Vulnerabilities in Microsoft

10,822 results
CVE-2020-0898—An elevation of privilege vulnerability exists when the Windows Graphics Component improperly handles objects in memory, aka 'Windows GraphiEPSS 0.9%CVE-2020-0840—An elevation of privilege vulnerability exists when Windows improperly handles hard links, aka 'Windows Hard Link Elevation of Privilege VulEPSS 0.9%CVE-2020-0819—An elevation of privilege vulnerability exists when the Windows Device Setup Manager improperly handles file operations, aka 'Windows DeviceEPSS 0.9%CVE-2026-57993HIGHMicrosoft Edge (Chromium-based) Spoofing VulnerabilityEPSS 0.9%CVE-2026-45489MEDIUMMicrosoft Edge (Chromium-based) Spoofing VulnerabilityEPSS 0.9%CVE-2020-1254—An elevation of privilege vulnerability exists when Windows Modules Installer Service improperly handles class object members.A locally authEPSS 0.9%CVE-2026-58523MEDIUMMicrosoft Edge for Android Security Feature Bypass VulnerabilityEPSS 0.9%CVE-2026-69304MEDIUMASP.NET Core Denial of Service VulnerabilityEPSS 0.9%CVE-2020-1199—An elevation of privilege vulnerability exists when the Windows Feedback Hub improperly handles objects in memory, aka 'Windows Feedback HubEPSS 0.9%CVE-2020-0849—An elevation of privilege vulnerability exists when Windows improperly handles hard links, aka 'Windows Hard Link Elevation of Privilege VulEPSS 0.9%CVE-2020-0916—An elevation of privilege vulnerability exists in the way that the Windows Graphics Device Interface (GDI) handles objects in memory, aka 'WEPSS 0.9%CVE-2020-1197—An elevation of privilege vulnerability exists when Windows Error Reporting manager improperly handles a process crash, aka 'Windows Error REPSS 0.9%CVE-2021-38635MEDIUMWindows Redirected Drive Buffering SubSystem Driver Information Disclosure VulnerabilityEPSS 0.9%CVE-2022-24550HIGHWindows Telephony Server Elevation of Privilege VulnerabilityEPSS 0.9%CVE-2021-38637MEDIUMWindows Storage Information Disclosure VulnerabilityEPSS 0.9%CVE-2020-0915—An elevation of privilege vulnerability exists in the way that the Windows Graphics Device Interface (GDI) handles objects in memory, aka 'WEPSS 0.9%CVE-2020-0834—An elevation of privilege vulnerability exists when Windows improperly handles calls to Advanced Local Procedure Call (ALPC).An attacker whoEPSS 0.9%CVE-2021-38636MEDIUMWindows Redirected Drive Buffering SubSystem Driver Information Disclosure VulnerabilityEPSS 0.9%CVE-2026-54733CRITICALmoodle-local_o365: Authentication bypass via unverified JWT signature in Teams SSO endpointEPSS 0.9%CVE-2022-38012HIGHMicrosoft Edge (Chromium-based) Remote Code Execution VulnerabilityEPSS 0.9%