Vulnerabilidades en microsoft

9322 resultados
Análisis Vexday

Microsoft apresenta 41 vulnerabilidades registradas, com 29 publicadas nos últimos 90 dias, indicando ritmo elevado de descobertas recentes. Oito vulnerabilidades críticas foram identificadas, predominantemente relacionadas a traversal de diretório (CWE-22), mas nenhuma está sob exploração ativa conhecida no momento. O volume recente de falhas requer atenção contínua em patching, especialmente considerando a superfície de ataque do ecossistema Microsoft.

CVE-2026-59864CRITICALKiota: Path/URL injection into generated Copilot plugin manifest via x-ai-* extensionsEPSS 1.3%CVE-2024-20689HIGHSecure Boot Security Feature Bypass VulnerabilityEPSS 1.3%CVE-2024-20688HIGHSecure Boot Security Feature Bypass VulnerabilityEPSS 1.3%CVE-2024-49127HIGHWindows Lightweight Directory Access Protocol (LDAP) Remote Code Execution VulnerabilityEPSS 1.3%CVE-2024-49126HIGHWindows Local Security Authority Subsystem Service (LSASS) Remote Code Execution VulnerabilityEPSS 1.3%CVE-2019-9510MEDIUMMicrosoft Windows RDP can bypass the Windows lock screenEPSS 1.3%CVE-2022-38000HIGHWindows Point-to-Point Tunneling Protocol Remote Code Execution VulnerabilityEPSS 1.3%CVE-2024-30082HIGHWin32k Elevation of Privilege VulnerabilityEPSS 1.3%CVE-2024-21390HIGHMicrosoft Authenticator Elevation of Privilege VulnerabilityEPSS 1.3%CVE-2023-33144MEDIUMVisual Studio Code Spoofing VulnerabilityEPSS 1.3%CVE-2019-1053MEDIUMWindows Shell Elevation of Privilege VulnerabilityEPSS 1.3%CVE-2021-34485MEDIUM.NET Core and Visual Studio Information Disclosure VulnerabilityEPSS 1.3%CVE-2024-38129HIGHWindows Kerberos Elevation of Privilege VulnerabilityEPSS 1.3%CVE-2024-37987HIGHSecure Boot Security Feature Bypass VulnerabilityEPSS 1.3%CVE-2024-38011HIGHSecure Boot Security Feature Bypass VulnerabilityEPSS 1.3%CVE-2024-37975HIGHSecure Boot Security Feature Bypass VulnerabilityEPSS 1.3%CVE-2026-26105HIGHMicrosoft SharePoint Server Spoofing VulnerabilityEPSS 1.3%CVE-2020-1296A vulnerability exists in the way the Windows Diagnostics & feedback settings app handles objects in memory, aka 'Windows Diagnostics & EPSS 1.3%CVE-2022-24495HIGHWindows Direct Show Remote Code Execution VulnerabilityEPSS 1.3%CVE-2019-1368A security feature bypass exists when Windows Secure Boot improperly restricts access to debugging functionality, aka 'Windows Secure Boot SEPSS 1.3%