Security Briefs
Page 18 of 89.
Alerts tracked
2627
Security flaws we track for Upstate SC businesses.
Known exploited
503
On CISA’s list of vulnerabilities attackers are actively using. Patch these first.
New exploited this month
43
Fresh additions to that CISA list since the first of the month.Feeds last synced Aug 20, 2026, 6:00 AM UTC.
Showing page 18 (24 alerts) of 2116.
Microsoft Teams Elevation of Privilege vulnerability
Microsoft Teams Elevation of Privilege vulnerability (CVE-2026-65667) was added to Microsoft’s security update guidance. Missing authorization in Microsoft Teams allows an unauthorized attacker to elevate privileges over a network. If you need help checking exposure, call (864) 335-9223.
Azure SQL Database Elevation of Privilege vulnerability
Azure SQL Database Elevation of Privilege vulnerability (CVE-2026-63522) was added to Microsoft’s security update guidance. Incorrect permission assignment for critical resource in Azure SQL Database allows an authorized attacker to elevate privileges locally. If you need help checking exposure, call (864) 335-9223.
Microsoft Planetary Computer Pro Elevation of Privilege vulnerability
Microsoft Planetary Computer Pro Elevation of Privilege vulnerability (CVE-2026-63508) was added to Microsoft’s security update guidance. Missing authentication for critical function in Microsoft Planetary Computer Pro allows an unauthorized attacker to elevate privileges over a network. If you need help checking exposure, call (864) 335-9223.
Microsoft Teams Spoofing vulnerability
Microsoft Teams Spoofing vulnerability (CVE-2026-62918) was added to Microsoft’s security update guidance. Improper verification of cryptographic signature in Microsoft Teams allows an unauthorized attacker to perform spoofing over a network. If you need help checking exposure, call (864) 335-9223.
Microsoft Teams Elevation of Privilege vulnerability
Microsoft Teams Elevation of Privilege vulnerability (CVE-2026-62896) was added to Microsoft’s security update guidance. Improper authentication in Microsoft Teams allows an authorized attacker to elevate privileges over a network. If you need help checking exposure, call (864) 335-9223.
Microsoft 365 Admin Center Elevation of Privilege vulnerability
Microsoft 365 Admin Center Elevation of Privilege vulnerability (CVE-2026-62873) was added to Microsoft’s security update guidance. Improper verification of cryptographic signature in Microsoft 365 Admin Center allows an unauthorized attacker to elevate privileges over a network. If you need help checking exposure, call (864) 335-9223.
Azure Entra ID Spoofing vulnerability
Azure Entra ID Spoofing vulnerability (CVE-2026-62869) was added to Microsoft’s security update guidance. Insufficient verification of data authenticity in Azure Entra ID allows an authorized attacker to perform spoofing over a network. If you need help checking exposure, call (864) 335-9223.
Azure SQL Managed Instance Elevation of Privilege vulnerability
Azure SQL Managed Instance Elevation of Privilege vulnerability (CVE-2026-62836) was added to Microsoft’s security update guidance. Improper restriction of communication channel to intended endpoints in Azure SQL Managed Instance allows an unauthorized attacker to elevate privileges over a network. If you need help checking exposure, call (864) 335-9223.
Azure SRE Agent Elevation of Privilege vulnerability
Azure SRE Agent Elevation of Privilege vulnerability (CVE-2026-62830) was added to Microsoft’s security update guidance. Missing authorization in Azure SRE Agent allows an authorized attacker to elevate privileges over a network. If you need help checking exposure, call (864) 335-9223.
Microsoft Power Apps Elevation of Privilege vulnerability
Microsoft Power Apps Elevation of Privilege vulnerability (CVE-2026-59118) was added to Microsoft’s security update guidance. Improper authorization in Microsoft Power Apps allows an unauthorized attacker to elevate privileges over a network. If you need help checking exposure, call (864) 335-9223.
Microsoft Entra Provisioning Service Elevation of Privilege vulnerability
Microsoft Entra Provisioning Service Elevation of Privilege vulnerability (CVE-2026-59115) was added to Microsoft’s security update guidance. '.../...//' in Microsoft Entra Provisioning Service (SyncFabric) allows an authorized attacker to elevate privileges over a network. If you need help checking exposure, call (864) 335-9223.
Azure SQL Database Elevation of Privilege vulnerability
Azure SQL Database Elevation of Privilege vulnerability (CVE-2026-56162) was added to Microsoft’s security update guidance. Improper authentication in Azure SQL Database allows an unauthorized attacker to elevate privileges over a network. If you need help checking exposure, call (864) 335-9223.
Azure Logic Apps Information Disclosure vulnerability
Azure Logic Apps Information Disclosure vulnerability (CVE-2026-56161) was added to Microsoft’s security update guidance. Improper access control in Azure Logic Apps allows an authorized attacker to disclose information over a network. If you need help checking exposure, call (864) 335-9223.
Microsoft Word Information Disclosure vulnerability
Microsoft Word Information Disclosure vulnerability (CVE-2026-55050) was added to Microsoft’s security update guidance. Acknowledgement Updated If you need help checking exposure, call (864) 335-9223.
Microsoft Azure Kubernetes Service Elevation of Privilege vulnerability
Microsoft Azure Kubernetes Service Elevation of Privilege vulnerability (CVE-2026-50516) was added to Microsoft’s security update guidance. Missing authentication for critical function in Microsoft Azure Kubernetes Service allows an unauthorized attacker to elevate privileges over a network. If you need help checking exposure, call (864) 335-9223.
Azure Service Bus Remote Code Execution vulnerability
Azure Service Bus Remote Code Execution vulnerability (CVE-2026-50515) was added to Microsoft’s security update guidance. Deserialization of untrusted data in Azure Service Bus allows an authorized attacker to execute code over a network. If you need help checking exposure, call (864) 335-9223.
Azure Active Directory Elevation of Privilege vulnerability
Azure Active Directory Elevation of Privilege vulnerability (CVE-2026-50481) was added to Microsoft’s security update guidance. Modification of assumed-immutable data (maid) in Azure Active Directory allows an authorized attacker to elevate privileges over a network. If you need help checking exposure, call (864) 335-9223.
Windows NTFS Information Disclosure vulnerability
Windows NTFS Information Disclosure vulnerability (CVE-2026-50341) was added to Microsoft’s security update guidance. Acknowledgement Updated If you need help checking exposure, call (864) 335-9223.
Azure Cosmos DB Remote Code Execution vulnerability
Azure Cosmos DB Remote Code Execution vulnerability (CVE-2026-66803) was added to Microsoft’s security update guidance. Improper access control in Azure Cosmos DB allows an unauthorized attacker to execute code over a network. If you need help checking exposure, call (864) 335-9223.
Windows Admin Center (WAC) Remote Code Execution vulnerability
Windows Admin Center (WAC) Remote Code Execution vulnerability (CVE-2026-56197) was added to Microsoft’s security update guidance. Updated an acknowledgement. This is an informational change only. If you need help checking exposure, call (864) 335-9223.
Microsoft Office Remote Code Execution vulnerability
Microsoft Office Remote Code Execution vulnerability (CVE-2026-55129) was added to Microsoft’s security update guidance. Acknowledgement Updated If you need help checking exposure, call (864) 335-9223.
Windows DHCP Client Remote Code Execution vulnerability
Windows DHCP Client Remote Code Execution vulnerability (CVE-2026-54128) was added to Microsoft’s security update guidance. Updated an acknowledgement. This is an informational change only. If you need help checking exposure, call (864) 335-9223.
Azure Resource Manager Elevation of Privilege vulnerability
Azure Resource Manager Elevation of Privilege vulnerability (CVE-2026-24304) was added to Microsoft’s security update guidance. Informational Change. CVE ID stays the same. If you need help checking exposure, call (864) 335-9223.
Windows Terminal Remote Code Execution vulnerability
Windows Terminal Remote Code Execution vulnerability (CVE-2026-59117) was added to Microsoft’s security update guidance. Change the name of the affected software from **Microsoft Power Apps** to **Microsoft Power Apps Desktop Client**. This is an informational change only. If you need help checking exposure, call (864) 335-9223.