CVE-2026-42013 Gnutls: gnutls: certificate validation bypass due to oversized subject alternative name
Information published.
Categories: Microsoft
CVE-2026-34355 Apache HTTP Server: mod_proxy_html buffer overflow
Information published.
Categories: Microsoft
CVE-2026-44185 Apache HTTP Server: Stack Buffer Over-Read in mod_ssl OCSP `send_request`
Information published.
Categories: Microsoft
CVE-2026-34356 Apache HTTP Server: ProxyPassReverseCookieMap buffer overflow
Information published.
Categories: Microsoft
CVE-2026-44186 Apache HTTP Server: Loop in `proxy_ftp_handler` in mod_proxy_ftp
Information published.
Categories: Microsoft
CVE-2026-42535 Apache HTTP Server: mod_dav_fs protected directory access
Information published.
Categories: Microsoft
CVE-2026-44631 Apache HTTP Server: Heap Underflow in `ap_regname` via Signed Char Overflow
Information published.
Categories: Microsoft
CVE-2026-29167 Apache HTTP Server: mod_ldap per-dir use-after-free
Information published.
Categories: Microsoft
CVE-2026-43951 Apache HTTP Server: OOB Read in `merge_response_headers` can cause crash
Information published.
Categories: Microsoft
CVE-2026-42536 Apache HTTP Server: mod_xml2enc heap overflow
Information published.
Categories: Microsoft
CVE-2026-44119 Apache HTTP Server: escalation of privilege through expressions in .htaccess in multiple modules
Information published.
Categories: Microsoft
CVE-2026-48913 Apache HTTP Server: mod_http2 memory corruption when file handles exhausted
Information published.
Categories: Microsoft
CVE-2026-10846 Insufficient verification that responses belong to a query
Information published.
Categories: Microsoft
CVE-2026-11822 SQLite before 3.53.2 Memory Corruption in FTS5 Extension
Information published.
Categories: Microsoft
CVE-2026-11824 SQLite before 3.53.2 Heap Buffer Overflow via FTS5 fts5ChunkIterate
Information published.
Categories: Microsoft
CVE-2026-46433 lldpd: Heap OOB Read in VLAN Decapsulation memmove
Information published.
Categories: Microsoft
CVE-2026-47294 Microsoft SharePoint Server Remote Code Execution Vulnerability
Updated an acknowledgement. This is an informational change only.
Categories: Microsoft
CVE-2026-20846 GDI+ Denial of Service Vulnerability
Updated an acknowledgement. This is an informational change only.
Categories: Microsoft
CVE-2026-46330 Revert "net/smc: Introduce TCP ULP support"
Information published.
Categories: Microsoft


