Find a vulnerability
Search criteria
12482 vulnerabilities by Microsoft
CVE-2026-96940 (GCVE-0-2026-96940)
Vulnerability from cvelistv5 – Published: 2026-10-02 19:06 – Updated: 2026-10-03 03:55- CWE-1390 - Weak Authentication
| URL | Tags |
|---|---|
| https://msrc.microsoft.com/update-guide/vulnerabi… | vendor-advisorypatch |
| Vendor | Product | Version | |
|---|---|---|---|
| Microsoft | Microsoft Exchange Server 2016 Cumulative Update 23 |
Affected:
15.01.0.0 , < 15.01.2507.075
(custom)
|
|
| Microsoft | Microsoft Exchange Server 2019 Cumulative Update 14 |
Affected:
15.02.0.0 , < 15.02.1544.048
(custom)
|
|
| Microsoft | Microsoft Exchange Server 2019 Cumulative Update 15 |
Affected:
15.02.0.0 , < 15.02.1748.053
(custom)
|
|
| Microsoft | Microsoft Exchange Server Subscription Edition RTM |
Affected:
15.02.0.0 , < 15.02.2562.053
(custom)
|
{
"containers": {
"adp": [
{
"metrics": [
{
"other": {
"content": {
"id": "CVE-2026-96940",
"options": [
{
"Exploitation": "none"
},
{
"Automatable": "no"
},
{
"Technical Impact": "total"
}
],
"role": "CISA Coordinator",
"timestamp": "2026-10-02T00:00:00+00:00",
"version": "2.0.3"
},
"type": "ssvc"
}
}
],
"providerMetadata": {
"dateUpdated": "2026-10-03T03:55:42.205Z",
"orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"shortName": "CISA-ADP"
},
"title": "CISA ADP Vulnrichment"
}
],
"cna": {
"affected": [
{
"platforms": [
"x64-based Systems"
],
"product": "Microsoft Exchange Server 2016 Cumulative Update 23",
"vendor": "Microsoft",
"versions": [
{
"lessThan": "15.01.2507.075",
"status": "affected",
"version": "15.01.0.0",
"versionType": "custom"
}
]
},
{
"platforms": [
"x64-based Systems"
],
"product": "Microsoft Exchange Server 2019 Cumulative Update 14",
"vendor": "Microsoft",
"versions": [
{
"lessThan": "15.02.1544.048",
"status": "affected",
"version": "15.02.0.0",
"versionType": "custom"
}
]
},
{
"platforms": [
"x64-based Systems"
],
"product": "Microsoft Exchange Server 2019 Cumulative Update 15",
"vendor": "Microsoft",
"versions": [
{
"lessThan": "15.02.1748.053",
"status": "affected",
"version": "15.02.0.0",
"versionType": "custom"
}
]
},
{
"platforms": [
"x64-based Systems"
],
"product": "Microsoft Exchange Server Subscription Edition RTM",
"vendor": "Microsoft",
"versions": [
{
"lessThan": "15.02.2562.053",
"status": "affected",
"version": "15.02.0.0",
"versionType": "custom"
}
]
}
],
"cpeApplicability": [
{
"nodes": [
{
"cpeMatch": [
{
"criteria": "cpe:2.3:a:microsoft:exchange_server_2019:*:cumulative_update_14:*:*:*:*:*:*",
"versionEndExcluding": "15.02.1544.048",
"versionStartIncluding": "15.02.0.0",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:microsoft:exchange_server_2016:*:cumulative_update_23:*:*:*:*:*:*",
"versionEndExcluding": "15.01.2507.075",
"versionStartIncluding": "15.01.0.0",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:microsoft:exchange_server_se:*:RTM:*:*:*:*:*:*",
"versionEndExcluding": "15.02.2562.053",
"versionStartIncluding": "15.02.0.0",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:microsoft:exchange_server_2019:*:cumulative_update_15:*:*:*:*:*:*",
"versionEndExcluding": "15.02.1748.053",
"versionStartIncluding": "15.02.0.0",
"vulnerable": true
}
],
"negate": false,
"operator": "OR"
}
]
}
],
"datePublic": "2026-10-02T14:00:00.000Z",
"descriptions": [
{
"lang": "en-US",
"value": "Weak authorization in Microsoft Exchange Server allows an authenticated attacker to elevate privileges over a network."
}
],
"metrics": [
{
"cvssV3_1": {
"baseScore": 8.8,
"baseSeverity": "HIGH",
"vectorString": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C",
"version": "3.1"
},
"format": "CVSS",
"scenarios": [
{
"lang": "en-US",
"value": "GENERAL"
}
]
}
],
"problemTypes": [
{
"descriptions": [
{
"cweId": "CWE-1390",
"description": "CWE-1390: Weak Authentication",
"lang": "en-US",
"type": "CWE"
}
]
}
],
"providerMetadata": {
"dateUpdated": "2026-10-02T19:06:19.061Z",
"orgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
"shortName": "microsoft"
},
"references": [
{
"name": "Microsoft Exchange Server Elevation of Privilege Vulnerability",
"tags": [
"vendor-advisory",
"patch"
],
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-96940"
}
],
"title": "Microsoft Exchange Server Elevation of Privilege Vulnerability"
}
},
"cveMetadata": {
"assignerOrgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
"assignerShortName": "microsoft",
"cveId": "CVE-2026-96940",
"datePublished": "2026-10-02T19:06:19.061Z",
"dateReserved": "2026-09-23T20:35:19.927Z",
"dateUpdated": "2026-10-03T03:55:42.205Z",
"state": "PUBLISHED"
},
"dataType": "CVE_RECORD",
"dataVersion": "5.2"
}
CVE-2026-100208 (GCVE-0-2026-100208)
Vulnerability from cvelistv5 – Published: 2026-09-25 19:39 – Updated: 2026-09-29 20:22- CWE-190 - Integer Overflow or Wraparound
| URL | Tags |
|---|---|
| https://msrc.microsoft.com/update-guide/vulnerabi… | vendor-advisorypatch |
| Vendor | Product | Version | |
|---|---|---|---|
| Microsoft | Microsoft 365 Apps for Enterprise |
Affected:
16.0.1 , < https://aka.ms/OfficeSecurityReleases
(custom)
|
|
| Microsoft | Microsoft Office LTSC 2021 |
Affected:
16.0.1 , < https://aka.ms/OfficeSecurityReleases
(custom)
|
|
| Microsoft | Microsoft Office LTSC 2024 |
Affected:
16.0.0 , < https://aka.ms/OfficeSecurityReleases
(custom)
|
{
"containers": {
"adp": [
{
"metrics": [
{
"other": {
"content": {
"id": "CVE-2026-100208",
"options": [
{
"Exploitation": "none"
},
{
"Automatable": "no"
},
{
"Technical Impact": "total"
}
],
"role": "CISA Coordinator",
"timestamp": "2026-09-25T00:00:00+00:00",
"version": "2.0.3"
},
"type": "ssvc"
}
}
],
"providerMetadata": {
"dateUpdated": "2026-09-26T03:55:54.361Z",
"orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"shortName": "CISA-ADP"
},
"title": "CISA ADP Vulnrichment"
}
],
"cna": {
"affected": [
{
"platforms": [
"32-bit Systems",
"x64-based Systems"
],
"product": "Microsoft 365 Apps for Enterprise",
"vendor": "Microsoft",
"versions": [
{
"lessThan": "https://aka.ms/OfficeSecurityReleases",
"status": "affected",
"version": "16.0.1",
"versionType": "custom"
}
]
},
{
"platforms": [
"32-bit Systems",
"x64-based Systems"
],
"product": "Microsoft Office LTSC 2021",
"vendor": "Microsoft",
"versions": [
{
"lessThan": "https://aka.ms/OfficeSecurityReleases",
"status": "affected",
"version": "16.0.1",
"versionType": "custom"
}
]
},
{
"platforms": [
"32-bit Systems",
"x64-based Systems"
],
"product": "Microsoft Office LTSC 2024",
"vendor": "Microsoft",
"versions": [
{
"lessThan": "https://aka.ms/OfficeSecurityReleases",
"status": "affected",
"version": "16.0.0",
"versionType": "custom"
}
]
}
],
"cpeApplicability": [
{
"nodes": [
{
"cpeMatch": [
{
"criteria": "cpe:2.3:a:microsoft:365_apps:*:*:*:*:enterprise:*:*:*",
"versionEndExcluding": "https://aka.ms/OfficeSecurityReleases",
"versionStartIncluding": "16.0.1",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:microsoft:office_2021:*:*:*:*:long_term_servicing_channel:*:*:*",
"versionEndExcluding": "https://aka.ms/OfficeSecurityReleases",
"versionStartIncluding": "16.0.1",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:microsoft:office_2024:*:*:*:*:long_term_servicing_channel:*:*:*",
"versionEndExcluding": "https://aka.ms/OfficeSecurityReleases",
"versionStartIncluding": "16.0.0",
"vulnerable": true
}
],
"negate": false,
"operator": "OR"
}
]
}
],
"datePublic": "2026-09-25T14:00:00.000Z",
"descriptions": [
{
"lang": "en-US",
"value": "Integer overflow or wraparound in Microsoft Office Outlook allows an unauthorized attacker to execute code over a network."
}
],
"metrics": [
{
"cvssV3_1": {
"baseScore": 7.5,
"baseSeverity": "HIGH",
"vectorString": "CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C",
"version": "3.1"
},
"format": "CVSS",
"scenarios": [
{
"lang": "en-US",
"value": "GENERAL"
}
]
}
],
"problemTypes": [
{
"descriptions": [
{
"cweId": "CWE-190",
"description": "CWE-190: Integer Overflow or Wraparound",
"lang": "en-US",
"type": "CWE"
}
]
}
],
"providerMetadata": {
"dateUpdated": "2026-09-29T20:22:55.677Z",
"orgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
"shortName": "microsoft"
},
"references": [
{
"name": "Microsoft Office Outlook Remote Code Execution Vulnerability",
"tags": [
"vendor-advisory",
"patch"
],
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-100208"
}
],
"title": "Microsoft Office Outlook Remote Code Execution Vulnerability"
}
},
"cveMetadata": {
"assignerOrgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
"assignerShortName": "microsoft",
"cveId": "CVE-2026-100208",
"datePublished": "2026-09-25T19:39:27.315Z",
"dateReserved": "2026-09-25T15:11:44.539Z",
"dateUpdated": "2026-09-29T20:22:55.677Z",
"state": "PUBLISHED"
},
"dataType": "CVE_RECORD",
"dataVersion": "5.2"
}
CVE-2026-70125 (GCVE-0-2026-70125)
Vulnerability from cvelistv5 – Published: 2026-09-23 22:40 – Updated: 2026-10-01 22:56- CWE-122 - Heap-based Buffer Overflow
- CWE-noinfo Not enough information
| URL | Tags |
|---|---|
| https://msrc.microsoft.com/update-guide/vulnerabi… | vendor-advisorypatch |
| Vendor | Product | Version | |
|---|---|---|---|
| Microsoft | Microsoft 365 Apps for Enterprise |
Affected:
16.0.1 , < https://aka.ms/OfficeSecurityReleases
(custom)
|
|
| Microsoft | Microsoft Office LTSC 2021 |
Affected:
16.0.1 , < https://aka.ms/OfficeSecurityReleases
(custom)
|
|
| Microsoft | Microsoft Office LTSC 2024 |
Affected:
16.0.0 , < https://aka.ms/OfficeSecurityReleases
(custom)
|
{
"containers": {
"adp": [
{
"metrics": [
{
"other": {
"content": {
"id": "CVE-2026-70125",
"options": [
{
"Exploitation": "none"
},
{
"Automatable": "no"
},
{
"Technical Impact": "total"
}
],
"role": "CISA Coordinator",
"timestamp": "2026-09-24T00:00:00+00:00",
"version": "2.0.3"
},
"type": "ssvc"
}
}
],
"problemTypes": [
{
"descriptions": [
{
"description": "CWE-noinfo Not enough information",
"lang": "en",
"type": "CWE"
}
]
}
],
"providerMetadata": {
"dateUpdated": "2026-09-25T03:55:19.099Z",
"orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"shortName": "CISA-ADP"
},
"title": "CISA ADP Vulnrichment"
}
],
"cna": {
"affected": [
{
"platforms": [
"32-bit Systems",
"x64-based Systems"
],
"product": "Microsoft 365 Apps for Enterprise",
"vendor": "Microsoft",
"versions": [
{
"lessThan": "https://aka.ms/OfficeSecurityReleases",
"status": "affected",
"version": "16.0.1",
"versionType": "custom"
}
]
},
{
"platforms": [
"32-bit Systems",
"x64-based Systems"
],
"product": "Microsoft Office LTSC 2021",
"vendor": "Microsoft",
"versions": [
{
"lessThan": "https://aka.ms/OfficeSecurityReleases",
"status": "affected",
"version": "16.0.1",
"versionType": "custom"
}
]
},
{
"platforms": [
"32-bit Systems",
"x64-based Systems"
],
"product": "Microsoft Office LTSC 2024",
"vendor": "Microsoft",
"versions": [
{
"lessThan": "https://aka.ms/OfficeSecurityReleases",
"status": "affected",
"version": "16.0.0",
"versionType": "custom"
}
]
}
],
"cpeApplicability": [
{
"nodes": [
{
"cpeMatch": [
{
"criteria": "cpe:2.3:a:microsoft:365_apps:*:*:*:*:enterprise:*:*:*",
"versionEndExcluding": "https://aka.ms/OfficeSecurityReleases",
"versionStartIncluding": "16.0.1",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:microsoft:office_2021:*:*:*:*:long_term_servicing_channel:*:*:*",
"versionEndExcluding": "https://aka.ms/OfficeSecurityReleases",
"versionStartIncluding": "16.0.1",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:microsoft:office_2024:*:*:*:*:long_term_servicing_channel:*:*:*",
"versionEndExcluding": "https://aka.ms/OfficeSecurityReleases",
"versionStartIncluding": "16.0.0",
"vulnerable": true
}
],
"negate": false,
"operator": "OR"
}
]
}
],
"datePublic": "2026-09-23T14:00:00.000Z",
"descriptions": [
{
"lang": "en-US",
"value": "Microsoft Office Outlook Remote Code Execution Vulnerability"
}
],
"metrics": [
{
"cvssV3_1": {
"baseScore": 8.8,
"baseSeverity": "HIGH",
"vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C",
"version": "3.1"
},
"format": "CVSS",
"scenarios": [
{
"lang": "en-US",
"value": "GENERAL"
}
]
}
],
"problemTypes": [
{
"descriptions": [
{
"cweId": "CWE-122",
"description": "CWE-122: Heap-based Buffer Overflow",
"lang": "en-US",
"type": "CWE"
}
]
}
],
"providerMetadata": {
"dateUpdated": "2026-10-01T22:56:21.122Z",
"orgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
"shortName": "microsoft"
},
"references": [
{
"name": "Microsoft Office Outlook Remote Code Execution Vulnerability",
"tags": [
"vendor-advisory",
"patch"
],
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-70125"
}
],
"title": "Microsoft Office Outlook Remote Code Execution Vulnerability"
}
},
"cveMetadata": {
"assignerOrgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
"assignerShortName": "microsoft",
"cveId": "CVE-2026-70125",
"datePublished": "2026-09-23T22:40:40.537Z",
"dateReserved": "2026-08-03T23:31:50.775Z",
"dateUpdated": "2026-10-01T22:56:21.122Z",
"state": "PUBLISHED"
},
"dataType": "CVE_RECORD",
"dataVersion": "5.2"
}
CVE-2026-88097 (GCVE-0-2026-88097)
Vulnerability from cvelistv5 – Published: 2026-09-18 20:47 – Updated: 2026-10-01 23:01- CWE-416 - Use After Free
| URL | Tags |
|---|---|
| https://msrc.microsoft.com/update-guide/vulnerabi… | vendor-advisorypatch |
| Vendor | Product | Version | |
|---|---|---|---|
| Microsoft | Microsoft Edge (Chromium-based) |
Affected:
1.0.0.0 , < 153.0.4234.46
(custom)
cpe:2.3:a:microsoft:edge_chromium:*:*:*:*:*:*:*:* |
{
"containers": {
"adp": [
{
"metrics": [
{
"other": {
"content": {
"id": "CVE-2026-88097",
"options": [
{
"Exploitation": "none"
},
{
"Automatable": "no"
},
{
"Technical Impact": "total"
}
],
"role": "CISA Coordinator",
"timestamp": "2026-09-19T00:00:00+00:00",
"version": "2.0.3"
},
"type": "ssvc"
}
}
],
"providerMetadata": {
"dateUpdated": "2026-09-20T03:55:51.649Z",
"orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"shortName": "CISA-ADP"
},
"title": "CISA ADP Vulnrichment"
}
],
"cna": {
"affected": [
{
"product": "Microsoft Edge (Chromium-based)",
"vendor": "Microsoft",
"versions": [
{
"lessThan": "153.0.4234.46",
"status": "affected",
"version": "1.0.0.0",
"versionType": "custom"
}
]
}
],
"cpeApplicability": [
{
"nodes": [
{
"cpeMatch": [
{
"criteria": "cpe:2.3:a:microsoft:edge_chromium:*:*:*:*:*:*:*:*",
"versionEndExcluding": "153.0.4234.46",
"versionStartIncluding": "1.0.0.0",
"vulnerable": true
}
],
"negate": false,
"operator": "OR"
}
]
}
],
"datePublic": "2026-09-18T14:00:00.000Z",
"descriptions": [
{
"lang": "en-US",
"value": "Use after free in Microsoft Edge (Chromium-based) allows an unauthorized attacker to elevate privileges locally."
}
],
"metrics": [
{
"cvssV3_1": {
"baseScore": 8.1,
"baseSeverity": "HIGH",
"vectorString": "CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H/E:U/RL:O/RC:C",
"version": "3.1"
},
"format": "CVSS",
"scenarios": [
{
"lang": "en-US",
"value": "GENERAL"
}
]
}
],
"problemTypes": [
{
"descriptions": [
{
"cweId": "CWE-416",
"description": "CWE-416: Use After Free",
"lang": "en-US",
"type": "CWE"
}
]
}
],
"providerMetadata": {
"dateUpdated": "2026-10-01T23:01:15.897Z",
"orgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
"shortName": "microsoft"
},
"references": [
{
"name": "Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability",
"tags": [
"vendor-advisory",
"patch"
],
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-88097"
}
],
"title": "Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability"
}
},
"cveMetadata": {
"assignerOrgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
"assignerShortName": "microsoft",
"cveId": "CVE-2026-88097",
"datePublished": "2026-09-18T20:47:05.350Z",
"dateReserved": "2026-09-09T21:51:51.953Z",
"dateUpdated": "2026-10-01T23:01:15.897Z",
"state": "PUBLISHED"
},
"dataType": "CVE_RECORD",
"dataVersion": "5.2"
}
CVE-2026-85887 (GCVE-0-2026-85887)
Vulnerability from cvelistv5 – Published: 2026-09-17 23:04 – Updated: 2026-10-01 23:01 Exclusively Hosted Service- CWE-732 - Incorrect Permission Assignment for Critical Resource
| URL | Tags |
|---|---|
| https://msrc.microsoft.com/update-guide/vulnerabi… | vendor-advisorypatch |
| Vendor | Product | Version | |
|---|---|---|---|
| Microsoft | Microsoft 365 Copilot |
Affected:
-
cpe:2.3:a:microsoft:365_copilot:*:*:*:*:*:*:*:* |
{
"containers": {
"adp": [
{
"metrics": [
{
"other": {
"content": {
"id": "CVE-2026-85887",
"options": [
{
"Exploitation": "none"
},
{
"Automatable": "no"
},
{
"Technical Impact": "partial"
}
],
"role": "CISA Coordinator",
"timestamp": "2026-09-18T13:35:20.282568Z",
"version": "2.0.3"
},
"type": "ssvc"
}
}
],
"providerMetadata": {
"dateUpdated": "2026-09-18T14:31:47.653Z",
"orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"shortName": "CISA-ADP"
},
"title": "CISA ADP Vulnrichment"
}
],
"cna": {
"affected": [
{
"product": "Microsoft 365 Copilot",
"vendor": "Microsoft",
"versions": [
{
"status": "affected",
"version": "-"
}
]
}
],
"cpeApplicability": [
{
"nodes": [
{
"cpeMatch": [
{
"criteria": "cpe:2.3:a:microsoft:365_copilot:*:*:*:*:*:*:*:*",
"versionStartIncluding": "-",
"vulnerable": true
}
],
"negate": false,
"operator": "OR"
}
]
}
],
"datePublic": "2026-09-17T14:00:00.000Z",
"descriptions": [
{
"lang": "en-US",
"value": "Incorrect permission assignment for critical resource in M365 Copilot allows an authorized attacker to disclose information over a network."
}
],
"metrics": [
{
"cvssV3_1": {
"baseScore": 7.7,
"baseSeverity": "HIGH",
"vectorString": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N/E:U/RL:O/RC:C",
"version": "3.1"
},
"format": "CVSS",
"scenarios": [
{
"lang": "en-US",
"value": "GENERAL"
}
]
}
],
"problemTypes": [
{
"descriptions": [
{
"cweId": "CWE-732",
"description": "CWE-732: Incorrect Permission Assignment for Critical Resource",
"lang": "en-US",
"type": "CWE"
}
]
}
],
"providerMetadata": {
"dateUpdated": "2026-10-01T23:01:22.079Z",
"orgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
"shortName": "microsoft"
},
"references": [
{
"name": "M365 Copilot Information Disclosure Vulnerability",
"tags": [
"vendor-advisory",
"patch"
],
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-85887"
}
],
"tags": [
"exclusively-hosted-service"
],
"title": "M365 Copilot Information Disclosure Vulnerability"
}
},
"cveMetadata": {
"assignerOrgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
"assignerShortName": "microsoft",
"cveId": "CVE-2026-85887",
"datePublished": "2026-09-17T23:04:48.423Z",
"dateReserved": "2026-09-04T18:18:19.327Z",
"dateUpdated": "2026-10-01T23:01:22.079Z",
"state": "PUBLISHED"
},
"dataType": "CVE_RECORD",
"dataVersion": "5.2"
}
CVE-2026-83946 (GCVE-0-2026-83946)
Vulnerability from cvelistv5 – Published: 2026-09-17 23:04 – Updated: 2026-10-01 23:01 Exclusively Hosted Service- CWE-79 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
| URL | Tags |
|---|---|
| https://msrc.microsoft.com/update-guide/vulnerabi… | vendor-advisorypatch |
| Vendor | Product | Version | |
|---|---|---|---|
| Microsoft | Azure Portal |
Affected:
-
cpe:2.3:a:microsoft:azure_portal:*:*:*:*:*:*:*:* |
{
"containers": {
"adp": [
{
"metrics": [
{
"other": {
"content": {
"id": "CVE-2026-83946",
"options": [
{
"Exploitation": "none"
},
{
"Automatable": "no"
},
{
"Technical Impact": "partial"
}
],
"role": "CISA Coordinator",
"timestamp": "2026-09-18T13:35:30.124424Z",
"version": "2.0.3"
},
"type": "ssvc"
}
}
],
"providerMetadata": {
"dateUpdated": "2026-09-18T14:31:47.507Z",
"orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"shortName": "CISA-ADP"
},
"title": "CISA ADP Vulnrichment"
}
],
"cna": {
"affected": [
{
"product": "Azure Portal",
"vendor": "Microsoft",
"versions": [
{
"status": "affected",
"version": "-"
}
]
}
],
"cpeApplicability": [
{
"nodes": [
{
"cpeMatch": [
{
"criteria": "cpe:2.3:a:microsoft:azure_portal:*:*:*:*:*:*:*:*",
"versionStartIncluding": "-",
"vulnerable": true
}
],
"negate": false,
"operator": "OR"
}
]
}
],
"datePublic": "2026-09-17T14:00:00.000Z",
"descriptions": [
{
"lang": "en-US",
"value": "Improper neutralization of input during web page generation (\u0027cross-site scripting\u0027) in Azure Portal allows an unauthorized attacker to perform spoofing over a network."
}
],
"metrics": [
{
"cvssV3_1": {
"baseScore": 8.2,
"baseSeverity": "HIGH",
"vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N/E:U/RL:O/RC:C",
"version": "3.1"
},
"format": "CVSS",
"scenarios": [
{
"lang": "en-US",
"value": "GENERAL"
}
]
}
],
"problemTypes": [
{
"descriptions": [
{
"cweId": "CWE-79",
"description": "CWE-79: Improper Neutralization of Input During Web Page Generation (\u0027Cross-site Scripting\u0027)",
"lang": "en-US",
"type": "CWE"
}
]
}
],
"providerMetadata": {
"dateUpdated": "2026-10-01T23:01:21.577Z",
"orgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
"shortName": "microsoft"
},
"references": [
{
"name": "Azure Portal Spoofing Vulnerability",
"tags": [
"vendor-advisory",
"patch"
],
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-83946"
}
],
"tags": [
"exclusively-hosted-service"
],
"title": "Azure Portal Spoofing Vulnerability"
}
},
"cveMetadata": {
"assignerOrgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
"assignerShortName": "microsoft",
"cveId": "CVE-2026-83946",
"datePublished": "2026-09-17T23:04:47.883Z",
"dateReserved": "2026-08-31T23:40:59.641Z",
"dateUpdated": "2026-10-01T23:01:21.577Z",
"state": "PUBLISHED"
},
"dataType": "CVE_RECORD",
"dataVersion": "5.2"
}
CVE-2026-69843 (GCVE-0-2026-69843)
Vulnerability from cvelistv5 – Published: 2026-09-17 23:04 – Updated: 2026-10-01 23:01 Exclusively Hosted Service- CWE-290 - Authentication Bypass by Spoofing
| URL | Tags |
|---|---|
| https://msrc.microsoft.com/update-guide/vulnerabi… | vendor-advisorypatch |
| Vendor | Product | Version | |
|---|---|---|---|
| Microsoft | Microsoft Fabric |
Affected:
-
cpe:2.3:a:microsoft:microsoft_fabric:*:*:*:*:*:*:*:* |
{
"containers": {
"adp": [
{
"metrics": [
{
"other": {
"content": {
"id": "CVE-2026-69843",
"options": [
{
"Exploitation": "none"
},
{
"Automatable": "yes"
},
{
"Technical Impact": "total"
}
],
"role": "CISA Coordinator",
"timestamp": "2026-09-18T00:00:00+00:00",
"version": "2.0.3"
},
"type": "ssvc"
}
}
],
"providerMetadata": {
"dateUpdated": "2026-09-19T03:56:25.687Z",
"orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"shortName": "CISA-ADP"
},
"title": "CISA ADP Vulnrichment"
}
],
"cna": {
"affected": [
{
"product": "Microsoft Fabric",
"vendor": "Microsoft",
"versions": [
{
"status": "affected",
"version": "-"
}
]
}
],
"cpeApplicability": [
{
"nodes": [
{
"cpeMatch": [
{
"criteria": "cpe:2.3:a:microsoft:microsoft_fabric:*:*:*:*:*:*:*:*",
"versionStartIncluding": "-",
"vulnerable": true
}
],
"negate": false,
"operator": "OR"
}
]
}
],
"datePublic": "2026-09-17T14:00:00.000Z",
"descriptions": [
{
"lang": "en-US",
"value": "Authentication bypass by spoofing in Microsoft Fabric allows an unauthorized attacker to elevate privileges over a network."
}
],
"metrics": [
{
"cvssV3_1": {
"baseScore": 10,
"baseSeverity": "CRITICAL",
"vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H/E:U/RL:O/RC:C",
"version": "3.1"
},
"format": "CVSS",
"scenarios": [
{
"lang": "en-US",
"value": "GENERAL"
}
]
}
],
"problemTypes": [
{
"descriptions": [
{
"cweId": "CWE-290",
"description": "CWE-290: Authentication Bypass by Spoofing",
"lang": "en-US",
"type": "CWE"
}
]
}
],
"providerMetadata": {
"dateUpdated": "2026-10-01T23:01:21.024Z",
"orgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
"shortName": "microsoft"
},
"references": [
{
"name": "Microsoft Fabric Elevation of Privilege Vulnerability",
"tags": [
"vendor-advisory",
"patch"
],
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-69843"
}
],
"tags": [
"exclusively-hosted-service"
],
"title": "Microsoft Fabric Elevation of Privilege Vulnerability"
}
},
"cveMetadata": {
"assignerOrgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
"assignerShortName": "microsoft",
"cveId": "CVE-2026-69843",
"datePublished": "2026-09-17T23:04:47.355Z",
"dateReserved": "2026-08-03T22:51:46.190Z",
"dateUpdated": "2026-10-01T23:01:21.024Z",
"state": "PUBLISHED"
},
"dataType": "CVE_RECORD",
"dataVersion": "5.2"
}
CVE-2026-85878 (GCVE-0-2026-85878)
Vulnerability from cvelistv5 – Published: 2026-09-17 23:04 – Updated: 2026-10-01 23:01 Exclusively Hosted Service- CWE-285 - Improper Authorization
| URL | Tags |
|---|---|
| https://msrc.microsoft.com/update-guide/vulnerabi… | vendor-advisorypatch |
| Vendor | Product | Version | |
|---|---|---|---|
| Microsoft | Azure HorizonDB |
Affected:
-
cpe:2.3:a:microsoft:azure_horizondb:*:*:*:*:*:*:*:* |
{
"containers": {
"adp": [
{
"metrics": [
{
"other": {
"content": {
"id": "CVE-2026-85878",
"options": [
{
"Exploitation": "none"
},
{
"Automatable": "no"
},
{
"Technical Impact": "total"
}
],
"role": "CISA Coordinator",
"timestamp": "2026-09-18T00:00:00+00:00",
"version": "2.0.3"
},
"type": "ssvc"
}
}
],
"providerMetadata": {
"dateUpdated": "2026-09-19T03:56:27.861Z",
"orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"shortName": "CISA-ADP"
},
"title": "CISA ADP Vulnrichment"
}
],
"cna": {
"affected": [
{
"product": "Azure HorizonDB",
"vendor": "Microsoft",
"versions": [
{
"status": "affected",
"version": "-"
}
]
}
],
"cpeApplicability": [
{
"nodes": [
{
"cpeMatch": [
{
"criteria": "cpe:2.3:a:microsoft:azure_horizondb:*:*:*:*:*:*:*:*",
"versionStartIncluding": "-",
"vulnerable": true
}
],
"negate": false,
"operator": "OR"
}
]
}
],
"datePublic": "2026-09-17T14:00:00.000Z",
"descriptions": [
{
"lang": "en-US",
"value": "Improper authorization in Azure Database for PostgreSQL allows an authorized attacker to elevate privileges over a network."
}
],
"metrics": [
{
"cvssV3_1": {
"baseScore": 9.9,
"baseSeverity": "CRITICAL",
"vectorString": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H/E:U/RL:O/RC:C",
"version": "3.1"
},
"format": "CVSS",
"scenarios": [
{
"lang": "en-US",
"value": "GENERAL"
}
]
}
],
"problemTypes": [
{
"descriptions": [
{
"cweId": "CWE-285",
"description": "CWE-285: Improper Authorization",
"lang": "en-US",
"type": "CWE"
}
]
}
],
"providerMetadata": {
"dateUpdated": "2026-10-01T23:01:20.555Z",
"orgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
"shortName": "microsoft"
},
"references": [
{
"name": "Azure Database for PostgreSQL Elevation of Privilege Vulnerability",
"tags": [
"vendor-advisory",
"patch"
],
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-85878"
}
],
"tags": [
"exclusively-hosted-service"
],
"title": "Azure Database for PostgreSQL Elevation of Privilege Vulnerability"
}
},
"cveMetadata": {
"assignerOrgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
"assignerShortName": "microsoft",
"cveId": "CVE-2026-85878",
"datePublished": "2026-09-17T23:04:46.779Z",
"dateReserved": "2026-09-04T18:18:19.325Z",
"dateUpdated": "2026-10-01T23:01:20.555Z",
"state": "PUBLISHED"
},
"dataType": "CVE_RECORD",
"dataVersion": "5.2"
}
CVE-2026-62874 (GCVE-0-2026-62874)
Vulnerability from cvelistv5 – Published: 2026-09-17 23:04 – Updated: 2026-10-01 23:01 Exclusively Hosted Service- CWE-345 - Insufficient Verification of Data Authenticity
| URL | Tags |
|---|---|
| https://msrc.microsoft.com/update-guide/vulnerabi… | vendor-advisorypatch |
| Vendor | Product | Version | |
|---|---|---|---|
| Microsoft | Azure Billing |
Affected:
-
cpe:2.3:a:microsoft:azure_billing:*:*:*:*:*:*:*:* |
{
"containers": {
"adp": [
{
"metrics": [
{
"other": {
"content": {
"id": "CVE-2026-62874",
"options": [
{
"Exploitation": "none"
},
{
"Automatable": "yes"
},
{
"Technical Impact": "total"
}
],
"role": "CISA Coordinator",
"timestamp": "2026-09-18T00:00:00+00:00",
"version": "2.0.3"
},
"type": "ssvc"
}
}
],
"providerMetadata": {
"dateUpdated": "2026-09-19T03:56:31.209Z",
"orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"shortName": "CISA-ADP"
},
"title": "CISA ADP Vulnrichment"
}
],
"cna": {
"affected": [
{
"product": "Azure Billing",
"vendor": "Microsoft",
"versions": [
{
"status": "affected",
"version": "-"
}
]
}
],
"cpeApplicability": [
{
"nodes": [
{
"cpeMatch": [
{
"criteria": "cpe:2.3:a:microsoft:azure_billing:*:*:*:*:*:*:*:*",
"versionStartIncluding": "-",
"vulnerable": true
}
],
"negate": false,
"operator": "OR"
}
]
}
],
"datePublic": "2026-09-17T14:00:00.000Z",
"descriptions": [
{
"lang": "en-US",
"value": "Insufficient verification of data authenticity in Azure Billing allows an unauthorized attacker to elevate privileges over a network."
}
],
"metrics": [
{
"cvssV3_1": {
"baseScore": 10,
"baseSeverity": "CRITICAL",
"vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:L/E:U/RL:O/RC:C",
"version": "3.1"
},
"format": "CVSS",
"scenarios": [
{
"lang": "en-US",
"value": "GENERAL"
}
]
}
],
"problemTypes": [
{
"descriptions": [
{
"cweId": "CWE-345",
"description": "CWE-345: Insufficient Verification of Data Authenticity",
"lang": "en-US",
"type": "CWE"
}
]
}
],
"providerMetadata": {
"dateUpdated": "2026-10-01T23:01:20.110Z",
"orgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
"shortName": "microsoft"
},
"references": [
{
"name": "Azure Billing Elevation of Privilege Vulnerability",
"tags": [
"vendor-advisory",
"patch"
],
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-62874"
}
],
"tags": [
"exclusively-hosted-service"
],
"title": "Azure Billing Elevation of Privilege Vulnerability"
}
},
"cveMetadata": {
"assignerOrgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
"assignerShortName": "microsoft",
"cveId": "CVE-2026-62874",
"datePublished": "2026-09-17T23:04:46.281Z",
"dateReserved": "2026-07-14T21:13:55.100Z",
"dateUpdated": "2026-10-01T23:01:20.110Z",
"state": "PUBLISHED"
},
"dataType": "CVE_RECORD",
"dataVersion": "5.2"
}
CVE-2026-85917 (GCVE-0-2026-85917)
Vulnerability from cvelistv5 – Published: 2026-09-17 22:55 – Updated: 2026-10-01 22:52 Exclusively Hosted Service- CWE-918 - Server-Side Request Forgery (SSRF)
| URL | Tags |
|---|---|
| https://msrc.microsoft.com/update-guide/vulnerabi… | vendor-advisorypatch |
| Vendor | Product | Version | |
|---|---|---|---|
| Microsoft | Azure AI Foundry |
Affected:
-
cpe:2.3:a:microsoft:azure_ai_foundry:*:*:*:*:*:*:*:* |
{
"containers": {
"adp": [
{
"metrics": [
{
"other": {
"content": {
"id": "CVE-2026-85917",
"options": [
{
"Exploitation": "none"
},
{
"Automatable": "yes"
},
{
"Technical Impact": "total"
}
],
"role": "CISA Coordinator",
"timestamp": "2026-09-19T03:56:29.831492Z",
"version": "2.0.3"
},
"type": "ssvc"
}
}
],
"providerMetadata": {
"dateUpdated": "2026-09-21T12:49:34.884Z",
"orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"shortName": "CISA-ADP"
},
"title": "CISA ADP Vulnrichment"
}
],
"cna": {
"affected": [
{
"product": "Azure AI Foundry",
"vendor": "Microsoft",
"versions": [
{
"status": "affected",
"version": "-"
}
]
}
],
"cpeApplicability": [
{
"nodes": [
{
"cpeMatch": [
{
"criteria": "cpe:2.3:a:microsoft:azure_ai_foundry:*:*:*:*:*:*:*:*",
"versionStartIncluding": "-",
"vulnerable": true
}
],
"negate": false,
"operator": "OR"
}
]
}
],
"datePublic": "2026-09-17T14:00:00.000Z",
"descriptions": [
{
"lang": "en-US",
"value": "Server-side request forgery (ssrf) in Azure AI Foundry allows an unauthorized attacker to elevate privileges over a network."
}
],
"metrics": [
{
"cvssV3_1": {
"baseScore": 7.5,
"baseSeverity": "HIGH",
"vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N/E:P/RL:O/RC:C",
"version": "3.1"
},
"format": "CVSS",
"scenarios": [
{
"lang": "en-US",
"value": "GENERAL"
}
]
}
],
"problemTypes": [
{
"descriptions": [
{
"cweId": "CWE-918",
"description": "CWE-918: Server-Side Request Forgery (SSRF)",
"lang": "en-US",
"type": "CWE"
}
]
}
],
"providerMetadata": {
"dateUpdated": "2026-10-01T22:52:47.136Z",
"orgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
"shortName": "microsoft"
},
"references": [
{
"name": "Azure AI Foundry Elevation of Privilege Vulnerability",
"tags": [
"vendor-advisory",
"patch"
],
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-85917"
}
],
"tags": [
"exclusively-hosted-service"
],
"title": "Azure AI Foundry Elevation of Privilege Vulnerability"
}
},
"cveMetadata": {
"assignerOrgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
"assignerShortName": "microsoft",
"cveId": "CVE-2026-85917",
"datePublished": "2026-09-17T22:55:59.128Z",
"dateReserved": "2026-09-04T18:21:15.993Z",
"dateUpdated": "2026-10-01T22:52:47.136Z",
"state": "PUBLISHED"
},
"dataType": "CVE_RECORD",
"dataVersion": "5.2"
}
CVE-2026-85889 (GCVE-0-2026-85889)
Vulnerability from cvelistv5 – Published: 2026-09-17 22:55 – Updated: 2026-10-01 22:52 Exclusively Hosted Service- CWE-306 - Missing Authentication for Critical Function
| URL | Tags |
|---|---|
| https://msrc.microsoft.com/update-guide/vulnerabi… | vendor-advisorypatch |
| Vendor | Product | Version | |
|---|---|---|---|
| Microsoft | Azure AI Foundry |
Affected:
-
cpe:2.3:a:microsoft:azure_ai_foundry:*:*:*:*:*:*:*:* |
{
"containers": {
"adp": [
{
"metrics": [
{
"other": {
"content": {
"id": "CVE-2026-85889",
"options": [
{
"Exploitation": "none"
},
{
"Automatable": "yes"
},
{
"Technical Impact": "total"
}
],
"role": "CISA Coordinator",
"timestamp": "2026-09-18T00:00:00+00:00",
"version": "2.0.3"
},
"type": "ssvc"
}
}
],
"providerMetadata": {
"dateUpdated": "2026-09-19T03:56:30.125Z",
"orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"shortName": "CISA-ADP"
},
"title": "CISA ADP Vulnrichment"
}
],
"cna": {
"affected": [
{
"product": "Azure AI Foundry",
"vendor": "Microsoft",
"versions": [
{
"status": "affected",
"version": "-"
}
]
}
],
"cpeApplicability": [
{
"nodes": [
{
"cpeMatch": [
{
"criteria": "cpe:2.3:a:microsoft:azure_ai_foundry:*:*:*:*:*:*:*:*",
"versionStartIncluding": "-",
"vulnerable": true
}
],
"negate": false,
"operator": "OR"
}
]
}
],
"datePublic": "2026-09-17T14:00:00.000Z",
"descriptions": [
{
"lang": "en-US",
"value": "Missing authentication for critical function in Azure AI Foundry allows an unauthorized attacker to elevate privileges over a network."
}
],
"metrics": [
{
"cvssV3_1": {
"baseScore": 10,
"baseSeverity": "CRITICAL",
"vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H/E:U/RL:O/RC:C",
"version": "3.1"
},
"format": "CVSS",
"scenarios": [
{
"lang": "en-US",
"value": "GENERAL"
}
]
}
],
"problemTypes": [
{
"descriptions": [
{
"cweId": "CWE-306",
"description": "CWE-306: Missing Authentication for Critical Function",
"lang": "en-US",
"type": "CWE"
}
]
}
],
"providerMetadata": {
"dateUpdated": "2026-10-01T22:52:46.536Z",
"orgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
"shortName": "microsoft"
},
"references": [
{
"name": "Azure AI Foundry Elevation of Privilege Vulnerability",
"tags": [
"vendor-advisory",
"patch"
],
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-85889"
}
],
"tags": [
"exclusively-hosted-service"
],
"title": "Azure AI Foundry Elevation of Privilege Vulnerability"
}
},
"cveMetadata": {
"assignerOrgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
"assignerShortName": "microsoft",
"cveId": "CVE-2026-85889",
"datePublished": "2026-09-17T22:55:58.597Z",
"dateReserved": "2026-09-04T18:18:19.328Z",
"dateUpdated": "2026-10-01T22:52:46.536Z",
"state": "PUBLISHED"
},
"dataType": "CVE_RECORD",
"dataVersion": "5.2"
}
CVE-2026-70200 (GCVE-0-2026-70200)
Vulnerability from cvelistv5 – Published: 2026-09-17 22:55 – Updated: 2026-10-01 22:52 Exclusively Hosted Service| URL | Tags |
|---|---|
| https://msrc.microsoft.com/update-guide/vulnerabi… | vendor-advisorypatch |
| Vendor | Product | Version | |
|---|---|---|---|
| Microsoft | Azure Logic Apps |
Affected:
-
cpe:2.3:a:microsoft:azure_logic_apps:*:*:*:*:*:*:*:* |
{
"containers": {
"adp": [
{
"metrics": [
{
"other": {
"content": {
"id": "CVE-2026-70200",
"options": [
{
"Exploitation": "none"
},
{
"Automatable": "yes"
},
{
"Technical Impact": "total"
}
],
"role": "CISA Coordinator",
"timestamp": "2026-09-18T00:00:00+00:00",
"version": "2.0.3"
},
"type": "ssvc"
}
}
],
"providerMetadata": {
"dateUpdated": "2026-09-19T03:56:32.293Z",
"orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"shortName": "CISA-ADP"
},
"title": "CISA ADP Vulnrichment"
}
],
"cna": {
"affected": [
{
"product": "Azure Logic Apps",
"vendor": "Microsoft",
"versions": [
{
"status": "affected",
"version": "-"
}
]
}
],
"cpeApplicability": [
{
"nodes": [
{
"cpeMatch": [
{
"criteria": "cpe:2.3:a:microsoft:azure_logic_apps:*:*:*:*:*:*:*:*",
"versionStartIncluding": "-",
"vulnerable": true
}
],
"negate": false,
"operator": "OR"
}
]
}
],
"datePublic": "2026-09-17T14:00:00.000Z",
"descriptions": [
{
"lang": "en-US",
"value": "Improper limitation of a pathname to a restricted directory (\u0027path traversal\u0027) in Azure Logic Apps allows an unauthorized attacker to elevate privileges over a network."
}
],
"metrics": [
{
"cvssV3_1": {
"baseScore": 10,
"baseSeverity": "CRITICAL",
"vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:N/E:U/RL:O/RC:C",
"version": "3.1"
},
"format": "CVSS",
"scenarios": [
{
"lang": "en-US",
"value": "GENERAL"
}
]
}
],
"problemTypes": [
{
"descriptions": [
{
"cweId": "CWE-22",
"description": "CWE-22: Improper Limitation of a Pathname to a Restricted Directory (\u0027Path Traversal\u0027)",
"lang": "en-US",
"type": "CWE"
},
{
"cweId": "CWE-285",
"description": "CWE-285: Improper Authorization",
"lang": "en-US",
"type": "CWE"
}
]
}
],
"providerMetadata": {
"dateUpdated": "2026-10-01T22:52:46.015Z",
"orgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
"shortName": "microsoft"
},
"references": [
{
"name": "Azure Logic Apps Elevation of Privilege Vulnerability",
"tags": [
"vendor-advisory",
"patch"
],
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-70200"
}
],
"tags": [
"exclusively-hosted-service"
],
"title": "Azure Logic Apps Elevation of Privilege Vulnerability"
}
},
"cveMetadata": {
"assignerOrgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
"assignerShortName": "microsoft",
"cveId": "CVE-2026-70200",
"datePublished": "2026-09-17T22:55:58.067Z",
"dateReserved": "2026-08-03T23:51:35.008Z",
"dateUpdated": "2026-10-01T22:52:46.015Z",
"state": "PUBLISHED"
},
"dataType": "CVE_RECORD",
"dataVersion": "5.2"
}
CVE-2026-87701 (GCVE-0-2026-87701)
Vulnerability from cvelistv5 – Published: 2026-09-17 22:55 – Updated: 2026-10-01 22:52 Exclusively Hosted Service- CWE-74 - Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')
| URL | Tags |
|---|---|
| https://msrc.microsoft.com/update-guide/vulnerabi… | vendor-advisorypatch |
| Vendor | Product | Version | |
|---|---|---|---|
| Microsoft | Azure Cosmos DB |
Affected:
-
cpe:2.3:a:microsoft:cosmos_db:*:*:*:*:*:*:*:* |
{
"containers": {
"adp": [
{
"metrics": [
{
"other": {
"content": {
"id": "CVE-2026-87701",
"options": [
{
"Exploitation": "none"
},
{
"Automatable": "no"
},
{
"Technical Impact": "total"
}
],
"role": "CISA Coordinator",
"timestamp": "2026-09-18T00:00:00+00:00",
"version": "2.0.3"
},
"type": "ssvc"
}
}
],
"providerMetadata": {
"dateUpdated": "2026-09-19T03:56:33.396Z",
"orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"shortName": "CISA-ADP"
},
"title": "CISA ADP Vulnrichment"
}
],
"cna": {
"affected": [
{
"product": "Azure Cosmos DB",
"vendor": "Microsoft",
"versions": [
{
"status": "affected",
"version": "-"
}
]
}
],
"cpeApplicability": [
{
"nodes": [
{
"cpeMatch": [
{
"criteria": "cpe:2.3:a:microsoft:cosmos_db:*:*:*:*:*:*:*:*",
"versionStartIncluding": "-",
"vulnerable": true
}
],
"negate": false,
"operator": "OR"
}
]
}
],
"datePublic": "2026-09-17T14:00:00.000Z",
"descriptions": [
{
"lang": "en-US",
"value": "Improper neutralization of special elements in output used by a downstream component (\u0027injection\u0027) in Azure Cosmos DB allows an authorized attacker to elevate privileges over a network."
}
],
"metrics": [
{
"cvssV3_1": {
"baseScore": 9.6,
"baseSeverity": "CRITICAL",
"vectorString": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:N/E:U/RL:O/RC:C",
"version": "3.1"
},
"format": "CVSS",
"scenarios": [
{
"lang": "en-US",
"value": "GENERAL"
}
]
}
],
"problemTypes": [
{
"descriptions": [
{
"cweId": "CWE-74",
"description": "CWE-74: Improper Neutralization of Special Elements in Output Used by a Downstream Component (\u0027Injection\u0027)",
"lang": "en-US",
"type": "CWE"
}
]
}
],
"providerMetadata": {
"dateUpdated": "2026-10-01T22:52:45.488Z",
"orgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
"shortName": "microsoft"
},
"references": [
{
"name": "Azure Cosmos DB Elevation of Privilege Vulnerability",
"tags": [
"vendor-advisory",
"patch"
],
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87701"
}
],
"tags": [
"exclusively-hosted-service"
],
"title": "Azure Cosmos DB Elevation of Privilege Vulnerability"
}
},
"cveMetadata": {
"assignerOrgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
"assignerShortName": "microsoft",
"cveId": "CVE-2026-87701",
"datePublished": "2026-09-17T22:55:57.445Z",
"dateReserved": "2026-09-08T23:57:53.797Z",
"dateUpdated": "2026-10-01T22:52:45.488Z",
"state": "PUBLISHED"
},
"dataType": "CVE_RECORD",
"dataVersion": "5.2"
}
CVE-2026-78501 (GCVE-0-2026-78501)
Vulnerability from cvelistv5 – Published: 2026-09-17 22:55 – Updated: 2026-10-01 22:56 Exclusively Hosted Service| URL | Tags |
|---|---|
| https://msrc.microsoft.com/update-guide/vulnerabi… | vendor-advisorypatch |
| Vendor | Product | Version | |
|---|---|---|---|
| Microsoft | Microsoft 365 Copilot's Business Chat |
Affected:
-
cpe:2.3:a:microsoft:365_copilot_business_chat:*:*:*:*:*:*:*:* |
{
"containers": {
"adp": [
{
"metrics": [
{
"other": {
"content": {
"id": "CVE-2026-78501",
"options": [
{
"Exploitation": "none"
},
{
"Automatable": "no"
},
{
"Technical Impact": "partial"
}
],
"role": "CISA Coordinator",
"timestamp": "2026-09-18T14:11:07.081015Z",
"version": "2.0.3"
},
"type": "ssvc"
}
}
],
"providerMetadata": {
"dateUpdated": "2026-09-18T14:31:46.454Z",
"orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"shortName": "CISA-ADP"
},
"title": "CISA ADP Vulnrichment"
}
],
"cna": {
"affected": [
{
"product": "Microsoft 365 Copilot\u0027s Business Chat",
"vendor": "Microsoft",
"versions": [
{
"status": "affected",
"version": "-"
}
]
}
],
"cpeApplicability": [
{
"nodes": [
{
"cpeMatch": [
{
"criteria": "cpe:2.3:a:microsoft:365_copilot_business_chat:*:*:*:*:*:*:*:*",
"versionStartIncluding": "-",
"vulnerable": true
}
],
"negate": false,
"operator": "OR"
}
]
}
],
"datePublic": "2026-09-17T14:00:00.000Z",
"descriptions": [
{
"lang": "en-US",
"value": "Improper neutralization of special elements used in a command (\u0027command injection\u0027) in Microsoft 365 Copilot\u0027s Business Chat allows an unauthorized attacker to disclose information over a network."
}
],
"metrics": [
{
"cvssV3_1": {
"baseScore": 7.4,
"baseSeverity": "HIGH",
"vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:N/A:N/E:U/RL:O/RC:C",
"version": "3.1"
},
"format": "CVSS",
"scenarios": [
{
"lang": "en-US",
"value": "GENERAL"
}
]
}
],
"problemTypes": [
{
"descriptions": [
{
"cweId": "CWE-77",
"description": "CWE-77: Improper Neutralization of Special Elements used in a Command (\u0027Command Injection\u0027)",
"lang": "en-US",
"type": "CWE"
},
{
"cweId": "CWE-923",
"description": "CWE-923: Improper Restriction of Communication Channel to Intended Endpoints",
"lang": "en-US",
"type": "CWE"
}
]
}
],
"providerMetadata": {
"dateUpdated": "2026-10-01T22:56:20.681Z",
"orgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
"shortName": "microsoft"
},
"references": [
{
"name": "Microsoft 365 Copilot Business Chat Information Disclosure Vulnerability",
"tags": [
"vendor-advisory",
"patch"
],
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-78501"
}
],
"tags": [
"exclusively-hosted-service"
],
"title": "Microsoft 365 Copilot Business Chat Information Disclosure Vulnerability"
}
},
"cveMetadata": {
"assignerOrgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
"assignerShortName": "microsoft",
"cveId": "CVE-2026-78501",
"datePublished": "2026-09-17T22:55:56.907Z",
"dateReserved": "2026-08-24T17:28:00.621Z",
"dateUpdated": "2026-10-01T22:56:20.681Z",
"state": "PUBLISHED"
},
"dataType": "CVE_RECORD",
"dataVersion": "5.2"
}
CVE-2026-83944 (GCVE-0-2026-83944)
Vulnerability from cvelistv5 – Published: 2026-09-17 22:55 – Updated: 2026-10-01 22:52 Exclusively Hosted Service- CWE-284 - Improper Access Control
| URL | Tags |
|---|---|
| https://msrc.microsoft.com/update-guide/vulnerabi… | vendor-advisorypatch |
| Vendor | Product | Version | |
|---|---|---|---|
| Microsoft | Azure Logic Apps |
Affected:
-
cpe:2.3:a:microsoft:azure_logic_apps:*:*:*:*:*:*:*:* |
{
"containers": {
"adp": [
{
"metrics": [
{
"other": {
"content": {
"id": "CVE-2026-83944",
"options": [
{
"Exploitation": "none"
},
{
"Automatable": "yes"
},
{
"Technical Impact": "total"
}
],
"role": "CISA Coordinator",
"timestamp": "2026-09-18T00:00:00+00:00",
"version": "2.0.3"
},
"type": "ssvc"
}
}
],
"providerMetadata": {
"dateUpdated": "2026-09-19T03:56:34.495Z",
"orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"shortName": "CISA-ADP"
},
"title": "CISA ADP Vulnrichment"
}
],
"cna": {
"affected": [
{
"product": "Azure Logic Apps",
"vendor": "Microsoft",
"versions": [
{
"status": "affected",
"version": "-"
}
]
}
],
"cpeApplicability": [
{
"nodes": [
{
"cpeMatch": [
{
"criteria": "cpe:2.3:a:microsoft:azure_logic_apps:*:*:*:*:*:*:*:*",
"versionStartIncluding": "-",
"vulnerable": true
}
],
"negate": false,
"operator": "OR"
}
]
}
],
"datePublic": "2026-09-17T14:00:00.000Z",
"descriptions": [
{
"lang": "en-US",
"value": "Improper access control in Azure Logic Apps allows an unauthorized attacker to elevate privileges over a network."
}
],
"metrics": [
{
"cvssV3_1": {
"baseScore": 10,
"baseSeverity": "CRITICAL",
"vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:N/E:U/RL:O/RC:C",
"version": "3.1"
},
"format": "CVSS",
"scenarios": [
{
"lang": "en-US",
"value": "GENERAL"
}
]
}
],
"problemTypes": [
{
"descriptions": [
{
"cweId": "CWE-284",
"description": "CWE-284: Improper Access Control",
"lang": "en-US",
"type": "CWE"
}
]
}
],
"providerMetadata": {
"dateUpdated": "2026-10-01T22:52:44.970Z",
"orgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
"shortName": "microsoft"
},
"references": [
{
"name": "Azure Logic Apps Elevation of Privilege Vulnerability",
"tags": [
"vendor-advisory",
"patch"
],
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-83944"
}
],
"tags": [
"exclusively-hosted-service"
],
"title": "Azure Logic Apps Elevation of Privilege Vulnerability"
}
},
"cveMetadata": {
"assignerOrgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
"assignerShortName": "microsoft",
"cveId": "CVE-2026-83944",
"datePublished": "2026-09-17T22:55:56.302Z",
"dateReserved": "2026-08-31T23:40:59.641Z",
"dateUpdated": "2026-10-01T22:52:44.970Z",
"state": "PUBLISHED"
},
"dataType": "CVE_RECORD",
"dataVersion": "5.2"
}
CVE-2026-85885 (GCVE-0-2026-85885)
Vulnerability from cvelistv5 – Published: 2026-09-17 22:55 – Updated: 2026-10-01 22:52 Exclusively Hosted Service- CWE-77 - Improper Neutralization of Special Elements used in a Command ('Command Injection')
| URL | Tags |
|---|---|
| https://msrc.microsoft.com/update-guide/vulnerabi… | vendor-advisorypatch |
| Vendor | Product | Version | |
|---|---|---|---|
| Microsoft | Microsoft 365 Copilot |
Affected:
-
cpe:2.3:a:microsoft:365_copilot:*:*:*:*:*:*:*:* |
{
"containers": {
"adp": [
{
"metrics": [
{
"other": {
"content": {
"id": "CVE-2026-85885",
"options": [
{
"Exploitation": "none"
},
{
"Automatable": "no"
},
{
"Technical Impact": "total"
}
],
"role": "CISA Coordinator",
"timestamp": "2026-09-18T00:00:00+00:00",
"version": "2.0.3"
},
"type": "ssvc"
}
}
],
"providerMetadata": {
"dateUpdated": "2026-09-19T03:56:35.652Z",
"orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"shortName": "CISA-ADP"
},
"title": "CISA ADP Vulnrichment"
}
],
"cna": {
"affected": [
{
"product": "Microsoft 365 Copilot",
"vendor": "Microsoft",
"versions": [
{
"status": "affected",
"version": "-"
}
]
}
],
"cpeApplicability": [
{
"nodes": [
{
"cpeMatch": [
{
"criteria": "cpe:2.3:a:microsoft:365_copilot:*:*:*:*:*:*:*:*",
"versionStartIncluding": "-",
"vulnerable": true
}
],
"negate": false,
"operator": "OR"
}
]
}
],
"datePublic": "2026-09-17T14:00:00.000Z",
"descriptions": [
{
"lang": "en-US",
"value": "Improper neutralization of special elements used in a command (\u0027command injection\u0027) in M365 Copilot allows an authorized attacker to elevate privileges over a network."
}
],
"metrics": [
{
"cvssV3_1": {
"baseScore": 9.9,
"baseSeverity": "CRITICAL",
"vectorString": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H/E:U/RL:O/RC:C",
"version": "3.1"
},
"format": "CVSS",
"scenarios": [
{
"lang": "en-US",
"value": "GENERAL"
}
]
}
],
"problemTypes": [
{
"descriptions": [
{
"cweId": "CWE-77",
"description": "CWE-77: Improper Neutralization of Special Elements used in a Command (\u0027Command Injection\u0027)",
"lang": "en-US",
"type": "CWE"
}
]
}
],
"providerMetadata": {
"dateUpdated": "2026-10-01T22:52:44.474Z",
"orgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
"shortName": "microsoft"
},
"references": [
{
"name": "Microsoft 365 Copilot Elevation of Privilege Vulnerability",
"tags": [
"vendor-advisory",
"patch"
],
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-85885"
}
],
"tags": [
"exclusively-hosted-service"
],
"title": "Microsoft 365 Copilot Elevation of Privilege Vulnerability"
}
},
"cveMetadata": {
"assignerOrgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
"assignerShortName": "microsoft",
"cveId": "CVE-2026-85885",
"datePublished": "2026-09-17T22:55:55.696Z",
"dateReserved": "2026-09-04T18:18:19.327Z",
"dateUpdated": "2026-10-01T22:52:44.474Z",
"state": "PUBLISHED"
},
"dataType": "CVE_RECORD",
"dataVersion": "5.2"
}
CVE-2026-68791 (GCVE-0-2026-68791)
Vulnerability from cvelistv5 – Published: 2026-09-17 22:55 – Updated: 2026-10-01 22:52 Exclusively Hosted Service- CWE-863 - Incorrect Authorization
| URL | Tags |
|---|---|
| https://msrc.microsoft.com/update-guide/vulnerabi… | vendor-advisorypatch |
| Vendor | Product | Version | |
|---|---|---|---|
| Microsoft | Azure Machine Learning |
Affected:
-
cpe:2.3:a:microsoft:azure_machine_learning:*:*:*:*:*:*:*:* |
{
"containers": {
"adp": [
{
"metrics": [
{
"other": {
"content": {
"id": "CVE-2026-68791",
"options": [
{
"Exploitation": "none"
},
{
"Automatable": "yes"
},
{
"Technical Impact": "partial"
}
],
"role": "CISA Coordinator",
"timestamp": "2026-09-18T14:12:18.387537Z",
"version": "2.0.3"
},
"type": "ssvc"
}
}
],
"providerMetadata": {
"dateUpdated": "2026-09-18T14:31:45.519Z",
"orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"shortName": "CISA-ADP"
},
"title": "CISA ADP Vulnrichment"
}
],
"cna": {
"affected": [
{
"product": "Azure Machine Learning",
"vendor": "Microsoft",
"versions": [
{
"status": "affected",
"version": "-"
}
]
}
],
"cpeApplicability": [
{
"nodes": [
{
"cpeMatch": [
{
"criteria": "cpe:2.3:a:microsoft:azure_machine_learning:*:*:*:*:*:*:*:*",
"versionStartIncluding": "-",
"vulnerable": true
}
],
"negate": false,
"operator": "OR"
}
]
}
],
"datePublic": "2026-09-17T14:00:00.000Z",
"descriptions": [
{
"lang": "en-US",
"value": "Incorrect authorization in Azure Machine Learning allows an unauthorized attacker to disclose information over a network."
}
],
"metrics": [
{
"cvssV3_1": {
"baseScore": 8.6,
"baseSeverity": "HIGH",
"vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:N/E:U/RL:O/RC:C",
"version": "3.1"
},
"format": "CVSS",
"scenarios": [
{
"lang": "en-US",
"value": "GENERAL"
}
]
}
],
"problemTypes": [
{
"descriptions": [
{
"cweId": "CWE-863",
"description": "CWE-863: Incorrect Authorization",
"lang": "en-US",
"type": "CWE"
}
]
}
],
"providerMetadata": {
"dateUpdated": "2026-10-01T22:52:43.960Z",
"orgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
"shortName": "microsoft"
},
"references": [
{
"name": "Azure Machine Learning Information Disclosure Vulnerability",
"tags": [
"vendor-advisory",
"patch"
],
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-68791"
}
],
"tags": [
"exclusively-hosted-service"
],
"title": "Azure Machine Learning Information Disclosure Vulnerability"
}
},
"cveMetadata": {
"assignerOrgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
"assignerShortName": "microsoft",
"cveId": "CVE-2026-68791",
"datePublished": "2026-09-17T22:55:55.200Z",
"dateReserved": "2026-07-31T16:33:08.216Z",
"dateUpdated": "2026-10-01T22:52:43.960Z",
"state": "PUBLISHED"
},
"dataType": "CVE_RECORD",
"dataVersion": "5.2"
}
CVE-2026-69399 (GCVE-0-2026-69399)
Vulnerability from cvelistv5 – Published: 2026-09-17 22:55 – Updated: 2026-10-01 22:52 Exclusively Hosted Service- CWE-441 - Unintended Proxy or Intermediary
| URL | Tags |
|---|---|
| https://msrc.microsoft.com/update-guide/vulnerabi… | vendor-advisorypatch |
{
"containers": {
"adp": [
{
"metrics": [
{
"other": {
"content": {
"id": "CVE-2026-69399",
"options": [
{
"Exploitation": "none"
},
{
"Automatable": "yes"
},
{
"Technical Impact": "total"
}
],
"role": "CISA Coordinator",
"timestamp": "2026-09-18T14:12:08.773079Z",
"version": "2.0.3"
},
"type": "ssvc"
}
}
],
"providerMetadata": {
"dateUpdated": "2026-09-18T14:31:45.698Z",
"orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"shortName": "CISA-ADP"
},
"title": "CISA ADP Vulnrichment"
}
],
"cna": {
"affected": [
{
"product": "Azure ARC",
"vendor": "Microsoft",
"versions": [
{
"status": "affected",
"version": "-"
}
]
}
],
"cpeApplicability": [
{
"nodes": [
{
"cpeMatch": [
{
"criteria": "cpe:2.3:a:microsoft:azure_arc:*:*:*:*:*:*:*:*",
"versionStartIncluding": "-",
"vulnerable": true
}
],
"negate": false,
"operator": "OR"
}
]
}
],
"datePublic": "2026-09-17T14:00:00.000Z",
"descriptions": [
{
"lang": "en-US",
"value": "Azure Arc Elevation of Privilege Vulnerability"
}
],
"metrics": [
{
"cvssV3_1": {
"baseScore": 10,
"baseSeverity": "CRITICAL",
"vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H/E:U/RL:O/RC:C",
"version": "3.1"
},
"format": "CVSS",
"scenarios": [
{
"lang": "en-US",
"value": "GENERAL"
}
]
}
],
"problemTypes": [
{
"descriptions": [
{
"cweId": "CWE-441",
"description": "CWE-441 Unintended Proxy or Intermediary",
"lang": "en-US",
"type": "CWE"
}
]
}
],
"providerMetadata": {
"dateUpdated": "2026-10-01T22:52:43.472Z",
"orgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
"shortName": "microsoft"
},
"references": [
{
"name": "Azure Arc Elevation of Privilege Vulnerability",
"tags": [
"vendor-advisory",
"patch"
],
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-69399"
}
],
"tags": [
"exclusively-hosted-service"
],
"title": "Azure Arc Elevation of Privilege Vulnerability"
}
},
"cveMetadata": {
"assignerOrgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
"assignerShortName": "microsoft",
"cveId": "CVE-2026-69399",
"datePublished": "2026-09-17T22:55:54.666Z",
"dateReserved": "2026-08-03T20:57:58.962Z",
"dateUpdated": "2026-10-01T22:52:43.472Z",
"state": "PUBLISHED"
},
"dataType": "CVE_RECORD",
"dataVersion": "5.2"
}
CVE-2026-77903 (GCVE-0-2026-77903)
Vulnerability from cvelistv5 – Published: 2026-09-17 22:55 – Updated: 2026-10-01 22:52 Exclusively Hosted Service- CWE-290 - Authentication Bypass by Spoofing
| URL | Tags |
|---|---|
| https://msrc.microsoft.com/update-guide/vulnerabi… | vendor-advisorypatch |
| Vendor | Product | Version | |
|---|---|---|---|
| Microsoft | Microsoft Dataverse |
Affected:
-
cpe:2.3:a:microsoft:dataverse:*:*:*:*:*:*:*:* |
{
"containers": {
"adp": [
{
"metrics": [
{
"other": {
"content": {
"id": "CVE-2026-77903",
"options": [
{
"Exploitation": "none"
},
{
"Automatable": "no"
},
{
"Technical Impact": "total"
}
],
"role": "CISA Coordinator",
"timestamp": "2026-09-18T00:00:00+00:00",
"version": "2.0.3"
},
"type": "ssvc"
}
}
],
"providerMetadata": {
"dateUpdated": "2026-09-19T03:56:37.851Z",
"orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"shortName": "CISA-ADP"
},
"title": "CISA ADP Vulnrichment"
}
],
"cna": {
"affected": [
{
"product": "Microsoft Dataverse",
"vendor": "Microsoft",
"versions": [
{
"status": "affected",
"version": "-"
}
]
}
],
"cpeApplicability": [
{
"nodes": [
{
"cpeMatch": [
{
"criteria": "cpe:2.3:a:microsoft:dataverse:*:*:*:*:*:*:*:*",
"versionStartIncluding": "-",
"vulnerable": true
}
],
"negate": false,
"operator": "OR"
}
]
}
],
"datePublic": "2026-09-17T14:00:00.000Z",
"descriptions": [
{
"lang": "en-US",
"value": "Authentication bypass by spoofing in Microsoft Dataverse allows an unauthorized attacker to elevate privileges over a network."
}
],
"metrics": [
{
"cvssV3_1": {
"baseScore": 9,
"baseSeverity": "CRITICAL",
"vectorString": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H/E:U/RL:O/RC:C",
"version": "3.1"
},
"format": "CVSS",
"scenarios": [
{
"lang": "en-US",
"value": "GENERAL"
}
]
}
],
"problemTypes": [
{
"descriptions": [
{
"cweId": "CWE-290",
"description": "CWE-290: Authentication Bypass by Spoofing",
"lang": "en-US",
"type": "CWE"
}
]
}
],
"providerMetadata": {
"dateUpdated": "2026-10-01T22:52:42.414Z",
"orgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
"shortName": "microsoft"
},
"references": [
{
"name": "Microsoft Dataverse Elevation of Privilege Vulnerability",
"tags": [
"vendor-advisory",
"patch"
],
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-77903"
}
],
"tags": [
"exclusively-hosted-service"
],
"title": "Microsoft Dataverse Elevation of Privilege Vulnerability"
}
},
"cveMetadata": {
"assignerOrgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
"assignerShortName": "microsoft",
"cveId": "CVE-2026-77903",
"datePublished": "2026-09-17T22:55:54.051Z",
"dateReserved": "2026-08-21T17:26:55.613Z",
"dateUpdated": "2026-10-01T22:52:42.414Z",
"state": "PUBLISHED"
},
"dataType": "CVE_RECORD",
"dataVersion": "5.2"
}
CVE-2026-69865 (GCVE-0-2026-69865)
Vulnerability from cvelistv5 – Published: 2026-09-17 22:55 – Updated: 2026-10-01 22:52 Exclusively Hosted Service- CWE-639 - Authorization Bypass Through User-Controlled Key
| URL | Tags |
|---|---|
| https://msrc.microsoft.com/update-guide/vulnerabi… | vendor-advisorypatch |
| Vendor | Product | Version | |
|---|---|---|---|
| Microsoft | Azure Container Registry |
Affected:
-
cpe:2.3:a:microsoft:azure_container_registry:*:*:*:*:*:*:*:* |
{
"containers": {
"adp": [
{
"metrics": [
{
"other": {
"content": {
"id": "CVE-2026-69865",
"options": [
{
"Exploitation": "none"
},
{
"Automatable": "yes"
},
{
"Technical Impact": "total"
}
],
"role": "CISA Coordinator",
"timestamp": "2026-09-25T00:00:00+00:00",
"version": "2.0.3"
},
"type": "ssvc"
}
}
],
"providerMetadata": {
"dateUpdated": "2026-09-26T03:55:42.919Z",
"orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"shortName": "CISA-ADP"
},
"title": "CISA ADP Vulnrichment"
}
],
"cna": {
"affected": [
{
"product": "Azure Container Registry",
"vendor": "Microsoft",
"versions": [
{
"status": "affected",
"version": "-"
}
]
}
],
"cpeApplicability": [
{
"nodes": [
{
"cpeMatch": [
{
"criteria": "cpe:2.3:a:microsoft:azure_container_registry:*:*:*:*:*:*:*:*",
"versionStartIncluding": "-",
"vulnerable": true
}
],
"negate": false,
"operator": "OR"
}
]
}
],
"datePublic": "2026-09-17T14:00:00.000Z",
"descriptions": [
{
"lang": "en-US",
"value": "Authorization bypass through user-controlled key in Microsoft Container Registry allows an unauthorized attacker to elevate privileges over a network."
}
],
"metrics": [
{
"cvssV3_1": {
"baseScore": 10,
"baseSeverity": "CRITICAL",
"vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:N/E:U/RL:O/RC:C",
"version": "3.1"
},
"format": "CVSS",
"scenarios": [
{
"lang": "en-US",
"value": "GENERAL"
}
]
}
],
"problemTypes": [
{
"descriptions": [
{
"cweId": "CWE-639",
"description": "CWE-639: Authorization Bypass Through User-Controlled Key",
"lang": "en-US",
"type": "CWE"
}
]
}
],
"providerMetadata": {
"dateUpdated": "2026-10-01T22:52:41.928Z",
"orgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
"shortName": "microsoft"
},
"references": [
{
"name": "Microsoft Container Registry Elevation of Privilege Vulnerability",
"tags": [
"vendor-advisory",
"patch"
],
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-69865"
}
],
"tags": [
"exclusively-hosted-service"
],
"title": "Microsoft Container Registry Elevation of Privilege Vulnerability"
}
},
"cveMetadata": {
"assignerOrgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
"assignerShortName": "microsoft",
"cveId": "CVE-2026-69865",
"datePublished": "2026-09-17T22:55:53.514Z",
"dateReserved": "2026-08-03T22:53:31.649Z",
"dateUpdated": "2026-10-01T22:52:41.928Z",
"state": "PUBLISHED"
},
"dataType": "CVE_RECORD",
"dataVersion": "5.2"
}
CVE-2026-70009 (GCVE-0-2026-70009)
Vulnerability from cvelistv5 – Published: 2026-09-17 22:55 – Updated: 2026-10-01 22:52 Exclusively Hosted Service- CWE-22 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
| URL | Tags |
|---|---|
| https://msrc.microsoft.com/update-guide/vulnerabi… | vendor-advisorypatch |
{
"containers": {
"adp": [
{
"metrics": [
{
"other": {
"content": {
"id": "CVE-2026-70009",
"options": [
{
"Exploitation": "none"
},
{
"Automatable": "yes"
},
{
"Technical Impact": "total"
}
],
"role": "CISA Coordinator",
"timestamp": "2026-09-19T03:56:39.745856Z",
"version": "2.0.3"
},
"type": "ssvc"
}
}
],
"providerMetadata": {
"dateUpdated": "2026-09-21T12:49:02.480Z",
"orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"shortName": "CISA-ADP"
},
"title": "CISA ADP Vulnrichment"
}
],
"cna": {
"affected": [
{
"product": "Azure ARC",
"vendor": "Microsoft",
"versions": [
{
"status": "affected",
"version": "-"
}
]
}
],
"cpeApplicability": [
{
"nodes": [
{
"cpeMatch": [
{
"criteria": "cpe:2.3:a:microsoft:azure_arc:*:*:*:*:*:*:*:*",
"versionStartIncluding": "-",
"vulnerable": true
}
],
"negate": false,
"operator": "OR"
}
]
}
],
"datePublic": "2026-09-17T14:00:00.000Z",
"descriptions": [
{
"lang": "en-US",
"value": "Improper limitation of a pathname to a restricted directory (\u0027path traversal\u0027) in Azure Arc allows an unauthorized attacker to elevate privileges over a network."
}
],
"metrics": [
{
"cvssV3_1": {
"baseScore": 9.3,
"baseSeverity": "CRITICAL",
"vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:L/I:H/A:N/E:U/RL:O/RC:C",
"version": "3.1"
},
"format": "CVSS",
"scenarios": [
{
"lang": "en-US",
"value": "GENERAL"
}
]
}
],
"problemTypes": [
{
"descriptions": [
{
"cweId": "CWE-22",
"description": "CWE-22: Improper Limitation of a Pathname to a Restricted Directory (\u0027Path Traversal\u0027)",
"lang": "en-US",
"type": "CWE"
}
]
}
],
"providerMetadata": {
"dateUpdated": "2026-10-01T22:52:41.432Z",
"orgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
"shortName": "microsoft"
},
"references": [
{
"name": "Azure Arc Elevation of Privilege Vulnerability",
"tags": [
"vendor-advisory",
"patch"
],
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-70009"
}
],
"tags": [
"exclusively-hosted-service"
],
"title": "Azure Arc Elevation of Privilege Vulnerability"
}
},
"cveMetadata": {
"assignerOrgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
"assignerShortName": "microsoft",
"cveId": "CVE-2026-70009",
"datePublished": "2026-09-17T22:55:53.056Z",
"dateReserved": "2026-08-03T23:07:44.323Z",
"dateUpdated": "2026-10-01T22:52:41.432Z",
"state": "PUBLISHED"
},
"dataType": "CVE_RECORD",
"dataVersion": "5.2"
}
CVE-2026-55946 (GCVE-0-2026-55946)
Vulnerability from cvelistv5 – Published: 2026-09-17 22:55 – Updated: 2026-10-01 22:52 Exclusively Hosted Service- CWE-77 - Improper Neutralization of Special Elements used in a Command ('Command Injection')
| URL | Tags |
|---|---|
| https://msrc.microsoft.com/update-guide/vulnerabi… | vendor-advisorypatch |
| Vendor | Product | Version | |
|---|---|---|---|
| Microsoft | Microsoft Copilot |
Affected:
-
cpe:2.3:a:microsoft:copilot:*:*:*:*:*:*:*:* |
{
"containers": {
"adp": [
{
"metrics": [
{
"other": {
"content": {
"id": "CVE-2026-55946",
"options": [
{
"Exploitation": "none"
},
{
"Automatable": "no"
},
{
"Technical Impact": "total"
}
],
"role": "CISA Coordinator",
"timestamp": "2026-09-19T03:56:40.835292Z",
"version": "2.0.3"
},
"type": "ssvc"
}
}
],
"providerMetadata": {
"dateUpdated": "2026-09-21T12:48:47.863Z",
"orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"shortName": "CISA-ADP"
},
"title": "CISA ADP Vulnrichment"
}
],
"cna": {
"affected": [
{
"product": "Microsoft Copilot",
"vendor": "Microsoft",
"versions": [
{
"status": "affected",
"version": "-"
}
]
}
],
"cpeApplicability": [
{
"nodes": [
{
"cpeMatch": [
{
"criteria": "cpe:2.3:a:microsoft:copilot:*:*:*:*:*:*:*:*",
"versionStartIncluding": "-",
"vulnerable": true
}
],
"negate": false,
"operator": "OR"
}
]
}
],
"datePublic": "2026-09-17T14:00:00.000Z",
"descriptions": [
{
"lang": "en-US",
"value": "Improper neutralization of special elements used in a command (\u0027command injection\u0027) in Microsoft Copilot allows an unauthorized attacker to disclose information over a network."
}
],
"metrics": [
{
"cvssV3_1": {
"baseScore": 6.1,
"baseSeverity": "MEDIUM",
"vectorString": "CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:N/A:N/E:U/RL:O/RC:C",
"version": "3.1"
},
"format": "CVSS",
"scenarios": [
{
"lang": "en-US",
"value": "GENERAL"
}
]
}
],
"problemTypes": [
{
"descriptions": [
{
"cweId": "CWE-77",
"description": "CWE-77: Improper Neutralization of Special Elements used in a Command (\u0027Command Injection\u0027)",
"lang": "en-US",
"type": "CWE"
}
]
}
],
"providerMetadata": {
"dateUpdated": "2026-10-01T22:52:40.912Z",
"orgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
"shortName": "microsoft"
},
"references": [
{
"name": "Microsoft Copilot Information Disclosure Vulnerability",
"tags": [
"vendor-advisory",
"patch"
],
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-55946"
}
],
"tags": [
"exclusively-hosted-service"
],
"title": "Microsoft Copilot Information Disclosure Vulnerability"
}
},
"cveMetadata": {
"assignerOrgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
"assignerShortName": "microsoft",
"cveId": "CVE-2026-55946",
"datePublished": "2026-09-17T22:55:52.438Z",
"dateReserved": "2026-06-17T17:37:17.983Z",
"dateUpdated": "2026-10-01T22:52:40.912Z",
"state": "PUBLISHED"
},
"dataType": "CVE_RECORD",
"dataVersion": "5.2"
}
CVE-2026-85893 (GCVE-0-2026-85893)
Vulnerability from cvelistv5 – Published: 2026-09-15 22:44 – Updated: 2026-10-01 23:01- CWE-416 - Use After Free
| URL | Tags |
|---|---|
| https://msrc.microsoft.com/update-guide/vulnerabi… | vendor-advisorypatch |
| Vendor | Product | Version | |
|---|---|---|---|
| Microsoft | Microsoft Edge (Chromium-based) |
Affected:
1.0.0.0 , < 153.0.4234.32
(custom)
cpe:2.3:a:microsoft:edge_chromium:*:*:*:*:*:*:*:* |
{
"containers": {
"adp": [
{
"metrics": [
{
"other": {
"content": {
"id": "CVE-2026-85893",
"options": [
{
"Exploitation": "none"
},
{
"Automatable": "no"
},
{
"Technical Impact": "total"
}
],
"role": "CISA Coordinator",
"timestamp": "2026-09-17T03:57:02.999225Z",
"version": "2.0.3"
},
"type": "ssvc"
}
}
],
"providerMetadata": {
"dateUpdated": "2026-09-17T11:39:25.478Z",
"orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"shortName": "CISA-ADP"
},
"title": "CISA ADP Vulnrichment"
}
],
"cna": {
"affected": [
{
"product": "Microsoft Edge (Chromium-based)",
"vendor": "Microsoft",
"versions": [
{
"lessThan": "153.0.4234.32",
"status": "affected",
"version": "1.0.0.0",
"versionType": "custom"
}
]
}
],
"cpeApplicability": [
{
"nodes": [
{
"cpeMatch": [
{
"criteria": "cpe:2.3:a:microsoft:edge_chromium:*:*:*:*:*:*:*:*",
"versionEndExcluding": "153.0.4234.32",
"versionStartIncluding": "1.0.0.0",
"vulnerable": true
}
],
"negate": false,
"operator": "OR"
}
]
}
],
"datePublic": "2026-09-15T14:00:00.000Z",
"descriptions": [
{
"lang": "en-US",
"value": "Use after free in Microsoft Edge (Chromium-based) allows an unauthorized attacker to elevate privileges over a network."
}
],
"metrics": [
{
"cvssV3_1": {
"baseScore": 8.8,
"baseSeverity": "HIGH",
"vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C",
"version": "3.1"
},
"format": "CVSS",
"scenarios": [
{
"lang": "en-US",
"value": "GENERAL"
}
]
}
],
"problemTypes": [
{
"descriptions": [
{
"cweId": "CWE-416",
"description": "CWE-416: Use After Free",
"lang": "en-US",
"type": "CWE"
}
]
}
],
"providerMetadata": {
"dateUpdated": "2026-10-01T23:01:15.377Z",
"orgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
"shortName": "microsoft"
},
"references": [
{
"name": "Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability",
"tags": [
"vendor-advisory",
"patch"
],
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-85893"
}
],
"title": "Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability"
}
},
"cveMetadata": {
"assignerOrgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
"assignerShortName": "microsoft",
"cveId": "CVE-2026-85893",
"datePublished": "2026-09-15T22:44:32.511Z",
"dateReserved": "2026-09-04T18:18:19.328Z",
"dateUpdated": "2026-10-01T23:01:15.377Z",
"state": "PUBLISHED"
},
"dataType": "CVE_RECORD",
"dataVersion": "5.2"
}
CVE-2026-69486 (GCVE-0-2026-69486)
Vulnerability from cvelistv5 – Published: 2026-09-15 22:39 – Updated: 2026-10-01 22:56- CWE-122 - Heap-based Buffer Overflow
| URL | Tags |
|---|---|
| https://msrc.microsoft.com/update-guide/vulnerabi… | vendor-advisorypatch |
| Vendor | Product | Version | |
|---|---|---|---|
| Microsoft | Microsoft Edge (Chromium-based) |
Affected:
1.0.0.0 , < 153.0.4234.32
(custom)
cpe:2.3:a:microsoft:edge_chromium:*:*:*:*:*:*:*:* |
{
"containers": {
"adp": [
{
"metrics": [
{
"other": {
"content": {
"id": "CVE-2026-69486",
"options": [
{
"Exploitation": "none"
},
{
"Automatable": "no"
},
{
"Technical Impact": "total"
}
],
"role": "CISA Coordinator",
"timestamp": "2026-09-16T00:00:00+00:00",
"version": "2.0.3"
},
"type": "ssvc"
}
}
],
"providerMetadata": {
"dateUpdated": "2026-09-17T03:57:03.422Z",
"orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"shortName": "CISA-ADP"
},
"title": "CISA ADP Vulnrichment"
}
],
"cna": {
"affected": [
{
"product": "Microsoft Edge (Chromium-based)",
"vendor": "Microsoft",
"versions": [
{
"lessThan": "153.0.4234.32",
"status": "affected",
"version": "1.0.0.0",
"versionType": "custom"
}
]
}
],
"cpeApplicability": [
{
"nodes": [
{
"cpeMatch": [
{
"criteria": "cpe:2.3:a:microsoft:edge_chromium:*:*:*:*:*:*:*:*",
"versionEndExcluding": "153.0.4234.32",
"versionStartIncluding": "1.0.0.0",
"vulnerable": true
}
],
"negate": false,
"operator": "OR"
}
]
}
],
"datePublic": "2026-09-15T14:00:00.000Z",
"descriptions": [
{
"lang": "en-US",
"value": "Heap-based buffer overflow in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network."
}
],
"metrics": [
{
"cvssV3_1": {
"baseScore": 8.8,
"baseSeverity": "HIGH",
"vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C",
"version": "3.1"
},
"format": "CVSS",
"scenarios": [
{
"lang": "en-US",
"value": "GENERAL"
}
]
}
],
"problemTypes": [
{
"descriptions": [
{
"cweId": "CWE-122",
"description": "CWE-122: Heap-based Buffer Overflow",
"lang": "en-US",
"type": "CWE"
}
]
}
],
"providerMetadata": {
"dateUpdated": "2026-10-01T22:56:20.168Z",
"orgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
"shortName": "microsoft"
},
"references": [
{
"name": "Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability",
"tags": [
"vendor-advisory",
"patch"
],
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-69486"
}
],
"title": "Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability"
}
},
"cveMetadata": {
"assignerOrgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
"assignerShortName": "microsoft",
"cveId": "CVE-2026-69486",
"datePublished": "2026-09-15T22:39:14.875Z",
"dateReserved": "2026-08-03T21:07:24.908Z",
"dateUpdated": "2026-10-01T22:56:20.168Z",
"state": "PUBLISHED"
},
"dataType": "CVE_RECORD",
"dataVersion": "5.2"
}
CVE-2026-85892 (GCVE-0-2026-85892)
Vulnerability from cvelistv5 – Published: 2026-09-14 17:29 – Updated: 2026-10-01 22:52- CWE-362 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
| URL | Tags |
|---|---|
| https://msrc.microsoft.com/update-guide/vulnerabi… | vendor-advisorypatch |
| Vendor | Product | Version | |
|---|---|---|---|
| Microsoft | Microsoft Edge (Chromium-based) |
Affected:
1.0.0.0 , < 152.0.4191.66
(custom)
cpe:2.3:a:microsoft:edge_chromium:*:*:*:*:*:*:*:* |
{
"containers": {
"adp": [
{
"metrics": [
{
"other": {
"content": {
"id": "CVE-2026-85892",
"options": [
{
"Exploitation": "none"
},
{
"Automatable": "no"
},
{
"Technical Impact": "total"
}
],
"role": "CISA Coordinator",
"timestamp": "2026-09-14T00:00:00+00:00",
"version": "2.0.3"
},
"type": "ssvc"
}
}
],
"providerMetadata": {
"dateUpdated": "2026-09-15T03:56:13.959Z",
"orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"shortName": "CISA-ADP"
},
"title": "CISA ADP Vulnrichment"
}
],
"cna": {
"affected": [
{
"product": "Microsoft Edge (Chromium-based)",
"vendor": "Microsoft",
"versions": [
{
"lessThan": "152.0.4191.66",
"status": "affected",
"version": "1.0.0.0",
"versionType": "custom"
}
]
}
],
"cpeApplicability": [
{
"nodes": [
{
"cpeMatch": [
{
"criteria": "cpe:2.3:a:microsoft:edge_chromium:*:*:*:*:*:*:*:*",
"versionEndExcluding": "152.0.4191.66",
"versionStartIncluding": "1.0.0.0",
"vulnerable": true
}
],
"negate": false,
"operator": "OR"
}
]
}
],
"datePublic": "2026-09-11T14:00:00.000Z",
"descriptions": [
{
"lang": "en-US",
"value": "Concurrent execution using shared resource with improper synchronization (\u0027race condition\u0027) in Microsoft Edge (Chromium-based) allows an authorized attacker to elevate privileges locally."
}
],
"metrics": [
{
"cvssV3_1": {
"baseScore": 7.8,
"baseSeverity": "HIGH",
"vectorString": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H/E:U/RL:O/RC:C",
"version": "3.1"
},
"format": "CVSS",
"scenarios": [
{
"lang": "en-US",
"value": "GENERAL"
}
]
}
],
"problemTypes": [
{
"descriptions": [
{
"cweId": "CWE-362",
"description": "CWE-362: Concurrent Execution using Shared Resource with Improper Synchronization (\u0027Race Condition\u0027)",
"lang": "en-US",
"type": "CWE"
}
]
}
],
"providerMetadata": {
"dateUpdated": "2026-10-01T22:52:40.389Z",
"orgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
"shortName": "microsoft"
},
"references": [
{
"name": "Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability",
"tags": [
"vendor-advisory",
"patch"
],
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-85892"
}
],
"title": "Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability"
}
},
"cveMetadata": {
"assignerOrgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
"assignerShortName": "microsoft",
"cveId": "CVE-2026-85892",
"datePublished": "2026-09-14T17:29:23.390Z",
"dateReserved": "2026-09-04T18:18:19.328Z",
"dateUpdated": "2026-10-01T22:52:40.389Z",
"state": "PUBLISHED"
},
"dataType": "CVE_RECORD",
"dataVersion": "5.2"
}
CERTFR-2026-AVI-1251
Vulnerability from certfr_avis - Published: 2026-10-02 - Updated: 2026-10-02
De multiples vulnérabilités ont été découvertes dans Microsoft Edge. Elles permettent à un attaquant de provoquer un problème de sécurité non spécifié par l'éditeur.
Solutions
Se référer au bulletin de sécurité de l'éditeur pour l'obtention des correctifs (cf. section Documentation).
{
"$ref": "https://www.cert.ssi.gouv.fr/openapi.json",
"affected_systems": [
{
"description": "Microsoft Edge versions ant\u00e9rieures \u00e0 153.0.4234.49",
"product": {
"name": "Edge",
"vendor": {
"name": "Microsoft",
"scada": false
}
}
}
],
"affected_systems_content": "",
"content": "## Solutions\n\nSe r\u00e9f\u00e9rer au bulletin de s\u00e9curit\u00e9 de l\u0027\u00e9diteur pour l\u0027obtention des correctifs (cf. section Documentation).",
"cves": [
{
"name": "CVE-2026-87464",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87464"
},
{
"name": "CVE-2026-87643",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87643"
},
{
"name": "CVE-2026-87486",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87486"
},
{
"name": "CVE-2026-85047",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-85047"
},
{
"name": "CVE-2026-87438",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87438"
},
{
"name": "CVE-2026-87595",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87595"
},
{
"name": "CVE-2026-93381",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-93381"
},
{
"name": "CVE-2026-87517",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87517"
},
{
"name": "CVE-2026-87640",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87640"
},
{
"name": "CVE-2026-87488",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87488"
},
{
"name": "CVE-2026-87483",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87483"
},
{
"name": "CVE-2026-93387",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-93387"
},
{
"name": "CVE-2026-87481",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87481"
},
{
"name": "CVE-2026-87576",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87576"
},
{
"name": "CVE-2026-93379",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-93379"
},
{
"name": "CVE-2026-93376",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-93376"
},
{
"name": "CVE-2026-87482",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87482"
},
{
"name": "CVE-2026-93380",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-93380"
},
{
"name": "CVE-2026-93375",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-93375"
},
{
"name": "CVE-2026-93373",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-93373"
},
{
"name": "CVE-2026-93377",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-93377"
},
{
"name": "CVE-2026-87522",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87522"
},
{
"name": "CVE-2026-93385",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-93385"
},
{
"name": "CVE-2026-93374",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-93374"
},
{
"name": "CVE-2026-87518",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87518"
},
{
"name": "CVE-2026-87545",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87545"
},
{
"name": "CVE-2026-87534",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87534"
},
{
"name": "CVE-2026-93383",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-93383"
},
{
"name": "CVE-2026-87552",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87552"
},
{
"name": "CVE-2026-93382",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-93382"
},
{
"name": "CVE-2026-87597",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87597"
},
{
"name": "CVE-2026-93386",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-93386"
},
{
"name": "CVE-2026-87555",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87555"
},
{
"name": "CVE-2026-87520",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87520"
},
{
"name": "CVE-2026-93378",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-93378"
},
{
"name": "CVE-2026-93372",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-93372"
},
{
"name": "CVE-2026-87503",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87503"
}
],
"initial_release_date": "2026-10-02T00:00:00",
"last_revision_date": "2026-10-02T00:00:00",
"links": [],
"reference": "CERTFR-2026-AVI-1251",
"revisions": [
{
"description": "Version initiale",
"revision_date": "2026-10-02T00:00:00.000000"
}
],
"risks": [
{
"description": "Non sp\u00e9cifi\u00e9 par l\u0027\u00e9diteur"
}
],
"summary": "De multiples vuln\u00e9rabilit\u00e9s ont \u00e9t\u00e9 d\u00e9couvertes dans Microsoft Edge. Elles permettent \u00e0 un attaquant de provoquer un probl\u00e8me de s\u00e9curit\u00e9 non sp\u00e9cifi\u00e9 par l\u0027\u00e9diteur.",
"title": "Multiples vuln\u00e9rabilit\u00e9s dans Microsoft Edge",
"vendor_advisories": [
{
"published_at": "2026-09-30",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-93372",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-93372"
},
{
"published_at": "2026-09-30",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-93375",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-93375"
},
{
"published_at": "2026-09-30",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-93378",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-93378"
},
{
"published_at": "2026-09-30",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87464",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87464"
},
{
"published_at": "2026-09-30",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87552",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87552"
},
{
"published_at": "2026-09-30",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87486",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87486"
},
{
"published_at": "2026-09-30",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87482",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87482"
},
{
"published_at": "2026-09-30",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-93377",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-93377"
},
{
"published_at": "2026-09-30",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87481",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87481"
},
{
"published_at": "2026-09-30",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87595",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87595"
},
{
"published_at": "2026-09-30",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87503",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87503"
},
{
"published_at": "2026-09-30",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87643",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87643"
},
{
"published_at": "2026-09-30",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87522",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87522"
},
{
"published_at": "2026-09-30",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87640",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87640"
},
{
"published_at": "2026-09-30",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87534",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87534"
},
{
"published_at": "2026-09-30",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87555",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87555"
},
{
"published_at": "2026-09-30",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-93387",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-93387"
},
{
"published_at": "2026-09-30",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-93382",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-93382"
},
{
"published_at": "2026-09-30",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87518",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87518"
},
{
"published_at": "2026-09-30",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87545",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87545"
},
{
"published_at": "2026-09-30",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-93386",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-93386"
},
{
"published_at": "2026-09-30",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-93383",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-93383"
},
{
"published_at": "2026-09-30",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87576",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87576"
},
{
"published_at": "2026-09-30",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87488",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87488"
},
{
"published_at": "2026-09-30",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-93380",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-93380"
},
{
"published_at": "2026-09-30",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87483",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87483"
},
{
"published_at": "2026-09-30",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-93374",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-93374"
},
{
"published_at": "2026-09-30",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-93373",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-93373"
},
{
"published_at": "2026-09-30",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87517",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87517"
},
{
"published_at": "2026-09-30",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-93376",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-93376"
},
{
"published_at": "2026-09-30",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-85047",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-85047"
},
{
"published_at": "2026-09-30",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-93381",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-93381"
},
{
"published_at": "2026-09-30",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87438",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87438"
},
{
"published_at": "2026-09-30",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87520",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87520"
},
{
"published_at": "2026-09-30",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-93379",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-93379"
},
{
"published_at": "2026-09-30",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-93385",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-93385"
},
{
"published_at": "2026-09-30",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87597",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87597"
}
]
}
CERTFR-2026-AVI-1208
Vulnerability from certfr_avis - Published: 2026-09-21 - Updated: 2026-09-21
De multiples vulnérabilités ont été découvertes dans Microsoft Edge. Elles permettent à un attaquant de provoquer une élévation de privilèges et un problème de sécurité non spécifié par l'éditeur.
Solutions
Se référer au bulletin de sécurité de l'éditeur pour l'obtention des correctifs (cf. section Documentation).
| Title | Publication Time | Tags | ||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
|
||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
{
"$ref": "https://www.cert.ssi.gouv.fr/openapi.json",
"affected_systems": [
{
"description": "Microsoft Edge versions ant\u00e9rieures \u00e0 153.0.4234.46",
"product": {
"name": "Edge",
"vendor": {
"name": "Microsoft",
"scada": false
}
}
}
],
"affected_systems_content": "",
"content": "## Solutions\n\nSe r\u00e9f\u00e9rer au bulletin de s\u00e9curit\u00e9 de l\u0027\u00e9diteur pour l\u0027obtention des correctifs (cf. section Documentation).",
"cves": [
{
"name": "CVE-2026-91715",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-91715"
},
{
"name": "CVE-2026-91716",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-91716"
},
{
"name": "CVE-2026-91725",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-91725"
},
{
"name": "CVE-2026-91719",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-91719"
},
{
"name": "CVE-2026-91709",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-91709"
},
{
"name": "CVE-2026-91735",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-91735"
},
{
"name": "CVE-2026-91722",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-91722"
},
{
"name": "CVE-2026-91726",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-91726"
},
{
"name": "CVE-2026-91728",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-91728"
},
{
"name": "CVE-2026-91720",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-91720"
},
{
"name": "CVE-2026-91708",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-91708"
},
{
"name": "CVE-2026-91721",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-91721"
},
{
"name": "CVE-2026-91710",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-91710"
},
{
"name": "CVE-2026-91747",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-91747"
},
{
"name": "CVE-2026-91748",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-91748"
},
{
"name": "CVE-2026-91743",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-91743"
},
{
"name": "CVE-2026-91749",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-91749"
},
{
"name": "CVE-2026-91717",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-91717"
},
{
"name": "CVE-2026-91727",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-91727"
},
{
"name": "CVE-2026-91729",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-91729"
},
{
"name": "CVE-2026-91712",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-91712"
},
{
"name": "CVE-2026-91746",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-91746"
},
{
"name": "CVE-2026-91734",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-91734"
},
{
"name": "CVE-2026-88097",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-88097"
},
{
"name": "CVE-2026-91713",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-91713"
},
{
"name": "CVE-2026-91714",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-91714"
},
{
"name": "CVE-2026-91733",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-91733"
},
{
"name": "CVE-2026-91730",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-91730"
},
{
"name": "CVE-2026-91718",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-91718"
},
{
"name": "CVE-2026-91745",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-91745"
},
{
"name": "CVE-2026-91723",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-91723"
},
{
"name": "CVE-2026-91744",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-91744"
},
{
"name": "CVE-2026-91740",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-91740"
},
{
"name": "CVE-2026-91731",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-91731"
},
{
"name": "CVE-2026-91738",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-91738"
},
{
"name": "CVE-2026-91739",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-91739"
},
{
"name": "CVE-2026-91742",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-91742"
},
{
"name": "CVE-2026-91724",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-91724"
},
{
"name": "CVE-2026-91736",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-91736"
},
{
"name": "CVE-2026-91737",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-91737"
},
{
"name": "CVE-2026-91711",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-91711"
},
{
"name": "CVE-2026-91741",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-91741"
}
],
"initial_release_date": "2026-09-21T00:00:00",
"last_revision_date": "2026-09-21T00:00:00",
"links": [],
"reference": "CERTFR-2026-AVI-1208",
"revisions": [
{
"description": "Version initiale",
"revision_date": "2026-09-21T00:00:00.000000"
}
],
"risks": [
{
"description": "Non sp\u00e9cifi\u00e9 par l\u0027\u00e9diteur"
},
{
"description": "\u00c9l\u00e9vation de privil\u00e8ges"
}
],
"summary": "De multiples vuln\u00e9rabilit\u00e9s ont \u00e9t\u00e9 d\u00e9couvertes dans Microsoft Edge. Elles permettent \u00e0 un attaquant de provoquer une \u00e9l\u00e9vation de privil\u00e8ges et un probl\u00e8me de s\u00e9curit\u00e9 non sp\u00e9cifi\u00e9 par l\u0027\u00e9diteur.",
"title": "Multiples vuln\u00e9rabilit\u00e9s dans Microsoft Edge",
"vendor_advisories": [
{
"published_at": "2026-09-17",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-91734",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-91734"
},
{
"published_at": "2026-09-17",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-91730",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-91730"
},
{
"published_at": "2026-09-18",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-88097",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-88097"
},
{
"published_at": "2026-09-17",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-91711",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-91711"
},
{
"published_at": "2026-09-17",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-91714",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-91714"
},
{
"published_at": "2026-09-17",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-91727",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-91727"
},
{
"published_at": "2026-09-17",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-91726",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-91726"
},
{
"published_at": "2026-09-17",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-91719",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-91719"
},
{
"published_at": "2026-09-17",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-91717",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-91717"
},
{
"published_at": "2026-09-17",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-91731",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-91731"
},
{
"published_at": "2026-09-17",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-91746",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-91746"
},
{
"published_at": "2026-09-17",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-91710",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-91710"
},
{
"published_at": "2026-09-17",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-91720",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-91720"
},
{
"published_at": "2026-09-17",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-91728",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-91728"
},
{
"published_at": "2026-09-17",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-91738",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-91738"
},
{
"published_at": "2026-09-17",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-91724",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-91724"
},
{
"published_at": "2026-09-17",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-91740",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-91740"
},
{
"published_at": "2026-09-17",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-91741",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-91741"
},
{
"published_at": "2026-09-17",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-91737",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-91737"
},
{
"published_at": "2026-09-17",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-91736",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-91736"
},
{
"published_at": "2026-09-17",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-91709",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-91709"
},
{
"published_at": "2026-09-17",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-91733",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-91733"
},
{
"published_at": "2026-09-17",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-91729",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-91729"
},
{
"published_at": "2026-09-17",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-91725",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-91725"
},
{
"published_at": "2026-09-17",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-91722",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-91722"
},
{
"published_at": "2026-09-17",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-91743",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-91743"
},
{
"published_at": "2026-09-17",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-91716",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-91716"
},
{
"published_at": "2026-09-17",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-91749",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-91749"
},
{
"published_at": "2026-09-17",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-91708",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-91708"
},
{
"published_at": "2026-09-17",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-91748",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-91748"
},
{
"published_at": "2026-09-17",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-91735",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-91735"
},
{
"published_at": "2026-09-17",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-91747",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-91747"
},
{
"published_at": "2026-09-17",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-91739",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-91739"
},
{
"published_at": "2026-09-17",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-91718",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-91718"
},
{
"published_at": "2026-09-17",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-91713",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-91713"
},
{
"published_at": "2026-09-17",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-91721",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-91721"
},
{
"published_at": "2026-09-17",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-91715",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-91715"
},
{
"published_at": "2026-09-17",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-91742",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-91742"
},
{
"published_at": "2026-09-17",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-91723",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-91723"
},
{
"published_at": "2026-09-17",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-91712",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-91712"
},
{
"published_at": "2026-09-17",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-91745",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-91745"
},
{
"published_at": "2026-09-17",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-91744",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-91744"
}
]
}
CERTFR-2026-AVI-1191
Vulnerability from certfr_avis - Published: 2026-09-16 - Updated: 2026-09-16
De multiples vulnérabilités ont été découvertes dans Microsoft Edge. Elles permettent à un attaquant de provoquer une exécution de code arbitraire à distance et une élévation de privilèges.
Solutions
Se référer au bulletin de sécurité de l'éditeur pour l'obtention des correctifs (cf. section Documentation).
| Title | Publication Time | Tags | ||||||
|---|---|---|---|---|---|---|---|---|
|
||||||||
{
"$ref": "https://www.cert.ssi.gouv.fr/openapi.json",
"affected_systems": [
{
"description": "Microsoft Edge versions ant\u00e9rieures \u00e0 153.0.4234.32",
"product": {
"name": "Edge",
"vendor": {
"name": "Microsoft",
"scada": false
}
}
}
],
"affected_systems_content": "",
"content": "## Solutions\n\nSe r\u00e9f\u00e9rer au bulletin de s\u00e9curit\u00e9 de l\u0027\u00e9diteur pour l\u0027obtention des correctifs (cf. section Documentation).",
"cves": [
{
"name": "CVE-2026-69486",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-69486"
},
{
"name": "CVE-2026-85893",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-85893"
}
],
"initial_release_date": "2026-09-16T00:00:00",
"last_revision_date": "2026-09-16T00:00:00",
"links": [],
"reference": "CERTFR-2026-AVI-1191",
"revisions": [
{
"description": "Version initiale",
"revision_date": "2026-09-16T00:00:00.000000"
}
],
"risks": [
{
"description": "Ex\u00e9cution de code arbitraire \u00e0 distance"
},
{
"description": "\u00c9l\u00e9vation de privil\u00e8ges"
}
],
"summary": "De multiples vuln\u00e9rabilit\u00e9s ont \u00e9t\u00e9 d\u00e9couvertes dans Microsoft Edge. Elles permettent \u00e0 un attaquant de provoquer une ex\u00e9cution de code arbitraire \u00e0 distance et une \u00e9l\u00e9vation de privil\u00e8ges.",
"title": "Multiples vuln\u00e9rabilit\u00e9s dans Microsoft Edge",
"vendor_advisories": [
{
"published_at": "2026-09-15",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-85893",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-85893"
},
{
"published_at": "2026-09-15",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-69486",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-69486"
}
]
}
CERTFR-2026-AVI-1174
Vulnerability from certfr_avis - Published: 2026-09-15 - Updated: 2026-09-15
Une vulnérabilité a été découverte dans Microsoft Windows. Elle permet à un attaquant de provoquer une élévation de privilèges.
Solutions
Se référer au bulletin de sécurité de l'éditeur pour l'obtention des correctifs (cf. section Documentation).
| Title | Publication Time | Tags | |||
|---|---|---|---|---|---|
|
|||||
{
"$ref": "https://www.cert.ssi.gouv.fr/openapi.json",
"affected_systems": [
{
"description": "Windows 11 version 26H1 pour syst\u00e8mes x64 ant\u00e9rieures \u00e0 10.0.28000.2956",
"product": {
"name": "Windows",
"vendor": {
"name": "Microsoft",
"scada": false
}
}
},
{
"description": "Windows 11 Version 26H1 pour syst\u00e8mes ARM64 versions ant\u00e9rieures \u00e0 10.0.28000.2956",
"product": {
"name": "Windows",
"vendor": {
"name": "Microsoft",
"scada": false
}
}
}
],
"affected_systems_content": "",
"content": "## Solutions\n\nSe r\u00e9f\u00e9rer au bulletin de s\u00e9curit\u00e9 de l\u0027\u00e9diteur pour l\u0027obtention des correctifs (cf. section Documentation).",
"cves": [
{
"name": "CVE-2026-85921",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-85921"
}
],
"initial_release_date": "2026-09-15T00:00:00",
"last_revision_date": "2026-09-15T00:00:00",
"links": [],
"reference": "CERTFR-2026-AVI-1174",
"revisions": [
{
"description": "Version initiale",
"revision_date": "2026-09-15T00:00:00.000000"
}
],
"risks": [
{
"description": "\u00c9l\u00e9vation de privil\u00e8ges"
}
],
"summary": "Une vuln\u00e9rabilit\u00e9 a \u00e9t\u00e9 d\u00e9couverte dans Microsoft Windows. Elle permet \u00e0 un attaquant de provoquer une \u00e9l\u00e9vation de privil\u00e8ges.",
"title": "Vuln\u00e9rabilit\u00e9 dans Microsoft Windows",
"vendor_advisories": [
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Windows CVE-2026-85921",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-85921"
}
]
}
CERTFR-2026-AVI-1173
Vulnerability from certfr_avis - Published: 2026-09-15 - Updated: 2026-09-15
De multiples vulnérabilités ont été découvertes dans Microsoft Edge. Elles permettent à un attaquant de provoquer une élévation de privilèges et un problème de sécurité non spécifié par l'éditeur.
Solutions
Se référer au bulletin de sécurité de l'éditeur pour l'obtention des correctifs (cf. section Documentation).
| Title | Publication Time | Tags | ||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
|
||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
{
"$ref": "https://www.cert.ssi.gouv.fr/openapi.json",
"affected_systems": [
{
"description": "Microsoft Edge versions ant\u00e9rieures \u00e0 152.0.4191.66",
"product": {
"name": "Edge",
"vendor": {
"name": "Microsoft",
"scada": false
}
}
},
{
"description": "Microsoft Edge versions ant\u00e9rieures \u00e0 153.0.4234.32",
"product": {
"name": "Edge",
"vendor": {
"name": "Microsoft",
"scada": false
}
}
}
],
"affected_systems_content": "",
"content": "## Solutions\n\nSe r\u00e9f\u00e9rer au bulletin de s\u00e9curit\u00e9 de l\u0027\u00e9diteur pour l\u0027obtention des correctifs (cf. section Documentation).",
"cves": [
{
"name": "CVE-2026-87646",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87646"
},
{
"name": "CVE-2026-87445",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87445"
},
{
"name": "CVE-2026-87619",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87619"
},
{
"name": "CVE-2026-87567",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87567"
},
{
"name": "CVE-2026-87541",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87541"
},
{
"name": "CVE-2026-87501",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87501"
},
{
"name": "CVE-2026-87626",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87626"
},
{
"name": "CVE-2026-87656",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87656"
},
{
"name": "CVE-2026-87476",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87476"
},
{
"name": "CVE-2026-87622",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87622"
},
{
"name": "CVE-2026-87654",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87654"
},
{
"name": "CVE-2026-87583",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87583"
},
{
"name": "CVE-2026-87592",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87592"
},
{
"name": "CVE-2026-87442",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87442"
},
{
"name": "CVE-2026-87450",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87450"
},
{
"name": "CVE-2026-87431",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87431"
},
{
"name": "CVE-2026-87519",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87519"
},
{
"name": "CVE-2026-87598",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87598"
},
{
"name": "CVE-2026-87462",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87462"
},
{
"name": "CVE-2026-87657",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87657"
},
{
"name": "CVE-2026-87437",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87437"
},
{
"name": "CVE-2026-87623",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87623"
},
{
"name": "CVE-2026-87447",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87447"
},
{
"name": "CVE-2026-87610",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87610"
},
{
"name": "CVE-2026-87484",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87484"
},
{
"name": "CVE-2026-87461",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87461"
},
{
"name": "CVE-2026-87444",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87444"
},
{
"name": "CVE-2026-87585",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87585"
},
{
"name": "CVE-2026-87509",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87509"
},
{
"name": "CVE-2026-87498",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87498"
},
{
"name": "CVE-2026-87653",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87653"
},
{
"name": "CVE-2026-87453",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87453"
},
{
"name": "CVE-2026-87550",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87550"
},
{
"name": "CVE-2026-87537",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87537"
},
{
"name": "CVE-2026-87524",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87524"
},
{
"name": "CVE-2026-87439",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87439"
},
{
"name": "CVE-2026-87568",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87568"
},
{
"name": "CVE-2026-87544",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87544"
},
{
"name": "CVE-2026-87639",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87639"
},
{
"name": "CVE-2026-87650",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87650"
},
{
"name": "CVE-2026-87429",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87429"
},
{
"name": "CVE-2026-87635",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87635"
},
{
"name": "CVE-2026-87630",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87630"
},
{
"name": "CVE-2026-87542",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87542"
},
{
"name": "CVE-2026-87605",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87605"
},
{
"name": "CVE-2026-87443",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87443"
},
{
"name": "CVE-2026-87434",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87434"
},
{
"name": "CVE-2026-87569",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87569"
},
{
"name": "CVE-2026-87492",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87492"
},
{
"name": "CVE-2026-87454",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87454"
},
{
"name": "CVE-2026-87596",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87596"
},
{
"name": "CVE-2026-87532",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87532"
},
{
"name": "CVE-2026-87658",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87658"
},
{
"name": "CVE-2026-87573",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87573"
},
{
"name": "CVE-2026-87564",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87564"
},
{
"name": "CVE-2026-87499",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87499"
},
{
"name": "CVE-2026-87468",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87468"
},
{
"name": "CVE-2026-87606",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87606"
},
{
"name": "CVE-2026-87652",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87652"
},
{
"name": "CVE-2026-87632",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87632"
},
{
"name": "CVE-2026-87511",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87511"
},
{
"name": "CVE-2026-87515",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87515"
},
{
"name": "CVE-2026-87496",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87496"
},
{
"name": "CVE-2026-87588",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87588"
},
{
"name": "CVE-2026-87469",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87469"
},
{
"name": "CVE-2026-87575",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87575"
},
{
"name": "CVE-2026-87601",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87601"
},
{
"name": "CVE-2026-87566",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87566"
},
{
"name": "CVE-2026-87617",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87617"
},
{
"name": "CVE-2026-87480",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87480"
},
{
"name": "CVE-2026-87553",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87553"
},
{
"name": "CVE-2026-87641",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87641"
},
{
"name": "CVE-2026-87514",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87514"
},
{
"name": "CVE-2026-87594",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87594"
},
{
"name": "CVE-2026-87631",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87631"
},
{
"name": "CVE-2026-87614",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87614"
},
{
"name": "CVE-2026-87649",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87649"
},
{
"name": "CVE-2026-87455",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87455"
},
{
"name": "CVE-2026-87535",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87535"
},
{
"name": "CVE-2026-87436",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87436"
},
{
"name": "CVE-2026-87621",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87621"
},
{
"name": "CVE-2026-87516",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87516"
},
{
"name": "CVE-2026-87551",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87551"
},
{
"name": "CVE-2026-87525",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87525"
},
{
"name": "CVE-2026-87608",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87608"
},
{
"name": "CVE-2026-87531",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87531"
},
{
"name": "CVE-2026-87513",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87513"
},
{
"name": "CVE-2026-87547",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87547"
},
{
"name": "CVE-2026-87558",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87558"
},
{
"name": "CVE-2026-87495",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87495"
},
{
"name": "CVE-2026-87505",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87505"
},
{
"name": "CVE-2026-87440",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87440"
},
{
"name": "CVE-2026-87529",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87529"
},
{
"name": "CVE-2026-87593",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87593"
},
{
"name": "CVE-2026-87609",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87609"
},
{
"name": "CVE-2026-87590",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87590"
},
{
"name": "CVE-2026-87615",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87615"
},
{
"name": "CVE-2026-87536",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87536"
},
{
"name": "CVE-2026-87459",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87459"
},
{
"name": "CVE-2026-87561",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87561"
},
{
"name": "CVE-2026-87638",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87638"
},
{
"name": "CVE-2026-87451",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87451"
},
{
"name": "CVE-2026-87543",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87543"
},
{
"name": "CVE-2026-87527",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87527"
},
{
"name": "CVE-2026-87637",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87637"
},
{
"name": "CVE-2026-87540",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87540"
},
{
"name": "CVE-2026-87627",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87627"
},
{
"name": "CVE-2026-87589",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87589"
},
{
"name": "CVE-2026-87557",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87557"
},
{
"name": "CVE-2026-87539",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87539"
},
{
"name": "CVE-2026-87581",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87581"
},
{
"name": "CVE-2026-87457",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87457"
},
{
"name": "CVE-2026-87651",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87651"
},
{
"name": "CVE-2026-87433",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87433"
},
{
"name": "CVE-2026-87642",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87642"
},
{
"name": "CVE-2026-87449",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87449"
},
{
"name": "CVE-2026-87586",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87586"
},
{
"name": "CVE-2026-87616",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87616"
},
{
"name": "CVE-2026-87528",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87528"
},
{
"name": "CVE-2026-87556",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87556"
},
{
"name": "CVE-2026-87494",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87494"
},
{
"name": "CVE-2026-87448",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87448"
},
{
"name": "CVE-2026-87477",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87477"
},
{
"name": "CVE-2026-87478",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87478"
},
{
"name": "CVE-2026-87636",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87636"
},
{
"name": "CVE-2026-87430",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87430"
},
{
"name": "CVE-2026-87435",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87435"
},
{
"name": "CVE-2026-87602",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87602"
},
{
"name": "CVE-2026-87452",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87452"
},
{
"name": "CVE-2026-87648",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87648"
},
{
"name": "CVE-2026-87600",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87600"
},
{
"name": "CVE-2026-87572",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87572"
},
{
"name": "CVE-2026-87463",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87463"
},
{
"name": "CVE-2026-87507",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87507"
},
{
"name": "CVE-2026-87574",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87574"
},
{
"name": "CVE-2026-87458",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87458"
},
{
"name": "CVE-2026-87493",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87493"
},
{
"name": "CVE-2026-87470",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87470"
},
{
"name": "CVE-2026-87570",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87570"
},
{
"name": "CVE-2026-87578",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87578"
},
{
"name": "CVE-2026-87645",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87645"
},
{
"name": "CVE-2026-87580",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87580"
},
{
"name": "CVE-2026-87604",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87604"
},
{
"name": "CVE-2026-87473",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87473"
},
{
"name": "CVE-2026-87487",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87487"
},
{
"name": "CVE-2026-87647",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87647"
},
{
"name": "CVE-2026-87446",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87446"
},
{
"name": "CVE-2026-87633",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87633"
},
{
"name": "CVE-2026-87512",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87512"
},
{
"name": "CVE-2026-87587",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87587"
},
{
"name": "CVE-2026-87634",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87634"
},
{
"name": "CVE-2026-87546",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87546"
},
{
"name": "CVE-2026-87432",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87432"
},
{
"name": "CVE-2026-87479",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87479"
},
{
"name": "CVE-2026-87625",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87625"
},
{
"name": "CVE-2026-87465",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87465"
},
{
"name": "CVE-2026-87560",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87560"
},
{
"name": "CVE-2026-87563",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87563"
},
{
"name": "CVE-2026-87508",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87508"
},
{
"name": "CVE-2026-87613",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87613"
},
{
"name": "CVE-2026-87472",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87472"
},
{
"name": "CVE-2026-87628",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87628"
},
{
"name": "CVE-2026-87565",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87565"
},
{
"name": "CVE-2026-87599",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87599"
},
{
"name": "CVE-2026-87474",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87474"
},
{
"name": "CVE-2026-87467",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87467"
},
{
"name": "CVE-2026-87612",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87612"
},
{
"name": "CVE-2026-87549",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87549"
},
{
"name": "CVE-2026-87611",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87611"
},
{
"name": "CVE-2026-87603",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87603"
},
{
"name": "CVE-2026-87644",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87644"
},
{
"name": "CVE-2026-87655",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87655"
},
{
"name": "CVE-2026-87530",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87530"
},
{
"name": "CVE-2026-87506",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87506"
},
{
"name": "CVE-2026-87466",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87466"
},
{
"name": "CVE-2026-87521",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87521"
},
{
"name": "CVE-2026-87497",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87497"
},
{
"name": "CVE-2026-87441",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87441"
},
{
"name": "CVE-2026-87471",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87471"
},
{
"name": "CVE-2026-87577",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87577"
},
{
"name": "CVE-2026-85892",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-85892"
},
{
"name": "CVE-2026-87460",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87460"
},
{
"name": "CVE-2026-87571",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87571"
},
{
"name": "CVE-2026-87591",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87591"
},
{
"name": "CVE-2026-87618",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87618"
},
{
"name": "CVE-2026-87548",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87548"
},
{
"name": "CVE-2026-87538",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87538"
},
{
"name": "CVE-2026-87620",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87620"
},
{
"name": "CVE-2026-87490",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87490"
},
{
"name": "CVE-2026-87475",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87475"
},
{
"name": "CVE-2026-87559",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87559"
},
{
"name": "CVE-2026-87500",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87500"
},
{
"name": "CVE-2026-87504",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87504"
},
{
"name": "CVE-2026-87582",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87582"
},
{
"name": "CVE-2026-87523",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87523"
},
{
"name": "CVE-2026-87624",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87624"
},
{
"name": "CVE-2026-87579",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87579"
},
{
"name": "CVE-2026-87502",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87502"
},
{
"name": "CVE-2026-87489",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87489"
},
{
"name": "CVE-2026-87526",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87526"
},
{
"name": "CVE-2026-87510",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87510"
},
{
"name": "CVE-2026-87533",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87533"
},
{
"name": "CVE-2026-87584",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87584"
},
{
"name": "CVE-2026-87562",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87562"
},
{
"name": "CVE-2026-87629",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87629"
},
{
"name": "CVE-2026-87485",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87485"
},
{
"name": "CVE-2026-87554",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87554"
},
{
"name": "CVE-2026-87456",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-87456"
}
],
"initial_release_date": "2026-09-15T00:00:00",
"last_revision_date": "2026-09-15T00:00:00",
"links": [],
"reference": "CERTFR-2026-AVI-1173",
"revisions": [
{
"description": "Version initiale",
"revision_date": "2026-09-15T00:00:00.000000"
}
],
"risks": [
{
"description": "Non sp\u00e9cifi\u00e9 par l\u0027\u00e9diteur"
},
{
"description": "\u00c9l\u00e9vation de privil\u00e8ges"
}
],
"summary": "De multiples vuln\u00e9rabilit\u00e9s ont \u00e9t\u00e9 d\u00e9couvertes dans Microsoft Edge. Elles permettent \u00e0 un attaquant de provoquer une \u00e9l\u00e9vation de privil\u00e8ges et un probl\u00e8me de s\u00e9curit\u00e9 non sp\u00e9cifi\u00e9 par l\u0027\u00e9diteur.",
"title": "Multiples vuln\u00e9rabilit\u00e9s dans Microsoft Edge",
"vendor_advisories": [
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87533",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87533"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87454",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87454"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87613",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87613"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87505",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87505"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87449",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87449"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87524",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87524"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87471",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87471"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87645",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87645"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87575",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87575"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87636",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87636"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87616",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87616"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87527",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87527"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87455",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87455"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87638",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87638"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87474",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87474"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87568",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87568"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87504",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87504"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87614",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87614"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87608",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87608"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87619",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87619"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87624",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87624"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87604",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87604"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87650",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87650"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87551",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87551"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87584",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87584"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87526",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87526"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87563",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87563"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87610",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87610"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87469",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87469"
},
{
"published_at": "2026-09-11",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-85892",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-85892"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87623",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87623"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87484",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87484"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87542",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87542"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87625",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87625"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87529",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87529"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87587",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87587"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87506",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87506"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87523",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87523"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87646",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87646"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87583",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87583"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87512",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87512"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87538",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87538"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87558",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87558"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87496",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87496"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87440",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87440"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87632",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87632"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87498",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87498"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87508",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87508"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87651",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87651"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87582",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87582"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87435",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87435"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87628",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87628"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87615",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87615"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87489",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87489"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87586",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87586"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87652",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87652"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87463",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87463"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87647",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87647"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87549",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87549"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87458",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87458"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87547",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87547"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87546",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87546"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87648",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87648"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87543",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87543"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87494",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87494"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87429",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87429"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87606",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87606"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87588",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87588"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87567",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87567"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87433",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87433"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87630",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87630"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87437",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87437"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87571",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87571"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87572",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87572"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87444",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87444"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87519",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87519"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87515",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87515"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87514",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87514"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87457",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87457"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87436",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87436"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87541",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87541"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87556",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87556"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87447",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87447"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87452",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87452"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87480",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87480"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87658",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87658"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87569",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87569"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87539",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87539"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87445",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87445"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87617",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87617"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87544",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87544"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87657",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87657"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87450",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87450"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87637",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87637"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87513",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87513"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87459",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87459"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87537",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87537"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87560",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87560"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87609",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87609"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87562",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87562"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87570",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87570"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87649",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87649"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87442",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87442"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87528",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87528"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87589",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87589"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87554",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87554"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87540",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87540"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87468",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87468"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87599",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87599"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87477",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87477"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87473",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87473"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87626",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87626"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87511",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87511"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87497",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87497"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87430",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87430"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87656",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87656"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87500",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87500"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87622",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87622"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87443",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87443"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87591",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87591"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87521",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87521"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87574",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87574"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87456",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87456"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87600",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87600"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87593",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87593"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87655",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87655"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87453",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87453"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87487",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87487"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87642",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87642"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87493",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87493"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87472",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87472"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87531",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87531"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87639",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87639"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87635",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87635"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87644",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87644"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87631",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87631"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87466",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87466"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87580",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87580"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87478",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87478"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87581",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87581"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87565",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87565"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87462",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87462"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87495",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87495"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87602",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87602"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87579",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87579"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87634",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87634"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87601",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87601"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87578",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87578"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87439",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87439"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87490",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87490"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87432",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87432"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87510",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87510"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87550",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87550"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87559",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87559"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87611",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87611"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87561",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87561"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87548",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87548"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87629",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87629"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87467",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87467"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87479",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87479"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87465",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87465"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87470",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87470"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87566",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87566"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87532",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87532"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87585",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87585"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87618",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87618"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87461",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87461"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87654",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87654"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87501",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87501"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87590",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87590"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87475",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87475"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87573",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87573"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87564",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87564"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87612",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87612"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87620",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87620"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87530",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87530"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87592",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87592"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87492",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87492"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87502",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87502"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87553",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87553"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87641",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87641"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87460",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87460"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87627",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87627"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87557",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87557"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87507",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87507"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87448",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87448"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87451",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87451"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87596",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87596"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87605",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87605"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87594",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87594"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87603",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87603"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87446",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87446"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87441",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87441"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87621",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87621"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87535",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87535"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87485",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87485"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87653",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87653"
},
{
"published_at": "2026-09-11",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87536",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87536"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87577",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87577"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87525",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87525"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87499",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87499"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87516",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87516"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87434",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87434"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87598",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87598"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87633",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87633"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87509",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87509"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87431",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87431"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87476",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87476"
}
]
}