CVE-2026-24307 M365 Copilot Information Disclosure Vulnerability

Improper validation of specified type of input in M365 Copilot allows an unauthorized attacker to disclose information over a network.


CVE-2026-21227 Azure Logic Apps Elevation of Privilege Vulnerability

Improper limitation of a pathname to a restricted directory (‘path traversal’) in Azure Logic Apps allows an unauthorized attacker to elevate privileges over a network.


CVE-2026-21521 Word Copilot Information Disclosure Vulnerability

Improper neutralization of escape, meta, or control sequences in Copilot allows an unauthorized attacker to disclose information over a network.


CVE-2026-20848 Windows SMB Server Elevation of Privilege Vulnerability

Updated the build numbers. This is an informational update only.


CVE-2026-21221 Capability Access Management Service (camsvc) Elevation of Privilege Vulnerability

Updated the build numbers. This is an informational update only.


CVE-2026-20830 Capability Access Management Service (camsvc) Elevation of Privilege Vulnerability

Updated the build numbers. This is an informational update only.


CVE-2026-20943 Microsoft Office Click-To-Run Remote Code Execution Vulnerability

Updated FAQ information. This is an informational change only.


CVE-2026-20818 Windows Kernel Information Disclosure Vulnerability

Updated the build numbers. This is an informational update only.


Chromium: CVE-2026-0901 Inappropriate implementation in Blink

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2024 ) for more information.


Chromium: CVE-2026-0900 Inappropriate implementation in V8

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2024 ) for more information.


This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

AbuseIPDB Contributor Badge