Skip to main content

Security Briefs

Page 135 of 142.

Alerts tracked

3951

Security flaws we track for Upstate SC businesses.

Known exploited

547

On CISA’s list of vulnerabilities attackers are actively using. Patch these first.

New exploited this month

4

Fresh additions to that CISA list since the first of the month.Feeds last synced Oct 9, 2026, 6:01 AM UTC.

Showing page 135 (24 alerts) of 3394.

Microsoft MSRC

CVE-2026-41610

Visual Studio Code Security Feature Bypass vulnerability

Visual Studio Code Security Feature Bypass vulnerability (CVE-2026-41610) was added to Microsoft’s security update guidance. Improper neutralization of input during web page generation ('cross-site scripting') in Visual Studio Code allows an unauthorized attacker to bypass a security feature locally. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.

Microsoft MSRC

CVE-2026-41103

Microsoft SSO Plugin for Jira & Confluence Elevation of Privilege vulnerability

Microsoft SSO Plugin for Jira & Confluence Elevation of Privilege vulnerability (CVE-2026-41103) was added to Microsoft’s security update guidance. Incorrect implementation of authentication algorithm in Microsoft SSO Plugin for Jira & Confluence allows an unauthorized attacker to elevate privileges over a network. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.

Microsoft MSRC

CVE-2026-41102

Microsoft PowerPoint for Android Spoofing vulnerability

Microsoft PowerPoint for Android Spoofing vulnerability (CVE-2026-41102) was added to Microsoft’s security update guidance. Improper access control in Microsoft Office PowerPoint allows an authorized attacker to perform spoofing locally. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.

Microsoft MSRC

CVE-2026-41101

Microsoft Word for Android Spoofing vulnerability

Microsoft Word for Android Spoofing vulnerability (CVE-2026-41101) was added to Microsoft’s security update guidance. Improper access control in Microsoft Office Word allows an authorized attacker to perform spoofing locally. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.

Microsoft MSRC

CVE-2026-41096

Windows DNS Client Remote Code Execution vulnerability

Windows DNS Client Remote Code Execution vulnerability (CVE-2026-41096) was added to Microsoft’s security update guidance. Heap-based buffer overflow in Microsoft Windows DNS allows an unauthorized attacker to execute code over a network. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.

Microsoft MSRC

CVE-2026-41094

Microsoft Data Formulator Remote Code Execution vulnerability

Microsoft Data Formulator Remote Code Execution vulnerability (CVE-2026-41094) was added to Microsoft’s security update guidance. Improper control of generation of code ('code injection') in Microsoft Data Formulator allows an unauthorized attacker to execute code over a network. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.

Microsoft MSRC

CVE-2026-41089

Windows Netlogon Remote Code Execution vulnerability

Windows Netlogon Remote Code Execution vulnerability (CVE-2026-41089) was added to Microsoft’s security update guidance. Stack-based buffer overflow in Windows Netlogon allows an unauthorized attacker to execute code over a network. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.

Microsoft MSRC

CVE-2026-40421

Microsoft Word Information Disclosure vulnerability

Microsoft Word Information Disclosure vulnerability (CVE-2026-40421) was added to Microsoft’s security update guidance. External control of file name or path in Microsoft Office Word allows an unauthorized attacker to disclose information over a network. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.

Microsoft MSRC

CVE-2026-40420

Microsoft Office Click-To-Run Elevation of Privilege vulnerability

Microsoft Office Click-To-Run Elevation of Privilege vulnerability (CVE-2026-40420) was added to Microsoft’s security update guidance. Improper access control in Microsoft Office Click-To-Run allows an authorized attacker to elevate privileges locally. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.

Microsoft MSRC

CVE-2026-40419

Microsoft Office Click-To-Run Elevation of Privilege vulnerability

Microsoft Office Click-To-Run Elevation of Privilege vulnerability (CVE-2026-40419) was added to Microsoft’s security update guidance. Use after free in Microsoft Office allows an authorized attacker to elevate privileges locally. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.

Microsoft MSRC

CVE-2026-40418

Microsoft Office Click-To-Run Elevation of Privilege vulnerability

Microsoft Office Click-To-Run Elevation of Privilege vulnerability (CVE-2026-40418) was added to Microsoft’s security update guidance. Use after free in Microsoft Office Click-To-Run allows an authorized attacker to elevate privileges locally. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.

Microsoft MSRC

CVE-2026-40415

Windows TCP/IP Remote Code Execution vulnerability

Windows TCP/IP Remote Code Execution vulnerability (CVE-2026-40415) was added to Microsoft’s security update guidance. Use after free in Windows TCP/IP allows an unauthorized attacker to execute code over a network. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.

Microsoft MSRC

CVE-2026-40414

Windows TCP/IP Denial of Service vulnerability

Windows TCP/IP Denial of Service vulnerability (CVE-2026-40414) was added to Microsoft’s security update guidance. Null pointer dereference in Windows TCP/IP allows an unauthorized attacker to deny service over an adjacent network. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.

Microsoft MSRC

CVE-2026-40413

Windows TCP/IP Denial of Service vulnerability

Windows TCP/IP Denial of Service vulnerability (CVE-2026-40413) was added to Microsoft’s security update guidance. Null pointer dereference in Windows TCP/IP allows an unauthorized attacker to deny service over an adjacent network. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.

Microsoft MSRC

CVE-2026-40410

Windows SMB Client Elevation of Privilege vulnerability

Windows SMB Client Elevation of Privilege vulnerability (CVE-2026-40410) was added to Microsoft’s security update guidance. Use after free in Windows SMB Client allows an authorized attacker to elevate privileges locally. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.

Microsoft MSRC

CVE-2026-40408

Windows WAN ARP Driver Elevation of Privilege vulnerability

Windows WAN ARP Driver Elevation of Privilege vulnerability (CVE-2026-40408) was added to Microsoft’s security update guidance. Use after free in Windows Kernel-Mode Drivers allows an authorized attacker to elevate privileges locally. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.

Microsoft MSRC

CVE-2026-40407

Windows Common Log File System Driver Elevation of Privilege vulnerability

Windows Common Log File System Driver Elevation of Privilege vulnerability (CVE-2026-40407) was added to Microsoft’s security update guidance. Heap-based buffer overflow in Windows Common Log File System Driver allows an authorized attacker to elevate privileges locally. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.

Microsoft MSRC

CVE-2026-40406

Windows TCP/IP Information Disclosure vulnerability

Windows TCP/IP Information Disclosure vulnerability (CVE-2026-40406) was added to Microsoft’s security update guidance. Use after free in Windows TCP/IP allows an unauthorized attacker to disclose information over a network. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.

Microsoft MSRC

CVE-2026-40405

Windows TCP/IP Denial of Service vulnerability

Windows TCP/IP Denial of Service vulnerability (CVE-2026-40405) was added to Microsoft’s security update guidance. Null pointer dereference in Windows TCP/IP allows an unauthorized attacker to deny service over a network. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.

Microsoft MSRC

CVE-2026-40403

Windows Graphics Component Remote Code Execution vulnerability

Windows Graphics Component Remote Code Execution vulnerability (CVE-2026-40403) was added to Microsoft’s security update guidance. Heap-based buffer overflow in Windows Win32K - GRFX allows an authorized attacker to execute code locally. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.

Microsoft MSRC

CVE-2026-40402

Windows Hyper-V Elevation of Privilege vulnerability

Windows Hyper-V Elevation of Privilege vulnerability (CVE-2026-40402) was added to Microsoft’s security update guidance. Use after free in Windows Hyper-V allows an unauthorized attacker to elevate privileges locally. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.

Microsoft MSRC

CVE-2026-40401

Windows TCP/IP Denial of Service vulnerability

Windows TCP/IP Denial of Service vulnerability (CVE-2026-40401) was added to Microsoft’s security update guidance. Null pointer dereference in Windows TCP/IP allows an unauthorized attacker to deny service locally. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.

Microsoft MSRC

CVE-2026-40399

Windows TCP/IP Elevation of Privilege vulnerability

Windows TCP/IP Elevation of Privilege vulnerability (CVE-2026-40399) was added to Microsoft’s security update guidance. Stack-based buffer overflow in Windows TCP/IP allows an authorized attacker to elevate privileges locally. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.

Microsoft MSRC

CVE-2026-40398

Windows Remote Desktop Services Elevation of Privilege vulnerability

Windows Remote Desktop Services Elevation of Privilege vulnerability (CVE-2026-40398) was added to Microsoft’s security update guidance. Heap-based buffer overflow in Windows Remote Desktop allows an authorized attacker to elevate privileges locally. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.