Microsoft
91,472 known vulnerabilities
Top Products
NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability where unexpected untrusted data is parsed, w
Dell Command | Update, Dell Update, and Alienware Update versions 4.8.0 and prior contain an Insecure Operation on Wind
Dell Command | Update, Dell Update, and Alienware Update versions 4.9.0, A01 and prior contain an Insecure Operation on
Yet Another Reverse Proxy (YARP) Denial of Service Vulnerability
Livebook is a web application for writing interactive and collaborative code notebooks. On Windows, it is possible to op
IBM SPSS Modeler on Windows 17.0, 18.0, 18.2.2, 18.3, 18.4, and 18.5 requires the end user to have access to the server
IBM Spectrum Protect Backup-Archive Client 8.1.0.0 through 8.1.17.2 may allow a local user to escalate their privileges
A newline in a filename could have been used to bypass the file extension security mechanisms that replace malicious fil
Protocol handlers `ms-cxh` and `ms-cxh-full` could have been leveraged to trigger a denial of service. *Note: This attac
A local attacker can trick the Mozilla Maintenance Service into applying an unsigned update file by pointing the service
Microsoft Publisher Remote Code Execution Vulnerability
Microsoft Publisher Remote Code Execution Vulnerability
Microsoft SQL OLE DB Remote Code Execution Vulnerability
Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability
Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability
Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability
Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability
Microsoft ODBC and OLE DB Remote Code Execution Vulnerability
The Netskope client service (prior to R96) on Windows runs as NT AUTHORITY\SYSTEM which writes log files to a writable d
The Netskope client service running with NT\SYSTEM privileges accepts network connections from localhost to start variou
Windows 7 is vulnerable to a full blind TCP/IP hijacking attack. The vulnerability exists in Windows 7 (any Windows unti
Microsoft Exchange Server Remote Code Execution Vulnerability
.NET and Visual Studio Denial of Service Vulnerability
Microsoft Power Apps Spoofing Vulnerability
NuGet Client Remote Code Execution Vulnerability
.NET, .NET Framework, and Visual Studio Denial of Service Vulnerability
.NET Framework Remote Code Execution Vulnerability
Microsoft Exchange Server Remote Code Execution Vulnerability
.NET, .NET Framework, and Visual Studio Elevation of Privilege Vulnerability
.NET, .NET Framework, and Visual Studio Remote Code Execution Vulnerability
.NET, .NET Framework, and Visual Studio Remote Code Execution Vulnerability
An improper authorization check of local device settings in TeamViewer Remote between version 15.41 and 15.42.7 for Win
Windows CryptoAPI Denial of Service Vulnerability
Microsoft Office Remote Code Execution Vulnerability
Microsoft Edge (Chromium-based) Information Disclosure Vulnerability
Visual Studio Code Spoofing Vulnerability
Microsoft SharePoint Server Elevation of Privilege Vulnerability
Microsoft OneNote Spoofing Vulnerability
Visual Studio Information Disclosure Vulnerability
Microsoft Excel Remote Code Execution Vulnerability
.NET and Visual Studio Elevation of Privilege Vulnerability
Microsoft Excel Remote Code Execution Vulnerability
Microsoft SharePoint Server Spoofing Vulnerability
Microsoft Outlook Remote Code Execution Vulnerability
Microsoft SharePoint Server Spoofing Vulnerability
Microsoft SharePoint Server Denial of Service Vulnerability
.NET and Visual Studio Remote Code Execution Vulnerability
.NET and Visual Studio Remote Code Execution Vulnerability
.NET and Visual Studio Elevation of Privilege Vulnerability
Microsoft Excel Remote Code Execution Vulnerability
Frequently Asked Questions
How many CVEs affect Microsoft?
Microsoft has 91,472 CVE records in our database, including 2628 critical and 63090 high severity vulnerabilities. 351 of these are listed in CISA's Known Exploited Vulnerabilities catalog.
What are the most severe Microsoft vulnerabilities?
Microsoft has 2628 critical severity (CVSS 9.0+) and 63090 high severity (CVSS 7.0-8.9) vulnerabilities. 351 vulnerabilities are confirmed as actively exploited in the wild.
How can I scan for Microsoft vulnerabilities?
CyberStrike's AI-powered security agents automatically detect vulnerabilities in Microsoft products across your infrastructure. The platform provides continuous pentesting, DAST scanning, and real-time vulnerability monitoring with actionable remediation guidance.
Detect Microsoft Vulnerabilities
CyberStrike scans your infrastructure for Microsoft vulnerabilities and provides real-time remediation guidance.
Get Started