Microsoft

CVE-2026-69543 Azure Virtual Machines Elevation of Privilege Vulnerability

Microsoft Security Center Center News - Thu, 08/20/2026 - 14:00

Server-side request forgery (ssrf) in Azure Virtual Machines allows an authorized attacker to elevate privileges over a network.

Categories: Microsoft

CVE-2026-69855 Microsoft Copilot in Azure Information Disclosure Vulnerability

Microsoft Security Center Center News - Thu, 08/20/2026 - 14:00

Server-side request forgery (ssrf) in Microsoft Copilot in Azure allows an authorized attacker to disclose information over a network.

Categories: Microsoft

CVE-2026-33824 Windows Internet Key Exchange (IKE) Service Extensions Remote Code Execution Vulnerability

Microsoft Security Center Center News - Thu, 08/20/2026 - 14:00
Added clarifying information to the mitigation. This is an informational change only.
Categories: Microsoft

CVE-2020-1173 Microsoft Power BI Report Server Spoofing Vulnerability

Microsoft Security Center Center News - Wed, 08/19/2026 - 14:00
Corrected the Power BI Report Server version in the Security Updates table to use the public release version instead of the internal build number. This is an informational change only.
Categories: Microsoft

CVE-2021-26859 Microsoft Power BI Information Disclosure Vulnerability

Microsoft Security Center Center News - Wed, 08/19/2026 - 14:00
Corrected the Power BI Report Server version in the Security Updates table to use the public release version instead of the internal build number. This is an informational change only.
Categories: Microsoft

CVE-2021-41372 Power BI Report Server Spoofing Vulnerability

Microsoft Security Center Center News - Wed, 08/19/2026 - 14:00
Corrected the Power BI Report Server version in the Security Updates table to use the public release version instead of the internal build number. This is an informational change only.
Categories: Microsoft

CVE-2023-21806 Power BI Report Server Spoofing Vulnerability

Microsoft Security Center Center News - Wed, 08/19/2026 - 14:00
Corrected the Power BI Report Server version in the Security Updates table to use the public release version instead of the internal build number. This is an informational change only.
Categories: Microsoft

CVE-2024-43612 Power BI Report Server Spoofing Vulnerability

Microsoft Security Center Center News - Wed, 08/19/2026 - 14:00
Corrected the Power BI Report Server version in the Security Updates table to use the public release version instead of the internal build number. This is an informational change only.
Categories: Microsoft

CVE-2024-43481 Power BI Report Server Spoofing Vulnerability

Microsoft Security Center Center News - Wed, 08/19/2026 - 14:00
Corrected the Power BI Report Server version in the Security Updates table to use the public release version instead of the internal build number. This is an informational change only.
Categories: Microsoft

CVE-2026-24301 Microsoft Copilot Information Disclosure Vulnerability

Microsoft Security Center Center News - Tue, 08/18/2026 - 14:00

Improper neutralization of special elements used in a command ('command injection') in Microsoft Copilot allows an unauthorized attacker to disclose information over a network.

Categories: Microsoft

Chromium: CVE-2026-19560 Use after free in Blink

Microsoft Security Center Center News - Fri, 08/14/2026 - 23:37
This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2025) for more information.
Categories: Microsoft

Chromium: CVE-2026-19559 Use after free in HTML

Microsoft Security Center Center News - Fri, 08/14/2026 - 23:37
This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2025) for more information.
Categories: Microsoft

Chromium: CVE-2026-19558 Use after free in Extensions

Microsoft Security Center Center News - Fri, 08/14/2026 - 23:37
This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2025) for more information.
Categories: Microsoft

Chromium: CVE-2026-19557 Use after free in TabStrip

Microsoft Security Center Center News - Fri, 08/14/2026 - 23:37
This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2025) for more information.
Categories: Microsoft

Chromium: CVE-2026-19556 Use after free in V8

Microsoft Security Center Center News - Fri, 08/14/2026 - 23:37
This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2025) for more information.
Categories: Microsoft

CVE-2026-72970 Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability

Microsoft Security Center Center News - Fri, 08/14/2026 - 14:00

Heap-based buffer overflow in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network.

Categories: Microsoft

CVE-2026-50523 Microsoft PowerShell Remote Code Execution Vulnerability

Microsoft Security Center Center News - Fri, 08/14/2026 - 14:00
The security updates for Powershell have been updated.
Categories: Microsoft

CVE-2026-69414 Microsoft Defender Elevation of Privilege Vulnerability

Microsoft Security Center Center News - Fri, 08/14/2026 - 14:00
Microsoft is aware of an elevation of privilege in the Microsoft Malware Protection Engine in Microsoft Defender publicly referred to as "ShieldBreak ". We are working to provide a high quality security update that addresses this vulnerability. We will provide information in this CVE when the update is available.
Categories: Microsoft

Pages

Subscribe to Geeksultant aggregator - Microsoft