Ad

CVE Vulnerability Database

Complete database of CVE vulnerabilities. Track critical security threats, exploits and patches. Updated daily from NVD NIST.

CVE-2026-34628

7.8

InDesign Desktop versions 20.5.2, 21.2 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation …

Adobe
Details

CVE-2026-34627

7.8

InDesign Desktop versions 20.5.2, 21.2 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation …

Adobe
Details

CVE-2026-33829

4.3

Exposure of sensitive information to an unauthorized actor in Windows Snipping Tool allows an unauthorized attacker to perform spoofing over a network.

Microsoft
Details

CVE-2026-33827

8.1

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows TCP/IP allows an unauthorized attacker to execute code over a network.

Microsoft
Details

CVE-2026-33826

8.0

Improper input validation in Windows Active Directory allows an authorized attacker to execute code over an adjacent network.

Microsoft
Details

CVE-2026-33825

7.8

Insufficient granularity of access control in Microsoft Defender allows an authorized attacker to elevate privileges locally.

Microsoft
Details

CVE-2026-33824

9.8

Double free in Windows IKE Extension allows an unauthorized attacker to execute code over a network.

Microsoft
Details

CVE-2026-33822

6.1

Out-of-bounds read in Microsoft Office Word allows an unauthorized attacker to disclose information locally.

Microsoft
Details

CVE-2026-33120

8.8

Untrusted pointer dereference in SQL Server allows an authorized attacker to execute code over a network.

Untrusted
Details

CVE-2026-33116

7.5

Loop with unreachable exit condition ('infinite loop') in .NET, .NET Framework, Visual Studio allows an unauthorized attacker to deny service over a network.

Loop
Details
37/3864