microsoft
3,712 known vulnerabilities affecting microsoft products.
Products
windows_server_2019 1452
windows_server_2016 1310
windows_server_2022 1272
windows_server_2025 1131
windows_10_1809 1131
windows_11_24h2 1111
windows_11_25h2 1081
windows_10_22h2 1066
windows_10_21h2 1061
windows_11_26h1 1009
windows 990
windows_10_1607 980
windows_server_2012 977
windows_11_23h2 761
windows_10 343
windows_server_2008 326
365_apps 277
office_2021 225
office_2024 225
office_2019 217
windows_8.1 192
microsoft_365 185
windows_rt_8.1 170
windows_7 169
Vulnerabilities by priority
| CVE | Priority | EPSS | CVSS | KEV | What |
|---|---|---|---|---|---|
| CVE-2026-5919 | Low | 0.2% | 6.5 | Insufficient validation of untrusted input in WebSockets in Google Chrome prior … | |
| CVE-2026-11199 | Low | 0.2% | 5.9 | Inappropriate implementation in WebRTC in Google Chrome prior to 149.0.7827.53 a… | |
| CVE-2026-11257 | Low | 0.2% | 4.3 | Inappropriate implementation in Browser in Google Chrome prior to 149.0.7827.53 … | |
| CVE-2026-5875 | Low | 0.2% | 4.3 | Policy bypass in Blink in Google Chrome prior to 147.0.7727.55 allowed a remote … | |
| CVE-2026-5887 | Low | 0.2% | 4.3 | Insufficient validation of untrusted input in Downloads in Google Chrome on Wind… | |
| CVE-2026-11106 | Low | 0.2% | 6.5 | Inappropriate implementation in Media in Google Chrome prior to 149.0.7827.53 al… | |
| CVE-2026-11240 | Low | 0.2% | 3.1 | Insufficient validation of untrusted input in Loader in Google Chrome prior to 1… | |
| CVE-2026-11249 | Low | 0.2% | 4.7 | Use after free in Network in Google Chrome prior to 149.0.7827.53 allowed a remo… | |
| CVE-2026-11251 | Low | 0.2% | 3.1 | Insufficient policy enforcement in Password Manager in Google Chrome prior to 14… | |
| CVE-2026-11292 | Low | 0.2% | 4.3 | Insufficient policy enforcement in Blink in Google Chrome prior to 149.0.7827.53… | |
| CVE-2026-81978 | Low | 0.2% | 5.5 | Acrobat Reader is affected by an out-of-bounds read vulnerability that could lea… | |
| CVE-2026-81982 | Low | 0.2% | 5.5 | Acrobat Reader is affected by an out-of-bounds read vulnerability that could lea… | |
| CVE-2026-11210 | Low | 0.2% | 6.5 | Inappropriate implementation in Safe Browsing in Google Chrome prior to 149.0.78… | |
| CVE-2026-47926 | Low | 0.2% | 5.5 | Acrobat Reader versions 24.001.30365, 26.001.21651 and earlier are affected by a… | |
| CVE-2026-5905 | Low | 0.2% | 6.5 | Incorrect security UI in Permissions in Google Chrome on Windows prior to 147.0.… | |
| CVE-2026-87653 | Low | 0.2% | 5.4 | UI misrepresentation in FullScreen in Google Chrome on on Windows prior to 153.0… | |
| CVE-2026-11194 | Low | 0.2% | 6.5 | Inappropriate implementation in Network in Google Chrome prior to 149.0.7827.53 … | |
| CVE-2026-11259 | Low | 0.2% | 4.3 | Insufficient validation of untrusted input in Cast in Google Chrome prior to 149… | |
| CVE-2026-11260 | Low | 0.2% | 4.3 | Inappropriate implementation in Permissions in Google Chrome prior to 149.0.7827… | |
| CVE-2026-11264 | Low | 0.2% | 4.3 | Policy bypass in Content Security Policy in Google Chrome prior to 149.0.7827.53… | |
| CVE-2026-11628 | Low | 0.2% | 6.8 | Use after free in Ozone in Google Chrome prior to 149.0.7827.103 allowed a local… | |
| CVE-2026-80162 | Low | 0.2% | 5.5 | Acrobat Reader is affected by a Use After Free vulnerability that could lead to … | |
| CVE-2026-81984 | Low | 0.2% | 5.5 | Acrobat Reader is affected by a Use After Free vulnerability that could lead to … | |
| CVE-2026-5890 | Low | 0.2% | 5.3 | Race in WebCodecs in Google Chrome prior to 147.0.7727.55 allowed a remote attac… | |
| CVE-2026-34703 | Low | 0.2% | 5.5 | InDesign Desktop versions 21.3, 20.5.3 and earlier are affected by a NULL Pointe… | |
| CVE-2026-11701 | Low | 0.2% | 5.4 | Inappropriate implementation in Guest View in Google Chrome prior to 149.0.7827.… | |
| CVE-2026-34657 | Low | 0.2% | 5.5 | CAI Content Credentials versions c2pa-web@0.7.1, c2pa-v0.80.1 and earlier are af… | |
| CVE-2026-11233 | Low | 0.2% | 4.7 | Insufficient policy enforcement in FoldableAPIs in Google Chrome prior to 149.0.… | |
| CVE-2026-11234 | Low | 0.2% | 4.3 | Inappropriate implementation in FoldableAPIs in Google Chrome prior to 149.0.782… | |
| CVE-2026-11678 | Low | 0.2% | 5.3 | Integer overflow in libyuv in Google Chrome prior to 149.0.7827.103 allowed a re… | |
| CVE-2026-11695 | Low | 0.2% | 4.3 | Inappropriate implementation in Passwords in Google Chrome prior to 149.0.7827.1… | |
| CVE-2026-11032 | Low | 0.2% | 6.5 | Inappropriate implementation in Password Manager in Google Chrome prior to 149.0… | |
| CVE-2026-11083 | Low | 0.2% | 6.5 | Inappropriate implementation in Password Manager in Google Chrome prior to 149.0… | |
| CVE-2026-11084 | Low | 0.2% | 6.5 | Inappropriate implementation in Password Manager in Google Chrome prior to 149.0… | |
| CVE-2026-11129 | Low | 0.2% | 6.5 | Inappropriate implementation in Extensions in Google Chrome prior to 149.0.7827.… | |
| CVE-2026-11134 | Low | 0.2% | 6.5 | Inappropriate implementation in Media in Google Chrome prior to 149.0.7827.53 al… | |
| CVE-2026-11139 | Low | 0.2% | 6.5 | Inappropriate implementation in Paint in Google Chrome prior to 149.0.7827.53 al… | |
| CVE-2026-11176 | Low | 0.2% | 6.5 | Inappropriate implementation in Media in Google Chrome prior to 149.0.7827.53 al… | |
| CVE-2026-11192 | Low | 0.2% | 4.3 | Insufficient validation of untrusted input in Password Manager in Google Chrome … | |
| CVE-2026-11200 | Low | 0.2% | 6.5 | Inappropriate implementation in WebRTC in Google Chrome prior to 149.0.7827.53 a… | |
| CVE-2026-11220 | Low | 0.2% | 6.5 | Insufficient validation of untrusted input in Navigation in Google Chrome prior … | |
| CVE-2026-11223 | Low | 0.2% | 6.5 | Insufficient validation of untrusted input in Network in Google Chrome prior to … | |
| CVE-2026-11245 | Low | 0.2% | 4.3 | Inappropriate implementation in Payments in Google Chrome prior to 149.0.7827.53… | |
| CVE-2026-11254 | Low | 0.2% | 4.3 | Inappropriate implementation in Permissions in Google Chrome prior to 149.0.7827… | |
| CVE-2026-11261 | Low | 0.2% | 4.3 | Inappropriate implementation in PDF in Google Chrome prior to 149.0.7827.53 allo… | |
| CVE-2026-11252 | Low | 0.2% | 4.3 | Insufficient policy enforcement in Content Settings in Google Chrome prior to 14… | |
| CVE-2026-80160 | Low | 0.2% | 5.5 | Acrobat Reader is affected by an out-of-bounds read vulnerability that could lea… | |
| CVE-2026-34663 | Low | 0.2% | 5.5 | Illustrator versions 29.8.6, 30.3 and earlier are affected by an out-of-bounds r… | |
| CVE-2026-79910 | Low | 0.2% | 5.5 | Acrobat Reader is affected by an out-of-bounds read vulnerability that could lea… | |
| CVE-2026-81977 | Low | 0.2% | 5.5 | Acrobat Reader is affected by an Integer Underflow (Wrap or Wraparound) vulnerab… |