Количество 376 173
Количество 376 173
CVE-2026-62897
Integer overflow or wraparound in .NET Framework allows an unauthorized attacker to execute code locally.
CVE-2026-62896
Improper authentication in Microsoft Teams allows an authorized attacker to elevate privileges over a network.
CVE-2026-62894
Heap-based buffer overflow in Windows DWM Core Library allows an authorized attacker to elevate privileges locally.
CVE-2026-62893
Use after free in Windows Deployment Services allows an unauthorized attacker to execute code over a network.
CVE-2026-62892
Use after free in Capability Access Management Service (camsvc) allows an authorized attacker to elevate privileges locally.
CVE-2026-62890
Heap-based buffer overflow in Windows GDI+ allows an authorized attacker to execute code locally.
CVE-2026-62889
Double free in Windows Secure Socket Tunneling Protocol (SSTP) allows an unauthorized attacker to execute code over a network.
CVE-2026-62888
Use after free in Windows DWM Core Library allows an authorized attacker to elevate privileges locally.
CVE-2026-62887
Out-of-bounds read in Windows NTFS allows an authorized attacker to disclose information locally.
CVE-2026-62886
Integer overflow or wraparound in .NET allows an unauthorized attacker to elevate privileges locally.
CVE-2026-62885
Heap-based buffer overflow in Windows Win32K allows an authorized attacker to elevate privileges locally.
CVE-2026-62883
Numeric truncation error in Windows DNS allows an authorized attacker to elevate privileges locally.
CVE-2026-62882
Insufficiently protected credentials in Microsoft Office Outlook allows an unauthorized attacker to perform spoofing over a network.
CVE-2026-62881
Numeric truncation error in Windows DNS allows an authorized attacker to elevate privileges locally.
CVE-2026-62880
Out-of-bounds read in Windows NTFS allows an authorized attacker to elevate privileges locally.
CVE-2026-6287
The ShopLentor - WooCommerce Builder for Elementor & Gutenberg plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'blockUniqId' block attribute in multiple Product Gride blocks in versions up to, and including, 3.3.8 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.
CVE-2026-62878
Stack-based buffer overflow in Windows DNS allows an unauthorized attacker to execute code over a network.
CVE-2026-62877
Stack-based buffer overflow in Windows Win32K allows an authorized attacker to elevate privileges locally.
CVE-2026-62876
Out-of-bounds read in Windows Win32K allows an authorized attacker to elevate privileges locally.
CVE-2026-62873
Improper verification of cryptographic signature in Microsoft 365 Admin Center allows an unauthorized attacker to elevate privileges over a network.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-62897 Integer overflow or wraparound in .NET Framework allows an unauthorized attacker to execute code locally. | CVSS3: 7 | 0% Низкий | 2 дня назад | |
CVE-2026-62896 Improper authentication in Microsoft Teams allows an authorized attacker to elevate privileges over a network. | CVSS3: 9.6 | 0% Низкий | 7 дней назад | |
CVE-2026-62894 Heap-based buffer overflow in Windows DWM Core Library allows an authorized attacker to elevate privileges locally. | CVSS3: 7.8 | 0% Низкий | 2 дня назад | |
CVE-2026-62893 Use after free in Windows Deployment Services allows an unauthorized attacker to execute code over a network. | CVSS3: 9.8 | 2% Низкий | 2 дня назад | |
CVE-2026-62892 Use after free in Capability Access Management Service (camsvc) allows an authorized attacker to elevate privileges locally. | CVSS3: 7 | 0% Низкий | 2 дня назад | |
CVE-2026-62890 Heap-based buffer overflow in Windows GDI+ allows an authorized attacker to execute code locally. | CVSS3: 7.8 | 0% Низкий | 2 дня назад | |
CVE-2026-62889 Double free in Windows Secure Socket Tunneling Protocol (SSTP) allows an unauthorized attacker to execute code over a network. | CVSS3: 8.1 | 1% Низкий | 2 дня назад | |
CVE-2026-62888 Use after free in Windows DWM Core Library allows an authorized attacker to elevate privileges locally. | CVSS3: 7.8 | 2% Низкий | 2 дня назад | |
CVE-2026-62887 Out-of-bounds read in Windows NTFS allows an authorized attacker to disclose information locally. | CVSS3: 5.5 | 0% Низкий | 2 дня назад | |
CVE-2026-62886 Integer overflow or wraparound in .NET allows an unauthorized attacker to elevate privileges locally. | CVSS3: 7.8 | 0% Низкий | 2 дня назад | |
CVE-2026-62885 Heap-based buffer overflow in Windows Win32K allows an authorized attacker to elevate privileges locally. | CVSS3: 7.8 | 0% Низкий | 2 дня назад | |
CVE-2026-62883 Numeric truncation error in Windows DNS allows an authorized attacker to elevate privileges locally. | CVSS3: 6.7 | 0% Низкий | 2 дня назад | |
CVE-2026-62882 Insufficiently protected credentials in Microsoft Office Outlook allows an unauthorized attacker to perform spoofing over a network. | CVSS3: 4.3 | 1% Низкий | 2 дня назад | |
CVE-2026-62881 Numeric truncation error in Windows DNS allows an authorized attacker to elevate privileges locally. | CVSS3: 6.7 | 0% Низкий | 2 дня назад | |
CVE-2026-62880 Out-of-bounds read in Windows NTFS allows an authorized attacker to elevate privileges locally. | CVSS3: 7.8 | 0% Низкий | 2 дня назад | |
CVE-2026-6287 The ShopLentor - WooCommerce Builder for Elementor & Gutenberg plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'blockUniqId' block attribute in multiple Product Gride blocks in versions up to, and including, 3.3.8 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page. | CVSS3: 5.4 | 0% Низкий | 3 месяца назад | |
CVE-2026-62878 Stack-based buffer overflow in Windows DNS allows an unauthorized attacker to execute code over a network. | CVSS3: 9.8 | 1% Низкий | 2 дня назад | |
CVE-2026-62877 Stack-based buffer overflow in Windows Win32K allows an authorized attacker to elevate privileges locally. | CVSS3: 7.8 | 0% Низкий | 2 дня назад | |
CVE-2026-62876 Out-of-bounds read in Windows Win32K allows an authorized attacker to elevate privileges locally. | CVSS3: 7.8 | 0% Низкий | 2 дня назад | |
CVE-2026-62873 Improper verification of cryptographic signature in Microsoft 365 Admin Center allows an unauthorized attacker to elevate privileges over a network. | CVSS3: 9.8 | 0% Низкий | 7 дней назад |
Уязвимостей на страницу