CVE-2026-59831 GitHub CLI `gh codespace jupyter` could allow remote code execution when connecting to a malicious Codespace Microsoft Security 16 Juli 2026 om 10:39 Information published.
CVE-2026-50341 Windows NTFS Information Disclosure Vulnerability Microsoft Security 15 Juli 2026 om 16:00 Updated acknowledgment. This is an informational change only.
CVE-2026-45637 Microsoft DWM Core Library Elevation of Privilege Vulnerability Microsoft Security 15 Juli 2026 om 16:00 Updated acknowledgment. This is an informational change only.
CVE-2026-56182 Windows NTFS Elevation of Privilege Vulnerability Microsoft Security 15 Juli 2026 om 16:00 Updated acknowledgment. This is an informational change only.
CVE-2026-50375 DirectX Graphics Kernel Elevation of Privilege Vulnerability Microsoft Security 15 Juli 2026 om 16:00 Updated acknowledgment. This is an informational change only.
CVE-2026-58644 Microsoft SharePoint Remote Code Execution Vulnerability Microsoft Security 15 Juli 2026 om 16:00 Corrected the Exploitability Index, Exploited flag and CVSS vector which was incorrect at the time of publication on 7/14/2026. This is an informational change only.
CVE-2026-58253 NATS Server: Route API Auth Bypass Microsoft Security 15 Juli 2026 om 10:41 Information published.
CVE-2026-58209 NATS Server: MQTT retained and QoS replay bypass subscribe deny filters Microsoft Security 15 Juli 2026 om 10:41 Information published.
CVE-2026-58252 NATS Server: Subscribe Authz Bypass via Wildcard-Overlap Microsoft Security 15 Juli 2026 om 10:41 Information published.
CVE-2026-58250 NATS Server: Pre-auth server crash via double INFO in leafnode handshake Microsoft Security 15 Juli 2026 om 10:41 Information published.
CVE-2026-58208 NATS Server: MQTT-over-WebSocket Path Can Crash WebSocket-Only JetStream Servers Before MQTT Is Enabled Microsoft Security 15 Juli 2026 om 10:41 Information published.
CVE-2026-58251 NATS Server: Queue Subscribe Authz Bypass Microsoft Security 15 Juli 2026 om 10:40 Information published.
CVE-2026-58207 NATS Server: Remote crash via integer overflow in Connz pagination Microsoft Security 15 Juli 2026 om 10:40 Information published.
CVE-2026-56288 NULL Pointer Dereference in GNU patch Microsoft Security 15 Juli 2026 om 10:40 Information published.
CVE-2026-56289 Loop with Unreachable Exit Condition in GNU patch Microsoft Security 15 Juli 2026 om 10:40 Information published.
CVE-2026-43966 HTTP Response Splitting via Non-VCHAR Bytes in cow_http_struct_hd:escape_string/2 Microsoft Security 15 Juli 2026 om 10:39 Information published.
CVE-2026-44839 RabbitMQ: Unsanitized vhost names allow for XSS in management UI Microsoft Security 15 Juli 2026 om 10:39 Information published.
CVE-2025-44904 hdf5 v1.14.6 was discovered to contain a heap buffer overflow via the H5VM_memcpyvv function. Microsoft Security 15 Juli 2026 om 10:39 Information published.
CVE-2026-15308 Incremental HTMLParser feed() allows CPU-exhaustion DoS via repeated unterminated markup declarations Microsoft Security 15 Juli 2026 om 10:03 Information published.
CVE-2026-57215 RabbitMQ: Direct-reply-to binding persistence can lead to unauthorized reply-channel injection and persistent phantom Microsoft Security 15 Juli 2026 om 10:03 Information published.
CVE-2026-57211 RabbitMQ: UNC SSRF affecting the management UI on Windows Microsoft Security 15 Juli 2026 om 10:03 Information published.
CVE-2026-57216 RabbitMQ: AMQP 1.0, AMQP 0-9-1, Stream Protocol loopback enforcement can lead to remote guest sessions due to listener-address loopback checks Microsoft Security 15 Juli 2026 om 10:02 Information published.
CVE-2026-57213 RabbitMQ: Stored XSS federation management plugin via unsanitized consumer_tag rendering Microsoft Security 15 Juli 2026 om 10:02 Information published.
CVE-2026-57217 RabbitMQ: Topic authorization can lead to cross-tenant routing-key bypass Microsoft Security 15 Juli 2026 om 10:02 Information published.
CVE-2026-57220 RabbitMQ: Stream listener does not enforce configured frame-size limit during authentication, permitting unauth'd mem-exhaust DoS Microsoft Security 15 Juli 2026 om 10:02 Information published.
CVE-2026-57219 RabbitMQ: Unauthenticated disclosure of OAuth client credentials via an HTTP API endpoint with certain less common OAuth 2 configurations Microsoft Security 15 Juli 2026 om 10:02 Information published.
CVE-2026-59831 GitHub CLI `gh codespace jupyter` could allow remote code execution when connecting to a malicious Codespace Microsoft Security 15 Juli 2026 om 10:02 Information published.
CVE-2026-15028 Libarchive: heap overflow oob read while parsing a tar archive contains a pax extended header Microsoft Security 15 Juli 2026 om 10:02 Information published.
CVE-2026-59875 node-tar: Uncaught Exception DoS via NUL byte in PAX path/linkpath records Microsoft Security 15 Juli 2026 om 10:01 Information published.
CVE-2026-42505 Invoking Encrypted Client Hello privacy leak in crypto/tls Microsoft Security 15 Juli 2026 om 10:01 Information published.