Skip to main content

Over 150 LLM Providers · Over 5,300 Models The most extensible AI-powered pentesting platform. Open source. Star on GitHub

Microsoft

45,598 known vulnerabilities

611
CRITICAL
4,907
HIGH
2,376
MEDIUM
78
LOW

Top Products

windows 3758 windows server 2016 2125 windows 10 1609 windows server 2019 1564 windows server 2012 1521 windows server 2025 1055 windows 8.1 1028 windows 11 24h2 1025 windows 11 25h2 1024 windows server 2022 953
7,972 CVEs · Page 4/160
6.7
CVE-2026-65795

Relative path traversal in Windows DNS allows an authorized attacker to elevate privileges locally.

6.5
CVE-2026-65794

Buffer over-read in Windows SMB Client allows an unauthorized attacker to disclose information over a network.

9.8
CVE-2026-65791

Heap-based buffer overflow in Windows iSCSI Target Service allows an unauthorized attacker to execute code over a networ

7.8
CVE-2026-65790

Heap-based buffer overflow in Windows Message Queuing allows an authorized attacker to elevate privileges locally.

8.1
CVE-2026-65789

Use after free in Windows DNS allows an unauthorized attacker to execute code over a network.

7.0
CVE-2026-65788

Use after free in Desktop Window Manager allows an authorized attacker to elevate privileges locally.

7.8
CVE-2026-65787

Heap-based buffer overflow in Desktop Window Manager allows an authorized attacker to elevate privileges locally.

7.8
CVE-2026-65786

Heap-based buffer overflow in Desktop Window Manager allows an authorized attacker to elevate privileges locally.

6.5
CVE-2026-65785

Uncontrolled resource consumption in Windows DHCP Client allows an unauthorized attacker to deny service over an adjacen

5.5
CVE-2026-65784

Out-of-bounds read in Windows NTFS allows an authorized attacker to disclose information locally.

7.0
CVE-2026-65783

Use after free in Windows Autopilot allows an authorized attacker to elevate privileges locally.

7.0
CVE-2026-65782

Use after free in Windows Autopilot allows an authorized attacker to elevate privileges locally.

7.0
CVE-2026-65781

Use after free in Windows Autopilot allows an authorized attacker to elevate privileges locally.

7.0
CVE-2026-65780

Double free in Windows Autopilot allows an authorized attacker to elevate privileges locally.

7.0
CVE-2026-65779

Use after free in Windows Autopilot allows an authorized attacker to elevate privileges locally.

7.0
CVE-2026-65778

Use after free in Windows Autopilot allows an authorized attacker to elevate privileges locally.

5.3
CVE-2026-65777

Inadequate encryption strength in Windows Active Directory allows an authorized attacker to bypass a security feature ov

7.0
CVE-2026-65776

Use after free in Windows Win32K allows an authorized attacker to elevate privileges locally.

7.8
CVE-2026-65775

Use after free in Windows Win32K allows an authorized attacker to elevate privileges locally.

7.8
CVE-2026-65774

Heap-based buffer overflow in Windows Installer allows an authorized attacker to elevate privileges locally.

7.8
CVE-2026-65773

Improper access control in Windows Kernel allows an authorized attacker to elevate privileges locally.

6.5
CVE-2026-65769

Exposure of sensitive information to an unauthorized actor in Microsoft Teams Mobile allows an unauthorized attacker to

8.8
CVE-2026-65768

Improper limitation of a pathname to a restricted directory ('path traversal') in Microsoft Teams for Android allows an

8.8
CVE-2026-65767

Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Teams for Android allo

7.5
CVE-2026-65681

Null pointer dereference in Windows iSCSI Target Service allows an unauthorized attacker to deny service over a network.

8.1
CVE-2026-65679

Heap-based buffer overflow in Windows iSCSI Target Service allows an unauthorized attacker to execute code over a networ

7.0
CVE-2026-65678

Use after free in Windows Win32K allows an authorized attacker to elevate privileges locally.

7.1
CVE-2026-65675

No cwe for this issue in Visual Studio Code CoPilot Chat Extension allows an unauthorized attacker to bypass a security

7.8
CVE-2026-65673

Improper neutralization of special elements used in an sql command ('sql injection') in Microsoft Entra Connect Sync all

7.8
CVE-2026-65672

Heap-based buffer overflow in Windows Remote Access API allows an authorized attacker to elevate privileges locally.

7.8
CVE-2026-65671

Heap-based buffer overflow in Windows Remote Access API allows an authorized attacker to elevate privileges locally.

8.8
CVE-2026-65665

Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a ne

7.8
CVE-2026-65664

Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally.

8.8
CVE-2026-65663

Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a ne

5.5
CVE-2026-65662

Out-of-bounds read in Windows GDI allows an authorized attacker to disclose information locally.

7.8
CVE-2026-65661

Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally.

8.8
CVE-2026-65660

Improper control of generation of code ('code injection') in Microsoft Office SharePoint allows an authorized attacker t

8.8
CVE-2026-65658

Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a ne

7.8
CVE-2026-65657

Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.

7.8
CVE-2026-65656

Improper neutralization of special elements used in a command ('command injection') in Microsoft Office allows an unauth

4.6
CVE-2026-64922

Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allo

8.8
CVE-2026-64921

Missing authentication for critical function in Microsoft Office SharePoint allows an authorized attacker to elevate pri

7.8
CVE-2026-64920

Heap-based buffer overflow in Microsoft Office Access allows an unauthorized attacker to execute code locally.

7.8
CVE-2026-64919

Stack-based buffer overflow in Microsoft Office Access allows an unauthorized attacker to execute code locally.

5.5
CVE-2026-64917

Out-of-bounds read in Microsoft Office Word allows an unauthorized attacker to disclose information locally.

4.6
CVE-2026-64916

Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allo

7.8
CVE-2026-64915

Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code locally.

7.8
CVE-2026-64914

Heap-based buffer overflow in Microsoft Office Access allows an unauthorized attacker to execute code locally.

7.8
CVE-2026-64912

Stack-based buffer overflow in Microsoft Office Access allows an unauthorized attacker to execute code locally.

7.8
CVE-2026-64911

Integer overflow or wraparound in Microsoft Office allows an unauthorized attacker to execute code locally.

Frequently Asked Questions

How many CVEs affect Microsoft?

Microsoft has 45,598 CVE records in our database, including 1405 critical and 22126 high severity vulnerabilities. 122 of these are listed in CISA's Known Exploited Vulnerabilities catalog.

What are the most severe Microsoft vulnerabilities?

Microsoft has 1405 critical severity (CVSS 9.0+) and 22126 high severity (CVSS 7.0-8.9) vulnerabilities. 122 vulnerabilities are confirmed as actively exploited in the wild.

How can I scan for Microsoft vulnerabilities?

CyberStrike's AI-powered security agents automatically detect vulnerabilities in Microsoft products across your infrastructure. The platform provides continuous pentesting, DAST scanning, and real-time vulnerability monitoring with actionable remediation guidance.

Detect Microsoft Vulnerabilities

CyberStrike scans your infrastructure for Microsoft vulnerabilities and provides real-time remediation guidance.

Get Started