SEPTEMBER 18, 2026
Live Feed
Vulnerability Register

CVE Database

Synced from NVD, cross-referenced against CISA KEV and EPSS · ordered by last update

377,750 records on file
Page 230 of 12,592
CVE ID Score Description
Exploit 36m ago
4.7

The vulnerability, if exploited, could allow a miscreant to run arbitrary JavaScript code in a browser session of a PIMBoards user who was socially engineered to click on a malicious link.

Exploit 36m ago
5.3

The vulnerability, if exploited, could allow an unauthenticated miscreant to perform read operations intended only for PIMBoards users, resulting in information disclosure. Write operations are not impacted.

Exploit 36m ago
8.4

The vulnerability, if exploited, could allow a miscreant with read access to PIMBoards project files to reverse engineer PIMBoards users’ app-native passwords through computational brute-forcing of weak hashes, potentially allowing elevation to a PIMBoards administrator user.

Exploit 36m ago
8.4

The vulnerability, if exploited, could allow a miscreant with read access to PIMBoards project files to decrypt and view sensitive information.

36m ago
5.5

Access of resource using incompatible type ('type confusion') in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.

36m ago
5.5

Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.

36m ago
5.5

Buffer over-read in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.

36m ago
7.8

Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

36m ago
7.8

Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

36m ago
7.8

Stack-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

36m ago
5.5

Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.

36m ago
5.5

Exposure of sensitive system information to an unauthorized control sphere in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.

36m ago
5.5

Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.

36m ago
5.5

Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.

36m ago
5.5

Use of uninitialized resource in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.

36m ago
5.5

Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.

36m ago
7

Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

36m ago
7.8

Stack-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

36m ago
5.5

Exposure of sensitive system information to an unauthorized control sphere in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.

36m ago
7.8

Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

36m ago
8.8

Deserialization of untrusted data in Microsoft Office Publisher allows an unauthorized attacker to execute code over a network.

36m ago
7.4

Use of incorrectly-resolved name or reference in Visual Studio Code allows an unauthorized attacker to disclose information over a network.

36m ago
6.5

Insufficiently protected credentials in GitHub Copilot and Visual Studio Code allows an unauthorized attacker to disclose information over a network.

36m ago
5.3

Improper neutralization of special elements used in a command ('command injection') in GitHub Copilot and Visual Studio Code allows an unauthorized attacker to disclose information over a network.

36m ago
8.2

Not failing securely ('failing open') in Visual Studio Code allows an unauthorized attacker to bypass a security feature over a network.

36m ago
8.2

Interpretation conflict in Visual Studio Code allows an unauthorized attacker to bypass a security feature over a network.

36m ago
6.5

Improper limitation of a pathname to a restricted directory ('path traversal') in Visual Studio Code allows an unauthorized attacker to perform tampering over a network.

36m ago
9.6

Incomplete comparison with missing factors in Visual Studio Code allows an unauthorized attacker to bypass a security feature over a network.

36m ago
8.2

Server-side request forgery (ssrf) in Visual Studio Code allows an unauthorized attacker to bypass a security feature over a network.

36m ago
8.2

Inconsistent interpretation of http requests ('http request/response smuggling') in Visual Studio Code allows an unauthorized attacker to bypass a security feature over a network.