VENDOR
Microsoft vulnerabilities: CVEs, exploitation and patches (page 3)
Every Microsoft CVE reviewed by Diras Labs analysts, newest first, with exploitation status and fixes.
- CVE-2026-70296 CRITICAL 9.8
-
CVE-2026-72950
Windows Routing and Remote Access Service remote code executionCRITICAL 9.8
- PATCH AVAILABLE
- CVE-2026-72979 CRITICAL 9.8
- CVE-2026-72982 CRITICAL 9.8
- CVE-2026-72983 CRITICAL 9.8
- CVE-2026-73009 CRITICAL 9.8
-
CVE-2026-73010
Windows 10 Version 1809 use-after-free remote code executionCRITICAL 9.8
- PATCH AVAILABLE
-
CVE-2026-73025
Windows iSCSI weak authentication network bypassCRITICAL 9.8
- PATCH AVAILABLE
-
CVE-2026-77493
Windows 10 Version 1607 double-free in Graphics Component allows remote code executionCRITICAL 9.8
- PATCH AVAILABLE
- CVE-2026-78445 CRITICAL 9.8
-
CVE-2026-69399
Azure ARC elevation of privilege via networkCRITICAL 9.8
- PATCH AVAILABLE
-
CVE-2026-70009
Azure ARC path traversal privilege elevationCRITICAL 9.8
- PATCH AVAILABLE
- CVE-2026-70200 CRITICAL 9.8
-
CVE-2026-85889
Azure AI Foundry missing authentication privilege elevationCRITICAL 9.8
- PATCH AVAILABLE
- CVE-2026-57983 CRITICAL 10
-
CVE-2026-56163
Azure Kubernetes Service missing authentication allows pre-auth privilege escalationCRITICAL 10
- PATCH AVAILABLE
- CVE-2026-66803 CRITICAL 10
-
CVE-2026-56162
Azure SQL Database improper authentication privilege elevationCRITICAL 10
- PATCH AVAILABLE
- CVE-2026-62836 CRITICAL 10
-
CVE-2026-65667
Microsoft Teams missing authorization privilege elevationCRITICAL 10
- PATCH AVAILABLE
No CVEs on this page match the filters.
20 CVEs · page 3 of 5