Skip to content
VulniPulse

Complete feed

Security advisories & CVEs

1354 advisories across 32 monitored vendors.

Home overview

Android app · Google Play

Take your CVE monitoring with you.

Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 32 official vendor sources and 160+ reviewed platform categories.

Medium5.5Vendor: HighMS Server

Medium [CVE-2026-57083] Windows Media Photo Codec Information Disclosure Vulnerability

Windows Media Photo Codec Information Disclosure Vulnerability Affected products named by the advisory: Windows Server 2019; Windows Server 2022; Windows Server 2025; Windows Server 2016; and 2 more. Affected products named by the advisory: Windows Server 2012 R2.

CVE-2026-57083
Windows Server
Jul 14, 2026
Medium5.5Vendor: HighMS Server

Medium [CVE-2026-57085] Windows Print Spooler Information Disclosure Vulnerability

Windows Print Spooler Information Disclosure Vulnerability Affected products named by the advisory: Windows Server 2019; Windows Server 2022; Windows Server 2025; Windows Server 2016; and 2 more. Affected products named by the advisory: Windows Server 2012 R2.

CVE-2026-57085
Windows Server
Jul 14, 2026
Medium6.8Vendor: HighMS Server

Medium [CVE-2026-58528] Windows USB Audio Class Driver Information Disclosure Vulnerability

Windows USB Audio Class Driver Information Disclosure Vulnerability Affected products named by the advisory: Windows Server 2019; Windows Server 2022; Windows Server 2025.

CVE-2026-58528
Windows Server
Jul 14, 2026
Medium5.5Vendor: HighMS Server

Medium [CVE-2026-58547] Windows Universal Plug and Play (UPnP) Device Host Elevation of Privilege Vulnerability

Windows Universal Plug and Play (UPnP) Device Host Elevation of Privilege Vulnerability Affected products named by the advisory: Windows Server 2019; Windows Server 2022; Windows Server 2025.

CVE-2026-58547
Windows Server
Jul 14, 2026
Medium6.0Vendor: HighMS Server

Medium [CVE-2026-58638] Windows Boot Loader Security Feature Bypass Vulnerability

Windows Boot Loader Security Feature Bypass Vulnerability Affected products named by the advisory: Windows Server 2019; Windows Server 2022; Windows Server 2025; Windows Server 2016; and 2 more. Affected products named by the advisory: Windows Server 2012 R2.

CVE-2026-58638
Windows Server
Jul 14, 2026
Medium6.5Vendor: HighMS Server

Medium [CVE-2026-50659] .NET Spoofing Vulnerability

.NET Spoofing Vulnerability Affected products named by the advisory: Microsoft.NET Framework 4.8 on Windows Server 2016; Microsoft.NET Framework 4.8 on Windows Server 2012; Microsoft.NET Framework 4.8 on Windows Server 2012 R2; Microsoft.NET Framework 3.5 AND 4.8 on Windows Server 2019; and 4 more. Affected products named by the advisory: Microsoft .NET Framework 3.5 AND 4.8 on Windows Server 2022; Microsoft .NET Framework 3.5 AND 4.7.2 on Windows Server 2019; Microsoft .NET Framework 3.5 AND 4.7.2 on Windows Server 2016; Microsoft .NET Framework 4.6.2/4.7/4.7.1/4.7.2 on Windows Server 2012.

CVE-2026-50659
Windows Server
Jul 14, 2026
Critical9.6MS Server

Critical [CVE-2026-48582] Microsoft Exchange Online Elevation of Privilege Vulnerability

Missing authorization in Microsoft Exchange Online allows an authorized attacker to elevate privileges over a network.

CVE-2026-48582
Exchange Server
Jun 19, 2026
Critical10.0MS Server

Critical [CVE-2026-45480] Azure Active Directory Elevation of Privilege Vulnerability

Improper authentication in Azure Active Directory allows an unauthorized attacker to elevate privileges over a network.

CVE-2026-45480
Windows Server
Jun 19, 2026
Critical9.8MS Server

Critical [CVE-2026-45657] Windows Kernel Remote Code Execution Vulnerability

Windows Kernel Remote Code Execution Vulnerability Affected products named by the advisory: Windows Server 2022; Windows Server 2025.

CVE-2026-45657
Windows Server
Jun 9, 2026
Critical9.8MS Server

Critical [CVE-2026-47291] HTTP.sys Remote Code Execution Vulnerability

HTTP.sys Remote Code Execution Vulnerability Affected products named by the advisory: Windows Server 2019; Windows Server 2022; Windows Server 2025; Windows Server 2016; and 2 more. Affected products named by the advisory: Windows Server 2012 R2.

CVE-2026-47291
Windows Server
Jun 9, 2026
Critical9.1Vendor: HighMS Server

Critical [CVE-2026-45602] Windows Dynamic Host Configuration Protocol (DHCP) Tampering Vulnerability

Windows Dynamic Host Configuration Protocol (DHCP) Tampering Vulnerability Affected products named by the advisory: Windows Server 2019; Windows Server 2022; Windows Server 2025; Windows Server 2016; and 2 more. Affected products named by the advisory: Windows Server 2012 R2.

CVE-2026-45602
Windows Server
Jun 9, 2026
Critical9.6Vendor: HighMS Server

Critical [CVE-2026-42904] Windows TCP/IP Elevation of Privilege Vulnerability

Windows TCP/IP Elevation of Privilege Vulnerability Affected products named by the advisory: Windows Server 2022; Windows Server 2025.

CVE-2026-42904
Windows Server
Jun 9, 2026
Critical9.8MS Server

Critical [CVE-2026-44815] DHCP Client Service Remote Code Execution Vulnerability

DHCP Client Service Remote Code Execution Vulnerability Affected products named by the advisory: Windows Server 2019; Windows Server 2022; Windows Server 2025; Windows Server 2016; and 2 more. Affected products named by the advisory: Windows Server 2012 R2.

CVE-2026-44815
Windows Server
Jun 9, 2026
High8.4Vendor: CriticalMS Server

High [CVE-2026-45458] Microsoft Outlook and Word Remote Code Execution Vulnerability

Use after free in Microsoft Office allows an unauthorized attacker to execute code locally. Affected products named by the advisory: Microsoft SharePoint Enterprise Server 2016; Microsoft SharePoint Server 2019; Microsoft SharePoint Server Subscription Edition.

CVE-2026-45458
SharePoint Server
Jun 9, 2026
High8.4Vendor: CriticalMS Server

High [CVE-2026-45456] Microsoft Outlook and Word Remote Code Execution Vulnerability

Access of resource using incompatible type ('type confusion') in Microsoft Office allows an unauthorized attacker to execute code locally. Affected products named by the advisory: Microsoft SharePoint Enterprise Server 2016; Microsoft SharePoint Server 2019; Microsoft SharePoint Server Subscription Edition.

CVE-2026-45456
SharePoint Server
Jun 9, 2026
High7.8MS Server

High [CVE-2026-45471] Microsoft Word Remote Code Execution Vulnerability

Untrusted pointer dereference in Microsoft Office Word allows an unauthorized attacker to execute code locally. Affected products named by the advisory: Microsoft SharePoint Enterprise Server 2016; Microsoft SharePoint Server 2019; Microsoft SharePoint Server Subscription Edition.

CVE-2026-45471
SharePoint Server
Jun 9, 2026
High7.0MS Server

High [CVE-2026-41108] Windows DNS Client Elevation of Privilege Vulnerability

Windows DNS Client Elevation of Privilege Vulnerability Affected products named by the advisory: Windows Server 2019; Windows Server 2022; Windows Server 2025; Windows Server 2016; and 2 more. Affected products named by the advisory: Windows Server 2012 R2.

CVE-2026-41108
Windows Server
Jun 9, 2026
High7.8MS Server

High [CVE-2026-40404] Windows Universal Disk Format File System Driver (UDFS) Elevation of Privilege Vulnerability

Windows Universal Disk Format File System Driver (UDFS) Elevation of Privilege Vulnerability Affected products named by the advisory: Windows Server 2022; Windows Server 2019; Windows Server 2025; Windows Server 2016; and 2 more. Affected products named by the advisory: Windows Server 2012 R2.

CVE-2026-40404
Windows Server
Jun 9, 2026
High7.8Vendor: CriticalMS Server

High [CVE-2026-33828] Windows Device Health Attestation (DHA) Elevation of Privilege Vulnerability

Windows Device Health Attestation (DHA) Elevation of Privilege Vulnerability Affected products named by the advisory: Windows Server 2019; Windows Server 2022; Windows Server 2025; Windows Server 2016.

CVE-2026-33828
Windows Server
Jun 9, 2026
High7.8MS Server

High [CVE-2026-45487] Windows Program Compatibility Assistant Service Elevation of Privilege Vulnerability

Windows Program Compatibility Assistant Service Elevation of Privilege Vulnerability Affected products named by the advisory: Windows Server 2022; Windows Server 2025.

CVE-2026-45487
Windows Server
Jun 9, 2026