Skip to main content

CVE tracking · CISA known exploited

Security Briefs: vulnerability alerts in plain English

We track CISA KEV, Microsoft advisories, and FBI alerts, then tell you what’s affected and whether attackers are already using it.

Alerts tracked

2621

Security flaws we track for Upstate SC businesses.

Known exploited

499

On CISA’s list of vulnerabilities attackers are actively using. Patch these first.

New exploited this month

36

Fresh additions to that CISA list since the first of the month.Feeds last synced Aug 15, 2026, 6:00 AM UTC.

What do these terms mean?
  • What is a CVE?

    A CVE (Common Vulnerabilities and Exposures) is a public tracking number for a specific security flaw in software or hardware, similar to a SKU for a bug.

  • What is the CISA Known Exploited Vulnerabilities (KEV) catalog?

    The CISA KEV catalog is the U.S. government’s short list of vulnerabilities that attackers are actively exploiting in the wild.

  • Who publishes Security Briefs on PremierePC?

    PremierePC tracks alerts from CISA KEV, Microsoft MSRC, FBI IC3 industry advisories, and other U.S. feeds, then summarizes what each one means for Upstate SC businesses.

  • How often are Security Briefs updated?

    Feeds sync automatically on a schedule. We publish new KEV entries, Microsoft advisories, and FBI alerts as they appear in the source catalogs.

Showing 24 of 2621 alerts.

Microsoft MSRC

CVE-2026-72970

Microsoft Edge (Chromium-based) Remote Code Execution vulnerability

Microsoft Edge (Chromium-based) Remote Code Execution vulnerability (CVE-2026-72970) was added to Microsoft’s security update guidance. <p>Heap-based buffer overflow in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network.</p> If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-70338

Microsoft PowerShell Security Feature Bypass vulnerability

Microsoft PowerShell Security Feature Bypass vulnerability (CVE-2026-70338) was added to Microsoft’s security update guidance. The security updates for Powershell have been updated. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-70337

Microsoft PowerShell Remote Code Execution vulnerability

Microsoft PowerShell Remote Code Execution vulnerability (CVE-2026-70337) was added to Microsoft’s security update guidance. The security updates for Powershell have been updated. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-69414

Microsoft Defender Elevation of Privilege vulnerability

Microsoft Defender Elevation of Privilege vulnerability (CVE-2026-69414) was added to Microsoft’s security update guidance. Microsoft is aware of an elevation of privilege in the Microsoft Malware Protection Engine in Microsoft Defender publicly referred to as "ShieldBreak ". We are working to provide a high quality security update that addresses this vulnerability. We will provide information in… If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-68821

Windows Package Manager Elevation of Privilege vulnerability

Windows Package Manager Elevation of Privilege vulnerability (CVE-2026-68821) was added to Microsoft’s security update guidance. Acknowledgement Updated If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-66804

Microsoft Windows Cross Device Service Elevation of Privilege vulnerability

Microsoft Windows Cross Device Service Elevation of Privilege vulnerability (CVE-2026-66804) was added to Microsoft’s security update guidance. Acknowledgement Updated If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-62777

Windows License Manager Elevation of Privilege vulnerability

Windows License Manager Elevation of Privilege vulnerability (CVE-2026-62777) was added to Microsoft’s security update guidance. Acknowledgement Updated If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-62755

Windows DHCP Client Elevation of Privilege vulnerability

Windows DHCP Client Elevation of Privilege vulnerability (CVE-2026-62755) was added to Microsoft’s security update guidance. Acknowledgement Updated If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-61347

Windows Event Logging Service Information Disclosure vulnerability

Windows Event Logging Service Information Disclosure vulnerability (CVE-2026-61347) was added to Microsoft’s security update guidance. Acknowledgement Updated If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-59126

Windows Event Logging Service Elevation of Privilege vulnerability

Windows Event Logging Service Elevation of Privilege vulnerability (CVE-2026-59126) was added to Microsoft’s security update guidance. Acknowledgement Updated If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-50523

Microsoft PowerShell Remote Code Execution vulnerability

Microsoft PowerShell Remote Code Execution vulnerability (CVE-2026-50523) was added to Microsoft’s security update guidance. The security updates for Powershell have been updated. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-50313

Windows NTFS Remote Code Execution vulnerability

Windows NTFS Remote Code Execution vulnerability (CVE-2026-50313) was added to Microsoft’s security update guidance. Acknowledgement Updated If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-49162

Microsoft Brokering File System Elevation of Privilege vulnerability

Microsoft Brokering File System Elevation of Privilege vulnerability (CVE-2026-49162) was added to Microsoft’s security update guidance. Acknowledgement Updated If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-48566

Windows DWM Core Library Information Disclosure vulnerability

Windows DWM Core Library Information Disclosure vulnerability (CVE-2026-48566) was added to Microsoft’s security update guidance. This CVE has been discovered to be an Elevation of Privilege and not an Information Disclosure. The CVE's Impact has been updated. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-40400

Windows PowerShell Remote Code Execution vulnerability

Windows PowerShell Remote Code Execution vulnerability (CVE-2026-40400) was added to Microsoft’s security update guidance. Acknowledgement Updated If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-32153

Windows Speech Runtime Elevation of Privilege vulnerability

Windows Speech Runtime Elevation of Privilege vulnerability (CVE-2026-32153) was added to Microsoft’s security update guidance. Acknowledgement Updated If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-19560

Use after free in Blink in Microsoft Edge vulnerability

Use after free in Blink in Microsoft Edge vulnerability (CVE-2026-19560) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2025) for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-19559

Use after free in HTML in Microsoft Edge vulnerability

Use after free in HTML in Microsoft Edge vulnerability (CVE-2026-19559) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2025) for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-19558

Use after free in Extensions in Microsoft Edge vulnerability

Use after free in Extensions in Microsoft Edge vulnerability (CVE-2026-19558) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2025) for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-19557

Use after free in TabStrip in Microsoft Edge vulnerability

Use after free in TabStrip in Microsoft Edge vulnerability (CVE-2026-19557) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2025) for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-19556

Use after free in V8 in Microsoft Edge vulnerability

Use after free in V8 in Microsoft Edge vulnerability (CVE-2026-19556) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2025) for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-65796

Windows iSCSI Target Service Remote Code Execution vulnerability

Windows iSCSI Target Service Remote Code Execution vulnerability (CVE-2026-65796) was added to Microsoft’s security update guidance. Updated the CVE title, changed the security impact from Denial of Service to Remote Code Execution, changed the severity from Important to Critical, updated the CVSS score from 5.9 to 8.1, and corrected the severity and impact entries in the Security Updates table. These are i… If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-62913

Microsoft Exchange Server Remote Code Execution vulnerability

Microsoft Exchange Server Remote Code Execution vulnerability (CVE-2026-62913) was added to Microsoft’s security update guidance. Added acknowledgements. This is an informational change only. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-62898

Microsoft QUIC Information Disclosure vulnerability

Microsoft QUIC Information Disclosure vulnerability (CVE-2026-62898) was added to Microsoft’s security update guidance. Removed Linux and macOS products from the Affected Software table. This is an informational change only. If you need help checking exposure, call (864) 335-9223.