Search

Find a vulnerability

Search criteria

    12482 vulnerabilities by Microsoft

    CVE-2026-96940 (GCVE-0-2026-96940)

    Vulnerability from cvelistv5 – Published: 2026-10-02 19:06 – Updated: 2026-10-03 03:55
    VLAI
    Title
    Microsoft Exchange Server Elevation of Privilege Vulnerability
    Summary
    Weak authorization in Microsoft Exchange Server allows an authenticated attacker to elevate privileges over a network.
    SSVC
    Exploitation: none Automatable: no Technical Impact: total
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2026-10-02 00:00 UTC
    CWE
    References
    Date Public
    2026-10-02 14:00
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "metrics": [
              {
                "other": {
                  "content": {
                    "id": "CVE-2026-96940",
                    "options": [
                      {
                        "Exploitation": "none"
                      },
                      {
                        "Automatable": "no"
                      },
                      {
                        "Technical Impact": "total"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2026-10-02T00:00:00+00:00",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2026-10-03T03:55:42.205Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "title": "CISA ADP Vulnrichment"
          }
        ],
        "cna": {
          "affected": [
            {
              "platforms": [
                "x64-based Systems"
              ],
              "product": "Microsoft Exchange Server 2016 Cumulative Update 23",
              "vendor": "Microsoft",
              "versions": [
                {
                  "lessThan": "15.01.2507.075",
                  "status": "affected",
                  "version": "15.01.0.0",
                  "versionType": "custom"
                }
              ]
            },
            {
              "platforms": [
                "x64-based Systems"
              ],
              "product": "Microsoft Exchange Server 2019 Cumulative Update 14",
              "vendor": "Microsoft",
              "versions": [
                {
                  "lessThan": "15.02.1544.048",
                  "status": "affected",
                  "version": "15.02.0.0",
                  "versionType": "custom"
                }
              ]
            },
            {
              "platforms": [
                "x64-based Systems"
              ],
              "product": "Microsoft Exchange Server 2019 Cumulative Update 15",
              "vendor": "Microsoft",
              "versions": [
                {
                  "lessThan": "15.02.1748.053",
                  "status": "affected",
                  "version": "15.02.0.0",
                  "versionType": "custom"
                }
              ]
            },
            {
              "platforms": [
                "x64-based Systems"
              ],
              "product": "Microsoft Exchange Server Subscription Edition RTM",
              "vendor": "Microsoft",
              "versions": [
                {
                  "lessThan": "15.02.2562.053",
                  "status": "affected",
                  "version": "15.02.0.0",
                  "versionType": "custom"
                }
              ]
            }
          ],
          "cpeApplicability": [
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:a:microsoft:exchange_server_2019:*:cumulative_update_14:*:*:*:*:*:*",
                      "versionEndExcluding": "15.02.1544.048",
                      "versionStartIncluding": "15.02.0.0",
                      "vulnerable": true
                    },
                    {
                      "criteria": "cpe:2.3:a:microsoft:exchange_server_2016:*:cumulative_update_23:*:*:*:*:*:*",
                      "versionEndExcluding": "15.01.2507.075",
                      "versionStartIncluding": "15.01.0.0",
                      "vulnerable": true
                    },
                    {
                      "criteria": "cpe:2.3:a:microsoft:exchange_server_se:*:RTM:*:*:*:*:*:*",
                      "versionEndExcluding": "15.02.2562.053",
                      "versionStartIncluding": "15.02.0.0",
                      "vulnerable": true
                    },
                    {
                      "criteria": "cpe:2.3:a:microsoft:exchange_server_2019:*:cumulative_update_15:*:*:*:*:*:*",
                      "versionEndExcluding": "15.02.1748.053",
                      "versionStartIncluding": "15.02.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ]
            }
          ],
          "datePublic": "2026-10-02T14:00:00.000Z",
          "descriptions": [
            {
              "lang": "en-US",
              "value": "Weak authorization in Microsoft Exchange Server allows an authenticated attacker to elevate privileges over a network."
            }
          ],
          "metrics": [
            {
              "cvssV3_1": {
                "baseScore": 8.8,
                "baseSeverity": "HIGH",
                "vectorString": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C",
                "version": "3.1"
              },
              "format": "CVSS",
              "scenarios": [
                {
                  "lang": "en-US",
                  "value": "GENERAL"
                }
              ]
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "cweId": "CWE-1390",
                  "description": "CWE-1390: Weak Authentication",
                  "lang": "en-US",
                  "type": "CWE"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2026-10-02T19:06:19.061Z",
            "orgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
            "shortName": "microsoft"
          },
          "references": [
            {
              "name": "Microsoft Exchange Server Elevation of Privilege Vulnerability",
              "tags": [
                "vendor-advisory",
                "patch"
              ],
              "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-96940"
            }
          ],
          "title": "Microsoft Exchange Server Elevation of Privilege Vulnerability"
        }
      },
      "cveMetadata": {
        "assignerOrgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
        "assignerShortName": "microsoft",
        "cveId": "CVE-2026-96940",
        "datePublished": "2026-10-02T19:06:19.061Z",
        "dateReserved": "2026-09-23T20:35:19.927Z",
        "dateUpdated": "2026-10-03T03:55:42.205Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.2"
    }

    CVE-2026-100208 (GCVE-0-2026-100208)

    Vulnerability from cvelistv5 – Published: 2026-09-25 19:39 – Updated: 2026-09-29 20:22
    VLAI
    Title
    Microsoft Office Outlook Remote Code Execution Vulnerability
    Summary
    Integer overflow or wraparound in Microsoft Office Outlook allows an unauthorized attacker to execute code over a network.
    SSVC
    Exploitation: none Automatable: no Technical Impact: total
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2026-09-25 00:00 UTC
    CWE
    • CWE-190 - Integer Overflow or Wraparound
    References
    Impacted products
    Vendor Product Version
    Microsoft Microsoft 365 Apps for Enterprise Affected: 16.0.1 , < https://aka.ms/OfficeSecurityReleases (custom)
    Create a notification for this product.
    Microsoft Microsoft Office LTSC 2021 Affected: 16.0.1 , < https://aka.ms/OfficeSecurityReleases (custom)
    Create a notification for this product.
    Microsoft Microsoft Office LTSC 2024 Affected: 16.0.0 , < https://aka.ms/OfficeSecurityReleases (custom)
    Create a notification for this product.
    Date Public
    2026-09-25 14:00
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "metrics": [
              {
                "other": {
                  "content": {
                    "id": "CVE-2026-100208",
                    "options": [
                      {
                        "Exploitation": "none"
                      },
                      {
                        "Automatable": "no"
                      },
                      {
                        "Technical Impact": "total"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2026-09-25T00:00:00+00:00",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2026-09-26T03:55:54.361Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "title": "CISA ADP Vulnrichment"
          }
        ],
        "cna": {
          "affected": [
            {
              "platforms": [
                "32-bit Systems",
                "x64-based Systems"
              ],
              "product": "Microsoft 365 Apps for Enterprise",
              "vendor": "Microsoft",
              "versions": [
                {
                  "lessThan": "https://aka.ms/OfficeSecurityReleases",
                  "status": "affected",
                  "version": "16.0.1",
                  "versionType": "custom"
                }
              ]
            },
            {
              "platforms": [
                "32-bit Systems",
                "x64-based Systems"
              ],
              "product": "Microsoft Office LTSC 2021",
              "vendor": "Microsoft",
              "versions": [
                {
                  "lessThan": "https://aka.ms/OfficeSecurityReleases",
                  "status": "affected",
                  "version": "16.0.1",
                  "versionType": "custom"
                }
              ]
            },
            {
              "platforms": [
                "32-bit Systems",
                "x64-based Systems"
              ],
              "product": "Microsoft Office LTSC 2024",
              "vendor": "Microsoft",
              "versions": [
                {
                  "lessThan": "https://aka.ms/OfficeSecurityReleases",
                  "status": "affected",
                  "version": "16.0.0",
                  "versionType": "custom"
                }
              ]
            }
          ],
          "cpeApplicability": [
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:a:microsoft:365_apps:*:*:*:*:enterprise:*:*:*",
                      "versionEndExcluding": "https://aka.ms/OfficeSecurityReleases",
                      "versionStartIncluding": "16.0.1",
                      "vulnerable": true
                    },
                    {
                      "criteria": "cpe:2.3:a:microsoft:office_2021:*:*:*:*:long_term_servicing_channel:*:*:*",
                      "versionEndExcluding": "https://aka.ms/OfficeSecurityReleases",
                      "versionStartIncluding": "16.0.1",
                      "vulnerable": true
                    },
                    {
                      "criteria": "cpe:2.3:a:microsoft:office_2024:*:*:*:*:long_term_servicing_channel:*:*:*",
                      "versionEndExcluding": "https://aka.ms/OfficeSecurityReleases",
                      "versionStartIncluding": "16.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ]
            }
          ],
          "datePublic": "2026-09-25T14:00:00.000Z",
          "descriptions": [
            {
              "lang": "en-US",
              "value": "Integer overflow or wraparound in Microsoft Office Outlook allows an unauthorized attacker to execute code over a network."
            }
          ],
          "metrics": [
            {
              "cvssV3_1": {
                "baseScore": 7.5,
                "baseSeverity": "HIGH",
                "vectorString": "CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C",
                "version": "3.1"
              },
              "format": "CVSS",
              "scenarios": [
                {
                  "lang": "en-US",
                  "value": "GENERAL"
                }
              ]
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "cweId": "CWE-190",
                  "description": "CWE-190: Integer Overflow or Wraparound",
                  "lang": "en-US",
                  "type": "CWE"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2026-09-29T20:22:55.677Z",
            "orgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
            "shortName": "microsoft"
          },
          "references": [
            {
              "name": "Microsoft Office Outlook Remote Code Execution Vulnerability",
              "tags": [
                "vendor-advisory",
                "patch"
              ],
              "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-100208"
            }
          ],
          "title": "Microsoft Office Outlook Remote Code Execution Vulnerability"
        }
      },
      "cveMetadata": {
        "assignerOrgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
        "assignerShortName": "microsoft",
        "cveId": "CVE-2026-100208",
        "datePublished": "2026-09-25T19:39:27.315Z",
        "dateReserved": "2026-09-25T15:11:44.539Z",
        "dateUpdated": "2026-09-29T20:22:55.677Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.2"
    }

    CVE-2026-70125 (GCVE-0-2026-70125)

    Vulnerability from cvelistv5 – Published: 2026-09-23 22:40 – Updated: 2026-10-01 22:56
    VLAI
    Title
    Microsoft Office Outlook Remote Code Execution Vulnerability
    Summary
    Microsoft Office Outlook Remote Code Execution Vulnerability
    SSVC
    Exploitation: none Automatable: no Technical Impact: total
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2026-09-24 00:00 UTC
    CWE
    References
    Impacted products
    Vendor Product Version
    Microsoft Microsoft 365 Apps for Enterprise Affected: 16.0.1 , < https://aka.ms/OfficeSecurityReleases (custom)
    Create a notification for this product.
    Microsoft Microsoft Office LTSC 2021 Affected: 16.0.1 , < https://aka.ms/OfficeSecurityReleases (custom)
    Create a notification for this product.
    Microsoft Microsoft Office LTSC 2024 Affected: 16.0.0 , < https://aka.ms/OfficeSecurityReleases (custom)
    Create a notification for this product.
    Date Public
    2026-09-23 14:00
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "metrics": [
              {
                "other": {
                  "content": {
                    "id": "CVE-2026-70125",
                    "options": [
                      {
                        "Exploitation": "none"
                      },
                      {
                        "Automatable": "no"
                      },
                      {
                        "Technical Impact": "total"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2026-09-24T00:00:00+00:00",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              }
            ],
            "problemTypes": [
              {
                "descriptions": [
                  {
                    "description": "CWE-noinfo Not enough information",
                    "lang": "en",
                    "type": "CWE"
                  }
                ]
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2026-09-25T03:55:19.099Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "title": "CISA ADP Vulnrichment"
          }
        ],
        "cna": {
          "affected": [
            {
              "platforms": [
                "32-bit Systems",
                "x64-based Systems"
              ],
              "product": "Microsoft 365 Apps for Enterprise",
              "vendor": "Microsoft",
              "versions": [
                {
                  "lessThan": "https://aka.ms/OfficeSecurityReleases",
                  "status": "affected",
                  "version": "16.0.1",
                  "versionType": "custom"
                }
              ]
            },
            {
              "platforms": [
                "32-bit Systems",
                "x64-based Systems"
              ],
              "product": "Microsoft Office LTSC 2021",
              "vendor": "Microsoft",
              "versions": [
                {
                  "lessThan": "https://aka.ms/OfficeSecurityReleases",
                  "status": "affected",
                  "version": "16.0.1",
                  "versionType": "custom"
                }
              ]
            },
            {
              "platforms": [
                "32-bit Systems",
                "x64-based Systems"
              ],
              "product": "Microsoft Office LTSC 2024",
              "vendor": "Microsoft",
              "versions": [
                {
                  "lessThan": "https://aka.ms/OfficeSecurityReleases",
                  "status": "affected",
                  "version": "16.0.0",
                  "versionType": "custom"
                }
              ]
            }
          ],
          "cpeApplicability": [
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:a:microsoft:365_apps:*:*:*:*:enterprise:*:*:*",
                      "versionEndExcluding": "https://aka.ms/OfficeSecurityReleases",
                      "versionStartIncluding": "16.0.1",
                      "vulnerable": true
                    },
                    {
                      "criteria": "cpe:2.3:a:microsoft:office_2021:*:*:*:*:long_term_servicing_channel:*:*:*",
                      "versionEndExcluding": "https://aka.ms/OfficeSecurityReleases",
                      "versionStartIncluding": "16.0.1",
                      "vulnerable": true
                    },
                    {
                      "criteria": "cpe:2.3:a:microsoft:office_2024:*:*:*:*:long_term_servicing_channel:*:*:*",
                      "versionEndExcluding": "https://aka.ms/OfficeSecurityReleases",
                      "versionStartIncluding": "16.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ]
            }
          ],
          "datePublic": "2026-09-23T14:00:00.000Z",
          "descriptions": [
            {
              "lang": "en-US",
              "value": "Microsoft Office Outlook Remote Code Execution Vulnerability"
            }
          ],
          "metrics": [
            {
              "cvssV3_1": {
                "baseScore": 8.8,
                "baseSeverity": "HIGH",
                "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C",
                "version": "3.1"
              },
              "format": "CVSS",
              "scenarios": [
                {
                  "lang": "en-US",
                  "value": "GENERAL"
                }
              ]
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "cweId": "CWE-122",
                  "description": "CWE-122: Heap-based Buffer Overflow",
                  "lang": "en-US",
                  "type": "CWE"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2026-10-01T22:56:21.122Z",
            "orgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
            "shortName": "microsoft"
          },
          "references": [
            {
              "name": "Microsoft Office Outlook Remote Code Execution Vulnerability",
              "tags": [
                "vendor-advisory",
                "patch"
              ],
              "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-70125"
            }
          ],
          "title": "Microsoft Office Outlook Remote Code Execution Vulnerability"
        }
      },
      "cveMetadata": {
        "assignerOrgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
        "assignerShortName": "microsoft",
        "cveId": "CVE-2026-70125",
        "datePublished": "2026-09-23T22:40:40.537Z",
        "dateReserved": "2026-08-03T23:31:50.775Z",
        "dateUpdated": "2026-10-01T22:56:21.122Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.2"
    }

    CVE-2026-88097 (GCVE-0-2026-88097)

    Vulnerability from cvelistv5 – Published: 2026-09-18 20:47 – Updated: 2026-10-01 23:01
    VLAI
    Title
    Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability
    Summary
    Use after free in Microsoft Edge (Chromium-based) allows an unauthorized attacker to elevate privileges locally.
    SSVC
    Exploitation: none Automatable: no Technical Impact: total
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2026-09-19 00:00 UTC
    CWE
    References
    Impacted products
    Vendor Product Version
    Microsoft Microsoft Edge (Chromium-based) Affected: 1.0.0.0 , < 153.0.4234.46 (custom)
        cpe:2.3:a:microsoft:edge_chromium:*:*:*:*:*:*:*:*
    Create a notification for this product.
    Date Public
    2026-09-18 14:00
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "metrics": [
              {
                "other": {
                  "content": {
                    "id": "CVE-2026-88097",
                    "options": [
                      {
                        "Exploitation": "none"
                      },
                      {
                        "Automatable": "no"
                      },
                      {
                        "Technical Impact": "total"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2026-09-19T00:00:00+00:00",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2026-09-20T03:55:51.649Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "title": "CISA ADP Vulnrichment"
          }
        ],
        "cna": {
          "affected": [
            {
              "product": "Microsoft Edge (Chromium-based)",
              "vendor": "Microsoft",
              "versions": [
                {
                  "lessThan": "153.0.4234.46",
                  "status": "affected",
                  "version": "1.0.0.0",
                  "versionType": "custom"
                }
              ]
            }
          ],
          "cpeApplicability": [
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:a:microsoft:edge_chromium:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "153.0.4234.46",
                      "versionStartIncluding": "1.0.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ]
            }
          ],
          "datePublic": "2026-09-18T14:00:00.000Z",
          "descriptions": [
            {
              "lang": "en-US",
              "value": "Use after free in Microsoft Edge (Chromium-based) allows an unauthorized attacker to elevate privileges locally."
            }
          ],
          "metrics": [
            {
              "cvssV3_1": {
                "baseScore": 8.1,
                "baseSeverity": "HIGH",
                "vectorString": "CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H/E:U/RL:O/RC:C",
                "version": "3.1"
              },
              "format": "CVSS",
              "scenarios": [
                {
                  "lang": "en-US",
                  "value": "GENERAL"
                }
              ]
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "cweId": "CWE-416",
                  "description": "CWE-416: Use After Free",
                  "lang": "en-US",
                  "type": "CWE"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2026-10-01T23:01:15.897Z",
            "orgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
            "shortName": "microsoft"
          },
          "references": [
            {
              "name": "Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability",
              "tags": [
                "vendor-advisory",
                "patch"
              ],
              "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-88097"
            }
          ],
          "title": "Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability"
        }
      },
      "cveMetadata": {
        "assignerOrgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
        "assignerShortName": "microsoft",
        "cveId": "CVE-2026-88097",
        "datePublished": "2026-09-18T20:47:05.350Z",
        "dateReserved": "2026-09-09T21:51:51.953Z",
        "dateUpdated": "2026-10-01T23:01:15.897Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.2"
    }

    CVE-2026-85887 (GCVE-0-2026-85887)

    Vulnerability from cvelistv5 – Published: 2026-09-17 23:04 – Updated: 2026-10-01 23:01 Exclusively Hosted Service
    VLAI
    Title
    M365 Copilot Information Disclosure Vulnerability
    Summary
    Incorrect permission assignment for critical resource in M365 Copilot allows an authorized attacker to disclose information over a network.
    SSVC
    Exploitation: none Automatable: no Technical Impact: partial
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2026-09-18 13:35 UTC
    CWE
    • CWE-732 - Incorrect Permission Assignment for Critical Resource
    References
    Impacted products
    Vendor Product Version
    Microsoft Microsoft 365 Copilot Affected: -
        cpe:2.3:a:microsoft:365_copilot:*:*:*:*:*:*:*:*
    Create a notification for this product.
    Date Public
    2026-09-17 14:00
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "metrics": [
              {
                "other": {
                  "content": {
                    "id": "CVE-2026-85887",
                    "options": [
                      {
                        "Exploitation": "none"
                      },
                      {
                        "Automatable": "no"
                      },
                      {
                        "Technical Impact": "partial"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2026-09-18T13:35:20.282568Z",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2026-09-18T14:31:47.653Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "title": "CISA ADP Vulnrichment"
          }
        ],
        "cna": {
          "affected": [
            {
              "product": "Microsoft 365 Copilot",
              "vendor": "Microsoft",
              "versions": [
                {
                  "status": "affected",
                  "version": "-"
                }
              ]
            }
          ],
          "cpeApplicability": [
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:a:microsoft:365_copilot:*:*:*:*:*:*:*:*",
                      "versionStartIncluding": "-",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ]
            }
          ],
          "datePublic": "2026-09-17T14:00:00.000Z",
          "descriptions": [
            {
              "lang": "en-US",
              "value": "Incorrect permission assignment for critical resource in M365 Copilot allows an authorized attacker to disclose information over a network."
            }
          ],
          "metrics": [
            {
              "cvssV3_1": {
                "baseScore": 7.7,
                "baseSeverity": "HIGH",
                "vectorString": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N/E:U/RL:O/RC:C",
                "version": "3.1"
              },
              "format": "CVSS",
              "scenarios": [
                {
                  "lang": "en-US",
                  "value": "GENERAL"
                }
              ]
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "cweId": "CWE-732",
                  "description": "CWE-732: Incorrect Permission Assignment for Critical Resource",
                  "lang": "en-US",
                  "type": "CWE"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2026-10-01T23:01:22.079Z",
            "orgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
            "shortName": "microsoft"
          },
          "references": [
            {
              "name": "M365 Copilot Information Disclosure Vulnerability",
              "tags": [
                "vendor-advisory",
                "patch"
              ],
              "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-85887"
            }
          ],
          "tags": [
            "exclusively-hosted-service"
          ],
          "title": "M365 Copilot Information Disclosure Vulnerability"
        }
      },
      "cveMetadata": {
        "assignerOrgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
        "assignerShortName": "microsoft",
        "cveId": "CVE-2026-85887",
        "datePublished": "2026-09-17T23:04:48.423Z",
        "dateReserved": "2026-09-04T18:18:19.327Z",
        "dateUpdated": "2026-10-01T23:01:22.079Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.2"
    }

    CVE-2026-83946 (GCVE-0-2026-83946)

    Vulnerability from cvelistv5 – Published: 2026-09-17 23:04 – Updated: 2026-10-01 23:01 Exclusively Hosted Service
    VLAI
    Title
    Azure Portal Spoofing Vulnerability
    Summary
    Improper neutralization of input during web page generation ('cross-site scripting') in Azure Portal allows an unauthorized attacker to perform spoofing over a network.
    SSVC
    Exploitation: none Automatable: no Technical Impact: partial
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2026-09-18 13:35 UTC
    CWE
    • CWE-79 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
    References
    Impacted products
    Vendor Product Version
    Microsoft Azure Portal Affected: -
        cpe:2.3:a:microsoft:azure_portal:*:*:*:*:*:*:*:*
    Create a notification for this product.
    Date Public
    2026-09-17 14:00
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "metrics": [
              {
                "other": {
                  "content": {
                    "id": "CVE-2026-83946",
                    "options": [
                      {
                        "Exploitation": "none"
                      },
                      {
                        "Automatable": "no"
                      },
                      {
                        "Technical Impact": "partial"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2026-09-18T13:35:30.124424Z",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2026-09-18T14:31:47.507Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "title": "CISA ADP Vulnrichment"
          }
        ],
        "cna": {
          "affected": [
            {
              "product": "Azure Portal",
              "vendor": "Microsoft",
              "versions": [
                {
                  "status": "affected",
                  "version": "-"
                }
              ]
            }
          ],
          "cpeApplicability": [
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:a:microsoft:azure_portal:*:*:*:*:*:*:*:*",
                      "versionStartIncluding": "-",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ]
            }
          ],
          "datePublic": "2026-09-17T14:00:00.000Z",
          "descriptions": [
            {
              "lang": "en-US",
              "value": "Improper neutralization of input during web page generation (\u0027cross-site scripting\u0027) in Azure Portal allows an unauthorized attacker to perform spoofing over a network."
            }
          ],
          "metrics": [
            {
              "cvssV3_1": {
                "baseScore": 8.2,
                "baseSeverity": "HIGH",
                "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N/E:U/RL:O/RC:C",
                "version": "3.1"
              },
              "format": "CVSS",
              "scenarios": [
                {
                  "lang": "en-US",
                  "value": "GENERAL"
                }
              ]
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "cweId": "CWE-79",
                  "description": "CWE-79: Improper Neutralization of Input During Web Page Generation (\u0027Cross-site Scripting\u0027)",
                  "lang": "en-US",
                  "type": "CWE"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2026-10-01T23:01:21.577Z",
            "orgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
            "shortName": "microsoft"
          },
          "references": [
            {
              "name": "Azure Portal Spoofing Vulnerability",
              "tags": [
                "vendor-advisory",
                "patch"
              ],
              "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-83946"
            }
          ],
          "tags": [
            "exclusively-hosted-service"
          ],
          "title": "Azure Portal Spoofing Vulnerability"
        }
      },
      "cveMetadata": {
        "assignerOrgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
        "assignerShortName": "microsoft",
        "cveId": "CVE-2026-83946",
        "datePublished": "2026-09-17T23:04:47.883Z",
        "dateReserved": "2026-08-31T23:40:59.641Z",
        "dateUpdated": "2026-10-01T23:01:21.577Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.2"
    }

    CVE-2026-69843 (GCVE-0-2026-69843)

    Vulnerability from cvelistv5 – Published: 2026-09-17 23:04 – Updated: 2026-10-01 23:01 Exclusively Hosted Service
    VLAI
    Title
    Microsoft Fabric Elevation of Privilege Vulnerability
    Summary
    Authentication bypass by spoofing in Microsoft Fabric allows an unauthorized attacker to elevate privileges over a network.
    SSVC
    Exploitation: none Automatable: yes Technical Impact: total
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2026-09-18 00:00 UTC
    CWE
    • CWE-290 - Authentication Bypass by Spoofing
    References
    Impacted products
    Vendor Product Version
    Microsoft Microsoft Fabric Affected: -
        cpe:2.3:a:microsoft:microsoft_fabric:*:*:*:*:*:*:*:*
    Create a notification for this product.
    Date Public
    2026-09-17 14:00
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "metrics": [
              {
                "other": {
                  "content": {
                    "id": "CVE-2026-69843",
                    "options": [
                      {
                        "Exploitation": "none"
                      },
                      {
                        "Automatable": "yes"
                      },
                      {
                        "Technical Impact": "total"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2026-09-18T00:00:00+00:00",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2026-09-19T03:56:25.687Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "title": "CISA ADP Vulnrichment"
          }
        ],
        "cna": {
          "affected": [
            {
              "product": "Microsoft Fabric",
              "vendor": "Microsoft",
              "versions": [
                {
                  "status": "affected",
                  "version": "-"
                }
              ]
            }
          ],
          "cpeApplicability": [
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:a:microsoft:microsoft_fabric:*:*:*:*:*:*:*:*",
                      "versionStartIncluding": "-",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ]
            }
          ],
          "datePublic": "2026-09-17T14:00:00.000Z",
          "descriptions": [
            {
              "lang": "en-US",
              "value": "Authentication bypass by spoofing in Microsoft Fabric allows an unauthorized attacker to elevate privileges over a network."
            }
          ],
          "metrics": [
            {
              "cvssV3_1": {
                "baseScore": 10,
                "baseSeverity": "CRITICAL",
                "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H/E:U/RL:O/RC:C",
                "version": "3.1"
              },
              "format": "CVSS",
              "scenarios": [
                {
                  "lang": "en-US",
                  "value": "GENERAL"
                }
              ]
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "cweId": "CWE-290",
                  "description": "CWE-290: Authentication Bypass by Spoofing",
                  "lang": "en-US",
                  "type": "CWE"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2026-10-01T23:01:21.024Z",
            "orgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
            "shortName": "microsoft"
          },
          "references": [
            {
              "name": "Microsoft Fabric Elevation of Privilege Vulnerability",
              "tags": [
                "vendor-advisory",
                "patch"
              ],
              "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-69843"
            }
          ],
          "tags": [
            "exclusively-hosted-service"
          ],
          "title": "Microsoft Fabric Elevation of Privilege Vulnerability"
        }
      },
      "cveMetadata": {
        "assignerOrgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
        "assignerShortName": "microsoft",
        "cveId": "CVE-2026-69843",
        "datePublished": "2026-09-17T23:04:47.355Z",
        "dateReserved": "2026-08-03T22:51:46.190Z",
        "dateUpdated": "2026-10-01T23:01:21.024Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.2"
    }

    CVE-2026-85878 (GCVE-0-2026-85878)

    Vulnerability from cvelistv5 – Published: 2026-09-17 23:04 – Updated: 2026-10-01 23:01 Exclusively Hosted Service
    VLAI
    Title
    Azure Database for PostgreSQL Elevation of Privilege Vulnerability
    Summary
    Improper authorization in Azure Database for PostgreSQL allows an authorized attacker to elevate privileges over a network.
    SSVC
    Exploitation: none Automatable: no Technical Impact: total
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2026-09-18 00:00 UTC
    CWE
    References
    Impacted products
    Vendor Product Version
    Microsoft Azure HorizonDB Affected: -
        cpe:2.3:a:microsoft:azure_horizondb:*:*:*:*:*:*:*:*
    Create a notification for this product.
    Date Public
    2026-09-17 14:00
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "metrics": [
              {
                "other": {
                  "content": {
                    "id": "CVE-2026-85878",
                    "options": [
                      {
                        "Exploitation": "none"
                      },
                      {
                        "Automatable": "no"
                      },
                      {
                        "Technical Impact": "total"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2026-09-18T00:00:00+00:00",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2026-09-19T03:56:27.861Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "title": "CISA ADP Vulnrichment"
          }
        ],
        "cna": {
          "affected": [
            {
              "product": "Azure HorizonDB",
              "vendor": "Microsoft",
              "versions": [
                {
                  "status": "affected",
                  "version": "-"
                }
              ]
            }
          ],
          "cpeApplicability": [
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:a:microsoft:azure_horizondb:*:*:*:*:*:*:*:*",
                      "versionStartIncluding": "-",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ]
            }
          ],
          "datePublic": "2026-09-17T14:00:00.000Z",
          "descriptions": [
            {
              "lang": "en-US",
              "value": "Improper authorization in Azure Database for PostgreSQL allows an authorized attacker to elevate privileges over a network."
            }
          ],
          "metrics": [
            {
              "cvssV3_1": {
                "baseScore": 9.9,
                "baseSeverity": "CRITICAL",
                "vectorString": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H/E:U/RL:O/RC:C",
                "version": "3.1"
              },
              "format": "CVSS",
              "scenarios": [
                {
                  "lang": "en-US",
                  "value": "GENERAL"
                }
              ]
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "cweId": "CWE-285",
                  "description": "CWE-285: Improper Authorization",
                  "lang": "en-US",
                  "type": "CWE"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2026-10-01T23:01:20.555Z",
            "orgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
            "shortName": "microsoft"
          },
          "references": [
            {
              "name": "Azure Database for PostgreSQL Elevation of Privilege Vulnerability",
              "tags": [
                "vendor-advisory",
                "patch"
              ],
              "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-85878"
            }
          ],
          "tags": [
            "exclusively-hosted-service"
          ],
          "title": "Azure Database for PostgreSQL Elevation of Privilege Vulnerability"
        }
      },
      "cveMetadata": {
        "assignerOrgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
        "assignerShortName": "microsoft",
        "cveId": "CVE-2026-85878",
        "datePublished": "2026-09-17T23:04:46.779Z",
        "dateReserved": "2026-09-04T18:18:19.325Z",
        "dateUpdated": "2026-10-01T23:01:20.555Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.2"
    }

    CVE-2026-62874 (GCVE-0-2026-62874)

    Vulnerability from cvelistv5 – Published: 2026-09-17 23:04 – Updated: 2026-10-01 23:01 Exclusively Hosted Service
    VLAI
    Title
    Azure Billing Elevation of Privilege Vulnerability
    Summary
    Insufficient verification of data authenticity in Azure Billing allows an unauthorized attacker to elevate privileges over a network.
    SSVC
    Exploitation: none Automatable: yes Technical Impact: total
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2026-09-18 00:00 UTC
    CWE
    • CWE-345 - Insufficient Verification of Data Authenticity
    References
    Impacted products
    Vendor Product Version
    Microsoft Azure Billing Affected: -
        cpe:2.3:a:microsoft:azure_billing:*:*:*:*:*:*:*:*
    Create a notification for this product.
    Date Public
    2026-09-17 14:00
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "metrics": [
              {
                "other": {
                  "content": {
                    "id": "CVE-2026-62874",
                    "options": [
                      {
                        "Exploitation": "none"
                      },
                      {
                        "Automatable": "yes"
                      },
                      {
                        "Technical Impact": "total"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2026-09-18T00:00:00+00:00",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2026-09-19T03:56:31.209Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "title": "CISA ADP Vulnrichment"
          }
        ],
        "cna": {
          "affected": [
            {
              "product": "Azure Billing",
              "vendor": "Microsoft",
              "versions": [
                {
                  "status": "affected",
                  "version": "-"
                }
              ]
            }
          ],
          "cpeApplicability": [
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:a:microsoft:azure_billing:*:*:*:*:*:*:*:*",
                      "versionStartIncluding": "-",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ]
            }
          ],
          "datePublic": "2026-09-17T14:00:00.000Z",
          "descriptions": [
            {
              "lang": "en-US",
              "value": "Insufficient verification of data authenticity in Azure Billing allows an unauthorized attacker to elevate privileges over a network."
            }
          ],
          "metrics": [
            {
              "cvssV3_1": {
                "baseScore": 10,
                "baseSeverity": "CRITICAL",
                "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:L/E:U/RL:O/RC:C",
                "version": "3.1"
              },
              "format": "CVSS",
              "scenarios": [
                {
                  "lang": "en-US",
                  "value": "GENERAL"
                }
              ]
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "cweId": "CWE-345",
                  "description": "CWE-345: Insufficient Verification of Data Authenticity",
                  "lang": "en-US",
                  "type": "CWE"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2026-10-01T23:01:20.110Z",
            "orgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
            "shortName": "microsoft"
          },
          "references": [
            {
              "name": "Azure Billing Elevation of Privilege Vulnerability",
              "tags": [
                "vendor-advisory",
                "patch"
              ],
              "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-62874"
            }
          ],
          "tags": [
            "exclusively-hosted-service"
          ],
          "title": "Azure Billing Elevation of Privilege Vulnerability"
        }
      },
      "cveMetadata": {
        "assignerOrgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
        "assignerShortName": "microsoft",
        "cveId": "CVE-2026-62874",
        "datePublished": "2026-09-17T23:04:46.281Z",
        "dateReserved": "2026-07-14T21:13:55.100Z",
        "dateUpdated": "2026-10-01T23:01:20.110Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.2"
    }

    CVE-2026-85917 (GCVE-0-2026-85917)

    Vulnerability from cvelistv5 – Published: 2026-09-17 22:55 – Updated: 2026-10-01 22:52 Exclusively Hosted Service
    VLAI
    Title
    Azure AI Foundry Elevation of Privilege Vulnerability
    Summary
    Server-side request forgery (ssrf) in Azure AI Foundry allows an unauthorized attacker to elevate privileges over a network.
    SSVC
    Exploitation: none Automatable: yes Technical Impact: total
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2026-09-19 03:56 UTC
    CWE
    • CWE-918 - Server-Side Request Forgery (SSRF)
    References
    Impacted products
    Vendor Product Version
    Microsoft Azure AI Foundry Affected: -
        cpe:2.3:a:microsoft:azure_ai_foundry:*:*:*:*:*:*:*:*
    Create a notification for this product.
    Date Public
    2026-09-17 14:00
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "metrics": [
              {
                "other": {
                  "content": {
                    "id": "CVE-2026-85917",
                    "options": [
                      {
                        "Exploitation": "none"
                      },
                      {
                        "Automatable": "yes"
                      },
                      {
                        "Technical Impact": "total"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2026-09-19T03:56:29.831492Z",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2026-09-21T12:49:34.884Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "title": "CISA ADP Vulnrichment"
          }
        ],
        "cna": {
          "affected": [
            {
              "product": "Azure AI Foundry",
              "vendor": "Microsoft",
              "versions": [
                {
                  "status": "affected",
                  "version": "-"
                }
              ]
            }
          ],
          "cpeApplicability": [
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:a:microsoft:azure_ai_foundry:*:*:*:*:*:*:*:*",
                      "versionStartIncluding": "-",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ]
            }
          ],
          "datePublic": "2026-09-17T14:00:00.000Z",
          "descriptions": [
            {
              "lang": "en-US",
              "value": "Server-side request forgery (ssrf) in Azure AI Foundry allows an unauthorized attacker to elevate privileges over a network."
            }
          ],
          "metrics": [
            {
              "cvssV3_1": {
                "baseScore": 7.5,
                "baseSeverity": "HIGH",
                "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N/E:P/RL:O/RC:C",
                "version": "3.1"
              },
              "format": "CVSS",
              "scenarios": [
                {
                  "lang": "en-US",
                  "value": "GENERAL"
                }
              ]
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "cweId": "CWE-918",
                  "description": "CWE-918: Server-Side Request Forgery (SSRF)",
                  "lang": "en-US",
                  "type": "CWE"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2026-10-01T22:52:47.136Z",
            "orgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
            "shortName": "microsoft"
          },
          "references": [
            {
              "name": "Azure AI Foundry Elevation of Privilege Vulnerability",
              "tags": [
                "vendor-advisory",
                "patch"
              ],
              "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-85917"
            }
          ],
          "tags": [
            "exclusively-hosted-service"
          ],
          "title": "Azure AI Foundry Elevation of Privilege Vulnerability"
        }
      },
      "cveMetadata": {
        "assignerOrgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
        "assignerShortName": "microsoft",
        "cveId": "CVE-2026-85917",
        "datePublished": "2026-09-17T22:55:59.128Z",
        "dateReserved": "2026-09-04T18:21:15.993Z",
        "dateUpdated": "2026-10-01T22:52:47.136Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.2"
    }

    CVE-2026-85889 (GCVE-0-2026-85889)

    Vulnerability from cvelistv5 – Published: 2026-09-17 22:55 – Updated: 2026-10-01 22:52 Exclusively Hosted Service
    VLAI
    Title
    Azure AI Foundry Elevation of Privilege Vulnerability
    Summary
    Missing authentication for critical function in Azure AI Foundry allows an unauthorized attacker to elevate privileges over a network.
    SSVC
    Exploitation: none Automatable: yes Technical Impact: total
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2026-09-18 00:00 UTC
    CWE
    • CWE-306 - Missing Authentication for Critical Function
    References
    Impacted products
    Vendor Product Version
    Microsoft Azure AI Foundry Affected: -
        cpe:2.3:a:microsoft:azure_ai_foundry:*:*:*:*:*:*:*:*
    Create a notification for this product.
    Date Public
    2026-09-17 14:00
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "metrics": [
              {
                "other": {
                  "content": {
                    "id": "CVE-2026-85889",
                    "options": [
                      {
                        "Exploitation": "none"
                      },
                      {
                        "Automatable": "yes"
                      },
                      {
                        "Technical Impact": "total"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2026-09-18T00:00:00+00:00",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2026-09-19T03:56:30.125Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "title": "CISA ADP Vulnrichment"
          }
        ],
        "cna": {
          "affected": [
            {
              "product": "Azure AI Foundry",
              "vendor": "Microsoft",
              "versions": [
                {
                  "status": "affected",
                  "version": "-"
                }
              ]
            }
          ],
          "cpeApplicability": [
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:a:microsoft:azure_ai_foundry:*:*:*:*:*:*:*:*",
                      "versionStartIncluding": "-",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ]
            }
          ],
          "datePublic": "2026-09-17T14:00:00.000Z",
          "descriptions": [
            {
              "lang": "en-US",
              "value": "Missing authentication for critical function in Azure AI Foundry allows an unauthorized attacker to elevate privileges over a network."
            }
          ],
          "metrics": [
            {
              "cvssV3_1": {
                "baseScore": 10,
                "baseSeverity": "CRITICAL",
                "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H/E:U/RL:O/RC:C",
                "version": "3.1"
              },
              "format": "CVSS",
              "scenarios": [
                {
                  "lang": "en-US",
                  "value": "GENERAL"
                }
              ]
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "cweId": "CWE-306",
                  "description": "CWE-306: Missing Authentication for Critical Function",
                  "lang": "en-US",
                  "type": "CWE"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2026-10-01T22:52:46.536Z",
            "orgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
            "shortName": "microsoft"
          },
          "references": [
            {
              "name": "Azure AI Foundry Elevation of Privilege Vulnerability",
              "tags": [
                "vendor-advisory",
                "patch"
              ],
              "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-85889"
            }
          ],
          "tags": [
            "exclusively-hosted-service"
          ],
          "title": "Azure AI Foundry Elevation of Privilege Vulnerability"
        }
      },
      "cveMetadata": {
        "assignerOrgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
        "assignerShortName": "microsoft",
        "cveId": "CVE-2026-85889",
        "datePublished": "2026-09-17T22:55:58.597Z",
        "dateReserved": "2026-09-04T18:18:19.328Z",
        "dateUpdated": "2026-10-01T22:52:46.536Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.2"
    }

    CVE-2026-70200 (GCVE-0-2026-70200)

    Vulnerability from cvelistv5 – Published: 2026-09-17 22:55 – Updated: 2026-10-01 22:52 Exclusively Hosted Service
    VLAI
    Title
    Azure Logic Apps Elevation of Privilege Vulnerability
    Summary
    Improper limitation of a pathname to a restricted directory ('path traversal') in Azure Logic Apps allows an unauthorized attacker to elevate privileges over a network.
    SSVC
    Exploitation: none Automatable: yes Technical Impact: total
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2026-09-18 00:00 UTC
    CWE
    • CWE-22 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
    • CWE-285 - Improper Authorization
    References
    Impacted products
    Vendor Product Version
    Microsoft Azure Logic Apps Affected: -
        cpe:2.3:a:microsoft:azure_logic_apps:*:*:*:*:*:*:*:*
    Create a notification for this product.
    Date Public
    2026-09-17 14:00
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "metrics": [
              {
                "other": {
                  "content": {
                    "id": "CVE-2026-70200",
                    "options": [
                      {
                        "Exploitation": "none"
                      },
                      {
                        "Automatable": "yes"
                      },
                      {
                        "Technical Impact": "total"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2026-09-18T00:00:00+00:00",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2026-09-19T03:56:32.293Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "title": "CISA ADP Vulnrichment"
          }
        ],
        "cna": {
          "affected": [
            {
              "product": "Azure Logic Apps",
              "vendor": "Microsoft",
              "versions": [
                {
                  "status": "affected",
                  "version": "-"
                }
              ]
            }
          ],
          "cpeApplicability": [
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:a:microsoft:azure_logic_apps:*:*:*:*:*:*:*:*",
                      "versionStartIncluding": "-",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ]
            }
          ],
          "datePublic": "2026-09-17T14:00:00.000Z",
          "descriptions": [
            {
              "lang": "en-US",
              "value": "Improper limitation of a pathname to a restricted directory (\u0027path traversal\u0027) in Azure Logic Apps allows an unauthorized attacker to elevate privileges over a network."
            }
          ],
          "metrics": [
            {
              "cvssV3_1": {
                "baseScore": 10,
                "baseSeverity": "CRITICAL",
                "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:N/E:U/RL:O/RC:C",
                "version": "3.1"
              },
              "format": "CVSS",
              "scenarios": [
                {
                  "lang": "en-US",
                  "value": "GENERAL"
                }
              ]
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "cweId": "CWE-22",
                  "description": "CWE-22: Improper Limitation of a Pathname to a Restricted Directory (\u0027Path Traversal\u0027)",
                  "lang": "en-US",
                  "type": "CWE"
                },
                {
                  "cweId": "CWE-285",
                  "description": "CWE-285: Improper Authorization",
                  "lang": "en-US",
                  "type": "CWE"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2026-10-01T22:52:46.015Z",
            "orgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
            "shortName": "microsoft"
          },
          "references": [
            {
              "name": "Azure Logic Apps Elevation of Privilege Vulnerability",
              "tags": [
                "vendor-advisory",
                "patch"
              ],
              "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-70200"
            }
          ],
          "tags": [
            "exclusively-hosted-service"
          ],
          "title": "Azure Logic Apps Elevation of Privilege Vulnerability"
        }
      },
      "cveMetadata": {
        "assignerOrgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
        "assignerShortName": "microsoft",
        "cveId": "CVE-2026-70200",
        "datePublished": "2026-09-17T22:55:58.067Z",
        "dateReserved": "2026-08-03T23:51:35.008Z",
        "dateUpdated": "2026-10-01T22:52:46.015Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.2"
    }

    CVE-2026-87701 (GCVE-0-2026-87701)

    Vulnerability from cvelistv5 – Published: 2026-09-17 22:55 – Updated: 2026-10-01 22:52 Exclusively Hosted Service
    VLAI
    Title
    Azure Cosmos DB Elevation of Privilege Vulnerability
    Summary
    Improper neutralization of special elements in output used by a downstream component ('injection') in Azure Cosmos DB allows an authorized attacker to elevate privileges over a network.
    SSVC
    Exploitation: none Automatable: no Technical Impact: total
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2026-09-18 00:00 UTC
    CWE
    • CWE-74 - Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')
    References
    Impacted products
    Vendor Product Version
    Microsoft Azure Cosmos DB Affected: -
        cpe:2.3:a:microsoft:cosmos_db:*:*:*:*:*:*:*:*
    Create a notification for this product.
    Date Public
    2026-09-17 14:00
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "metrics": [
              {
                "other": {
                  "content": {
                    "id": "CVE-2026-87701",
                    "options": [
                      {
                        "Exploitation": "none"
                      },
                      {
                        "Automatable": "no"
                      },
                      {
                        "Technical Impact": "total"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2026-09-18T00:00:00+00:00",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2026-09-19T03:56:33.396Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "title": "CISA ADP Vulnrichment"
          }
        ],
        "cna": {
          "affected": [
            {
              "product": "Azure Cosmos DB",
              "vendor": "Microsoft",
              "versions": [
                {
                  "status": "affected",
                  "version": "-"
                }
              ]
            }
          ],
          "cpeApplicability": [
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:a:microsoft:cosmos_db:*:*:*:*:*:*:*:*",
                      "versionStartIncluding": "-",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ]
            }
          ],
          "datePublic": "2026-09-17T14:00:00.000Z",
          "descriptions": [
            {
              "lang": "en-US",
              "value": "Improper neutralization of special elements in output used by a downstream component (\u0027injection\u0027) in Azure Cosmos DB allows an authorized attacker to elevate privileges over a network."
            }
          ],
          "metrics": [
            {
              "cvssV3_1": {
                "baseScore": 9.6,
                "baseSeverity": "CRITICAL",
                "vectorString": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:N/E:U/RL:O/RC:C",
                "version": "3.1"
              },
              "format": "CVSS",
              "scenarios": [
                {
                  "lang": "en-US",
                  "value": "GENERAL"
                }
              ]
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "cweId": "CWE-74",
                  "description": "CWE-74: Improper Neutralization of Special Elements in Output Used by a Downstream Component (\u0027Injection\u0027)",
                  "lang": "en-US",
                  "type": "CWE"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2026-10-01T22:52:45.488Z",
            "orgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
            "shortName": "microsoft"
          },
          "references": [
            {
              "name": "Azure Cosmos DB Elevation of Privilege Vulnerability",
              "tags": [
                "vendor-advisory",
                "patch"
              ],
              "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87701"
            }
          ],
          "tags": [
            "exclusively-hosted-service"
          ],
          "title": "Azure Cosmos DB Elevation of Privilege Vulnerability"
        }
      },
      "cveMetadata": {
        "assignerOrgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
        "assignerShortName": "microsoft",
        "cveId": "CVE-2026-87701",
        "datePublished": "2026-09-17T22:55:57.445Z",
        "dateReserved": "2026-09-08T23:57:53.797Z",
        "dateUpdated": "2026-10-01T22:52:45.488Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.2"
    }

    CVE-2026-78501 (GCVE-0-2026-78501)

    Vulnerability from cvelistv5 – Published: 2026-09-17 22:55 – Updated: 2026-10-01 22:56 Exclusively Hosted Service
    VLAI
    Title
    Microsoft 365 Copilot Business Chat Information Disclosure Vulnerability
    Summary
    Improper neutralization of special elements used in a command ('command injection') in Microsoft 365 Copilot's Business Chat allows an unauthorized attacker to disclose information over a network.
    SSVC
    Exploitation: none Automatable: no Technical Impact: partial
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2026-09-18 14:11 UTC
    CWE
    • CWE-77 - Improper Neutralization of Special Elements used in a Command ('Command Injection')
    • CWE-923 - Improper Restriction of Communication Channel to Intended Endpoints
    References
    Impacted products
    Vendor Product Version
    Microsoft Microsoft 365 Copilot's Business Chat Affected: -
        cpe:2.3:a:microsoft:365_copilot_business_chat:*:*:*:*:*:*:*:*
    Create a notification for this product.
    Date Public
    2026-09-17 14:00
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "metrics": [
              {
                "other": {
                  "content": {
                    "id": "CVE-2026-78501",
                    "options": [
                      {
                        "Exploitation": "none"
                      },
                      {
                        "Automatable": "no"
                      },
                      {
                        "Technical Impact": "partial"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2026-09-18T14:11:07.081015Z",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2026-09-18T14:31:46.454Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "title": "CISA ADP Vulnrichment"
          }
        ],
        "cna": {
          "affected": [
            {
              "product": "Microsoft 365 Copilot\u0027s Business Chat",
              "vendor": "Microsoft",
              "versions": [
                {
                  "status": "affected",
                  "version": "-"
                }
              ]
            }
          ],
          "cpeApplicability": [
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:a:microsoft:365_copilot_business_chat:*:*:*:*:*:*:*:*",
                      "versionStartIncluding": "-",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ]
            }
          ],
          "datePublic": "2026-09-17T14:00:00.000Z",
          "descriptions": [
            {
              "lang": "en-US",
              "value": "Improper neutralization of special elements used in a command (\u0027command injection\u0027) in Microsoft 365 Copilot\u0027s Business Chat allows an unauthorized attacker to disclose information over a network."
            }
          ],
          "metrics": [
            {
              "cvssV3_1": {
                "baseScore": 7.4,
                "baseSeverity": "HIGH",
                "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:N/A:N/E:U/RL:O/RC:C",
                "version": "3.1"
              },
              "format": "CVSS",
              "scenarios": [
                {
                  "lang": "en-US",
                  "value": "GENERAL"
                }
              ]
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "cweId": "CWE-77",
                  "description": "CWE-77: Improper Neutralization of Special Elements used in a Command (\u0027Command Injection\u0027)",
                  "lang": "en-US",
                  "type": "CWE"
                },
                {
                  "cweId": "CWE-923",
                  "description": "CWE-923: Improper Restriction of Communication Channel to Intended Endpoints",
                  "lang": "en-US",
                  "type": "CWE"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2026-10-01T22:56:20.681Z",
            "orgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
            "shortName": "microsoft"
          },
          "references": [
            {
              "name": "Microsoft 365 Copilot Business Chat Information Disclosure Vulnerability",
              "tags": [
                "vendor-advisory",
                "patch"
              ],
              "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-78501"
            }
          ],
          "tags": [
            "exclusively-hosted-service"
          ],
          "title": "Microsoft 365 Copilot Business Chat Information Disclosure Vulnerability"
        }
      },
      "cveMetadata": {
        "assignerOrgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
        "assignerShortName": "microsoft",
        "cveId": "CVE-2026-78501",
        "datePublished": "2026-09-17T22:55:56.907Z",
        "dateReserved": "2026-08-24T17:28:00.621Z",
        "dateUpdated": "2026-10-01T22:56:20.681Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.2"
    }

    CVE-2026-83944 (GCVE-0-2026-83944)

    Vulnerability from cvelistv5 – Published: 2026-09-17 22:55 – Updated: 2026-10-01 22:52 Exclusively Hosted Service
    VLAI
    Title
    Azure Logic Apps Elevation of Privilege Vulnerability
    Summary
    Improper access control in Azure Logic Apps allows an unauthorized attacker to elevate privileges over a network.
    SSVC
    Exploitation: none Automatable: yes Technical Impact: total
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2026-09-18 00:00 UTC
    CWE
    • CWE-284 - Improper Access Control
    References
    Impacted products
    Vendor Product Version
    Microsoft Azure Logic Apps Affected: -
        cpe:2.3:a:microsoft:azure_logic_apps:*:*:*:*:*:*:*:*
    Create a notification for this product.
    Date Public
    2026-09-17 14:00
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "metrics": [
              {
                "other": {
                  "content": {
                    "id": "CVE-2026-83944",
                    "options": [
                      {
                        "Exploitation": "none"
                      },
                      {
                        "Automatable": "yes"
                      },
                      {
                        "Technical Impact": "total"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2026-09-18T00:00:00+00:00",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2026-09-19T03:56:34.495Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "title": "CISA ADP Vulnrichment"
          }
        ],
        "cna": {
          "affected": [
            {
              "product": "Azure Logic Apps",
              "vendor": "Microsoft",
              "versions": [
                {
                  "status": "affected",
                  "version": "-"
                }
              ]
            }
          ],
          "cpeApplicability": [
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:a:microsoft:azure_logic_apps:*:*:*:*:*:*:*:*",
                      "versionStartIncluding": "-",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ]
            }
          ],
          "datePublic": "2026-09-17T14:00:00.000Z",
          "descriptions": [
            {
              "lang": "en-US",
              "value": "Improper access control in Azure Logic Apps allows an unauthorized attacker to elevate privileges over a network."
            }
          ],
          "metrics": [
            {
              "cvssV3_1": {
                "baseScore": 10,
                "baseSeverity": "CRITICAL",
                "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:N/E:U/RL:O/RC:C",
                "version": "3.1"
              },
              "format": "CVSS",
              "scenarios": [
                {
                  "lang": "en-US",
                  "value": "GENERAL"
                }
              ]
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "cweId": "CWE-284",
                  "description": "CWE-284: Improper Access Control",
                  "lang": "en-US",
                  "type": "CWE"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2026-10-01T22:52:44.970Z",
            "orgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
            "shortName": "microsoft"
          },
          "references": [
            {
              "name": "Azure Logic Apps Elevation of Privilege Vulnerability",
              "tags": [
                "vendor-advisory",
                "patch"
              ],
              "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-83944"
            }
          ],
          "tags": [
            "exclusively-hosted-service"
          ],
          "title": "Azure Logic Apps Elevation of Privilege Vulnerability"
        }
      },
      "cveMetadata": {
        "assignerOrgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
        "assignerShortName": "microsoft",
        "cveId": "CVE-2026-83944",
        "datePublished": "2026-09-17T22:55:56.302Z",
        "dateReserved": "2026-08-31T23:40:59.641Z",
        "dateUpdated": "2026-10-01T22:52:44.970Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.2"
    }

    CVE-2026-85885 (GCVE-0-2026-85885)

    Vulnerability from cvelistv5 – Published: 2026-09-17 22:55 – Updated: 2026-10-01 22:52 Exclusively Hosted Service
    VLAI
    Title
    Microsoft 365 Copilot Elevation of Privilege Vulnerability
    Summary
    Improper neutralization of special elements used in a command ('command injection') in M365 Copilot allows an authorized attacker to elevate privileges over a network.
    SSVC
    Exploitation: none Automatable: no Technical Impact: total
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2026-09-18 00:00 UTC
    CWE
    • CWE-77 - Improper Neutralization of Special Elements used in a Command ('Command Injection')
    References
    Impacted products
    Vendor Product Version
    Microsoft Microsoft 365 Copilot Affected: -
        cpe:2.3:a:microsoft:365_copilot:*:*:*:*:*:*:*:*
    Create a notification for this product.
    Date Public
    2026-09-17 14:00
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "metrics": [
              {
                "other": {
                  "content": {
                    "id": "CVE-2026-85885",
                    "options": [
                      {
                        "Exploitation": "none"
                      },
                      {
                        "Automatable": "no"
                      },
                      {
                        "Technical Impact": "total"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2026-09-18T00:00:00+00:00",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2026-09-19T03:56:35.652Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "title": "CISA ADP Vulnrichment"
          }
        ],
        "cna": {
          "affected": [
            {
              "product": "Microsoft 365 Copilot",
              "vendor": "Microsoft",
              "versions": [
                {
                  "status": "affected",
                  "version": "-"
                }
              ]
            }
          ],
          "cpeApplicability": [
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:a:microsoft:365_copilot:*:*:*:*:*:*:*:*",
                      "versionStartIncluding": "-",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ]
            }
          ],
          "datePublic": "2026-09-17T14:00:00.000Z",
          "descriptions": [
            {
              "lang": "en-US",
              "value": "Improper neutralization of special elements used in a command (\u0027command injection\u0027) in M365 Copilot allows an authorized attacker to elevate privileges over a network."
            }
          ],
          "metrics": [
            {
              "cvssV3_1": {
                "baseScore": 9.9,
                "baseSeverity": "CRITICAL",
                "vectorString": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H/E:U/RL:O/RC:C",
                "version": "3.1"
              },
              "format": "CVSS",
              "scenarios": [
                {
                  "lang": "en-US",
                  "value": "GENERAL"
                }
              ]
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "cweId": "CWE-77",
                  "description": "CWE-77: Improper Neutralization of Special Elements used in a Command (\u0027Command Injection\u0027)",
                  "lang": "en-US",
                  "type": "CWE"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2026-10-01T22:52:44.474Z",
            "orgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
            "shortName": "microsoft"
          },
          "references": [
            {
              "name": "Microsoft 365 Copilot Elevation of Privilege Vulnerability",
              "tags": [
                "vendor-advisory",
                "patch"
              ],
              "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-85885"
            }
          ],
          "tags": [
            "exclusively-hosted-service"
          ],
          "title": "Microsoft 365 Copilot Elevation of Privilege Vulnerability"
        }
      },
      "cveMetadata": {
        "assignerOrgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
        "assignerShortName": "microsoft",
        "cveId": "CVE-2026-85885",
        "datePublished": "2026-09-17T22:55:55.696Z",
        "dateReserved": "2026-09-04T18:18:19.327Z",
        "dateUpdated": "2026-10-01T22:52:44.474Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.2"
    }

    CVE-2026-68791 (GCVE-0-2026-68791)

    Vulnerability from cvelistv5 – Published: 2026-09-17 22:55 – Updated: 2026-10-01 22:52 Exclusively Hosted Service
    VLAI
    Title
    Azure Machine Learning Information Disclosure Vulnerability
    Summary
    Incorrect authorization in Azure Machine Learning allows an unauthorized attacker to disclose information over a network.
    SSVC
    Exploitation: none Automatable: yes Technical Impact: partial
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2026-09-18 14:12 UTC
    CWE
    • CWE-863 - Incorrect Authorization
    References
    Impacted products
    Vendor Product Version
    Microsoft Azure Machine Learning Affected: -
        cpe:2.3:a:microsoft:azure_machine_learning:*:*:*:*:*:*:*:*
    Create a notification for this product.
    Date Public
    2026-09-17 14:00
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "metrics": [
              {
                "other": {
                  "content": {
                    "id": "CVE-2026-68791",
                    "options": [
                      {
                        "Exploitation": "none"
                      },
                      {
                        "Automatable": "yes"
                      },
                      {
                        "Technical Impact": "partial"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2026-09-18T14:12:18.387537Z",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2026-09-18T14:31:45.519Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "title": "CISA ADP Vulnrichment"
          }
        ],
        "cna": {
          "affected": [
            {
              "product": "Azure Machine Learning",
              "vendor": "Microsoft",
              "versions": [
                {
                  "status": "affected",
                  "version": "-"
                }
              ]
            }
          ],
          "cpeApplicability": [
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:a:microsoft:azure_machine_learning:*:*:*:*:*:*:*:*",
                      "versionStartIncluding": "-",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ]
            }
          ],
          "datePublic": "2026-09-17T14:00:00.000Z",
          "descriptions": [
            {
              "lang": "en-US",
              "value": "Incorrect authorization in Azure Machine Learning allows an unauthorized attacker to disclose information over a network."
            }
          ],
          "metrics": [
            {
              "cvssV3_1": {
                "baseScore": 8.6,
                "baseSeverity": "HIGH",
                "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:N/E:U/RL:O/RC:C",
                "version": "3.1"
              },
              "format": "CVSS",
              "scenarios": [
                {
                  "lang": "en-US",
                  "value": "GENERAL"
                }
              ]
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "cweId": "CWE-863",
                  "description": "CWE-863: Incorrect Authorization",
                  "lang": "en-US",
                  "type": "CWE"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2026-10-01T22:52:43.960Z",
            "orgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
            "shortName": "microsoft"
          },
          "references": [
            {
              "name": "Azure Machine Learning Information Disclosure Vulnerability",
              "tags": [
                "vendor-advisory",
                "patch"
              ],
              "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-68791"
            }
          ],
          "tags": [
            "exclusively-hosted-service"
          ],
          "title": "Azure Machine Learning Information Disclosure Vulnerability"
        }
      },
      "cveMetadata": {
        "assignerOrgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
        "assignerShortName": "microsoft",
        "cveId": "CVE-2026-68791",
        "datePublished": "2026-09-17T22:55:55.200Z",
        "dateReserved": "2026-07-31T16:33:08.216Z",
        "dateUpdated": "2026-10-01T22:52:43.960Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.2"
    }

    CVE-2026-69399 (GCVE-0-2026-69399)

    Vulnerability from cvelistv5 – Published: 2026-09-17 22:55 – Updated: 2026-10-01 22:52 Exclusively Hosted Service
    VLAI
    Title
    Azure Arc Elevation of Privilege Vulnerability
    Summary
    Azure Arc Elevation of Privilege Vulnerability
    SSVC
    Exploitation: none Automatable: yes Technical Impact: total
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2026-09-18 14:12 UTC
    CWE
    • CWE-441 - Unintended Proxy or Intermediary
    References
    Impacted products
    Vendor Product Version
    Microsoft Azure ARC Affected: -
        cpe:2.3:a:microsoft:azure_arc:*:*:*:*:*:*:*:*
    Create a notification for this product.
    Date Public
    2026-09-17 14:00
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "metrics": [
              {
                "other": {
                  "content": {
                    "id": "CVE-2026-69399",
                    "options": [
                      {
                        "Exploitation": "none"
                      },
                      {
                        "Automatable": "yes"
                      },
                      {
                        "Technical Impact": "total"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2026-09-18T14:12:08.773079Z",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2026-09-18T14:31:45.698Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "title": "CISA ADP Vulnrichment"
          }
        ],
        "cna": {
          "affected": [
            {
              "product": "Azure ARC",
              "vendor": "Microsoft",
              "versions": [
                {
                  "status": "affected",
                  "version": "-"
                }
              ]
            }
          ],
          "cpeApplicability": [
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:a:microsoft:azure_arc:*:*:*:*:*:*:*:*",
                      "versionStartIncluding": "-",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ]
            }
          ],
          "datePublic": "2026-09-17T14:00:00.000Z",
          "descriptions": [
            {
              "lang": "en-US",
              "value": "Azure Arc Elevation of Privilege Vulnerability"
            }
          ],
          "metrics": [
            {
              "cvssV3_1": {
                "baseScore": 10,
                "baseSeverity": "CRITICAL",
                "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H/E:U/RL:O/RC:C",
                "version": "3.1"
              },
              "format": "CVSS",
              "scenarios": [
                {
                  "lang": "en-US",
                  "value": "GENERAL"
                }
              ]
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "cweId": "CWE-441",
                  "description": "CWE-441 Unintended Proxy or Intermediary",
                  "lang": "en-US",
                  "type": "CWE"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2026-10-01T22:52:43.472Z",
            "orgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
            "shortName": "microsoft"
          },
          "references": [
            {
              "name": "Azure Arc Elevation of Privilege Vulnerability",
              "tags": [
                "vendor-advisory",
                "patch"
              ],
              "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-69399"
            }
          ],
          "tags": [
            "exclusively-hosted-service"
          ],
          "title": "Azure Arc Elevation of Privilege Vulnerability"
        }
      },
      "cveMetadata": {
        "assignerOrgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
        "assignerShortName": "microsoft",
        "cveId": "CVE-2026-69399",
        "datePublished": "2026-09-17T22:55:54.666Z",
        "dateReserved": "2026-08-03T20:57:58.962Z",
        "dateUpdated": "2026-10-01T22:52:43.472Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.2"
    }

    CVE-2026-77903 (GCVE-0-2026-77903)

    Vulnerability from cvelistv5 – Published: 2026-09-17 22:55 – Updated: 2026-10-01 22:52 Exclusively Hosted Service
    VLAI
    Title
    Microsoft Dataverse Elevation of Privilege Vulnerability
    Summary
    Authentication bypass by spoofing in Microsoft Dataverse allows an unauthorized attacker to elevate privileges over a network.
    SSVC
    Exploitation: none Automatable: no Technical Impact: total
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2026-09-18 00:00 UTC
    CWE
    • CWE-290 - Authentication Bypass by Spoofing
    References
    Impacted products
    Vendor Product Version
    Microsoft Microsoft Dataverse Affected: -
        cpe:2.3:a:microsoft:dataverse:*:*:*:*:*:*:*:*
    Create a notification for this product.
    Date Public
    2026-09-17 14:00
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "metrics": [
              {
                "other": {
                  "content": {
                    "id": "CVE-2026-77903",
                    "options": [
                      {
                        "Exploitation": "none"
                      },
                      {
                        "Automatable": "no"
                      },
                      {
                        "Technical Impact": "total"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2026-09-18T00:00:00+00:00",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2026-09-19T03:56:37.851Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "title": "CISA ADP Vulnrichment"
          }
        ],
        "cna": {
          "affected": [
            {
              "product": "Microsoft Dataverse",
              "vendor": "Microsoft",
              "versions": [
                {
                  "status": "affected",
                  "version": "-"
                }
              ]
            }
          ],
          "cpeApplicability": [
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:a:microsoft:dataverse:*:*:*:*:*:*:*:*",
                      "versionStartIncluding": "-",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ]
            }
          ],
          "datePublic": "2026-09-17T14:00:00.000Z",
          "descriptions": [
            {
              "lang": "en-US",
              "value": "Authentication bypass by spoofing in Microsoft Dataverse allows an unauthorized attacker to elevate privileges over a network."
            }
          ],
          "metrics": [
            {
              "cvssV3_1": {
                "baseScore": 9,
                "baseSeverity": "CRITICAL",
                "vectorString": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H/E:U/RL:O/RC:C",
                "version": "3.1"
              },
              "format": "CVSS",
              "scenarios": [
                {
                  "lang": "en-US",
                  "value": "GENERAL"
                }
              ]
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "cweId": "CWE-290",
                  "description": "CWE-290: Authentication Bypass by Spoofing",
                  "lang": "en-US",
                  "type": "CWE"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2026-10-01T22:52:42.414Z",
            "orgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
            "shortName": "microsoft"
          },
          "references": [
            {
              "name": "Microsoft Dataverse Elevation of Privilege Vulnerability",
              "tags": [
                "vendor-advisory",
                "patch"
              ],
              "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-77903"
            }
          ],
          "tags": [
            "exclusively-hosted-service"
          ],
          "title": "Microsoft Dataverse Elevation of Privilege Vulnerability"
        }
      },
      "cveMetadata": {
        "assignerOrgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
        "assignerShortName": "microsoft",
        "cveId": "CVE-2026-77903",
        "datePublished": "2026-09-17T22:55:54.051Z",
        "dateReserved": "2026-08-21T17:26:55.613Z",
        "dateUpdated": "2026-10-01T22:52:42.414Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.2"
    }

    CVE-2026-69865 (GCVE-0-2026-69865)

    Vulnerability from cvelistv5 – Published: 2026-09-17 22:55 – Updated: 2026-10-01 22:52 Exclusively Hosted Service
    VLAI
    Title
    Microsoft Container Registry Elevation of Privilege Vulnerability
    Summary
    Authorization bypass through user-controlled key in Microsoft Container Registry allows an unauthorized attacker to elevate privileges over a network.
    SSVC
    Exploitation: none Automatable: yes Technical Impact: total
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2026-09-25 00:00 UTC
    CWE
    • CWE-639 - Authorization Bypass Through User-Controlled Key
    References
    Impacted products
    Vendor Product Version
    Microsoft Azure Container Registry Affected: -
        cpe:2.3:a:microsoft:azure_container_registry:*:*:*:*:*:*:*:*
    Create a notification for this product.
    Date Public
    2026-09-17 14:00
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "metrics": [
              {
                "other": {
                  "content": {
                    "id": "CVE-2026-69865",
                    "options": [
                      {
                        "Exploitation": "none"
                      },
                      {
                        "Automatable": "yes"
                      },
                      {
                        "Technical Impact": "total"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2026-09-25T00:00:00+00:00",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2026-09-26T03:55:42.919Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "title": "CISA ADP Vulnrichment"
          }
        ],
        "cna": {
          "affected": [
            {
              "product": "Azure Container Registry",
              "vendor": "Microsoft",
              "versions": [
                {
                  "status": "affected",
                  "version": "-"
                }
              ]
            }
          ],
          "cpeApplicability": [
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:a:microsoft:azure_container_registry:*:*:*:*:*:*:*:*",
                      "versionStartIncluding": "-",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ]
            }
          ],
          "datePublic": "2026-09-17T14:00:00.000Z",
          "descriptions": [
            {
              "lang": "en-US",
              "value": "Authorization bypass through user-controlled key in Microsoft Container Registry allows an unauthorized attacker to elevate privileges over a network."
            }
          ],
          "metrics": [
            {
              "cvssV3_1": {
                "baseScore": 10,
                "baseSeverity": "CRITICAL",
                "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:N/E:U/RL:O/RC:C",
                "version": "3.1"
              },
              "format": "CVSS",
              "scenarios": [
                {
                  "lang": "en-US",
                  "value": "GENERAL"
                }
              ]
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "cweId": "CWE-639",
                  "description": "CWE-639: Authorization Bypass Through User-Controlled Key",
                  "lang": "en-US",
                  "type": "CWE"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2026-10-01T22:52:41.928Z",
            "orgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
            "shortName": "microsoft"
          },
          "references": [
            {
              "name": "Microsoft Container Registry Elevation of Privilege Vulnerability",
              "tags": [
                "vendor-advisory",
                "patch"
              ],
              "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-69865"
            }
          ],
          "tags": [
            "exclusively-hosted-service"
          ],
          "title": "Microsoft Container Registry Elevation of Privilege Vulnerability"
        }
      },
      "cveMetadata": {
        "assignerOrgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
        "assignerShortName": "microsoft",
        "cveId": "CVE-2026-69865",
        "datePublished": "2026-09-17T22:55:53.514Z",
        "dateReserved": "2026-08-03T22:53:31.649Z",
        "dateUpdated": "2026-10-01T22:52:41.928Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.2"
    }

    CVE-2026-70009 (GCVE-0-2026-70009)

    Vulnerability from cvelistv5 – Published: 2026-09-17 22:55 – Updated: 2026-10-01 22:52 Exclusively Hosted Service
    VLAI
    Title
    Azure Arc Elevation of Privilege Vulnerability
    Summary
    Improper limitation of a pathname to a restricted directory ('path traversal') in Azure Arc allows an unauthorized attacker to elevate privileges over a network.
    SSVC
    Exploitation: none Automatable: yes Technical Impact: total
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2026-09-19 03:56 UTC
    CWE
    • CWE-22 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
    References
    Impacted products
    Vendor Product Version
    Microsoft Azure ARC Affected: -
        cpe:2.3:a:microsoft:azure_arc:*:*:*:*:*:*:*:*
    Create a notification for this product.
    Date Public
    2026-09-17 14:00
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "metrics": [
              {
                "other": {
                  "content": {
                    "id": "CVE-2026-70009",
                    "options": [
                      {
                        "Exploitation": "none"
                      },
                      {
                        "Automatable": "yes"
                      },
                      {
                        "Technical Impact": "total"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2026-09-19T03:56:39.745856Z",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2026-09-21T12:49:02.480Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "title": "CISA ADP Vulnrichment"
          }
        ],
        "cna": {
          "affected": [
            {
              "product": "Azure ARC",
              "vendor": "Microsoft",
              "versions": [
                {
                  "status": "affected",
                  "version": "-"
                }
              ]
            }
          ],
          "cpeApplicability": [
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:a:microsoft:azure_arc:*:*:*:*:*:*:*:*",
                      "versionStartIncluding": "-",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ]
            }
          ],
          "datePublic": "2026-09-17T14:00:00.000Z",
          "descriptions": [
            {
              "lang": "en-US",
              "value": "Improper limitation of a pathname to a restricted directory (\u0027path traversal\u0027) in Azure Arc allows an unauthorized attacker to elevate privileges over a network."
            }
          ],
          "metrics": [
            {
              "cvssV3_1": {
                "baseScore": 9.3,
                "baseSeverity": "CRITICAL",
                "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:L/I:H/A:N/E:U/RL:O/RC:C",
                "version": "3.1"
              },
              "format": "CVSS",
              "scenarios": [
                {
                  "lang": "en-US",
                  "value": "GENERAL"
                }
              ]
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "cweId": "CWE-22",
                  "description": "CWE-22: Improper Limitation of a Pathname to a Restricted Directory (\u0027Path Traversal\u0027)",
                  "lang": "en-US",
                  "type": "CWE"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2026-10-01T22:52:41.432Z",
            "orgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
            "shortName": "microsoft"
          },
          "references": [
            {
              "name": "Azure Arc Elevation of Privilege Vulnerability",
              "tags": [
                "vendor-advisory",
                "patch"
              ],
              "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-70009"
            }
          ],
          "tags": [
            "exclusively-hosted-service"
          ],
          "title": "Azure Arc Elevation of Privilege Vulnerability"
        }
      },
      "cveMetadata": {
        "assignerOrgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
        "assignerShortName": "microsoft",
        "cveId": "CVE-2026-70009",
        "datePublished": "2026-09-17T22:55:53.056Z",
        "dateReserved": "2026-08-03T23:07:44.323Z",
        "dateUpdated": "2026-10-01T22:52:41.432Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.2"
    }

    CVE-2026-55946 (GCVE-0-2026-55946)

    Vulnerability from cvelistv5 – Published: 2026-09-17 22:55 – Updated: 2026-10-01 22:52 Exclusively Hosted Service
    VLAI
    Title
    Microsoft Copilot Information Disclosure Vulnerability
    Summary
    Improper neutralization of special elements used in a command ('command injection') in Microsoft Copilot allows an unauthorized attacker to disclose information over a network.
    SSVC
    Exploitation: none Automatable: no Technical Impact: total
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2026-09-19 03:56 UTC
    CWE
    • CWE-77 - Improper Neutralization of Special Elements used in a Command ('Command Injection')
    References
    Impacted products
    Vendor Product Version
    Microsoft Microsoft Copilot Affected: -
        cpe:2.3:a:microsoft:copilot:*:*:*:*:*:*:*:*
    Create a notification for this product.
    Date Public
    2026-09-17 14:00
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "metrics": [
              {
                "other": {
                  "content": {
                    "id": "CVE-2026-55946",
                    "options": [
                      {
                        "Exploitation": "none"
                      },
                      {
                        "Automatable": "no"
                      },
                      {
                        "Technical Impact": "total"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2026-09-19T03:56:40.835292Z",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2026-09-21T12:48:47.863Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "title": "CISA ADP Vulnrichment"
          }
        ],
        "cna": {
          "affected": [
            {
              "product": "Microsoft Copilot",
              "vendor": "Microsoft",
              "versions": [
                {
                  "status": "affected",
                  "version": "-"
                }
              ]
            }
          ],
          "cpeApplicability": [
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:a:microsoft:copilot:*:*:*:*:*:*:*:*",
                      "versionStartIncluding": "-",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ]
            }
          ],
          "datePublic": "2026-09-17T14:00:00.000Z",
          "descriptions": [
            {
              "lang": "en-US",
              "value": "Improper neutralization of special elements used in a command (\u0027command injection\u0027) in Microsoft Copilot allows an unauthorized attacker to disclose information over a network."
            }
          ],
          "metrics": [
            {
              "cvssV3_1": {
                "baseScore": 6.1,
                "baseSeverity": "MEDIUM",
                "vectorString": "CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:N/A:N/E:U/RL:O/RC:C",
                "version": "3.1"
              },
              "format": "CVSS",
              "scenarios": [
                {
                  "lang": "en-US",
                  "value": "GENERAL"
                }
              ]
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "cweId": "CWE-77",
                  "description": "CWE-77: Improper Neutralization of Special Elements used in a Command (\u0027Command Injection\u0027)",
                  "lang": "en-US",
                  "type": "CWE"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2026-10-01T22:52:40.912Z",
            "orgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
            "shortName": "microsoft"
          },
          "references": [
            {
              "name": "Microsoft Copilot Information Disclosure Vulnerability",
              "tags": [
                "vendor-advisory",
                "patch"
              ],
              "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-55946"
            }
          ],
          "tags": [
            "exclusively-hosted-service"
          ],
          "title": "Microsoft Copilot Information Disclosure Vulnerability"
        }
      },
      "cveMetadata": {
        "assignerOrgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
        "assignerShortName": "microsoft",
        "cveId": "CVE-2026-55946",
        "datePublished": "2026-09-17T22:55:52.438Z",
        "dateReserved": "2026-06-17T17:37:17.983Z",
        "dateUpdated": "2026-10-01T22:52:40.912Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.2"
    }

    CVE-2026-85893 (GCVE-0-2026-85893)

    Vulnerability from cvelistv5 – Published: 2026-09-15 22:44 – Updated: 2026-10-01 23:01
    VLAI
    Title
    Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability
    Summary
    Use after free in Microsoft Edge (Chromium-based) allows an unauthorized attacker to elevate privileges over a network.
    SSVC
    Exploitation: none Automatable: no Technical Impact: total
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2026-09-17 03:57 UTC
    CWE
    References
    Impacted products
    Vendor Product Version
    Microsoft Microsoft Edge (Chromium-based) Affected: 1.0.0.0 , < 153.0.4234.32 (custom)
        cpe:2.3:a:microsoft:edge_chromium:*:*:*:*:*:*:*:*
    Create a notification for this product.
    Date Public
    2026-09-15 14:00
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "metrics": [
              {
                "other": {
                  "content": {
                    "id": "CVE-2026-85893",
                    "options": [
                      {
                        "Exploitation": "none"
                      },
                      {
                        "Automatable": "no"
                      },
                      {
                        "Technical Impact": "total"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2026-09-17T03:57:02.999225Z",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2026-09-17T11:39:25.478Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "title": "CISA ADP Vulnrichment"
          }
        ],
        "cna": {
          "affected": [
            {
              "product": "Microsoft Edge (Chromium-based)",
              "vendor": "Microsoft",
              "versions": [
                {
                  "lessThan": "153.0.4234.32",
                  "status": "affected",
                  "version": "1.0.0.0",
                  "versionType": "custom"
                }
              ]
            }
          ],
          "cpeApplicability": [
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:a:microsoft:edge_chromium:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "153.0.4234.32",
                      "versionStartIncluding": "1.0.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ]
            }
          ],
          "datePublic": "2026-09-15T14:00:00.000Z",
          "descriptions": [
            {
              "lang": "en-US",
              "value": "Use after free in Microsoft Edge (Chromium-based) allows an unauthorized attacker to elevate privileges over a network."
            }
          ],
          "metrics": [
            {
              "cvssV3_1": {
                "baseScore": 8.8,
                "baseSeverity": "HIGH",
                "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C",
                "version": "3.1"
              },
              "format": "CVSS",
              "scenarios": [
                {
                  "lang": "en-US",
                  "value": "GENERAL"
                }
              ]
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "cweId": "CWE-416",
                  "description": "CWE-416: Use After Free",
                  "lang": "en-US",
                  "type": "CWE"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2026-10-01T23:01:15.377Z",
            "orgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
            "shortName": "microsoft"
          },
          "references": [
            {
              "name": "Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability",
              "tags": [
                "vendor-advisory",
                "patch"
              ],
              "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-85893"
            }
          ],
          "title": "Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability"
        }
      },
      "cveMetadata": {
        "assignerOrgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
        "assignerShortName": "microsoft",
        "cveId": "CVE-2026-85893",
        "datePublished": "2026-09-15T22:44:32.511Z",
        "dateReserved": "2026-09-04T18:18:19.328Z",
        "dateUpdated": "2026-10-01T23:01:15.377Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.2"
    }

    CVE-2026-69486 (GCVE-0-2026-69486)

    Vulnerability from cvelistv5 – Published: 2026-09-15 22:39 – Updated: 2026-10-01 22:56
    VLAI
    Title
    Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
    Summary
    Heap-based buffer overflow in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network.
    SSVC
    Exploitation: none Automatable: no Technical Impact: total
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2026-09-16 00:00 UTC
    CWE
    • CWE-122 - Heap-based Buffer Overflow
    References
    Impacted products
    Vendor Product Version
    Microsoft Microsoft Edge (Chromium-based) Affected: 1.0.0.0 , < 153.0.4234.32 (custom)
        cpe:2.3:a:microsoft:edge_chromium:*:*:*:*:*:*:*:*
    Create a notification for this product.
    Date Public
    2026-09-15 14:00
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "metrics": [
              {
                "other": {
                  "content": {
                    "id": "CVE-2026-69486",
                    "options": [
                      {
                        "Exploitation": "none"
                      },
                      {
                        "Automatable": "no"
                      },
                      {
                        "Technical Impact": "total"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2026-09-16T00:00:00+00:00",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2026-09-17T03:57:03.422Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "title": "CISA ADP Vulnrichment"
          }
        ],
        "cna": {
          "affected": [
            {
              "product": "Microsoft Edge (Chromium-based)",
              "vendor": "Microsoft",
              "versions": [
                {
                  "lessThan": "153.0.4234.32",
                  "status": "affected",
                  "version": "1.0.0.0",
                  "versionType": "custom"
                }
              ]
            }
          ],
          "cpeApplicability": [
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:a:microsoft:edge_chromium:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "153.0.4234.32",
                      "versionStartIncluding": "1.0.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ]
            }
          ],
          "datePublic": "2026-09-15T14:00:00.000Z",
          "descriptions": [
            {
              "lang": "en-US",
              "value": "Heap-based buffer overflow in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network."
            }
          ],
          "metrics": [
            {
              "cvssV3_1": {
                "baseScore": 8.8,
                "baseSeverity": "HIGH",
                "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C",
                "version": "3.1"
              },
              "format": "CVSS",
              "scenarios": [
                {
                  "lang": "en-US",
                  "value": "GENERAL"
                }
              ]
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "cweId": "CWE-122",
                  "description": "CWE-122: Heap-based Buffer Overflow",
                  "lang": "en-US",
                  "type": "CWE"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2026-10-01T22:56:20.168Z",
            "orgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
            "shortName": "microsoft"
          },
          "references": [
            {
              "name": "Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability",
              "tags": [
                "vendor-advisory",
                "patch"
              ],
              "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-69486"
            }
          ],
          "title": "Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability"
        }
      },
      "cveMetadata": {
        "assignerOrgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
        "assignerShortName": "microsoft",
        "cveId": "CVE-2026-69486",
        "datePublished": "2026-09-15T22:39:14.875Z",
        "dateReserved": "2026-08-03T21:07:24.908Z",
        "dateUpdated": "2026-10-01T22:56:20.168Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.2"
    }

    CVE-2026-85892 (GCVE-0-2026-85892)

    Vulnerability from cvelistv5 – Published: 2026-09-14 17:29 – Updated: 2026-10-01 22:52
    VLAI
    Title
    Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability
    Summary
    Concurrent execution using shared resource with improper synchronization ('race condition') in Microsoft Edge (Chromium-based) allows an authorized attacker to elevate privileges locally.
    SSVC
    Exploitation: none Automatable: no Technical Impact: total
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2026-09-14 00:00 UTC
    CWE
    • CWE-362 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
    References
    Impacted products
    Vendor Product Version
    Microsoft Microsoft Edge (Chromium-based) Affected: 1.0.0.0 , < 152.0.4191.66 (custom)
        cpe:2.3:a:microsoft:edge_chromium:*:*:*:*:*:*:*:*
    Create a notification for this product.
    Date Public
    2026-09-11 14:00
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "metrics": [
              {
                "other": {
                  "content": {
                    "id": "CVE-2026-85892",
                    "options": [
                      {
                        "Exploitation": "none"
                      },
                      {
                        "Automatable": "no"
                      },
                      {
                        "Technical Impact": "total"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2026-09-14T00:00:00+00:00",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2026-09-15T03:56:13.959Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "title": "CISA ADP Vulnrichment"
          }
        ],
        "cna": {
          "affected": [
            {
              "product": "Microsoft Edge (Chromium-based)",
              "vendor": "Microsoft",
              "versions": [
                {
                  "lessThan": "152.0.4191.66",
                  "status": "affected",
                  "version": "1.0.0.0",
                  "versionType": "custom"
                }
              ]
            }
          ],
          "cpeApplicability": [
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:a:microsoft:edge_chromium:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "152.0.4191.66",
                      "versionStartIncluding": "1.0.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ]
            }
          ],
          "datePublic": "2026-09-11T14:00:00.000Z",
          "descriptions": [
            {
              "lang": "en-US",
              "value": "Concurrent execution using shared resource with improper synchronization (\u0027race condition\u0027) in Microsoft Edge (Chromium-based) allows an authorized attacker to elevate privileges locally."
            }
          ],
          "metrics": [
            {
              "cvssV3_1": {
                "baseScore": 7.8,
                "baseSeverity": "HIGH",
                "vectorString": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H/E:U/RL:O/RC:C",
                "version": "3.1"
              },
              "format": "CVSS",
              "scenarios": [
                {
                  "lang": "en-US",
                  "value": "GENERAL"
                }
              ]
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "cweId": "CWE-362",
                  "description": "CWE-362: Concurrent Execution using Shared Resource with Improper Synchronization (\u0027Race Condition\u0027)",
                  "lang": "en-US",
                  "type": "CWE"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2026-10-01T22:52:40.389Z",
            "orgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
            "shortName": "microsoft"
          },
          "references": [
            {
              "name": "Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability",
              "tags": [
                "vendor-advisory",
                "patch"
              ],
              "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-85892"
            }
          ],
          "title": "Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability"
        }
      },
      "cveMetadata": {
        "assignerOrgId": "f38d906d-7342-40ea-92c1-6c4a2c6478c8",
        "assignerShortName": "microsoft",
        "cveId": "CVE-2026-85892",
        "datePublished": "2026-09-14T17:29:23.390Z",
        "dateReserved": "2026-09-04T18:18:19.328Z",
        "dateUpdated": "2026-10-01T22:52:40.389Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.2"
    }

    CERTFR-2026-AVI-1251

    Vulnerability from certfr_avis - Published: 2026-10-02 - Updated: 2026-10-02

    De multiples vulnérabilités ont été découvertes dans Microsoft Edge. Elles permettent à un attaquant de provoquer un problème de sécurité non spécifié par l'éditeur.

    Solutions

    Se référer au bulletin de sécurité de l'éditeur pour l'obtention des correctifs (cf. section Documentation).

    Impacted products
    Vendor Product Description
    Microsoft Edge Microsoft Edge versions antérieures à 153.0.4234.49
    References
    Bulletin de sécurité Microsoft Edge CVE-2026-93372 2026-09-30 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-93375 2026-09-30 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-93378 2026-09-30 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87464 2026-09-30 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87552 2026-09-30 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87486 2026-09-30 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87482 2026-09-30 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-93377 2026-09-30 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87481 2026-09-30 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87595 2026-09-30 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87503 2026-09-30 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87643 2026-09-30 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87522 2026-09-30 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87640 2026-09-30 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87534 2026-09-30 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87555 2026-09-30 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-93387 2026-09-30 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-93382 2026-09-30 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87518 2026-09-30 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87545 2026-09-30 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-93386 2026-09-30 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-93383 2026-09-30 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87576 2026-09-30 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87488 2026-09-30 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-93380 2026-09-30 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87483 2026-09-30 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-93374 2026-09-30 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-93373 2026-09-30 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87517 2026-09-30 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-93376 2026-09-30 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-85047 2026-09-30 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-93381 2026-09-30 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87438 2026-09-30 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87520 2026-09-30 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-93379 2026-09-30 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-93385 2026-09-30 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87597 2026-09-30 vendor-advisory

    Show details on source website

    {
      "$ref": "https://www.cert.ssi.gouv.fr/openapi.json",
      "affected_systems": [
        {
          "description": "Microsoft Edge versions ant\u00e9rieures \u00e0 153.0.4234.49",
          "product": {
            "name": "Edge",
            "vendor": {
              "name": "Microsoft",
              "scada": false
            }
          }
        }
      ],
      "affected_systems_content": "",
      "content": "## Solutions\n\nSe r\u00e9f\u00e9rer au bulletin de s\u00e9curit\u00e9 de l\u0027\u00e9diteur pour l\u0027obtention des correctifs (cf. section Documentation).",
      "cves": [
        {
          "name": "CVE-2026-87464",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87464"
        },
        {
          "name": "CVE-2026-87643",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87643"
        },
        {
          "name": "CVE-2026-87486",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87486"
        },
        {
          "name": "CVE-2026-85047",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-85047"
        },
        {
          "name": "CVE-2026-87438",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87438"
        },
        {
          "name": "CVE-2026-87595",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87595"
        },
        {
          "name": "CVE-2026-93381",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-93381"
        },
        {
          "name": "CVE-2026-87517",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87517"
        },
        {
          "name": "CVE-2026-87640",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87640"
        },
        {
          "name": "CVE-2026-87488",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87488"
        },
        {
          "name": "CVE-2026-87483",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87483"
        },
        {
          "name": "CVE-2026-93387",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-93387"
        },
        {
          "name": "CVE-2026-87481",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87481"
        },
        {
          "name": "CVE-2026-87576",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87576"
        },
        {
          "name": "CVE-2026-93379",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-93379"
        },
        {
          "name": "CVE-2026-93376",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-93376"
        },
        {
          "name": "CVE-2026-87482",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87482"
        },
        {
          "name": "CVE-2026-93380",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-93380"
        },
        {
          "name": "CVE-2026-93375",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-93375"
        },
        {
          "name": "CVE-2026-93373",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-93373"
        },
        {
          "name": "CVE-2026-93377",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-93377"
        },
        {
          "name": "CVE-2026-87522",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87522"
        },
        {
          "name": "CVE-2026-93385",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-93385"
        },
        {
          "name": "CVE-2026-93374",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-93374"
        },
        {
          "name": "CVE-2026-87518",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87518"
        },
        {
          "name": "CVE-2026-87545",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87545"
        },
        {
          "name": "CVE-2026-87534",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87534"
        },
        {
          "name": "CVE-2026-93383",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-93383"
        },
        {
          "name": "CVE-2026-87552",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87552"
        },
        {
          "name": "CVE-2026-93382",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-93382"
        },
        {
          "name": "CVE-2026-87597",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87597"
        },
        {
          "name": "CVE-2026-93386",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-93386"
        },
        {
          "name": "CVE-2026-87555",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87555"
        },
        {
          "name": "CVE-2026-87520",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87520"
        },
        {
          "name": "CVE-2026-93378",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-93378"
        },
        {
          "name": "CVE-2026-93372",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-93372"
        },
        {
          "name": "CVE-2026-87503",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87503"
        }
      ],
      "initial_release_date": "2026-10-02T00:00:00",
      "last_revision_date": "2026-10-02T00:00:00",
      "links": [],
      "reference": "CERTFR-2026-AVI-1251",
      "revisions": [
        {
          "description": "Version initiale",
          "revision_date": "2026-10-02T00:00:00.000000"
        }
      ],
      "risks": [
        {
          "description": "Non sp\u00e9cifi\u00e9 par l\u0027\u00e9diteur"
        }
      ],
      "summary": "De multiples vuln\u00e9rabilit\u00e9s ont \u00e9t\u00e9 d\u00e9couvertes dans Microsoft Edge. Elles permettent \u00e0 un attaquant de provoquer un probl\u00e8me de s\u00e9curit\u00e9 non sp\u00e9cifi\u00e9 par l\u0027\u00e9diteur.",
      "title": "Multiples vuln\u00e9rabilit\u00e9s dans Microsoft Edge",
      "vendor_advisories": [
        {
          "published_at": "2026-09-30",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-93372",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-93372"
        },
        {
          "published_at": "2026-09-30",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-93375",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-93375"
        },
        {
          "published_at": "2026-09-30",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-93378",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-93378"
        },
        {
          "published_at": "2026-09-30",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87464",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87464"
        },
        {
          "published_at": "2026-09-30",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87552",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87552"
        },
        {
          "published_at": "2026-09-30",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87486",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87486"
        },
        {
          "published_at": "2026-09-30",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87482",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87482"
        },
        {
          "published_at": "2026-09-30",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-93377",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-93377"
        },
        {
          "published_at": "2026-09-30",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87481",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87481"
        },
        {
          "published_at": "2026-09-30",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87595",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87595"
        },
        {
          "published_at": "2026-09-30",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87503",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87503"
        },
        {
          "published_at": "2026-09-30",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87643",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87643"
        },
        {
          "published_at": "2026-09-30",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87522",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87522"
        },
        {
          "published_at": "2026-09-30",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87640",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87640"
        },
        {
          "published_at": "2026-09-30",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87534",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87534"
        },
        {
          "published_at": "2026-09-30",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87555",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87555"
        },
        {
          "published_at": "2026-09-30",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-93387",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-93387"
        },
        {
          "published_at": "2026-09-30",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-93382",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-93382"
        },
        {
          "published_at": "2026-09-30",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87518",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87518"
        },
        {
          "published_at": "2026-09-30",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87545",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87545"
        },
        {
          "published_at": "2026-09-30",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-93386",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-93386"
        },
        {
          "published_at": "2026-09-30",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-93383",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-93383"
        },
        {
          "published_at": "2026-09-30",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87576",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87576"
        },
        {
          "published_at": "2026-09-30",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87488",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87488"
        },
        {
          "published_at": "2026-09-30",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-93380",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-93380"
        },
        {
          "published_at": "2026-09-30",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87483",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87483"
        },
        {
          "published_at": "2026-09-30",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-93374",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-93374"
        },
        {
          "published_at": "2026-09-30",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-93373",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-93373"
        },
        {
          "published_at": "2026-09-30",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87517",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87517"
        },
        {
          "published_at": "2026-09-30",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-93376",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-93376"
        },
        {
          "published_at": "2026-09-30",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-85047",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-85047"
        },
        {
          "published_at": "2026-09-30",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-93381",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-93381"
        },
        {
          "published_at": "2026-09-30",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87438",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87438"
        },
        {
          "published_at": "2026-09-30",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87520",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87520"
        },
        {
          "published_at": "2026-09-30",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-93379",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-93379"
        },
        {
          "published_at": "2026-09-30",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-93385",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-93385"
        },
        {
          "published_at": "2026-09-30",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87597",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87597"
        }
      ]
    }

    CERTFR-2026-AVI-1208

    Vulnerability from certfr_avis - Published: 2026-09-21 - Updated: 2026-09-21

    De multiples vulnérabilités ont été découvertes dans Microsoft Edge. Elles permettent à un attaquant de provoquer une élévation de privilèges et un problème de sécurité non spécifié par l'éditeur.

    Solutions

    Se référer au bulletin de sécurité de l'éditeur pour l'obtention des correctifs (cf. section Documentation).

    Impacted products
    Vendor Product Description
    Microsoft Edge Microsoft Edge versions antérieures à 153.0.4234.46
    References
    Bulletin de sécurité Microsoft Edge CVE-2026-91734 2026-09-17 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-91730 2026-09-17 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-88097 2026-09-18 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-91711 2026-09-17 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-91714 2026-09-17 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-91727 2026-09-17 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-91726 2026-09-17 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-91719 2026-09-17 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-91717 2026-09-17 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-91731 2026-09-17 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-91746 2026-09-17 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-91710 2026-09-17 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-91720 2026-09-17 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-91728 2026-09-17 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-91738 2026-09-17 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-91724 2026-09-17 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-91740 2026-09-17 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-91741 2026-09-17 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-91737 2026-09-17 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-91736 2026-09-17 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-91709 2026-09-17 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-91733 2026-09-17 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-91729 2026-09-17 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-91725 2026-09-17 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-91722 2026-09-17 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-91743 2026-09-17 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-91716 2026-09-17 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-91749 2026-09-17 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-91708 2026-09-17 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-91748 2026-09-17 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-91735 2026-09-17 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-91747 2026-09-17 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-91739 2026-09-17 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-91718 2026-09-17 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-91713 2026-09-17 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-91721 2026-09-17 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-91715 2026-09-17 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-91742 2026-09-17 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-91723 2026-09-17 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-91712 2026-09-17 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-91745 2026-09-17 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-91744 2026-09-17 vendor-advisory

    Show details on source website

    {
      "$ref": "https://www.cert.ssi.gouv.fr/openapi.json",
      "affected_systems": [
        {
          "description": "Microsoft Edge versions ant\u00e9rieures \u00e0 153.0.4234.46",
          "product": {
            "name": "Edge",
            "vendor": {
              "name": "Microsoft",
              "scada": false
            }
          }
        }
      ],
      "affected_systems_content": "",
      "content": "## Solutions\n\nSe r\u00e9f\u00e9rer au bulletin de s\u00e9curit\u00e9 de l\u0027\u00e9diteur pour l\u0027obtention des correctifs (cf. section Documentation).",
      "cves": [
        {
          "name": "CVE-2026-91715",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-91715"
        },
        {
          "name": "CVE-2026-91716",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-91716"
        },
        {
          "name": "CVE-2026-91725",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-91725"
        },
        {
          "name": "CVE-2026-91719",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-91719"
        },
        {
          "name": "CVE-2026-91709",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-91709"
        },
        {
          "name": "CVE-2026-91735",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-91735"
        },
        {
          "name": "CVE-2026-91722",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-91722"
        },
        {
          "name": "CVE-2026-91726",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-91726"
        },
        {
          "name": "CVE-2026-91728",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-91728"
        },
        {
          "name": "CVE-2026-91720",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-91720"
        },
        {
          "name": "CVE-2026-91708",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-91708"
        },
        {
          "name": "CVE-2026-91721",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-91721"
        },
        {
          "name": "CVE-2026-91710",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-91710"
        },
        {
          "name": "CVE-2026-91747",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-91747"
        },
        {
          "name": "CVE-2026-91748",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-91748"
        },
        {
          "name": "CVE-2026-91743",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-91743"
        },
        {
          "name": "CVE-2026-91749",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-91749"
        },
        {
          "name": "CVE-2026-91717",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-91717"
        },
        {
          "name": "CVE-2026-91727",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-91727"
        },
        {
          "name": "CVE-2026-91729",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-91729"
        },
        {
          "name": "CVE-2026-91712",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-91712"
        },
        {
          "name": "CVE-2026-91746",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-91746"
        },
        {
          "name": "CVE-2026-91734",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-91734"
        },
        {
          "name": "CVE-2026-88097",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-88097"
        },
        {
          "name": "CVE-2026-91713",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-91713"
        },
        {
          "name": "CVE-2026-91714",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-91714"
        },
        {
          "name": "CVE-2026-91733",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-91733"
        },
        {
          "name": "CVE-2026-91730",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-91730"
        },
        {
          "name": "CVE-2026-91718",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-91718"
        },
        {
          "name": "CVE-2026-91745",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-91745"
        },
        {
          "name": "CVE-2026-91723",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-91723"
        },
        {
          "name": "CVE-2026-91744",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-91744"
        },
        {
          "name": "CVE-2026-91740",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-91740"
        },
        {
          "name": "CVE-2026-91731",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-91731"
        },
        {
          "name": "CVE-2026-91738",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-91738"
        },
        {
          "name": "CVE-2026-91739",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-91739"
        },
        {
          "name": "CVE-2026-91742",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-91742"
        },
        {
          "name": "CVE-2026-91724",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-91724"
        },
        {
          "name": "CVE-2026-91736",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-91736"
        },
        {
          "name": "CVE-2026-91737",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-91737"
        },
        {
          "name": "CVE-2026-91711",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-91711"
        },
        {
          "name": "CVE-2026-91741",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-91741"
        }
      ],
      "initial_release_date": "2026-09-21T00:00:00",
      "last_revision_date": "2026-09-21T00:00:00",
      "links": [],
      "reference": "CERTFR-2026-AVI-1208",
      "revisions": [
        {
          "description": "Version initiale",
          "revision_date": "2026-09-21T00:00:00.000000"
        }
      ],
      "risks": [
        {
          "description": "Non sp\u00e9cifi\u00e9 par l\u0027\u00e9diteur"
        },
        {
          "description": "\u00c9l\u00e9vation de privil\u00e8ges"
        }
      ],
      "summary": "De multiples vuln\u00e9rabilit\u00e9s ont \u00e9t\u00e9 d\u00e9couvertes dans Microsoft Edge. Elles permettent \u00e0 un attaquant de provoquer une \u00e9l\u00e9vation de privil\u00e8ges et un probl\u00e8me de s\u00e9curit\u00e9 non sp\u00e9cifi\u00e9 par l\u0027\u00e9diteur.",
      "title": "Multiples vuln\u00e9rabilit\u00e9s dans Microsoft Edge",
      "vendor_advisories": [
        {
          "published_at": "2026-09-17",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-91734",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-91734"
        },
        {
          "published_at": "2026-09-17",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-91730",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-91730"
        },
        {
          "published_at": "2026-09-18",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-88097",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-88097"
        },
        {
          "published_at": "2026-09-17",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-91711",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-91711"
        },
        {
          "published_at": "2026-09-17",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-91714",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-91714"
        },
        {
          "published_at": "2026-09-17",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-91727",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-91727"
        },
        {
          "published_at": "2026-09-17",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-91726",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-91726"
        },
        {
          "published_at": "2026-09-17",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-91719",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-91719"
        },
        {
          "published_at": "2026-09-17",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-91717",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-91717"
        },
        {
          "published_at": "2026-09-17",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-91731",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-91731"
        },
        {
          "published_at": "2026-09-17",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-91746",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-91746"
        },
        {
          "published_at": "2026-09-17",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-91710",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-91710"
        },
        {
          "published_at": "2026-09-17",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-91720",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-91720"
        },
        {
          "published_at": "2026-09-17",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-91728",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-91728"
        },
        {
          "published_at": "2026-09-17",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-91738",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-91738"
        },
        {
          "published_at": "2026-09-17",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-91724",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-91724"
        },
        {
          "published_at": "2026-09-17",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-91740",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-91740"
        },
        {
          "published_at": "2026-09-17",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-91741",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-91741"
        },
        {
          "published_at": "2026-09-17",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-91737",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-91737"
        },
        {
          "published_at": "2026-09-17",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-91736",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-91736"
        },
        {
          "published_at": "2026-09-17",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-91709",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-91709"
        },
        {
          "published_at": "2026-09-17",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-91733",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-91733"
        },
        {
          "published_at": "2026-09-17",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-91729",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-91729"
        },
        {
          "published_at": "2026-09-17",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-91725",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-91725"
        },
        {
          "published_at": "2026-09-17",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-91722",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-91722"
        },
        {
          "published_at": "2026-09-17",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-91743",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-91743"
        },
        {
          "published_at": "2026-09-17",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-91716",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-91716"
        },
        {
          "published_at": "2026-09-17",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-91749",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-91749"
        },
        {
          "published_at": "2026-09-17",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-91708",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-91708"
        },
        {
          "published_at": "2026-09-17",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-91748",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-91748"
        },
        {
          "published_at": "2026-09-17",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-91735",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-91735"
        },
        {
          "published_at": "2026-09-17",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-91747",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-91747"
        },
        {
          "published_at": "2026-09-17",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-91739",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-91739"
        },
        {
          "published_at": "2026-09-17",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-91718",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-91718"
        },
        {
          "published_at": "2026-09-17",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-91713",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-91713"
        },
        {
          "published_at": "2026-09-17",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-91721",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-91721"
        },
        {
          "published_at": "2026-09-17",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-91715",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-91715"
        },
        {
          "published_at": "2026-09-17",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-91742",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-91742"
        },
        {
          "published_at": "2026-09-17",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-91723",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-91723"
        },
        {
          "published_at": "2026-09-17",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-91712",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-91712"
        },
        {
          "published_at": "2026-09-17",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-91745",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-91745"
        },
        {
          "published_at": "2026-09-17",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-91744",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-91744"
        }
      ]
    }

    CERTFR-2026-AVI-1191

    Vulnerability from certfr_avis - Published: 2026-09-16 - Updated: 2026-09-16

    De multiples vulnérabilités ont été découvertes dans Microsoft Edge. Elles permettent à un attaquant de provoquer une exécution de code arbitraire à distance et une élévation de privilèges.

    Solutions

    Se référer au bulletin de sécurité de l'éditeur pour l'obtention des correctifs (cf. section Documentation).

    Impacted products
    Vendor Product Description
    Microsoft Edge Microsoft Edge versions antérieures à 153.0.4234.32
    References

    Show details on source website

    {
      "$ref": "https://www.cert.ssi.gouv.fr/openapi.json",
      "affected_systems": [
        {
          "description": "Microsoft Edge versions ant\u00e9rieures \u00e0 153.0.4234.32",
          "product": {
            "name": "Edge",
            "vendor": {
              "name": "Microsoft",
              "scada": false
            }
          }
        }
      ],
      "affected_systems_content": "",
      "content": "## Solutions\n\nSe r\u00e9f\u00e9rer au bulletin de s\u00e9curit\u00e9 de l\u0027\u00e9diteur pour l\u0027obtention des correctifs (cf. section Documentation).",
      "cves": [
        {
          "name": "CVE-2026-69486",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-69486"
        },
        {
          "name": "CVE-2026-85893",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-85893"
        }
      ],
      "initial_release_date": "2026-09-16T00:00:00",
      "last_revision_date": "2026-09-16T00:00:00",
      "links": [],
      "reference": "CERTFR-2026-AVI-1191",
      "revisions": [
        {
          "description": "Version initiale",
          "revision_date": "2026-09-16T00:00:00.000000"
        }
      ],
      "risks": [
        {
          "description": "Ex\u00e9cution de code arbitraire \u00e0 distance"
        },
        {
          "description": "\u00c9l\u00e9vation de privil\u00e8ges"
        }
      ],
      "summary": "De multiples vuln\u00e9rabilit\u00e9s ont \u00e9t\u00e9 d\u00e9couvertes dans Microsoft Edge. Elles permettent \u00e0 un attaquant de provoquer une ex\u00e9cution de code arbitraire \u00e0 distance et une \u00e9l\u00e9vation de privil\u00e8ges.",
      "title": "Multiples vuln\u00e9rabilit\u00e9s dans Microsoft Edge",
      "vendor_advisories": [
        {
          "published_at": "2026-09-15",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-85893",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-85893"
        },
        {
          "published_at": "2026-09-15",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-69486",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-69486"
        }
      ]
    }

    CERTFR-2026-AVI-1174

    Vulnerability from certfr_avis - Published: 2026-09-15 - Updated: 2026-09-15

    Une vulnérabilité a été découverte dans Microsoft Windows. Elle permet à un attaquant de provoquer une élévation de privilèges.

    Solutions

    Se référer au bulletin de sécurité de l'éditeur pour l'obtention des correctifs (cf. section Documentation).

    Impacted products
    Vendor Product Description
    Microsoft Windows Windows 11 version 26H1 pour systèmes x64 antérieures à 10.0.28000.2956
    Microsoft Windows Windows 11 Version 26H1 pour systèmes ARM64 versions antérieures à 10.0.28000.2956
    References

    Show details on source website

    {
      "$ref": "https://www.cert.ssi.gouv.fr/openapi.json",
      "affected_systems": [
        {
          "description": "Windows 11 version 26H1 pour syst\u00e8mes x64 ant\u00e9rieures \u00e0 10.0.28000.2956",
          "product": {
            "name": "Windows",
            "vendor": {
              "name": "Microsoft",
              "scada": false
            }
          }
        },
        {
          "description": "Windows 11 Version 26H1 pour syst\u00e8mes ARM64 versions ant\u00e9rieures \u00e0 10.0.28000.2956",
          "product": {
            "name": "Windows",
            "vendor": {
              "name": "Microsoft",
              "scada": false
            }
          }
        }
      ],
      "affected_systems_content": "",
      "content": "## Solutions\n\nSe r\u00e9f\u00e9rer au bulletin de s\u00e9curit\u00e9 de l\u0027\u00e9diteur pour l\u0027obtention des correctifs (cf. section Documentation).",
      "cves": [
        {
          "name": "CVE-2026-85921",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-85921"
        }
      ],
      "initial_release_date": "2026-09-15T00:00:00",
      "last_revision_date": "2026-09-15T00:00:00",
      "links": [],
      "reference": "CERTFR-2026-AVI-1174",
      "revisions": [
        {
          "description": "Version initiale",
          "revision_date": "2026-09-15T00:00:00.000000"
        }
      ],
      "risks": [
        {
          "description": "\u00c9l\u00e9vation de privil\u00e8ges"
        }
      ],
      "summary": "Une vuln\u00e9rabilit\u00e9 a \u00e9t\u00e9 d\u00e9couverte dans Microsoft Windows. Elle permet \u00e0 un attaquant de provoquer une \u00e9l\u00e9vation de privil\u00e8ges.",
      "title": "Vuln\u00e9rabilit\u00e9 dans Microsoft Windows",
      "vendor_advisories": [
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Windows CVE-2026-85921",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-85921"
        }
      ]
    }

    CERTFR-2026-AVI-1173

    Vulnerability from certfr_avis - Published: 2026-09-15 - Updated: 2026-09-15

    De multiples vulnérabilités ont été découvertes dans Microsoft Edge. Elles permettent à un attaquant de provoquer une élévation de privilèges et un problème de sécurité non spécifié par l'éditeur.

    Solutions

    Se référer au bulletin de sécurité de l'éditeur pour l'obtention des correctifs (cf. section Documentation).

    Impacted products
    Vendor Product Description
    Microsoft Edge Microsoft Edge versions antérieures à 152.0.4191.66
    Microsoft Edge Microsoft Edge versions antérieures à 153.0.4234.32
    References
    Bulletin de sécurité Microsoft Edge CVE-2026-87533 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87454 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87613 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87505 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87449 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87524 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87471 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87645 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87575 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87636 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87616 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87527 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87455 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87638 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87474 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87568 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87504 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87614 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87608 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87619 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87624 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87604 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87650 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87551 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87584 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87526 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87563 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87610 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87469 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-85892 2026-09-11 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87623 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87484 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87542 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87625 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87529 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87587 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87506 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87523 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87646 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87583 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87512 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87538 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87558 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87496 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87440 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87632 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87498 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87508 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87651 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87582 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87435 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87628 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87615 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87489 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87586 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87652 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87463 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87647 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87549 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87458 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87547 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87546 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87648 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87543 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87494 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87429 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87606 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87588 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87567 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87433 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87630 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87437 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87571 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87572 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87444 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87519 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87515 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87514 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87457 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87436 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87541 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87556 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87447 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87452 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87480 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87658 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87569 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87539 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87445 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87617 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87544 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87657 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87450 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87637 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87513 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87459 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87537 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87560 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87609 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87562 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87570 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87649 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87442 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87528 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87589 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87554 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87540 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87468 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87599 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87477 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87473 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87626 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87511 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87497 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87430 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87656 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87500 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87622 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87443 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87591 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87521 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87574 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87456 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87600 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87593 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87655 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87453 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87487 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87642 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87493 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87472 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87531 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87639 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87635 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87644 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87631 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87466 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87580 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87478 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87581 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87565 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87462 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87495 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87602 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87579 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87634 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87601 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87578 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87439 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87490 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87432 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87510 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87550 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87559 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87611 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87561 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87548 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87629 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87467 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87479 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87465 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87470 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87566 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87532 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87585 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87618 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87461 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87654 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87501 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87590 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87475 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87573 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87564 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87612 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87620 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87530 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87592 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87492 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87502 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87553 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87641 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87460 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87627 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87557 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87507 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87448 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87451 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87596 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87605 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87594 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87603 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87446 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87441 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87621 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87535 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87485 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87653 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87536 2026-09-11 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87577 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87525 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87499 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87516 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87434 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87598 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87633 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87509 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87431 2026-09-14 vendor-advisory
    Bulletin de sécurité Microsoft Edge CVE-2026-87476 2026-09-14 vendor-advisory

    Show details on source website

    {
      "$ref": "https://www.cert.ssi.gouv.fr/openapi.json",
      "affected_systems": [
        {
          "description": "Microsoft Edge versions ant\u00e9rieures \u00e0 152.0.4191.66",
          "product": {
            "name": "Edge",
            "vendor": {
              "name": "Microsoft",
              "scada": false
            }
          }
        },
        {
          "description": "Microsoft Edge versions ant\u00e9rieures \u00e0 153.0.4234.32",
          "product": {
            "name": "Edge",
            "vendor": {
              "name": "Microsoft",
              "scada": false
            }
          }
        }
      ],
      "affected_systems_content": "",
      "content": "## Solutions\n\nSe r\u00e9f\u00e9rer au bulletin de s\u00e9curit\u00e9 de l\u0027\u00e9diteur pour l\u0027obtention des correctifs (cf. section Documentation).",
      "cves": [
        {
          "name": "CVE-2026-87646",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87646"
        },
        {
          "name": "CVE-2026-87445",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87445"
        },
        {
          "name": "CVE-2026-87619",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87619"
        },
        {
          "name": "CVE-2026-87567",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87567"
        },
        {
          "name": "CVE-2026-87541",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87541"
        },
        {
          "name": "CVE-2026-87501",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87501"
        },
        {
          "name": "CVE-2026-87626",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87626"
        },
        {
          "name": "CVE-2026-87656",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87656"
        },
        {
          "name": "CVE-2026-87476",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87476"
        },
        {
          "name": "CVE-2026-87622",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87622"
        },
        {
          "name": "CVE-2026-87654",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87654"
        },
        {
          "name": "CVE-2026-87583",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87583"
        },
        {
          "name": "CVE-2026-87592",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87592"
        },
        {
          "name": "CVE-2026-87442",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87442"
        },
        {
          "name": "CVE-2026-87450",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87450"
        },
        {
          "name": "CVE-2026-87431",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87431"
        },
        {
          "name": "CVE-2026-87519",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87519"
        },
        {
          "name": "CVE-2026-87598",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87598"
        },
        {
          "name": "CVE-2026-87462",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87462"
        },
        {
          "name": "CVE-2026-87657",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87657"
        },
        {
          "name": "CVE-2026-87437",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87437"
        },
        {
          "name": "CVE-2026-87623",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87623"
        },
        {
          "name": "CVE-2026-87447",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87447"
        },
        {
          "name": "CVE-2026-87610",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87610"
        },
        {
          "name": "CVE-2026-87484",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87484"
        },
        {
          "name": "CVE-2026-87461",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87461"
        },
        {
          "name": "CVE-2026-87444",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87444"
        },
        {
          "name": "CVE-2026-87585",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87585"
        },
        {
          "name": "CVE-2026-87509",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87509"
        },
        {
          "name": "CVE-2026-87498",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87498"
        },
        {
          "name": "CVE-2026-87653",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87653"
        },
        {
          "name": "CVE-2026-87453",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87453"
        },
        {
          "name": "CVE-2026-87550",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87550"
        },
        {
          "name": "CVE-2026-87537",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87537"
        },
        {
          "name": "CVE-2026-87524",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87524"
        },
        {
          "name": "CVE-2026-87439",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87439"
        },
        {
          "name": "CVE-2026-87568",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87568"
        },
        {
          "name": "CVE-2026-87544",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87544"
        },
        {
          "name": "CVE-2026-87639",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87639"
        },
        {
          "name": "CVE-2026-87650",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87650"
        },
        {
          "name": "CVE-2026-87429",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87429"
        },
        {
          "name": "CVE-2026-87635",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87635"
        },
        {
          "name": "CVE-2026-87630",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87630"
        },
        {
          "name": "CVE-2026-87542",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87542"
        },
        {
          "name": "CVE-2026-87605",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87605"
        },
        {
          "name": "CVE-2026-87443",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87443"
        },
        {
          "name": "CVE-2026-87434",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87434"
        },
        {
          "name": "CVE-2026-87569",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87569"
        },
        {
          "name": "CVE-2026-87492",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87492"
        },
        {
          "name": "CVE-2026-87454",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87454"
        },
        {
          "name": "CVE-2026-87596",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87596"
        },
        {
          "name": "CVE-2026-87532",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87532"
        },
        {
          "name": "CVE-2026-87658",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87658"
        },
        {
          "name": "CVE-2026-87573",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87573"
        },
        {
          "name": "CVE-2026-87564",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87564"
        },
        {
          "name": "CVE-2026-87499",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87499"
        },
        {
          "name": "CVE-2026-87468",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87468"
        },
        {
          "name": "CVE-2026-87606",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87606"
        },
        {
          "name": "CVE-2026-87652",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87652"
        },
        {
          "name": "CVE-2026-87632",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87632"
        },
        {
          "name": "CVE-2026-87511",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87511"
        },
        {
          "name": "CVE-2026-87515",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87515"
        },
        {
          "name": "CVE-2026-87496",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87496"
        },
        {
          "name": "CVE-2026-87588",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87588"
        },
        {
          "name": "CVE-2026-87469",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87469"
        },
        {
          "name": "CVE-2026-87575",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87575"
        },
        {
          "name": "CVE-2026-87601",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87601"
        },
        {
          "name": "CVE-2026-87566",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87566"
        },
        {
          "name": "CVE-2026-87617",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87617"
        },
        {
          "name": "CVE-2026-87480",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87480"
        },
        {
          "name": "CVE-2026-87553",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87553"
        },
        {
          "name": "CVE-2026-87641",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87641"
        },
        {
          "name": "CVE-2026-87514",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87514"
        },
        {
          "name": "CVE-2026-87594",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87594"
        },
        {
          "name": "CVE-2026-87631",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87631"
        },
        {
          "name": "CVE-2026-87614",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87614"
        },
        {
          "name": "CVE-2026-87649",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87649"
        },
        {
          "name": "CVE-2026-87455",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87455"
        },
        {
          "name": "CVE-2026-87535",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87535"
        },
        {
          "name": "CVE-2026-87436",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87436"
        },
        {
          "name": "CVE-2026-87621",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87621"
        },
        {
          "name": "CVE-2026-87516",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87516"
        },
        {
          "name": "CVE-2026-87551",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87551"
        },
        {
          "name": "CVE-2026-87525",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87525"
        },
        {
          "name": "CVE-2026-87608",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87608"
        },
        {
          "name": "CVE-2026-87531",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87531"
        },
        {
          "name": "CVE-2026-87513",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87513"
        },
        {
          "name": "CVE-2026-87547",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87547"
        },
        {
          "name": "CVE-2026-87558",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87558"
        },
        {
          "name": "CVE-2026-87495",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87495"
        },
        {
          "name": "CVE-2026-87505",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87505"
        },
        {
          "name": "CVE-2026-87440",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87440"
        },
        {
          "name": "CVE-2026-87529",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87529"
        },
        {
          "name": "CVE-2026-87593",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87593"
        },
        {
          "name": "CVE-2026-87609",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87609"
        },
        {
          "name": "CVE-2026-87590",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87590"
        },
        {
          "name": "CVE-2026-87615",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87615"
        },
        {
          "name": "CVE-2026-87536",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87536"
        },
        {
          "name": "CVE-2026-87459",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87459"
        },
        {
          "name": "CVE-2026-87561",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87561"
        },
        {
          "name": "CVE-2026-87638",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87638"
        },
        {
          "name": "CVE-2026-87451",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87451"
        },
        {
          "name": "CVE-2026-87543",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87543"
        },
        {
          "name": "CVE-2026-87527",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87527"
        },
        {
          "name": "CVE-2026-87637",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87637"
        },
        {
          "name": "CVE-2026-87540",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87540"
        },
        {
          "name": "CVE-2026-87627",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87627"
        },
        {
          "name": "CVE-2026-87589",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87589"
        },
        {
          "name": "CVE-2026-87557",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87557"
        },
        {
          "name": "CVE-2026-87539",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87539"
        },
        {
          "name": "CVE-2026-87581",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87581"
        },
        {
          "name": "CVE-2026-87457",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87457"
        },
        {
          "name": "CVE-2026-87651",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87651"
        },
        {
          "name": "CVE-2026-87433",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87433"
        },
        {
          "name": "CVE-2026-87642",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87642"
        },
        {
          "name": "CVE-2026-87449",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87449"
        },
        {
          "name": "CVE-2026-87586",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87586"
        },
        {
          "name": "CVE-2026-87616",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87616"
        },
        {
          "name": "CVE-2026-87528",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87528"
        },
        {
          "name": "CVE-2026-87556",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87556"
        },
        {
          "name": "CVE-2026-87494",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87494"
        },
        {
          "name": "CVE-2026-87448",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87448"
        },
        {
          "name": "CVE-2026-87477",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87477"
        },
        {
          "name": "CVE-2026-87478",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87478"
        },
        {
          "name": "CVE-2026-87636",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87636"
        },
        {
          "name": "CVE-2026-87430",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87430"
        },
        {
          "name": "CVE-2026-87435",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87435"
        },
        {
          "name": "CVE-2026-87602",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87602"
        },
        {
          "name": "CVE-2026-87452",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87452"
        },
        {
          "name": "CVE-2026-87648",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87648"
        },
        {
          "name": "CVE-2026-87600",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87600"
        },
        {
          "name": "CVE-2026-87572",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87572"
        },
        {
          "name": "CVE-2026-87463",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87463"
        },
        {
          "name": "CVE-2026-87507",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87507"
        },
        {
          "name": "CVE-2026-87574",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87574"
        },
        {
          "name": "CVE-2026-87458",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87458"
        },
        {
          "name": "CVE-2026-87493",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87493"
        },
        {
          "name": "CVE-2026-87470",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87470"
        },
        {
          "name": "CVE-2026-87570",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87570"
        },
        {
          "name": "CVE-2026-87578",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87578"
        },
        {
          "name": "CVE-2026-87645",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87645"
        },
        {
          "name": "CVE-2026-87580",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87580"
        },
        {
          "name": "CVE-2026-87604",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87604"
        },
        {
          "name": "CVE-2026-87473",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87473"
        },
        {
          "name": "CVE-2026-87487",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87487"
        },
        {
          "name": "CVE-2026-87647",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87647"
        },
        {
          "name": "CVE-2026-87446",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87446"
        },
        {
          "name": "CVE-2026-87633",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87633"
        },
        {
          "name": "CVE-2026-87512",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87512"
        },
        {
          "name": "CVE-2026-87587",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87587"
        },
        {
          "name": "CVE-2026-87634",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87634"
        },
        {
          "name": "CVE-2026-87546",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87546"
        },
        {
          "name": "CVE-2026-87432",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87432"
        },
        {
          "name": "CVE-2026-87479",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87479"
        },
        {
          "name": "CVE-2026-87625",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87625"
        },
        {
          "name": "CVE-2026-87465",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87465"
        },
        {
          "name": "CVE-2026-87560",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87560"
        },
        {
          "name": "CVE-2026-87563",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87563"
        },
        {
          "name": "CVE-2026-87508",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87508"
        },
        {
          "name": "CVE-2026-87613",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87613"
        },
        {
          "name": "CVE-2026-87472",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87472"
        },
        {
          "name": "CVE-2026-87628",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87628"
        },
        {
          "name": "CVE-2026-87565",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87565"
        },
        {
          "name": "CVE-2026-87599",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87599"
        },
        {
          "name": "CVE-2026-87474",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87474"
        },
        {
          "name": "CVE-2026-87467",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87467"
        },
        {
          "name": "CVE-2026-87612",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87612"
        },
        {
          "name": "CVE-2026-87549",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87549"
        },
        {
          "name": "CVE-2026-87611",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87611"
        },
        {
          "name": "CVE-2026-87603",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87603"
        },
        {
          "name": "CVE-2026-87644",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87644"
        },
        {
          "name": "CVE-2026-87655",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87655"
        },
        {
          "name": "CVE-2026-87530",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87530"
        },
        {
          "name": "CVE-2026-87506",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87506"
        },
        {
          "name": "CVE-2026-87466",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87466"
        },
        {
          "name": "CVE-2026-87521",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87521"
        },
        {
          "name": "CVE-2026-87497",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87497"
        },
        {
          "name": "CVE-2026-87441",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87441"
        },
        {
          "name": "CVE-2026-87471",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87471"
        },
        {
          "name": "CVE-2026-87577",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87577"
        },
        {
          "name": "CVE-2026-85892",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-85892"
        },
        {
          "name": "CVE-2026-87460",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87460"
        },
        {
          "name": "CVE-2026-87571",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87571"
        },
        {
          "name": "CVE-2026-87591",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87591"
        },
        {
          "name": "CVE-2026-87618",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87618"
        },
        {
          "name": "CVE-2026-87548",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87548"
        },
        {
          "name": "CVE-2026-87538",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87538"
        },
        {
          "name": "CVE-2026-87620",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87620"
        },
        {
          "name": "CVE-2026-87490",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87490"
        },
        {
          "name": "CVE-2026-87475",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87475"
        },
        {
          "name": "CVE-2026-87559",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87559"
        },
        {
          "name": "CVE-2026-87500",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87500"
        },
        {
          "name": "CVE-2026-87504",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87504"
        },
        {
          "name": "CVE-2026-87582",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87582"
        },
        {
          "name": "CVE-2026-87523",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87523"
        },
        {
          "name": "CVE-2026-87624",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87624"
        },
        {
          "name": "CVE-2026-87579",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87579"
        },
        {
          "name": "CVE-2026-87502",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87502"
        },
        {
          "name": "CVE-2026-87489",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87489"
        },
        {
          "name": "CVE-2026-87526",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87526"
        },
        {
          "name": "CVE-2026-87510",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87510"
        },
        {
          "name": "CVE-2026-87533",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87533"
        },
        {
          "name": "CVE-2026-87584",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87584"
        },
        {
          "name": "CVE-2026-87562",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87562"
        },
        {
          "name": "CVE-2026-87629",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87629"
        },
        {
          "name": "CVE-2026-87485",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87485"
        },
        {
          "name": "CVE-2026-87554",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87554"
        },
        {
          "name": "CVE-2026-87456",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-87456"
        }
      ],
      "initial_release_date": "2026-09-15T00:00:00",
      "last_revision_date": "2026-09-15T00:00:00",
      "links": [],
      "reference": "CERTFR-2026-AVI-1173",
      "revisions": [
        {
          "description": "Version initiale",
          "revision_date": "2026-09-15T00:00:00.000000"
        }
      ],
      "risks": [
        {
          "description": "Non sp\u00e9cifi\u00e9 par l\u0027\u00e9diteur"
        },
        {
          "description": "\u00c9l\u00e9vation de privil\u00e8ges"
        }
      ],
      "summary": "De multiples vuln\u00e9rabilit\u00e9s ont \u00e9t\u00e9 d\u00e9couvertes dans Microsoft Edge. Elles permettent \u00e0 un attaquant de provoquer une \u00e9l\u00e9vation de privil\u00e8ges et un probl\u00e8me de s\u00e9curit\u00e9 non sp\u00e9cifi\u00e9 par l\u0027\u00e9diteur.",
      "title": "Multiples vuln\u00e9rabilit\u00e9s dans Microsoft Edge",
      "vendor_advisories": [
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87533",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87533"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87454",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87454"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87613",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87613"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87505",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87505"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87449",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87449"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87524",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87524"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87471",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87471"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87645",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87645"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87575",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87575"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87636",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87636"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87616",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87616"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87527",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87527"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87455",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87455"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87638",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87638"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87474",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87474"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87568",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87568"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87504",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87504"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87614",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87614"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87608",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87608"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87619",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87619"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87624",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87624"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87604",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87604"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87650",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87650"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87551",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87551"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87584",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87584"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87526",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87526"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87563",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87563"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87610",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87610"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87469",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87469"
        },
        {
          "published_at": "2026-09-11",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-85892",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-85892"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87623",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87623"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87484",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87484"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87542",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87542"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87625",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87625"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87529",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87529"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87587",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87587"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87506",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87506"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87523",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87523"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87646",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87646"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87583",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87583"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87512",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87512"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87538",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87538"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87558",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87558"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87496",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87496"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87440",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87440"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87632",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87632"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87498",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87498"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87508",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87508"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87651",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87651"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87582",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87582"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87435",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87435"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87628",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87628"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87615",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87615"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87489",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87489"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87586",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87586"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87652",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87652"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87463",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87463"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87647",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87647"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87549",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87549"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87458",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87458"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87547",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87547"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87546",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87546"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87648",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87648"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87543",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87543"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87494",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87494"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87429",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87429"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87606",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87606"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87588",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87588"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87567",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87567"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87433",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87433"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87630",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87630"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87437",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87437"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87571",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87571"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87572",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87572"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87444",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87444"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87519",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87519"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87515",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87515"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87514",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87514"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87457",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87457"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87436",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87436"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87541",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87541"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87556",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87556"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87447",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87447"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87452",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87452"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87480",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87480"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87658",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87658"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87569",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87569"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87539",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87539"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87445",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87445"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87617",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87617"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87544",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87544"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87657",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87657"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87450",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87450"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87637",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87637"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87513",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87513"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87459",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87459"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87537",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87537"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87560",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87560"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87609",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87609"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87562",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87562"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87570",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87570"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87649",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87649"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87442",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87442"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87528",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87528"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87589",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87589"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87554",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87554"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87540",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87540"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87468",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87468"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87599",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87599"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87477",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87477"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87473",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87473"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87626",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87626"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87511",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87511"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87497",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87497"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87430",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87430"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87656",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87656"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87500",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87500"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87622",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87622"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87443",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87443"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87591",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87591"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87521",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87521"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87574",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87574"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87456",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87456"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87600",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87600"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87593",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87593"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87655",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87655"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87453",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87453"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87487",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87487"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87642",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87642"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87493",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87493"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87472",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87472"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87531",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87531"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87639",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87639"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87635",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87635"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87644",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87644"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87631",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87631"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87466",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87466"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87580",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87580"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87478",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87478"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87581",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87581"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87565",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87565"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87462",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87462"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87495",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87495"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87602",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87602"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87579",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87579"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87634",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87634"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87601",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87601"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87578",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87578"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87439",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87439"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87490",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87490"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87432",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87432"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87510",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87510"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87550",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87550"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87559",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87559"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87611",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87611"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87561",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87561"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87548",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87548"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87629",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87629"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87467",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87467"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87479",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87479"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87465",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87465"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87470",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87470"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87566",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87566"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87532",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87532"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87585",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87585"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87618",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87618"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87461",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87461"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87654",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87654"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87501",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87501"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87590",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87590"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87475",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87475"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87573",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87573"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87564",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87564"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87612",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87612"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87620",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87620"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87530",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87530"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87592",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87592"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87492",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87492"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87502",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87502"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87553",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87553"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87641",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87641"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87460",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87460"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87627",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87627"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87557",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87557"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87507",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87507"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87448",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87448"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87451",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87451"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87596",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87596"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87605",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87605"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87594",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87594"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87603",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87603"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87446",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87446"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87441",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87441"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87621",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87621"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87535",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87535"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87485",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87485"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87653",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87653"
        },
        {
          "published_at": "2026-09-11",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87536",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87536"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87577",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87577"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87525",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87525"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87499",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87499"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87516",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87516"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87434",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87434"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87598",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87598"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87633",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87633"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87509",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87509"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87431",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87431"
        },
        {
          "published_at": "2026-09-14",
          "title": "Bulletin de s\u00e9curit\u00e9 Microsoft Edge CVE-2026-87476",
          "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-87476"
        }
      ]
    }