CVE-2026-69400 Azure Logic Apps Elevation of Privilege Vulnerability
Improper limitation of a pathname to a restricted directory ('path traversal') in Azure Logic Apps allows an unauthorized attacker to elevate privileges over a network.
CVE-2026-69555 Azure Arc Elevation of Privilege Vulnerability
Incorrect authorization in Azure Arc allows an unauthorized attacker to elevate privileges over a network.
CVE-2026-69558 Microsoft Partner Center Information Disclosure Vulnerability
Authorization bypass through user-controlled key in Microsoft Partner Center allows an unauthorized attacker to disclose information over a network.
CVE-2026-69543 Azure Virtual Machines Elevation of Privilege Vulnerability
Server-side request forgery (ssrf) in Azure Virtual Machines allows an authorized attacker to elevate privileges over a network.
CVE-2026-69855 Microsoft Copilot in Azure Information Disclosure Vulnerability
Server-side request forgery (ssrf) in Microsoft Copilot in Azure allows an authorized attacker to disclose information over a network.
CVE-2026-33824 Windows Internet Key Exchange (IKE) Service Extensions Remote Code Execution Vulnerability
CVE-2020-1173 Microsoft Power BI Report Server Spoofing Vulnerability
CVE-2021-26859 Microsoft Power BI Information Disclosure Vulnerability
CVE-2021-41372 Power BI Report Server Spoofing Vulnerability
CVE-2023-21806 Power BI Report Server Spoofing Vulnerability
CVE-2024-43612 Power BI Report Server Spoofing Vulnerability
CVE-2024-43481 Power BI Report Server Spoofing Vulnerability
CVE-2026-24301 Microsoft Copilot Information Disclosure Vulnerability
Improper neutralization of special elements used in a command ('command injection') in Microsoft Copilot allows an unauthorized attacker to disclose information over a network.
Chromium: CVE-2026-19560 Use after free in Blink
Chromium: CVE-2026-19559 Use after free in HTML
Chromium: CVE-2026-19558 Use after free in Extensions
Chromium: CVE-2026-19557 Use after free in TabStrip
Chromium: CVE-2026-19556 Use after free in V8
CVE-2026-72970 Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
Heap-based buffer overflow in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network.


