2025
- CISA deadline
- 21 days
- CVSS severity
- 9.8 (critical)
Rank 55Microsoft Power Pages
CVE-2025-24989Microsoft Power Pages Improper Access Control Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Feb 21, 2025
- CISA deadline
- 21 days
- CVSS severity
- 9.8 (critical)
Rank 56Microsoft Outlook
CVE-2024-21413Microsoft Outlook Improper Input Validation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Feb 6, 2025
- CISA deadline
- 21 days
- CVSS severity
- 9.8 (critical)
Rank 57Microsoft Exchange Server
CVE-2024-21410Microsoft Exchange Server Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Feb 15, 2024
- CISA deadline
- 21 days
- CVSS severity
- 9.8 (critical)
Rank 58Microsoft SharePoint Server
CVE-2023-29357Ransomware
Microsoft SharePoint Server Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Jan 10, 2024
- CISA deadline
- 21 days
- CVSS severity
- 9.8 (critical)
Rank 59Microsoft Office
CVE-2023-23397Microsoft Office Outlook Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Mar 14, 2023
- CISA deadline
- 21 days
- CVSS severity
- 9.8 (critical)
Rank 60Microsoft Exchange Server
CVE-2022-41080Ransomware
Microsoft Exchange Server Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Jan 10, 2023
- CISA deadline
- 21 days
- CVSS severity
- 9.8 (critical)
Rank 61Microsoft Windows
CVE-2017-8543CVE from 2017, added in 2022
Microsoft Windows Search Remote Code Execution Vulnerability
Added more than a year ago: ranked by severity.
- Added
- May 24, 2022
- CISA deadline
- 21 days
- CVSS severity
- 9.8 (critical)
Rank 62Microsoft Windows
CVE-2021-31166Microsoft HTTP Protocol Stack Remote Code Execution Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Apr 6, 2022
- CISA deadline
- 21 days
- CVSS severity
- 9.8 (critical)
Rank 63Microsoft Forefront TMG
CVE-2011-1889CVE from 2011, added in 2022
Microsoft Forefront TMG Remote Code Execution Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Mar 3, 2022
- CISA deadline
- 21 days
- CVSS severity
- 9.8 (critical)
Rank 64Microsoft Windows
CVE-2015-1635CVE from 2015, added in 2022
Microsoft HTTP.sys Remote Code Execution Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Feb 10, 2022
- CISA deadline
- 181 days
- CVSS severity
- 9.8 (critical)
Rank 65Microsoft Internet Explorer / Edge (legacy)
CVE-2014-1776CVE from 2014, added in 2022
Microsoft Internet Explorer Memory Corruption Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Jan 28, 2022
- CISA deadline
- 181 days
- CVSS severity
- 9.8 (critical)
Rank 66Microsoft IIS
CVE-2017-7269CVE from 2017, added in 2021
Microsoft Windows Server Buffer Overflow Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Nov 3, 2021
- CISA deadline
- 181 days
- CVSS severity
- 9.8 (critical)
Rank 67Microsoft SharePoint Server
CVE-2019-0604RansomwareCVE from 2019, added in 2021
Microsoft SharePoint Remote Code Execution Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Nov 3, 2021
- CISA deadline
- 181 days
- CVSS severity
- 9.8 (critical)
Rank 68Microsoft Windows
CVE-2019-0708RansomwareCVE from 2019, added in 2021
Microsoft Remote Desktop Services Remote Code Execution Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Nov 3, 2021
- CISA deadline
- 181 days
- CVSS severity
- 9.8 (critical)
Rank 69Microsoft .NET / Visual Studio
CVE-2020-0646Microsoft .NET Framework Remote Code Execution Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Nov 3, 2021
- CISA deadline
- 181 days
- CVSS severity
- 9.8 (critical)
Rank 70Microsoft Exchange Server
CVE-2021-26855Ransomware
Microsoft Exchange Server Remote Code Execution Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Nov 3, 2021
- CISA deadline
- 181 days
- CVSS severity
- 9.8 (critical)
Rank 71Microsoft Exchange Server
CVE-2021-34473Ransomware
Microsoft Exchange Server Remote Code Execution Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Nov 3, 2021
- CISA deadline
- 14 days
- CVSS severity
- 9.8 (critical)
Rank 72Microsoft Exchange Server
CVE-2021-34523Ransomware
Microsoft Exchange Server Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Nov 3, 2021
- CISA deadline
- 14 days
- CVSS severity
- 9.8 (critical)
Rank 73Microsoft Open Management Infrastructure (OMI)
CVE-2021-38647Ransomware
Microsoft Open Management Infrastructure (OMI) Remote Code Execution Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Nov 3, 2021
- CISA deadline
- 14 days
- CVSS severity
- 9.8 (critical)
Rank 74Microsoft Hyper-V
CVE-2020-1040Microsoft Hyper-V RemoteFX vGPU Remote Code Execution Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Nov 3, 2021
- CISA deadline
- 181 days
- CVSS severity
- 9.0 (critical)
Rank 75Microsoft Office
CVE-2007-0671CVE from 2007, added in 2025
Microsoft Office Excel Remote Code Execution Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Aug 12, 2025
- CISA deadline
- 21 days
- CVSS severity
- 8.8 (high)
Rank 76Microsoft Internet Explorer / Edge (legacy)
CVE-2013-3893CVE from 2013, added in 2025
Microsoft Internet Explorer Resource Management Errors Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Aug 12, 2025
- CISA deadline
- 21 days
- CVSS severity
- 8.8 (high)
Rank 77Microsoft SharePoint Server
CVE-2025-49704Ransomware
Microsoft SharePoint Code Injection Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Jul 22, 2025
- CISA deadline
- 1 day
- CVSS severity
- 8.8 (high)
Rank 78Microsoft Windows
CVE-2025-33053Microsoft Windows External Control of File Name or Path Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Jun 10, 2025
- CISA deadline
- 21 days
- CVSS severity
- 8.8 (high)
Rank 79Microsoft Windows
CVE-2024-49039Ransomware
Microsoft Windows Task Scheduler Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Nov 12, 2024
- CISA deadline
- 21 days
- CVSS severity
- 8.8 (high)
Rank 80Microsoft SQL Server
CVE-2020-0618RansomwareCVE from 2020, added in 2024
Microsoft SQL Server Reporting Services Remote Code Execution Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Sep 18, 2024
- CISA deadline
- 21 days
- CVSS severity
- 8.8 (high)
Rank 81Microsoft Windows
CVE-2024-43461Microsoft Windows MSHTML Platform Spoofing Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Sep 16, 2024
- CISA deadline
- 21 days
- CVSS severity
- 8.8 (high)
Rank 82Microsoft Office
CVE-2024-38189Microsoft Project Remote Code Execution Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Aug 13, 2024
- CISA deadline
- 21 days
- CVSS severity
- 8.8 (high)
Rank 83Microsoft Windows
CVE-2018-0824CVE from 2018, added in 2024
Microsoft COM for Windows Deserialization of Untrusted Data Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Aug 5, 2024
- CISA deadline
- 21 days
- CVSS severity
- 8.8 (high)
Rank 84Microsoft Windows
CVE-2024-30040Microsoft Windows MSHTML Platform Security Feature Bypass Vulnerability
Added more than a year ago: ranked by severity.
- Added
- May 14, 2024
- CISA deadline
- 21 days
- CVSS severity
- 8.8 (high)
Rank 85Microsoft Windows
CVE-2024-29988Microsoft SmartScreen Prompt Security Feature Bypass Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Apr 30, 2024
- CISA deadline
- 21 days
- CVSS severity
- 8.8 (high)
Rank 86Microsoft Windows
CVE-2023-36025Microsoft Windows SmartScreen Security Feature Bypass Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Nov 14, 2023
- CISA deadline
- 21 days
- CVSS severity
- 8.8 (high)
Rank 87Microsoft Windows
CVE-2023-32049Microsoft Windows Defender SmartScreen Security Feature Bypass Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Jul 11, 2023
- CISA deadline
- 21 days
- CVSS severity
- 8.8 (high)
Rank 88Microsoft Windows
CVE-2023-21674Microsoft Windows Advanced Local Procedure Call (ALPC) Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Jan 10, 2023
- CISA deadline
- 21 days
- CVSS severity
- 8.8 (high)
Rank 89Microsoft Windows
CVE-2022-41128Microsoft Windows Scripting Languages Remote Code Execution Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Nov 8, 2022
- CISA deadline
- 31 days
- CVSS severity
- 8.8 (high)
Rank 90Microsoft Exchange Server
CVE-2022-41040Ransomware
Microsoft Exchange Server Server-Side Request Forgery Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Sep 30, 2022
- CISA deadline
- 21 days
- CVSS severity
- 8.8 (high)
Rank 91Microsoft Active Directory
CVE-2022-26923Microsoft Active Directory Domain Services Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Aug 18, 2022
- CISA deadline
- 21 days
- CVSS severity
- 8.8 (high)
Rank 92Microsoft Office
CVE-2006-2492CVE from 2006, added in 2022
Microsoft Word Malformed Object Pointer Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Jun 8, 2022
- CISA deadline
- 14 days
- CVSS severity
- 8.8 (high)
Rank 93Microsoft Windows
CVE-2012-1889CVE from 2012, added in 2022
Microsoft XML Core Services Memory Corruption Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Jun 8, 2022
- CISA deadline
- 14 days
- CVSS severity
- 8.8 (high)
Rank 94Microsoft Internet Explorer / Edge (legacy)
CVE-2014-2817CVE from 2014, added in 2022
Microsoft Internet Explorer Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- May 25, 2022
- CISA deadline
- 21 days
- CVSS severity
- 8.8 (high)
Rank 95Microsoft Internet Explorer / Edge (legacy)
CVE-2014-4123CVE from 2014, added in 2022
Microsoft Internet Explorer Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- May 25, 2022
- CISA deadline
- 21 days
- CVSS severity
- 8.8 (high)
Rank 96Microsoft Windows
CVE-2014-4148CVE from 2014, added in 2022
Microsoft Windows Remote Code Execution Vulnerability
Added more than a year ago: ranked by severity.
- Added
- May 25, 2022
- CISA deadline
- 21 days
- CVSS severity
- 8.8 (high)
Rank 97Microsoft Windows
CVE-2015-2360CVE from 2015, added in 2022
Microsoft Win32k Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- May 25, 2022
- CISA deadline
- 21 days
- CVSS severity
- 8.8 (high)
Rank 98Microsoft Internet Explorer / Edge (legacy)
CVE-2015-2425CVE from 2015, added in 2022
Microsoft Internet Explorer Memory Corruption Vulnerability
Added more than a year ago: ranked by severity.
- Added
- May 25, 2022
- CISA deadline
- 21 days
- CVSS severity
- 8.8 (high)
Rank 99Microsoft Windows
CVE-2016-7256CVE from 2016, added in 2022
Microsoft Windows Open Type Font Remote Code Execution Vulnerability
Added more than a year ago: ranked by severity.
- Added
- May 25, 2022
- CISA deadline
- 21 days
- CVSS severity
- 8.8 (high)
Rank 100Microsoft Internet Explorer / Edge (legacy)
CVE-2017-0149CVE from 2017, added in 2022
Microsoft Internet Explorer Memory Corruption Vulnerability
Added more than a year ago: ranked by severity.
- Added
- May 24, 2022
- CISA deadline
- 21 days
- CVSS severity
- 8.8 (high)
Rank 101Microsoft Internet Explorer / Edge (legacy)
CVE-2017-0210CVE from 2017, added in 2022
Microsoft Internet Explorer Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- May 24, 2022
- CISA deadline
- 21 days
- CVSS severity
- 8.8 (high)
Rank 102Microsoft Internet Explorer / Edge (legacy)
CVE-2014-0322CVE from 2014, added in 2022
Microsoft Internet Explorer Use-After-Free Vulnerability
Added more than a year ago: ranked by severity.
- Added
- May 4, 2022
- CISA deadline
- 21 days
- CVSS severity
- 8.8 (high)
Rank 103Microsoft Internet Explorer / Edge (legacy)
CVE-2015-2502CVE from 2015, added in 2022
Microsoft Internet Explorer Memory Corruption Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Apr 13, 2022
- CISA deadline
- 21 days
- CVSS severity
- 8.8 (high)
Rank 104Microsoft Active Directory
CVE-2021-42287Ransomware
Microsoft Active Directory Domain Services Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Apr 11, 2022
- CISA deadline
- 21 days
- CVSS severity
- 8.8 (high)
Rank 105Microsoft Internet Explorer / Edge (legacy)
CVE-2013-2551RansomwareCVE from 2013, added in 2022
Microsoft Internet Explorer Use-After-Free Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Mar 28, 2022
- CISA deadline
- 21 days
- CVSS severity
- 8.8 (high)
Rank 106Microsoft Office
CVE-2015-1770CVE from 2015, added in 2022
Microsoft Office Uninitialized Memory Use Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Mar 28, 2022
- CISA deadline
- 21 days
- CVSS severity
- 8.8 (high)
Rank 107Microsoft Internet Explorer / Edge (legacy)
CVE-2015-2419CVE from 2015, added in 2022
Microsoft Internet Explorer Memory Corruption Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Mar 28, 2022
- CISA deadline
- 21 days
- CVSS severity
- 8.8 (high)
Rank 108Microsoft Windows
CVE-2015-2426CVE from 2015, added in 2022
Microsoft Windows Adobe Type Manager Library Remote Code Execution Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Mar 28, 2022
- CISA deadline
- 21 days
- CVSS severity
- 8.8 (high)
Rank 109Microsoft Internet Explorer / Edge (legacy)
CVE-2016-7200CVE from 2016, added in 2022
Microsoft Edge Memory Corruption Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Mar 28, 2022
- CISA deadline
- 21 days
- CVSS severity
- 8.8 (high)
Rank 110Microsoft Internet Explorer / Edge (legacy)
CVE-2016-7201CVE from 2016, added in 2022
Microsoft Edge Memory Corruption Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Mar 28, 2022
- CISA deadline
- 21 days
- CVSS severity
- 8.8 (high)
Rank 111Microsoft Active Directory
CVE-2014-6324CVE from 2014, added in 2022
Microsoft Kerberos Key Distribution Center (KDC) Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Mar 25, 2022
- CISA deadline
- 21 days
- CVSS severity
- 8.8 (high)
Rank 112Microsoft Windows
CVE-2014-6332CVE from 2014, added in 2022
Microsoft Windows Object Linking & Embedding (OLE) Automation Array Remote Code Execution Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Mar 25, 2022
- CISA deadline
- 21 days
- CVSS severity
- 8.8 (high)
Rank 113Microsoft Windows
CVE-2017-0146RansomwareCVE from 2017, added in 2022
Microsoft Windows SMB Remote Code Execution Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Mar 25, 2022
- CISA deadline
- 21 days
- CVSS severity
- 8.8 (high)
Rank 114Microsoft Windows
CVE-2018-8414CVE from 2018, added in 2022
Microsoft Windows Shell Remote Code Execution Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Mar 25, 2022
- CISA deadline
- 21 days
- CVSS severity
- 8.8 (high)
Rank 115Microsoft Windows
CVE-2019-0903CVE from 2019, added in 2022
Microsoft GDI Remote Code Execution Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Mar 25, 2022
- CISA deadline
- 21 days
- CVSS severity
- 8.8 (high)
Rank 116Microsoft Office
CVE-2012-1856CVE from 2012, added in 2022
Microsoft Office MSCOMCTL.OCX Remote Code Execution Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Mar 3, 2022
- CISA deadline
- 21 days
- CVSS severity
- 8.8 (high)
Rank 117Microsoft Internet Explorer / Edge (legacy)
CVE-2013-1347CVE from 2013, added in 2022
Microsoft Internet Explorer Remote Code Execution Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Mar 3, 2022
- CISA deadline
- 21 days
- CVSS severity
- 8.8 (high)
Rank 118Microsoft Internet Explorer / Edge (legacy)
CVE-2013-3897CVE from 2013, added in 2022
Microsoft Internet Explorer Use-After-Free Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Mar 3, 2022
- CISA deadline
- 21 days
- CVSS severity
- 8.8 (high)
Rank 119Microsoft Office
CVE-2015-2424CVE from 2015, added in 2022
Microsoft PowerPoint Memory Corruption Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Mar 3, 2022
- CISA deadline
- 21 days
- CVSS severity
- 8.8 (high)
Rank 120Microsoft Office
CVE-2019-1297CVE from 2019, added in 2022
Microsoft Excel Remote Code Execution Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Mar 3, 2022
- CISA deadline
- 14 days
- CVSS severity
- 8.8 (high)
Rank 121Microsoft Internet Explorer / Edge (legacy)
CVE-2017-0222CVE from 2017, added in 2022
Microsoft Internet Explorer Remote Code Execution Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Feb 25, 2022
- CISA deadline
- 181 days
- CVSS severity
- 8.8 (high)
Rank 122Microsoft Windows
CVE-2017-0144RansomwareCVE from 2017, added in 2022
Microsoft SMBv1 Remote Code Execution Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Feb 10, 2022
- CISA deadline
- 181 days
- CVSS severity
- 8.8 (high)
Rank 123Microsoft Windows
CVE-2017-0145RansomwareCVE from 2017, added in 2022
Microsoft SMBv1 Remote Code Execution Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Feb 10, 2022
- CISA deadline
- 181 days
- CVSS severity
- 8.8 (high)
Rank 124Microsoft Windows
CVE-2017-8464CVE from 2017, added in 2022
Microsoft Windows Shell (.lnk) Remote Code Execution Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Feb 10, 2022
- CISA deadline
- 181 days
- CVSS severity
- 8.8 (high)
Rank 125Microsoft Windows
CVE-2013-3900CVE from 2013, added in 2022
Microsoft WinVerifyTrust function Remote Code Execution
Added more than a year ago: ranked by severity.
- Added
- Jan 10, 2022
- CISA deadline
- 181 days
- CVSS severity
- 8.8 (high)
Rank 126Microsoft Exchange Server
CVE-2021-42321Ransomware
Microsoft Exchange Server Remote Code Execution Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Nov 17, 2021
- CISA deadline
- 14 days
- CVSS severity
- 8.8 (high)
Rank 127Microsoft Office
CVE-2012-0158RansomwareCVE from 2012, added in 2021
Microsoft MSCOMCTL.OCX Remote Code Execution Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Nov 3, 2021
- CISA deadline
- 181 days
- CVSS severity
- 8.8 (high)
Rank 128Microsoft Windows
CVE-2014-1812RansomwareCVE from 2014, added in 2021
Microsoft Windows Group Policy Preferences Password Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Nov 3, 2021
- CISA deadline
- 181 days
- CVSS severity
- 8.8 (high)
Rank 129Microsoft Windows
CVE-2017-0143RansomwareCVE from 2017, added in 2021
Microsoft Windows Server Message Block (SMBv1) Remote Code Execution Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Nov 3, 2021
- CISA deadline
- 181 days
- CVSS severity
- 8.8 (high)
Rank 130Microsoft Office
CVE-2018-0798CVE from 2018, added in 2021
Microsoft Office Memory Corruption Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Nov 3, 2021
- CISA deadline
- 181 days
- CVSS severity
- 8.8 (high)
Rank 131Microsoft Internet Explorer / Edge (legacy)
CVE-2019-0541CVE from 2019, added in 2021
Microsoft MSHTML Remote Code Execution Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Nov 3, 2021
- CISA deadline
- 181 days
- CVSS severity
- 8.8 (high)
Rank 132Microsoft Exchange Server
CVE-2020-0688Ransomware
Microsoft Exchange Server Validation Key Remote Code Execution Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Nov 3, 2021
- CISA deadline
- 181 days
- CVSS severity
- 8.8 (high)
Rank 133Microsoft Windows
CVE-2020-1020Microsoft Windows Adobe Font Manager Library Remote Code Execution Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Nov 3, 2021
- CISA deadline
- 181 days
- CVSS severity
- 8.8 (high)
Rank 134Microsoft Internet Explorer / Edge (legacy)
CVE-2020-1380Microsoft Internet Explorer Scripting Engine Memory Corruption Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Nov 3, 2021
- CISA deadline
- 181 days
- CVSS severity
- 8.8 (high)
Rank 135Microsoft Exchange Server
CVE-2020-17144Microsoft Exchange Server Remote Code Execution Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Nov 3, 2021
- CISA deadline
- 181 days
- CVSS severity
- 8.8 (high)
Rank 136Microsoft Internet Explorer / Edge (legacy)
CVE-2021-26411Ransomware
Microsoft Internet Explorer Memory Corruption Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Nov 3, 2021
- CISA deadline
- 14 days
- CVSS severity
- 8.8 (high)
Rank 137Microsoft Internet Explorer / Edge (legacy)
CVE-2021-27085Microsoft Internet Explorer Remote Code Execution Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Nov 3, 2021
- CISA deadline
- 14 days
- CVSS severity
- 8.8 (high)
Rank 138Microsoft Windows
CVE-2021-33742Microsoft Windows MSHTML Platform Remote Code Execution Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Nov 3, 2021
- CISA deadline
- 14 days
- CVSS severity
- 8.8 (high)
Rank 139Microsoft Windows
CVE-2021-34448Microsoft Windows Scripting Engine Memory Corruption Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Nov 3, 2021
- CISA deadline
- 14 days
- CVSS severity
- 8.8 (high)
Rank 140Microsoft Windows
CVE-2021-34527Ransomware
Microsoft Windows Print Spooler Remote Code Execution Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Nov 3, 2021
- CISA deadline
- 181 days
- CVSS severity
- 8.8 (high)
Rank 141Microsoft Windows
CVE-2023-29360Microsoft Streaming Service Untrusted Pointer Dereference Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Feb 29, 2024
- CISA deadline
- 21 days
- CVSS severity
- 8.4 (high)
Rank 142Microsoft Windows
CVE-2015-2546RansomwareCVE from 2015, added in 2022
Microsoft Win32k Memory Corruption Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Mar 15, 2022
- CISA deadline
- 21 days
- CVSS severity
- 8.2 (high)
Rank 143Microsoft Windows
CVE-2024-43573Microsoft Windows MSHTML Platform Spoofing Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Oct 8, 2024
- CISA deadline
- 21 days
- CVSS severity
- 8.1 (high)
Rank 144Microsoft Windows
CVE-2024-21412Ransomware
Microsoft Windows Internet Shortcut Files Security Feature Bypass Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Feb 13, 2024
- CISA deadline
- 21 days
- CVSS severity
- 8.1 (high)
Rank 145Microsoft Internet Explorer / Edge (legacy)
CVE-2012-4969CVE from 2012, added in 2022
Microsoft Internet Explorer Use-After-Free Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Jun 8, 2022
- CISA deadline
- 14 days
- CVSS severity
- 8.1 (high)
Rank 146Microsoft Windows
CVE-2017-0148RansomwareCVE from 2017, added in 2022
Microsoft SMBv1 Server Remote Code Execution Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Apr 6, 2022
- CISA deadline
- 21 days
- CVSS severity
- 8.1 (high)
Rank 147Microsoft Internet Explorer / Edge (legacy)
CVE-2017-0037CVE from 2017, added in 2022
Microsoft Edge and Internet Explorer Type Confusion Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Mar 28, 2022
- CISA deadline
- 21 days
- CVSS severity
- 8.1 (high)
Rank 148Microsoft Windows
CVE-2020-0601Microsoft Windows CryptoAPI Spoofing Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Nov 3, 2021
- CISA deadline
- 181 days
- CVSS severity
- 8.1 (high)
Rank 149Microsoft Exchange Server
CVE-2022-41082Ransomware
Microsoft Exchange Server Remote Code Execution Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Sep 30, 2022
- CISA deadline
- 21 days
- CVSS severity
- 8.0 (high)
Rank 150Microsoft Windows
CVE-2025-30400Microsoft Windows DWM Core Library Use-After-Free Vulnerability
Added more than a year ago: ranked by severity.
- Added
- May 13, 2025
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 151Microsoft Windows
CVE-2025-32701Microsoft Windows Common Log File System (CLFS) Driver Use-After-Free Vulnerability
Added more than a year ago: ranked by severity.
- Added
- May 13, 2025
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 152Microsoft Windows
CVE-2025-32706Microsoft Windows Common Log File System (CLFS) Driver Heap-Based Buffer Overflow Vulnerability
Added more than a year ago: ranked by severity.
- Added
- May 13, 2025
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 153Microsoft Windows
CVE-2025-32709Microsoft Windows Ancillary Function Driver for WinSock Use-After-Free Vulnerability
Added more than a year ago: ranked by severity.
- Added
- May 13, 2025
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 154Microsoft Windows
CVE-2025-29824Ransomware
Microsoft Windows Common Log File System (CLFS) Driver Use-After-Free Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Apr 8, 2025
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 155Microsoft Windows
CVE-2025-24985Microsoft Windows Fast FAT File System Driver Integer Overflow Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Mar 11, 2025
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 156Microsoft Windows
CVE-2025-24993Microsoft Windows NTFS Heap-Based Buffer Overflow Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Mar 11, 2025
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 157Microsoft Windows
CVE-2018-8639RansomwareCVE from 2018, added in 2025
Microsoft Windows Win32k Improper Resource Shutdown or Release Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Mar 3, 2025
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 158Microsoft Windows
CVE-2025-21418Microsoft Windows Ancillary Function Driver for WinSock Heap-Based Buffer Overflow Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Feb 11, 2025
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 159Microsoft Windows
CVE-2025-21333Microsoft Windows Hyper-V NT Kernel Integration VSP Heap-based Buffer Overflow Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Jan 14, 2025
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 160Microsoft Windows
CVE-2025-21334Microsoft Windows Hyper-V NT Kernel Integration VSP Use-After-Free Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Jan 14, 2025
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 161Microsoft Windows
CVE-2025-21335Microsoft Windows Hyper-V NT Kernel Integration VSP Use-After-Free Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Jan 14, 2025
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 162Microsoft Windows
CVE-2024-35250Microsoft Windows Kernel-Mode Driver Untrusted Pointer Dereference Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Dec 16, 2024
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 163Microsoft Windows
CVE-2024-49138Microsoft Windows Common Log File System (CLFS) Driver Heap-Based Buffer Overflow Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Dec 10, 2024
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 164Microsoft Windows
CVE-2024-43572Microsoft Windows Management Console Remote Code Execution Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Oct 8, 2024
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 165Microsoft Windows
CVE-2024-38014Microsoft Windows Installer Improper Privilege Management Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Sep 10, 2024
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 166Microsoft Windows
CVE-2024-38107Microsoft Windows Power Dependency Coordinator Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Aug 13, 2024
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 167Microsoft Windows
CVE-2024-38193Microsoft Windows Ancillary Function Driver for WinSock Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Aug 13, 2024
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 168Microsoft Windows
CVE-2024-38080Microsoft Windows Hyper-V Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Jul 9, 2024
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 169Microsoft Windows
CVE-2024-26169Ransomware
Microsoft Windows Error Reporting Service Improper Privilege Management Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Jun 13, 2024
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 170Microsoft Windows
CVE-2024-30051Ransomware
Microsoft DWM Core Library Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- May 14, 2024
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 171Microsoft Windows
CVE-2022-38028CVE from 2022, added in 2024
Microsoft Windows Print Spooler Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Apr 23, 2024
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 172Microsoft Windows
CVE-2024-21338Ransomware
Microsoft Windows Kernel Exposed IOCTL with Insufficient Access Control Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Mar 4, 2024
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 173Microsoft Windows
CVE-2023-36033Microsoft Windows Desktop Window Manager (DWM) Core Library Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Nov 14, 2023
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 174Microsoft Windows
CVE-2023-36036Microsoft Windows Cloud Files Mini Filter Driver Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Nov 14, 2023
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 175Microsoft Windows
CVE-2023-36802Microsoft Streaming Service Proxy Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Sep 12, 2023
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 176Microsoft Windows
CVE-2023-32046Microsoft Windows MSHTML Platform Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Jul 11, 2023
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 177Microsoft Windows
CVE-2023-36874Microsoft Windows Error Reporting Service Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Jul 11, 2023
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 178Microsoft Windows
CVE-2016-0165CVE from 2016, added in 2023
Microsoft Win32k Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Jun 22, 2023
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 179Microsoft Windows
CVE-2023-29336Microsoft Win32K Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- May 9, 2023
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 180Microsoft Windows
CVE-2023-28252Ransomware
Microsoft Windows Common Log File System (CLFS) Driver Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Apr 11, 2023
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 181Microsoft Windows
CVE-2019-1388RansomwareCVE from 2019, added in 2023
Microsoft Windows Certificate Dialog Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Apr 7, 2023
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 182Microsoft Windows
CVE-2023-21823Microsoft Windows Graphic Component Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Feb 14, 2023
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 183Microsoft Windows
CVE-2023-23376Ransomware
Microsoft Windows Common Log File System (CLFS) Driver Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Feb 14, 2023
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 184Microsoft Windows
CVE-2022-41073Ransomware
Microsoft Windows Print Spooler Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Nov 8, 2022
- CISA deadline
- 31 days
- CVSS severity
- 7.8 (high)
Rank 185Microsoft Windows
CVE-2022-41125Microsoft Windows CNG Key Isolation Service Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Nov 8, 2022
- CISA deadline
- 31 days
- CVSS severity
- 7.8 (high)
Rank 186Microsoft Windows
CVE-2022-41033Microsoft Windows COM+ Event System Service Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Oct 11, 2022
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 187Microsoft Windows
CVE-2010-2568CVE from 2010, added in 2022
Microsoft Windows Remote Code Execution Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Sep 15, 2022
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 188Microsoft Windows
CVE-2022-37969Ransomware
Microsoft Windows Common Log File System (CLFS) Driver Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Sep 14, 2022
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 189Microsoft Windows
CVE-2022-21971Microsoft Windows Runtime Remote Code Execution Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Aug 18, 2022
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 190Microsoft Windows
CVE-2022-34713Microsoft Windows Support Diagnostic Tool (MSDT) Remote Code Execution Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Aug 9, 2022
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 191Microsoft Windows
CVE-2022-22047Microsoft Windows Client Server Runtime Subsystem (CSRSS) Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Jul 12, 2022
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 192Microsoft Windows
CVE-2022-30190Ransomware
Microsoft Windows Support Diagnostic Tool (MSDT) Remote Code Execution Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Jun 14, 2022
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 193Microsoft Office
CVE-2009-0557CVE from 2009, added in 2022
Microsoft Office Object Record Corruption Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Jun 8, 2022
- CISA deadline
- 14 days
- CVSS severity
- 7.8 (high)
Rank 194Microsoft Office
CVE-2009-0563CVE from 2009, added in 2022
Microsoft Office Buffer Overflow Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Jun 8, 2022
- CISA deadline
- 14 days
- CVSS severity
- 7.8 (high)
Rank 195Microsoft Office
CVE-2010-2572CVE from 2010, added in 2022
Microsoft PowerPoint Buffer Overflow Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Jun 8, 2022
- CISA deadline
- 14 days
- CVSS severity
- 7.8 (high)
Rank 196Microsoft Windows
CVE-2012-0151CVE from 2012, added in 2022
Microsoft Windows Authenticode Signature Verification Remote Code Execution Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Jun 8, 2022
- CISA deadline
- 14 days
- CVSS severity
- 7.8 (high)
Rank 197Microsoft Office
CVE-2013-1331CVE from 2013, added in 2022
Microsoft Office Buffer Overflow Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Jun 8, 2022
- CISA deadline
- 14 days
- CVSS severity
- 7.8 (high)
Rank 198Microsoft Windows
CVE-2014-4077CVE from 2014, added in 2022
Microsoft IME Japanese Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- May 25, 2022
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 199Microsoft Windows
CVE-2015-0016CVE from 2015, added in 2022
Microsoft Windows TS WebProxy Directory Traversal Vulnerability
Added more than a year ago: ranked by severity.
- Added
- May 25, 2022
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 200Microsoft Windows
CVE-2015-1671CVE from 2015, added in 2022
Microsoft Windows Remote Code Execution Vulnerability
Added more than a year ago: ranked by severity.
- Added
- May 25, 2022
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 201Microsoft Windows
CVE-2015-6175CVE from 2015, added in 2022
Microsoft Windows Kernel Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- May 25, 2022
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 202Microsoft Windows
CVE-2016-3393CVE from 2016, added in 2022
Microsoft Windows Graphics Device Interface (GDI) Remote Code Execution Vulnerability
Added more than a year ago: ranked by severity.
- Added
- May 25, 2022
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 203Microsoft Windows
CVE-2017-0005CVE from 2017, added in 2022
Microsoft Windows Graphics Device Interface (GDI) Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- May 24, 2022
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 204Microsoft Windows
CVE-2018-8611CVE from 2018, added in 2022
Microsoft Windows Kernel Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- May 24, 2022
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 205Microsoft Windows
CVE-2018-8589CVE from 2018, added in 2022
Microsoft Win32k Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- May 23, 2022
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 206Microsoft Windows
CVE-2019-0880CVE from 2019, added in 2022
Microsoft Windows Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- May 23, 2022
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 207Microsoft Windows
CVE-2019-1130RansomwareCVE from 2019, added in 2022
Microsoft Windows AppX Deployment Service Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- May 23, 2022
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 208Microsoft Windows
CVE-2019-1385RansomwareCVE from 2019, added in 2022
Microsoft Windows AppX Deployment Extensions Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- May 23, 2022
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 209Microsoft Windows
CVE-2020-0638RansomwareCVE from 2020, added in 2022
Microsoft Update Notification Manager Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- May 23, 2022
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 210Microsoft Windows
CVE-2020-1027CVE from 2020, added in 2022
Microsoft Windows Kernel Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- May 23, 2022
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 211Microsoft Windows
CVE-2014-4113CVE from 2014, added in 2022
Microsoft Win32k Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- May 4, 2022
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 212Microsoft Windows
CVE-2021-40450Microsoft Win32k Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Apr 25, 2022
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 213Microsoft Windows
CVE-2021-41357Microsoft Win32k Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Apr 25, 2022
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 214Microsoft Windows
CVE-2022-22718Microsoft Windows Print Spooler Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Apr 19, 2022
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 215Microsoft Windows
CVE-2022-24521Ransomware
Microsoft Windows CLFS Driver Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Apr 13, 2022
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 216Microsoft Windows
CVE-2021-34484Microsoft Windows User Profile Service Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Mar 31, 2022
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 217Microsoft Windows
CVE-2010-4398CVE from 2010, added in 2022
Microsoft Windows Kernel Stack-Based Buffer Overflow Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Mar 28, 2022
- CISA deadline
- 24 days
- CVSS severity
- 7.8 (high)
Rank 218Microsoft Windows
CVE-2011-2005CVE from 2011, added in 2022
Microsoft Ancillary Function Driver (afd.sys) Improper Input Validation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Mar 28, 2022
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 219Microsoft Office
CVE-2012-2539CVE from 2012, added in 2022
Microsoft Word Remote Code Execution Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Mar 28, 2022
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 220Microsoft Windows
CVE-2013-3660CVE from 2013, added in 2022
Microsoft Win32k Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Mar 28, 2022
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 221Microsoft Windows
CVE-2016-0040CVE from 2016, added in 2022
Microsoft Windows Kernel Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Mar 28, 2022
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 222Microsoft Windows
CVE-2016-0151RansomwareCVE from 2016, added in 2022
Microsoft Windows CSRSS Security Feature Bypass Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Mar 28, 2022
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 223Microsoft Windows
CVE-2018-8405RansomwareCVE from 2018, added in 2022
Microsoft DirectX Graphics Kernel Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Mar 28, 2022
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 224Microsoft Windows
CVE-2018-8406RansomwareCVE from 2018, added in 2022
Microsoft DirectX Graphics Kernel Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Mar 28, 2022
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 225Microsoft Windows
CVE-2018-8440RansomwareCVE from 2018, added in 2022
Microsoft Windows Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Mar 28, 2022
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 226Microsoft Windows
CVE-2021-34486Microsoft Windows Event Tracing Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Mar 28, 2022
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 227Microsoft Office
CVE-2021-38646Ransomware
Microsoft Office Access Connectivity Engine Remote Code Execution Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Mar 28, 2022
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 228Microsoft Windows
CVE-2022-21999Ransomware
Microsoft Windows Print Spooler Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Mar 25, 2022
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 229Microsoft Windows
CVE-2016-3309RansomwareCVE from 2016, added in 2022
Microsoft Windows Kernel Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Mar 15, 2022
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 230Microsoft Windows
CVE-2017-0101RansomwareCVE from 2017, added in 2022
Microsoft Windows Transaction Manager Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Mar 15, 2022
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 231Microsoft Windows
CVE-2019-0543RansomwareCVE from 2019, added in 2022
Microsoft Windows Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Mar 15, 2022
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 232Microsoft Windows
CVE-2019-0841RansomwareCVE from 2019, added in 2022
Microsoft Windows AppX Deployment Service (AppXSVC) Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Mar 15, 2022
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 233Microsoft Windows
CVE-2019-1064RansomwareCVE from 2019, added in 2022
Microsoft Windows AppX Deployment Service (AppXSVC) Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Mar 15, 2022
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 234Microsoft Windows
CVE-2019-1069RansomwareCVE from 2019, added in 2022
Microsoft Task Scheduler Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Mar 15, 2022
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 235Microsoft Windows
CVE-2019-1129RansomwareCVE from 2019, added in 2022
Microsoft Windows AppX Deployment Service (AppXSVC) Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Mar 15, 2022
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 236Microsoft Windows
CVE-2019-1132CVE from 2019, added in 2022
Microsoft Win32k Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Mar 15, 2022
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 237Microsoft Windows
CVE-2019-1253RansomwareCVE from 2019, added in 2022
Microsoft Windows AppX Deployment Server Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Mar 15, 2022
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 238Microsoft Windows
CVE-2019-1315RansomwareCVE from 2019, added in 2022
Microsoft Windows Error Reporting Manager Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Mar 15, 2022
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 239Microsoft Windows
CVE-2019-1322RansomwareCVE from 2019, added in 2022
Microsoft Windows Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Mar 15, 2022
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 240Microsoft Windows
CVE-2019-1405RansomwareCVE from 2019, added in 2022
Microsoft Windows Universal Plug and Play (UPnP) Service Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Mar 15, 2022
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 241Microsoft Windows
CVE-2002-0367CVE from 2002, added in 2022
Microsoft Windows Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Mar 3, 2022
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 242Microsoft Windows
CVE-2004-0210CVE from 2004, added in 2022
Microsoft Windows Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Mar 3, 2022
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 243Microsoft Windows
CVE-2009-1123CVE from 2009, added in 2022
Microsoft Windows Improper Input Validation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Mar 3, 2022
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 244Microsoft Office
CVE-2009-3129CVE from 2009, added in 2022
Microsoft Excel Featheader Record Memory Corruption Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Mar 3, 2022
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 245Microsoft Windows
CVE-2010-0232CVE from 2010, added in 2022
Microsoft Windows Kernel Exception Handler Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Mar 3, 2022
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 246Microsoft Office
CVE-2010-3333CVE from 2010, added in 2022
Microsoft Office Stack-based Buffer Overflow Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Mar 3, 2022
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 247Microsoft Windows
CVE-2013-5065CVE from 2013, added in 2022
Microsoft Windows Kernel Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Mar 3, 2022
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 248Microsoft Windows
CVE-2014-4114CVE from 2014, added in 2022
Microsoft Windows Object Linking & Embedding (OLE) Remote Code Execution Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Mar 3, 2022
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 249Microsoft Office
CVE-2015-1642CVE from 2015, added in 2022
Microsoft Office Memory Corruption Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Mar 3, 2022
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 250Microsoft Windows
CVE-2015-1701RansomwareCVE from 2015, added in 2022
Microsoft Win32k Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Mar 3, 2022
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 251Microsoft Windows
CVE-2015-2387CVE from 2015, added in 2022
Microsoft ATM Font Driver Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Mar 3, 2022
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 252Microsoft Office
CVE-2015-2545CVE from 2015, added in 2022
Microsoft Office Malformed EPS File Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Mar 3, 2022
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 253Microsoft Windows
CVE-2016-0099RansomwareCVE from 2016, added in 2022
Microsoft Windows Secondary Logon Service Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Mar 3, 2022
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 254Microsoft Office
CVE-2016-7193CVE from 2016, added in 2022
Microsoft Office Memory Corruption Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Mar 3, 2022
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 255Microsoft Office
CVE-2016-7262CVE from 2016, added in 2022
Microsoft Office Security Feature Bypass Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Mar 3, 2022
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 256Microsoft Windows
CVE-2017-0001CVE from 2017, added in 2022
Microsoft Graphics Device Interface (GDI) Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Mar 3, 2022
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 257Microsoft Office
CVE-2017-0261CVE from 2017, added in 2022
Microsoft Office Use-After-Free Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Mar 3, 2022
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 258Microsoft Office
CVE-2017-11826CVE from 2017, added in 2022
Microsoft Office Remote Code Execution Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Mar 3, 2022
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 259Microsoft Defender
CVE-2017-8540CVE from 2017, added in 2022
Microsoft Malware Protection Engine Improper Restriction of Operations Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Mar 3, 2022
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Rank 260Microsoft Windows
CVE-2021-41379Ransomware
Microsoft Windows Installer Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Mar 3, 2022
- CISA deadline
- 14 days
- CVSS severity
- 7.8 (high)
Rank 261Microsoft Windows
CVE-2014-6352CVE from 2014, added in 2022
Microsoft Windows Code Injection Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Feb 25, 2022
- CISA deadline
- 181 days
- CVSS severity
- 7.8 (high)
Rank 262Microsoft Office
CVE-2017-8570CVE from 2017, added in 2022
Microsoft Office Remote Code Execution Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Feb 25, 2022
- CISA deadline
- 181 days
- CVSS severity
- 7.8 (high)
Rank 263Microsoft Windows
CVE-2013-3906CVE from 2013, added in 2022
Microsoft Graphics Component Memory Corruption Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Feb 15, 2022
- CISA deadline
- 181 days
- CVSS severity
- 7.8 (high)
Rank 264Microsoft Office
CVE-2014-1761CVE from 2014, added in 2022
Microsoft Word Memory Corruption Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Feb 15, 2022
- CISA deadline
- 181 days
- CVSS severity
- 7.8 (high)
Rank 265Microsoft Office
CVE-2017-0262CVE from 2017, added in 2022
Microsoft Office Remote Code Execution Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Feb 10, 2022
- CISA deadline
- 181 days
- CVSS severity
- 7.8 (high)
Rank 266Microsoft Windows
CVE-2017-0263CVE from 2017, added in 2022
Microsoft Win32k Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Feb 10, 2022
- CISA deadline
- 181 days
- CVSS severity
- 7.8 (high)
Rank 267Microsoft Windows
CVE-2021-36934Microsoft Windows SAM Local Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Feb 10, 2022
- CISA deadline
- 14 days
- CVSS severity
- 7.8 (high)
Rank 268Microsoft Windows
CVE-2022-21882Ransomware
Microsoft Win32k Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Feb 4, 2022
- CISA deadline
- 14 days
- CVSS severity
- 7.8 (high)
Rank 269Microsoft Windows
CVE-2020-0787RansomwareCVE from 2020, added in 2022
Microsoft Windows Background Intelligent Transfer Service (BITS) Improper Privilege Management Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Jan 28, 2022
- CISA deadline
- 181 days
- CVSS severity
- 7.8 (high)
Rank 270Microsoft Windows
CVE-2018-8453RansomwareCVE from 2018, added in 2022
Microsoft Win32k Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Jan 21, 2022
- CISA deadline
- 181 days
- CVSS severity
- 7.8 (high)
Rank 271Microsoft Windows
CVE-2019-1458RansomwareCVE from 2019, added in 2022
Microsoft Win32k Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Jan 10, 2022
- CISA deadline
- 181 days
- CVSS severity
- 7.8 (high)
Rank 272Microsoft Windows
CVE-2021-40449Ransomware
Microsoft Windows Win32k Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Nov 17, 2021
- CISA deadline
- 14 days
- CVSS severity
- 7.8 (high)
Rank 273Microsoft Office
CVE-2021-42292Microsoft Excel Security Feature Bypass
Added more than a year ago: ranked by severity.
- Added
- Nov 17, 2021
- CISA deadline
- 14 days
- CVSS severity
- 7.8 (high)
Rank 274Microsoft Office
CVE-2015-1641CVE from 2015, added in 2021
Microsoft Office Memory Corruption Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Nov 3, 2021
- CISA deadline
- 181 days
- CVSS severity
- 7.8 (high)
Rank 275Microsoft Windows
CVE-2016-0167RansomwareCVE from 2016, added in 2021
Microsoft Win32k Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Nov 3, 2021
- CISA deadline
- 181 days
- CVSS severity
- 7.8 (high)
Rank 276Microsoft Windows
CVE-2016-0185CVE from 2016, added in 2021
Microsoft Windows Media Center Remote Code Execution Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Nov 3, 2021
- CISA deadline
- 181 days
- CVSS severity
- 7.8 (high)
Rank 277Microsoft Office
CVE-2016-3235CVE from 2016, added in 2021
Microsoft Office OLE DLL Side Loading Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Nov 3, 2021
- CISA deadline
- 181 days
- CVSS severity
- 7.8 (high)
Rank 278Microsoft Windows
CVE-2016-7255RansomwareCVE from 2016, added in 2021
Microsoft Win32k Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Nov 3, 2021
- CISA deadline
- 181 days
- CVSS severity
- 7.8 (high)
Rank 279Microsoft Office
CVE-2017-0199RansomwareCVE from 2017, added in 2021
Microsoft Office and WordPad Remote Code Execution Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Nov 3, 2021
- CISA deadline
- 181 days
- CVSS severity
- 7.8 (high)
Rank 280Microsoft Office
CVE-2017-11774CVE from 2017, added in 2021
Microsoft Office Outlook Security Feature Bypass Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Nov 3, 2021
- CISA deadline
- 181 days
- CVSS severity
- 7.8 (high)
Rank 281Microsoft Office
CVE-2017-11882RansomwareCVE from 2017, added in 2021
Microsoft Office Memory Corruption Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Nov 3, 2021
- CISA deadline
- 181 days
- CVSS severity
- 7.8 (high)
Rank 282Microsoft .NET / Visual Studio
CVE-2017-8759CVE from 2017, added in 2021
Microsoft .NET Framework Remote Code Execution Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Nov 3, 2021
- CISA deadline
- 181 days
- CVSS severity
- 7.8 (high)
Rank 283Microsoft Office
CVE-2018-0802RansomwareCVE from 2018, added in 2021
Microsoft Office Memory Corruption Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Nov 3, 2021
- CISA deadline
- 181 days
- CVSS severity
- 7.8 (high)
Rank 284Microsoft Windows
CVE-2019-0797CVE from 2019, added in 2021
Microsoft Win32k Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Nov 3, 2021
- CISA deadline
- 181 days
- CVSS severity
- 7.8 (high)
Rank 285Microsoft Windows
CVE-2019-0803RansomwareCVE from 2019, added in 2021
Microsoft Win32k Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Nov 3, 2021
- CISA deadline
- 181 days
- CVSS severity
- 7.8 (high)
Rank 286Microsoft Windows
CVE-2019-0808CVE from 2019, added in 2021
Microsoft Win32k Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Nov 3, 2021
- CISA deadline
- 181 days
- CVSS severity
- 7.8 (high)
Rank 287Microsoft Windows
CVE-2019-0859RansomwareCVE from 2019, added in 2021
Microsoft Win32k Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Nov 3, 2021
- CISA deadline
- 181 days
- CVSS severity
- 7.8 (high)
Rank 288Microsoft Windows
CVE-2019-0863CVE from 2019, added in 2021
Microsoft Windows Error Reporting (WER) Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Nov 3, 2021
- CISA deadline
- 181 days
- CVSS severity
- 7.8 (high)
Rank 289Microsoft Windows
CVE-2019-1214CVE from 2019, added in 2021
Microsoft Windows Privilege Common Log File System (CLFS) Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Nov 3, 2021
- CISA deadline
- 181 days
- CVSS severity
- 7.8 (high)
Rank 290Microsoft Windows
CVE-2019-1215RansomwareCVE from 2019, added in 2021
Microsoft Windows Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Nov 3, 2021
- CISA deadline
- 181 days
- CVSS severity
- 7.8 (high)
Rank 291Microsoft Windows
CVE-2020-0683Microsoft Windows Installer Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Nov 3, 2021
- CISA deadline
- 181 days
- CVSS severity
- 7.8 (high)
Rank 292Microsoft Windows
CVE-2020-0938Microsoft Windows Adobe Font Manager Library Remote Code Execution Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Nov 3, 2021
- CISA deadline
- 181 days
- CVSS severity
- 7.8 (high)
Rank 293Microsoft Windows
CVE-2020-0986Microsoft Windows Kernel Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Nov 3, 2021
- CISA deadline
- 181 days
- CVSS severity
- 7.8 (high)
Rank 294Microsoft Windows
CVE-2020-1054Microsoft Win32k Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Nov 3, 2021
- CISA deadline
- 181 days
- CVSS severity
- 7.8 (high)
Rank 295Microsoft SharePoint Server
CVE-2020-1147Microsoft .NET Framework, SharePoint, and Visual Studio Remote Code Execution Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Nov 3, 2021
- CISA deadline
- 181 days
- CVSS severity
- 7.8 (high)
Rank 296Microsoft Windows
CVE-2020-17087Microsoft Windows Kernel Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Nov 3, 2021
- CISA deadline
- 181 days
- CVSS severity
- 7.8 (high)
Rank 297Microsoft Defender
CVE-2021-1647Microsoft Defender Remote Code Execution Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Nov 3, 2021
- CISA deadline
- 14 days
- CVSS severity
- 7.8 (high)
Rank 298Microsoft Windows
CVE-2021-1675Ransomware
Microsoft Windows Print Spooler Remote Code Execution Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Nov 3, 2021
- CISA deadline
- 14 days
- CVSS severity
- 7.8 (high)
Rank 299Microsoft Windows
CVE-2021-1732Ransomware
Microsoft Win32k Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Nov 3, 2021
- CISA deadline
- 14 days
- CVSS severity
- 7.8 (high)
Rank 300Microsoft Exchange Server
CVE-2021-26857Ransomware
Microsoft Exchange Server Remote Code Execution Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Nov 3, 2021
- CISA deadline
- 181 days
- CVSS severity
- 7.8 (high)
Rank 301Microsoft Exchange Server
CVE-2021-26858Ransomware
Microsoft Exchange Server Remote Code Execution Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Nov 3, 2021
- CISA deadline
- 181 days
- CVSS severity
- 7.8 (high)
Rank 302Microsoft Exchange Server
CVE-2021-27065Ransomware
Microsoft Exchange Server Remote Code Execution Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Nov 3, 2021
- CISA deadline
- 181 days
- CVSS severity
- 7.8 (high)
Rank 303Microsoft Windows
CVE-2021-28310Microsoft Win32k Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Nov 3, 2021
- CISA deadline
- 14 days
- CVSS severity
- 7.8 (high)
Rank 304Microsoft Windows
CVE-2021-31199Microsoft Enhanced Cryptographic Provider Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Nov 3, 2021
- CISA deadline
- 14 days
- CVSS severity
- 7.8 (high)
Rank 305Microsoft Windows
CVE-2021-31201Microsoft Enhanced Cryptographic Provider Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Nov 3, 2021
- CISA deadline
- 14 days
- CVSS severity
- 7.8 (high)
Rank 306Microsoft Windows
CVE-2021-31956Microsoft Windows NTFS Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Nov 3, 2021
- CISA deadline
- 14 days
- CVSS severity
- 7.8 (high)
Rank 307Microsoft Windows
CVE-2021-31979Microsoft Windows Kernel Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Nov 3, 2021
- CISA deadline
- 14 days
- CVSS severity
- 7.8 (high)
Rank 308Microsoft Windows
CVE-2021-33739Microsoft Desktop Window Manager (DWM) Core Library Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Nov 3, 2021
- CISA deadline
- 14 days
- CVSS severity
- 7.8 (high)
Rank 309Microsoft Windows
CVE-2021-33771Microsoft Windows Kernel Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Nov 3, 2021
- CISA deadline
- 14 days
- CVSS severity
- 7.8 (high)
Rank 310Microsoft Windows
CVE-2021-36948Microsoft Windows Update Medic Service Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Nov 3, 2021
- CISA deadline
- 14 days
- CVSS severity
- 7.8 (high)
Rank 311Microsoft Windows
CVE-2021-36955Ransomware
Microsoft Windows Common Log File System (CLFS) Driver Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Nov 3, 2021
- CISA deadline
- 14 days
- CVSS severity
- 7.8 (high)
Rank 312Microsoft Open Management Infrastructure (OMI)
CVE-2021-38645Microsoft Open Management Infrastructure (OMI) Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Nov 3, 2021
- CISA deadline
- 14 days
- CVSS severity
- 7.8 (high)
Rank 313Microsoft Open Management Infrastructure (OMI)
CVE-2021-38648Microsoft Open Management Infrastructure (OMI) Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Nov 3, 2021
- CISA deadline
- 14 days
- CVSS severity
- 7.8 (high)
Rank 314Microsoft Open Management Infrastructure (OMI)
CVE-2021-38649Microsoft Open Management Infrastructure (OMI) Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Nov 3, 2021
- CISA deadline
- 14 days
- CVSS severity
- 7.8 (high)
Rank 315Microsoft Internet Explorer / Edge (legacy)
CVE-2021-40444Ransomware
Microsoft MSHTML Remote Code Execution Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Nov 3, 2021
- CISA deadline
- 14 days
- CVSS severity
- 7.8 (high)
Rank 316Microsoft Windows
CVE-2024-21351Microsoft Windows SmartScreen Security Feature Bypass Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Feb 13, 2024
- CISA deadline
- 21 days
- CVSS severity
- 7.6 (high)
Rank 317Microsoft Windows
CVE-2025-30397Microsoft Windows Scripting Engine Type Confusion Vulnerability
Added more than a year ago: ranked by severity.
- Added
- May 13, 2025
- CISA deadline
- 21 days
- CVSS severity
- 7.5 (high)
Rank 318Microsoft .NET / Visual Studio
CVE-2024-29059Microsoft .NET Framework Information Disclosure Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Feb 4, 2025
- CISA deadline
- 21 days
- CVSS severity
- 7.5 (high)
Rank 319Microsoft Windows
CVE-2024-38178Microsoft Windows Scripting Engine Memory Corruption Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Aug 13, 2024
- CISA deadline
- 21 days
- CVSS severity
- 7.5 (high)
Rank 320Microsoft Windows
CVE-2024-38112Microsoft Windows MSHTML Platform Spoofing Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Jul 9, 2024
- CISA deadline
- 21 days
- CVSS severity
- 7.5 (high)
Rank 321Microsoft .NET / Visual Studio
CVE-2023-38180Microsoft .NET Core and Visual Studio Denial-of-Service Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Aug 9, 2023
- CISA deadline
- 21 days
- CVSS severity
- 7.5 (high)
Rank 322Microsoft Windows
CVE-2023-36884Ransomware
Microsoft Windows Search Remote Code Execution Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Jul 17, 2023
- CISA deadline
- 43 days
- CVSS severity
- 7.5 (high)
Rank 323Microsoft Outlook
CVE-2023-35311Microsoft Outlook Security Feature Bypass Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Jul 11, 2023
- CISA deadline
- 21 days
- CVSS severity
- 7.5 (high)
Rank 324Microsoft Windows
CVE-2017-0147RansomwareCVE from 2017, added in 2022
Microsoft Windows SMBv1 Information Disclosure Vulnerability
Added more than a year ago: ranked by severity.
- Added
- May 24, 2022
- CISA deadline
- 21 days
- CVSS severity
- 7.5 (high)
Rank 325Microsoft Active Directory
CVE-2021-42278Ransomware
Microsoft Active Directory Domain Services Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Apr 11, 2022
- CISA deadline
- 21 days
- CVSS severity
- 7.5 (high)
Rank 326Microsoft Internet Explorer / Edge (legacy)
CVE-2016-0189RansomwareCVE from 2016, added in 2022
Microsoft Internet Explorer Memory Corruption Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Mar 28, 2022
- CISA deadline
- 21 days
- CVSS severity
- 7.5 (high)
Rank 327Microsoft Internet Explorer / Edge (legacy)
CVE-2018-8373CVE from 2018, added in 2022
Microsoft Scripting Engine Memory Corruption Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Mar 25, 2022
- CISA deadline
- 21 days
- CVSS severity
- 7.5 (high)
Rank 328Microsoft Windows
CVE-2018-8174RansomwareCVE from 2018, added in 2022
Microsoft Windows VBScript Engine Out-of-Bounds Write Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Feb 15, 2022
- CISA deadline
- 181 days
- CVSS severity
- 7.5 (high)
Rank 329Microsoft Internet Explorer / Edge (legacy)
CVE-2019-0752RansomwareCVE from 2019, added in 2022
Microsoft Internet Explorer Type Confusion Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Feb 15, 2022
- CISA deadline
- 181 days
- CVSS severity
- 7.5 (high)
Rank 330Microsoft Exchange Server
CVE-2021-33766Microsoft Exchange Server Information Disclosure
Added more than a year ago: ranked by severity.
- Added
- Jan 18, 2022
- CISA deadline
- 14 days
- CVSS severity
- 7.5 (high)
Rank 331Microsoft Internet Explorer / Edge (legacy)
CVE-2018-8653CVE from 2018, added in 2021
Microsoft Internet Explorer Scripting Engine Memory Corruption Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Nov 3, 2021
- CISA deadline
- 181 days
- CVSS severity
- 7.5 (high)
Rank 332Microsoft Internet Explorer / Edge (legacy)
CVE-2019-1367RansomwareCVE from 2019, added in 2021
Microsoft Internet Explorer Scripting Engine Memory Corruption Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Nov 3, 2021
- CISA deadline
- 181 days
- CVSS severity
- 7.5 (high)
Rank 333Microsoft Internet Explorer / Edge (legacy)
CVE-2019-1429CVE from 2019, added in 2021
Microsoft Internet Explorer Scripting Engine Memory Corruption Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Nov 3, 2021
- CISA deadline
- 181 days
- CVSS severity
- 7.5 (high)
Rank 334Microsoft Internet Explorer / Edge (legacy)
CVE-2020-0674Microsoft Internet Explorer Scripting Engine Memory Corruption Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Nov 3, 2021
- CISA deadline
- 181 days
- CVSS severity
- 7.5 (high)
Rank 335Microsoft Internet Explorer / Edge (legacy)
CVE-2020-0878Ransomware
Microsoft Edge and Internet Explorer Memory Corruption Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Nov 3, 2021
- CISA deadline
- 181 days
- CVSS severity
- 7.5 (high)
Rank 336Microsoft Internet Explorer / Edge (legacy)
CVE-2020-0968Ransomware
Microsoft Internet Explorer Scripting Engine Memory Corruption Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Nov 3, 2021
- CISA deadline
- 181 days
- CVSS severity
- 7.5 (high)
Rank 337Microsoft Windows
CVE-2021-36942Ransomware
Microsoft Windows Local Security Authority (LSA) Spoofing Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Nov 3, 2021
- CISA deadline
- 14 days
- CVSS severity
- 7.5 (high)
Rank 338Microsoft Exchange Server
CVE-2018-8581RansomwareCVE from 2018, added in 2022
Microsoft Exchange Server Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Mar 3, 2022
- CISA deadline
- 14 days
- CVSS severity
- 7.4 (high)
Rank 339Microsoft Office
CVE-2024-38226Microsoft Publisher Protection Mechanism Failure Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Sep 10, 2024
- CISA deadline
- 21 days
- CVSS severity
- 7.3 (high)
Rank 340Microsoft Office
CVE-2023-21715Microsoft Office Publisher Security Feature Bypass Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Feb 14, 2023
- CISA deadline
- 21 days
- CVSS severity
- 7.3 (high)
Rank 341Microsoft Windows
CVE-2017-0213RansomwareCVE from 2017, added in 2022
Microsoft Windows Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Mar 28, 2022
- CISA deadline
- 21 days
- CVSS severity
- 7.3 (high)
Rank 342Microsoft SharePoint Server
CVE-2024-38094Ransomware
Microsoft SharePoint Deserialization Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Oct 22, 2024
- CISA deadline
- 21 days
- CVSS severity
- 7.2 (high)
Rank 343Microsoft Exchange Server
CVE-2021-31196CVE from 2021, added in 2024
Microsoft Exchange Server Information Disclosure Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Aug 21, 2024
- CISA deadline
- 21 days
- CVSS severity
- 7.2 (high)
Rank 344Microsoft SharePoint Server
CVE-2023-24955Ransomware
Microsoft SharePoint Server Code Injection Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Mar 26, 2024
- CISA deadline
- 21 days
- CVSS severity
- 7.2 (high)
Rank 345Microsoft Windows
CVE-2025-21391Microsoft Windows Storage Link Following Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Feb 11, 2025
- CISA deadline
- 21 days
- CVSS severity
- 7.1 (high)
Rank 346Microsoft Windows
CVE-2021-43890Ransomware
Microsoft Windows AppX Installer Spoofing Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Dec 15, 2021
- CISA deadline
- 14 days
- CVSS severity
- 7.1 (high)
Rank 347Microsoft Windows
CVE-2025-24983Microsoft Windows Win32k Use-After-Free Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Mar 11, 2025
- CISA deadline
- 21 days
- CVSS severity
- 7.0 (high)
Rank 348Microsoft Windows
CVE-2025-26633Ransomware
Microsoft Windows Management Console (MMC) Improper Neutralization Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Mar 11, 2025
- CISA deadline
- 21 days
- CVSS severity
- 7.0 (high)
Rank 349Microsoft Windows
CVE-2024-30088Ransomware
Microsoft Windows Kernel TOCTOU Race Condition Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Oct 15, 2024
- CISA deadline
- 21 days
- CVSS severity
- 7.0 (high)
Rank 350Microsoft Windows
CVE-2024-38106Microsoft Windows Kernel Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Aug 13, 2024
- CISA deadline
- 21 days
- CVSS severity
- 7.0 (high)
Rank 351Microsoft Windows
CVE-2023-28229Microsoft Windows CNG Key Isolation Service Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Oct 4, 2023
- CISA deadline
- 21 days
- CVSS severity
- 7.0 (high)
Rank 352Microsoft Windows
CVE-2022-21919Microsoft Windows User Profile Service Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Apr 25, 2022
- CISA deadline
- 21 days
- CVSS severity
- 7.0 (high)
Rank 353Microsoft Windows
CVE-2022-26904Microsoft Windows User Profile Service Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Apr 25, 2022
- CISA deadline
- 21 days
- CVSS severity
- 7.0 (high)
Rank 354Microsoft Windows
CVE-2018-8120RansomwareCVE from 2018, added in 2022
Microsoft Win32k Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Mar 15, 2022
- CISA deadline
- 21 days
- CVSS severity
- 7.0 (high)
Rank 355Microsoft Windows
CVE-2015-1769CVE from 2015, added in 2022
Microsoft Windows Mount Manager Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- May 25, 2022
- CISA deadline
- 21 days
- CVSS severity
- 6.6 (medium)
Rank 356Microsoft Exchange Server
CVE-2021-31207Ransomware
Microsoft Exchange Server Security Feature Bypass Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Nov 3, 2021
- CISA deadline
- 14 days
- CVSS severity
- 6.6 (medium)
Rank 357Microsoft SharePoint Server
CVE-2025-49706Ransomware
Microsoft SharePoint Improper Authentication Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Jul 22, 2025
- CISA deadline
- 1 day
- CVSS severity
- 6.5 (medium)
Rank 358Microsoft Windows
CVE-2024-43451Microsoft Windows NTLMv2 Hash Disclosure Spoofing Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Nov 12, 2024
- CISA deadline
- 21 days
- CVSS severity
- 6.5 (medium)
Rank 359Microsoft Windows
CVE-2024-38213Microsoft Windows SmartScreen Security Feature Bypass Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Aug 13, 2024
- CISA deadline
- 21 days
- CVSS severity
- 6.5 (medium)
Rank 360Microsoft Office
CVE-2023-36761Microsoft Word Information Disclosure Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Sep 12, 2023
- CISA deadline
- 21 days
- CVSS severity
- 6.5 (medium)
Rank 361Microsoft Internet Explorer / Edge (legacy)
CVE-2013-7331CVE from 2013, added in 2022
Microsoft Internet Explorer Information Disclosure Vulnerability
Added more than a year ago: ranked by severity.
- Added
- May 25, 2022
- CISA deadline
- 21 days
- CVSS severity
- 6.5 (medium)
Rank 362Microsoft Internet Explorer / Edge (legacy)
CVE-2015-0071CVE from 2015, added in 2022
Microsoft Internet Explorer ASLR Bypass Vulnerability
Added more than a year ago: ranked by severity.
- Added
- May 25, 2022
- CISA deadline
- 21 days
- CVSS severity
- 6.5 (medium)
Rank 363Microsoft Internet Explorer / Edge (legacy)
CVE-2016-3298CVE from 2016, added in 2022
Microsoft Internet Explorer Messaging API Information Disclosure Vulnerability
Added more than a year ago: ranked by severity.
- Added
- May 24, 2022
- CISA deadline
- 21 days
- CVSS severity
- 6.5 (medium)
Rank 364Microsoft Internet Explorer / Edge (legacy)
CVE-2016-3351RansomwareCVE from 2016, added in 2022
Microsoft Internet Explorer and Edge Information Disclosure Vulnerability
Added more than a year ago: ranked by severity.
- Added
- May 24, 2022
- CISA deadline
- 21 days
- CVSS severity
- 6.5 (medium)
Rank 365Microsoft Windows
CVE-2017-0022CVE from 2017, added in 2022
Microsoft XML Core Services Information Disclosure Vulnerability
Added more than a year ago: ranked by severity.
- Added
- May 24, 2022
- CISA deadline
- 21 days
- CVSS severity
- 6.5 (medium)
Rank 366Microsoft Internet Explorer / Edge (legacy)
CVE-2019-0676CVE from 2019, added in 2022
Microsoft Internet Explorer Information Disclosure Vulnerability
Added more than a year ago: ranked by severity.
- Added
- May 23, 2022
- CISA deadline
- 21 days
- CVSS severity
- 6.5 (medium)
Rank 367Microsoft Windows
CVE-2019-0703CVE from 2019, added in 2022
Microsoft Windows SMB Information Disclosure Vulnerability
Added more than a year ago: ranked by severity.
- Added
- May 23, 2022
- CISA deadline
- 21 days
- CVSS severity
- 6.5 (medium)
Rank 368Microsoft Office
CVE-2021-27059Microsoft Office Remote Code Execution Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Nov 3, 2021
- CISA deadline
- 14 days
- CVSS severity
- 6.5 (medium)
Rank 369Microsoft Windows
CVE-2022-26925Microsoft Windows LSA Spoofing Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Jul 1, 2022
- CISA deadline
- 21 days
- CVSS severity
- 5.9 (medium)
Rank 370Microsoft Windows
CVE-2025-24991Microsoft Windows NTFS Out-Of-Bounds Read Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Mar 11, 2025
- CISA deadline
- 21 days
- CVSS severity
- 5.5 (medium)
Rank 371Microsoft WordPad
CVE-2023-36563Microsoft WordPad Information Disclosure Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Oct 10, 2023
- CISA deadline
- 21 days
- CVSS severity
- 5.5 (medium)
Rank 372Microsoft Windows
CVE-2020-1464Microsoft Windows Spoofing Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Nov 3, 2021
- CISA deadline
- 181 days
- CVSS severity
- 5.5 (medium)
Rank 373Microsoft Windows
CVE-2021-31955Microsoft Windows Kernel Information Disclosure Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Nov 3, 2021
- CISA deadline
- 14 days
- CVSS severity
- 5.5 (medium)
Rank 374Microsoft Windows
CVE-2025-24054Microsoft Windows NTLM Hash Disclosure Spoofing Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Apr 17, 2025
- CISA deadline
- 21 days
- CVSS severity
- 5.4 (medium)
Rank 375Microsoft Windows
CVE-2024-38217Microsoft Windows Mark of the Web (MOTW) Protection Mechanism Failure Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Sep 10, 2024
- CISA deadline
- 21 days
- CVSS severity
- 5.4 (medium)
Rank 376Microsoft Windows
CVE-2023-36584Microsoft Windows Mark of the Web (MOTW) Security Feature Bypass Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Nov 16, 2023
- CISA deadline
- 21 days
- CVSS severity
- 5.4 (medium)
Rank 377Microsoft Defender
CVE-2022-44698Ransomware
Microsoft Defender SmartScreen Security Feature Bypass Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Dec 13, 2022
- CISA deadline
- 21 days
- CVSS severity
- 5.4 (medium)
Rank 378Microsoft Windows
CVE-2022-41049Microsoft Windows Mark of the Web (MOTW) Security Feature Bypass Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Nov 14, 2022
- CISA deadline
- 25 days
- CVSS severity
- 5.4 (medium)
Rank 379Microsoft Windows
CVE-2022-41091Ransomware
Microsoft Windows Mark of the Web (MOTW) Security Feature Bypass Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Nov 8, 2022
- CISA deadline
- 31 days
- CVSS severity
- 5.4 (medium)
Rank 380Microsoft Skype for Business / Lync
CVE-2023-41763Microsoft Skype for Business Privilege Escalation Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Oct 10, 2023
- CISA deadline
- 21 days
- CVSS severity
- 5.3 (medium)
Rank 381Microsoft Windows
CVE-2025-24984Microsoft Windows NTFS Information Disclosure Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Mar 11, 2025
- CISA deadline
- 21 days
- CVSS severity
- 4.6 (medium)
Rank 382Microsoft Windows
CVE-2023-24880Ransomware
Microsoft Windows SmartScreen Security Feature Bypass Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Mar 14, 2023
- CISA deadline
- 21 days
- CVSS severity
- 4.4 (medium)
Rank 383Microsoft Internet Explorer / Edge (legacy)
CVE-2016-0162CVE from 2016, added in 2022
Microsoft Internet Explorer Information Disclosure Vulnerability
Added more than a year ago: ranked by severity.
- Added
- May 24, 2022
- CISA deadline
- 21 days
- CVSS severity
- 4.3 (medium)
Rank 384Microsoft Internet Explorer / Edge (legacy)
CVE-2017-0059CVE from 2017, added in 2022
Microsoft Internet Explorer Information Disclosure Vulnerability
Added more than a year ago: ranked by severity.
- Added
- Mar 28, 2022
- CISA deadline
- 21 days
- CVSS severity
- 4.3 (medium)
End of life: remove
These Microsoft products are no longer supported: no patch is coming. Remove them or isolate them from the network.
Microsoft Internet Explorer / Edge (legacy)
CVE-2012-4792End of lifeCVE from 2012, added in 2024
Microsoft Internet Explorer Use-After-Free Vulnerability
End-of-life product: no patch is coming; remove or isolate it.
- Added
- Jul 23, 2024
- CISA deadline
- 21 days
- CVSS severity
- 8.8 (high)
Microsoft Internet Explorer / Edge (legacy)
CVE-2013-3163End of lifeCVE from 2013, added in 2023
Microsoft Internet Explorer Memory Corruption Vulnerability
End-of-life product: no patch is coming; remove or isolate it.
- Added
- Mar 30, 2023
- CISA deadline
- 21 days
- CVSS severity
- 8.8 (high)
Microsoft Silverlight
CVE-2013-0074RansomwareEnd of lifeCVE from 2013, added in 2022
Microsoft Silverlight Double Dereference Vulnerability
End-of-life product: no patch is coming; remove or isolate it.
- Added
- May 25, 2022
- CISA deadline
- 21 days
- CVSS severity
- 7.8 (high)
Microsoft Silverlight
CVE-2013-3896End of lifeCVE from 2013, added in 2022
Microsoft Silverlight Information Disclosure Vulnerability
End-of-life product: no patch is coming; remove or isolate it.
- Added
- May 25, 2022
- CISA deadline
- 21 days
- CVSS severity
- 5.5 (medium)
Microsoft Silverlight
CVE-2016-0034RansomwareEnd of lifeCVE from 2016, added in 2022
Microsoft Silverlight Runtime Remote Code Execution Vulnerability
End-of-life product: no patch is coming; remove or isolate it.
- Added
- May 25, 2022
- CISA deadline
- 21 days
- CVSS severity
- 8.8 (high)
Going further: Patch Tuesday and identity
Identity vulnerabilities
6 vulnerabilities in the list affect identity (Active Directory, Kerberos, Entra ID…): this kind of flaw often hands over the whole network.
Patch Tuesday
Microsoft releases its security updates every month on the second Tuesday (“Patch Tuesday”), and sometimes out of band. The page of each Microsoft vulnerability shows the patch date and the monthly release when Microsoft publishes them, with a link to the vulnerability’s page in its Security Update Guide.
Microsoft Edge and Chromium
Microsoft Edge is built on Chromium: Chromium (Google) vulnerabilities affect it too. See Google vulnerabilities (Chrome, Chromium).
Follow and verify
Get new Microsoft vulnerabilities: RSS feed (add it to Outlook, Teams, Slack or your feed reader).
Indicative classification, based on the vendor and product names given by CISA. How products are classified.