CVE-2026-34502 Apache Portable Runtime Utility: Heap buffer overflow in APR memcached client
Information published.
EPSS 0.01 CVE-2026-34502 Apache US
Information published.
EPSS 0.01 CVE-2026-34502 Apache US
Information published.
EPSS 0.01 CVE-2026-34501 Apache US
Information published.
EPSS 0.00 CVE-2026-34191 Apache US
Information published.
EPSS 0.00 CVE-2025-49506 Apache US
Information published.
EPSS 0.00 CVE-2026-47243 US
Information published.
EPSS 0.00 CVE-2026-64676 Kata Containers US
Information published.
EPSS 0.00 CVE-2026-50540 Kata Containers US
Information published.
EPSS 0.14 CVE-2025-62725 Docker US
Information published.
EPSS 0.01 CVE-2026-43871 Apache US
Information published.
EPSS 0.01 CVE-2026-55969 Apache US
Information published.
EPSS 0.00 CVE-2026-55995 open-iscsi US
Information published.
EPSS 0.00 CVE-2026-44944 open-iscsi US
Information published.
EPSS 0.00 CVE-2026-44943 US
Information published.
EPSS 0.00 CVE-2019-9924 Bash US
Information published.
EPSS 0.51 CVE-2010-4052 US
Information published.
EPSS 0.02 CVE-2018-6829 Libgcrypt US
Information published.
EPSS 0.00 CVE-2026-54332 GoPacket US
Information published.
EPSS 0.00 CVE-2026-6879 US
Information published.
EPSS 0.01 CVE-2018-1128 Ceph US
Information published.
EPSS 0.03 CVE-2018-5407 US
Improper verification of cryptographic signature in Microsoft 365 Admin Center allows an unauthorized attacker to elevate privileges over a network.
EPSS 0.01 CVE-2026-62873 Microsoft US
Missing authentication for critical function in Microsoft Planetary Computer Pro allows an unauthorized attacker to elevate privileges over a network.
EPSS 0.01 CVE-2026-63508 Microsoft US
Incorrect permission assignment for critical resource in Azure SQL Database allows an authorized attacker to elevate privileges locally.
EPSS 0.00 CVE-2026-63522 US
Insufficient verification of data authenticity in Azure Entra ID allows an authorized attacker to perform spoofing over a network.
EPSS 0.01 CVE-2026-62869 US
Deserialization of untrusted data in Azure Service Bus allows an authorized attacker to execute code over a network.
EPSS 0.01 CVE-2026-50515 telekomunikace US
Improper authentication in Azure SQL Database allows an unauthorized attacker to elevate privileges over a network.
EPSS 0.01 CVE-2026-56162 US
Missing authorization in Microsoft Teams allows an unauthorized attacker to elevate privileges over a network.
EPSS 0.01 CVE-2026-65667 Microsoft US
Missing authorization in Azure SRE Agent allows an authorized attacker to elevate privileges over a network.
EPSS 0.01 CVE-2026-62830 US
Improper access control in Azure Logic Apps allows an authorized attacker to disclose information over a network.
EPSS 0.00 CVE-2026-56161 US
Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an unauthorized attacker to perform spoofing over a network.
EPSS 0.01 CVE-2026-70332 Microsoft US
Exposed dangerous method or function in Azure Confidential Ledger allows an authorized attacker to execute code over a network.
EPSS 0.01 CVE-2026-68823 finance US
Improper limitation of a pathname to a restricted directory ('path traversal') in Application Insights Profiler allows an authorized attacker to elevate privileges over a network.
EPSS 0.01 CVE-2026-49163 US
'.../...//' in Microsoft Entra Provisioning Service (SyncFabric) allows an authorized attacker to elevate privileges over a network.
EPSS 0.01 CVE-2026-59115 Microsoft US
Improper verification of cryptographic signature in Microsoft Teams allows an unauthorized attacker to perform spoofing over a network.
EPSS 0.00 CVE-2026-62918 Microsoft US
Modification of assumed-immutable data (maid) in Azure Active Directory allows an authorized attacker to elevate privileges over a network.
EPSS 0.01 CVE-2026-50481 veřejná správa US
Missing authentication for critical function in Microsoft Azure Kubernetes Service allows an unauthorized attacker to elevate privileges over a network.
EPSS 0.01 CVE-2026-50516 Microsoft veřejná správa telekomunikace finance výroba a průmysl US
Improper access control in Microsoft Purview eDiscovery allows an authorized attacker to elevate privileges over a network.
EPSS 0.01 CVE-2026-65668 Microsoft US
Improper authentication in Microsoft Teams allows an authorized attacker to elevate privileges over a network.
EPSS 0.00 CVE-2026-62896 Microsoft US
Improper restriction of communication channel to intended endpoints in Azure SQL Managed Instance allows an unauthorized attacker to elevate privileges over a network.
EPSS 0.00 CVE-2026-62836 finance US
Improper authorization in Microsoft Power Apps allows an unauthorized attacker to elevate privileges over a network.
EPSS 0.00 CVE-2026-59118 Microsoft US
Improper access control in Azure Cosmos DB allows an unauthorized attacker to execute code over a network.
EPSS 0.01 CVE-2026-66803 US
Information published.
EPSS 0.00 CVE-2026-59677 US
Information published.
EPSS 0.00 CVE-2026-59676 US
Information published.
EPSS 0.00 CVE-2026-32597 PyJWT US
Information published.
EPSS 0.01 CVE-2026-8450 HTTP::Daemon US
Missing authorization in Azure DNS allows an unauthorized attacker to elevate privileges over a network.
EPSS 0.01 CVE-2026-58275 US
Improper access control in Azure App Service allows an unauthorized attacker to elevate privileges over a network.
EPSS 0.00 CVE-2026-58630 US
Improper authentication in Azure Key Vault allows an unauthorized attacker to elevate privileges over a network.
EPSS 0.01 CVE-2026-62825 US
Server-side request forgery (ssrf) in Data Quality allows an unauthorized attacker to elevate privileges over a network.
EPSS 0.00 CVE-2026-57106 US
Improper authentication in Microsoft Exchange Online allows an unauthorized attacker to perform tampering over a network.
EPSS 0.01 CVE-2026-56191 Microsoft US
Deserialization of untrusted data in M365 Copilot allows an authorized attacker to execute code over a network.
EPSS 0.01 CVE-2026-50517 Microsoft US
Exposure of sensitive information to an unauthorized actor in Microsoft Graph allows an authorized attacker to disclose information over a network.
EPSS 0.01 CVE-2026-49159 Microsoft US
Improper access control in Azure API Management (APIM) allows an authorized attacker to execute code over a network.
EPSS 0.01 CVE-2026-35425 US
Improper authorization in Azure Red Hat OpenShift (ARO) allows an authorized attacker to elevate privileges over a network.
EPSS 0.01 CVE-2026-56160 Red Hat US
Improper input validation in Microsoft Surface allows an authorized attacker to execute code over a network.
EPSS 0.01 CVE-2026-54120 Microsoft US
Heap-based buffer overflow in Microsoft Account allows an unauthorized attacker to execute code over a network.
EPSS 0.01 CVE-2026-56165 Microsoft US
Missing authentication for critical function in Microsoft Azure Kubernetes Service allows an unauthorized attacker to elevate privileges over a network.
EPSS 0.00 CVE-2026-56163 Microsoft US
Server-side request forgery (ssrf) in Azure AI Search allows an authorized attacker to elevate privileges over a network.
EPSS 0.00 CVE-2026-56167 US
Improper authorization in Online Services allows an unauthorized attacker to disclose information over a network.
EPSS 0.01 CVE-2026-62835 US
Information published.
EPSS 0.00 CVE-2026-15788 US