SEPTEMBER 20, 2026
Live Feed
Vulnerability Register

CVE Database

Synced from NVD, cross-referenced against CISA KEV and EPSS · ordered by last update

169,836 records on file
Page 328 of 5,662
CVE ID Score Description
1mo ago
5.4

Improper access control in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.

1mo ago
6.1

Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.

1mo ago
6.3

Improper neutralization of special elements used in a command ('command injection') in Outlook Copilot allows an authorized attacker to perform tampering over a network.

1mo ago
5.5

Numeric truncation error in Microsoft Office Word allows an unauthorized attacker to disclose information locally.

1mo ago
5.5

Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally.

1mo ago
5.5

Untrusted pointer dereference in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.

1mo ago
4.6

Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.

1mo ago
5.5

Improper validation of specified type of input in Microsoft Office Word allows an unauthorized attacker to disclose information locally.

1mo ago
5.5

Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally.

1mo ago
5.5

Integer overflow or wraparound in Microsoft Office allows an unauthorized attacker to disclose information locally.

1mo ago
6.5

Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information over a network.

1mo ago
6.5

Server-side request forgery (ssrf) in Microsoft Office SharePoint allows an authorized attacker to disclose information over a network.

1mo ago
5.5

Out-of-bounds read in Microsoft Office Word allows an unauthorized attacker to disclose information locally.

1mo ago
5.5

Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally.

1mo ago
5.5

Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.

1mo ago
5.5

Use of uninitialized resource in Microsoft Office allows an unauthorized attacker to disclose information locally.

1mo ago
5.5

Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally.

1mo ago
4.6

Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.

1mo ago
5.5

Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally.

1mo ago
5.5

Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally.

1mo ago
6.2

Integer overflow or wraparound in Microsoft Office allows an unauthorized attacker to disclose information locally.

1mo ago
5.5

Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally.

1mo ago
4.6

Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.

1mo ago
4.6

Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.

1mo ago
4.6

Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.

1mo ago
6.5

Out-of-bounds read in Windows RDP allows an unauthorized attacker to disclose information over a network.

1mo ago
6.5

Access of resource using incompatible type ('type confusion') in SQL Server allows an authorized attacker to disclose information over a network.

1mo ago
5.5

Use of uninitialized resource in Windows SMB allows an authorized attacker to disclose information locally.

1mo ago
4.8

Improper neutralization of input during web page generation ('cross-site scripting') in Active Directory Federation Services (AD FS) allows an authorized attacker to perform spoofing over a network.

1mo ago
5.5

Exposure of sensitive information to an unauthorized actor in Windows Cryptographic Services allows an authorized attacker to disclose information locally.