Skip to main content

Security Briefs

Page 16 of 89.

Alerts tracked

2627

Security flaws we track for Upstate SC businesses.

Known exploited

503

On CISA’s list of vulnerabilities attackers are actively using. Patch these first.

New exploited this month

43

Fresh additions to that CISA list since the first of the month.Feeds last synced Aug 20, 2026, 6:00 AM UTC.

Showing page 16 (24 alerts) of 2116.

Microsoft MSRC

CVE-2026-61361

Windows DHCP Client Remote Code Execution vulnerability

Windows DHCP Client Remote Code Execution vulnerability (CVE-2026-61361) was added to Microsoft’s security update guidance. Use after free in Windows DHCP Client allows an authorized attacker to execute code locally. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-61360

Windows GDI Information Disclosure vulnerability

Windows GDI Information Disclosure vulnerability (CVE-2026-61360) was added to Microsoft’s security update guidance. Untrusted pointer dereference in Windows GDI allows an authorized attacker to disclose information locally. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-61358

Windows Accessibility Infrastructure (ATBroker.exe) Elevation of Privilege vulnerability

Windows Accessibility Infrastructure (ATBroker.exe) Elevation of Privilege vulnerability (CVE-2026-61358) was added to Microsoft’s security update guidance. Improper link resolution before file access ('link following') in Windows Accessibility Infrastructure (ATBroker.exe) allows an authorized attacker to elevate privileges locally. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-61356

Windows Remote Desktop Services Elevation of Privilege vulnerability

Windows Remote Desktop Services Elevation of Privilege vulnerability (CVE-2026-61356) was added to Microsoft’s security update guidance. Missing authentication for critical function in Windows Remote Desktop Services allows an authorized attacker to elevate privileges locally. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-61355

Windows Sensor Data Service Elevation of Privilege vulnerability

Windows Sensor Data Service Elevation of Privilege vulnerability (CVE-2026-61355) was added to Microsoft’s security update guidance. Heap-based buffer overflow in Windows Sensor Data Service allows an authorized attacker to elevate privileges locally. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-61353

Windows Telephony Service Elevation of Privilege vulnerability

Windows Telephony Service Elevation of Privilege vulnerability (CVE-2026-61353) was added to Microsoft’s security update guidance. Heap-based buffer overflow in Windows Telephony Service allows an authorized attacker to elevate privileges locally. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-61350

Windows NTFS Information Disclosure vulnerability

Windows NTFS Information Disclosure vulnerability (CVE-2026-61350) was added to Microsoft’s security update guidance. Buffer over-read in Windows NTFS allows an unauthorized attacker to disclose information with a physical attack. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-61349

Windows Work Folder Service Elevation of Privilege vulnerability

Windows Work Folder Service Elevation of Privilege vulnerability (CVE-2026-61349) was added to Microsoft’s security update guidance. Use after free in Windows Work Folder Service allows an authorized attacker to elevate privileges locally. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-61348

Windows Ancillary Function Driver for WinSock Elevation of Privilege vulnerability

Windows Ancillary Function Driver for WinSock Elevation of Privilege vulnerability (CVE-2026-61348) was added to Microsoft’s security update guidance. Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-61345

Microsoft Remote Registry Service Denial of Service vulnerability

Microsoft Remote Registry Service Denial of Service vulnerability (CVE-2026-61345) was added to Microsoft’s security update guidance. Information published. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-59138

Microsoft Remote Registry Service Denial of Service vulnerability

Microsoft Remote Registry Service Denial of Service vulnerability (CVE-2026-59138) was added to Microsoft’s security update guidance. Information published. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-59137

Windows Event Logging Service Information Disclosure vulnerability

Windows Event Logging Service Information Disclosure vulnerability (CVE-2026-59137) was added to Microsoft’s security update guidance. Use of uninitialized resource in Windows Event Logging Service allows an authorized attacker to disclose information locally. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-59136

Microsoft COM for Windows Information Disclosure vulnerability

Microsoft COM for Windows Information Disclosure vulnerability (CVE-2026-59136) was added to Microsoft’s security update guidance. Use of uninitialized resource in Microsoft COM for Windows allows an authorized attacker to disclose information locally. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-59135

Microsoft Windows Search Component Information Disclosure vulnerability

Microsoft Windows Search Component Information Disclosure vulnerability (CVE-2026-59135) was added to Microsoft’s security update guidance. Weak authentication in Microsoft Windows Search Component allows an authorized attacker to disclose information locally. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-59133

Microsoft High Performance Computing (HPC) Pack Elevation of Privilege vulnerability

Microsoft High Performance Computing (HPC) Pack Elevation of Privilege vulnerability (CVE-2026-59133) was added to Microsoft’s security update guidance. Execution with unnecessary privileges in Microsoft High Performance Computing (HPC) Pack allows an authorized attacker to elevate privileges over a network. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-59132

Windows TCP/IP Denial of Service vulnerability

Windows TCP/IP Denial of Service vulnerability (CVE-2026-59132) was added to Microsoft’s security update guidance. Information published. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-59128

Windows Encrypting File System (EFS) Information Disclosure vulnerability

Windows Encrypting File System (EFS) Information Disclosure vulnerability (CVE-2026-59128) was added to Microsoft’s security update guidance. Out-of-bounds read in Windows Encrypting File System (EFS) allows an authorized attacker to disclose information locally. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-59127

Windows Installer Elevation of Privilege vulnerability

Windows Installer Elevation of Privilege vulnerability (CVE-2026-59127) was added to Microsoft’s security update guidance. Integer overflow or wraparound in Windows Installer allows an authorized attacker to elevate privileges locally. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-59122

Windows Telephony Service Elevation of Privilege vulnerability

Windows Telephony Service Elevation of Privilege vulnerability (CVE-2026-59122) was added to Microsoft’s security update guidance. Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Telephony Service allows an authorized attacker to elevate privileges locally. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-59113

Visual Studio Code Remote Code Execution vulnerability

Visual Studio Code Remote Code Execution vulnerability (CVE-2026-59113) was added to Microsoft’s security update guidance. Missing authorization in Visual Studio Code allows an unauthorized attacker to execute code over a network. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-58651

Microsoft Word Remote Code Execution vulnerability

Microsoft Word Remote Code Execution vulnerability (CVE-2026-58651) was added to Microsoft’s security update guidance. Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code locally. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-58650

Visual Studio Code Security Feature Bypass vulnerability

Visual Studio Code Security Feature Bypass vulnerability (CVE-2026-58650) was added to Microsoft’s security update guidance. Authorization bypass through user-controlled key in Visual Studio Code allows an unauthorized attacker to bypass a security feature locally. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-58639

Microsoft SharePoint Server Spoofing vulnerability

Microsoft SharePoint Server Spoofing vulnerability (CVE-2026-58639) was added to Microsoft’s security update guidance. Server-side request forgery (ssrf) in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-57105

Microsoft Office SharePoint Spoofing vulnerability

Microsoft Office SharePoint Spoofing vulnerability (CVE-2026-57105) was added to Microsoft’s security update guidance. Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network. If you need help checking exposure, call (864) 335-9223.