Vulnerabilities in microsoft

9,312 results
Vexday analysis

Microsoft apresenta 41 vulnerabilidades registradas, com 29 publicadas nos últimos 90 dias, indicando ritmo elevado de descobertas recentes. Oito vulnerabilidades críticas foram identificadas, predominantemente relacionadas a traversal de diretório (CWE-22), mas nenhuma está sob exploração ativa conhecida no momento. O volume recente de falhas requer atenção contínua em patching, especialmente considerando a superfície de ataque do ecossistema Microsoft.

CVE-2023-21806HIGHPower BI Report Server Spoofing VulnerabilityEPSS 0.8%CVE-2024-29063HIGHAzure AI Search Information Disclosure VulnerabilityEPSS 0.8%CVE-2020-1434An elevation of privilege vulnerability exists in the way that the Windows Sync Host Service handles objects in memory, aka 'Windows Sync HoEPSS 0.8%CVE-2022-33631HIGHMicrosoft Excel Security Feature Bypass VulnerabilityEPSS 0.8%CVE-2022-41119HIGHVisual Studio Remote Code Execution VulnerabilityEPSS 0.8%CVE-2026-20951HIGHMicrosoft SharePoint Server Remote Code Execution VulnerabilityEPSS 0.8%CVE-2025-30389HIGHAzure Bot Framework SDK Elevation of Privilege VulnerabilityEPSS 0.8%CVE-2023-32022HIGHWindows Server Service Security Feature Bypass VulnerabilityEPSS 0.8%CVE-2025-62452HIGHWindows Routing and Remote Access Service (RRAS) Remote Code Execution VulnerabilityEPSS 0.8%CVE-2024-26238HIGHMicrosoft PLUGScheduler Scheduled Task Elevation of Privilege VulnerabilityEPSS 0.8%CVE-2023-38187MEDIUMMicrosoft Edge (Chromium-based) Elevation of Privilege VulnerabilityEPSS 0.8%CVE-2025-60715HIGHWindows Routing and Remote Access Service (RRAS) Remote Code Execution VulnerabilityEPSS 0.8%CVE-2019-1007HIGHWindows Audio Service Elevation of Privilege VulnerabilityEPSS 0.8%CVE-2022-21864HIGHWindows UI Immersive Server API Elevation of Privilege VulnerabilityEPSS 0.8%CVE-2021-1709HIGHWindows Win32k Elevation of Privilege VulnerabilityEPSS 0.8%CVE-2022-21860HIGHWindows AppContracts API Server Elevation of Privilege VulnerabilityEPSS 0.8%CVE-2020-17012HIGHWindows Bind Filter Driver Elevation of Privilege VulnerabilityEPSS 0.8%CVE-2022-21865HIGHConnected Devices Platform Service Elevation of Privilege VulnerabilityEPSS 0.8%CVE-2025-59249HIGHMicrosoft Exchange Server Elevation of Privilege VulnerabilityEPSS 0.8%CVE-2021-26442HIGHWindows HTTP.sys Elevation of Privilege VulnerabilityEPSS 0.8%