Security Briefs
Page 25 of 111.
Alerts tracked
2649
Security flaws we track for Upstate SC businesses.
Known exploited
503
On CISA’s list of vulnerabilities attackers are actively using. Patch these first.
New exploited this month
43
Fresh additions to that CISA list since the first of the month.Feeds last synced Aug 21, 2026, 6:00 AM UTC.
Showing page 25 (24 alerts) of 2649.
Windows Input Method Editor (IME) Elevation of Privilege vulnerability
Windows Input Method Editor (IME) Elevation of Privilege vulnerability (CVE-2026-58534) was added to Microsoft’s security update guidance. Heap-based buffer overflow in Microsoft Input Method Editor (IME) allows an authorized attacker to elevate privileges locally. If you need help checking exposure, call (864) 335-9223.
Windows Remote Desktop Client Information Disclosure vulnerability
Windows Remote Desktop Client Information Disclosure vulnerability (CVE-2026-58533) was added to Microsoft’s security update guidance. Use of uninitialized resource in Windows RDP allows an unauthorized attacker to disclose information over a network. If you need help checking exposure, call (864) 335-9223.
Windows Kernel Elevation of Privilege vulnerability
Windows Kernel Elevation of Privilege vulnerability (CVE-2026-58532) was added to Microsoft’s security update guidance. Integer overflow or wraparound in Windows Kernel allows an authorized attacker to elevate privileges locally. If you need help checking exposure, call (864) 335-9223.
Windows SMB Elevation of Privilege vulnerability
Windows SMB Elevation of Privilege vulnerability (CVE-2026-58531) was added to Microsoft’s security update guidance. Concurrent execution using shared resource with improper synchronization ('race condition') in Windows SMB allows an authorized attacker to elevate privileges over a network. If you need help checking exposure, call (864) 335-9223.
Windows Resilient File System (ReFS) Remote Code Execution vulnerability
Windows Resilient File System (ReFS) Remote Code Execution vulnerability (CVE-2026-58530) was added to Microsoft’s security update guidance. Heap-based buffer overflow in Windows Resilient File System (ReFS) allows an unauthorized attacker to execute code locally. If you need help checking exposure, call (864) 335-9223.
Windows Active Directory Federation Services (ADFS) Information Disclosure vulnerability
Windows Active Directory Federation Services (ADFS) Information Disclosure vulnerability (CVE-2026-58529) was added to Microsoft’s security update guidance. Out-of-bounds read in Active Directory Federation Services (AD FS) allows an authorized attacker to disclose information over a network. If you need help checking exposure, call (864) 335-9223.
Windows USB Audio Class Driver Information Disclosure vulnerability
Windows USB Audio Class Driver Information Disclosure vulnerability (CVE-2026-58528) was added to Microsoft’s security update guidance. Out-of-bounds read in Windows USB Audio Class driver (usbaudio.sys) allows an unauthorized attacker to disclose information with a physical attack. If you need help checking exposure, call (864) 335-9223.
Windows Runtime Elevation of Privilege vulnerability
Windows Runtime Elevation of Privilege vulnerability (CVE-2026-58527) was added to Microsoft’s security update guidance. Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Runtime allows an authorized attacker to elevate privileges locally. If you need help checking exposure, call (864) 335-9223.
Windows Storage Elevation of Privilege vulnerability
Windows Storage Elevation of Privilege vulnerability (CVE-2026-58526) was added to Microsoft’s security update guidance. Use after free in Windows Storage allows an authorized attacker to elevate privileges locally. If you need help checking exposure, call (864) 335-9223.
Azure CycleCloud Elevation of Privilege vulnerability
Azure CycleCloud Elevation of Privilege vulnerability (CVE-2026-58279) was added to Microsoft’s security update guidance. Missing authorization in Azure CycleCloud allows an authorized attacker to elevate privileges over a network. If you need help checking exposure, call (864) 335-9223.
Microsoft SharePoint Elevation of Privilege vulnerability
Microsoft SharePoint Elevation of Privilege vulnerability (CVE-2026-58277) was added to Microsoft’s security update guidance. Improper authorization in Microsoft Office SharePoint allows an authorized attacker to elevate privileges over a network. If you need help checking exposure, call (864) 335-9223.
Windows Remote Desktop Protocol (RDP) Information Disclosure vulnerability
Windows Remote Desktop Protocol (RDP) Information Disclosure vulnerability (CVE-2026-57982) was added to Microsoft’s security update guidance. Use of uninitialized resource in Windows RDP allows an authorized attacker to disclose information over a network. If you need help checking exposure, call (864) 335-9223.
Windows Remote Desktop Protocol (RDP) Information Disclosure vulnerability
Windows Remote Desktop Protocol (RDP) Information Disclosure vulnerability (CVE-2026-57979) was added to Microsoft’s security update guidance. Out-of-bounds read in Windows RDP allows an unauthorized attacker to disclose information over a network. If you need help checking exposure, call (864) 335-9223.
Windows Active Directory Domain Services Denial of Service vulnerability
Windows Active Directory Domain Services Denial of Service vulnerability (CVE-2026-57976) was added to Microsoft’s security update guidance. Information published. If you need help checking exposure, call (864) 335-9223.
Windows Subsystem for Linux (WSL2) Kernel Tampering vulnerability
Windows Subsystem for Linux (WSL2) Kernel Tampering vulnerability (CVE-2026-57973) was added to Microsoft’s security update guidance. Time-of-check time-of-use (toctou) race condition in Windows Subsystem for Linux allows an authorized attacker to perform tampering locally. If you need help checking exposure, call (864) 335-9223.
Azure CycleCloud Elevation of Privilege vulnerability
Azure CycleCloud Elevation of Privilege vulnerability (CVE-2026-57969) was added to Microsoft’s security update guidance. Missing authentication for critical function in Azure CycleCloud allows an authorized attacker to elevate privileges over a network. If you need help checking exposure, call (864) 335-9223.
Windows Subsystem for Linux (WSL2) Kernel Elevation of Privilege vulnerability
Windows Subsystem for Linux (WSL2) Kernel Elevation of Privilege vulnerability (CVE-2026-57968) was added to Microsoft’s security update guidance. Buffer over-read in Windows Subsystem for Linux allows an authorized attacker to elevate privileges locally. If you need help checking exposure, call (864) 335-9223.
Windows Admin Center Elevation of Privilege vulnerability
Windows Admin Center Elevation of Privilege vulnerability (CVE-2026-57107) was added to Microsoft’s security update guidance. Improper authentication in Windows Admin Center allows an authorized attacker to elevate privileges locally. If you need help checking exposure, call (864) 335-9223.
Visual Studio Code Security Feature Bypass vulnerability
Visual Studio Code Security Feature Bypass vulnerability (CVE-2026-57102) was added to Microsoft’s security update guidance. Inclusion of functionality from untrusted control sphere in Visual Studio Code allows an unauthorized attacker to bypass a security feature over a network. If you need help checking exposure, call (864) 335-9223.
Visual Studio Code Security Feature Bypass vulnerability
Visual Studio Code Security Feature Bypass vulnerability (CVE-2026-57101) was added to Microsoft’s security update guidance. Improper neutralization of input during web page generation ('cross-site scripting') in Visual Studio Code allows an unauthorized attacker to bypass a security feature locally. If you need help checking exposure, call (864) 335-9223.
Microsoft XML Security Feature Bypass vulnerability
Microsoft XML Security Feature Bypass vulnerability (CVE-2026-57097) was added to Microsoft’s security update guidance. Untrusted search path in Microsoft XML allows an unauthorized attacker to bypass a security feature with a physical attack. If you need help checking exposure, call (864) 335-9223.
Windows Routing and Remote Access Service (RRAS) Elevation of Privilege vulnerability
Windows Routing and Remote Access Service (RRAS) Elevation of Privilege vulnerability (CVE-2026-57096) was added to Microsoft’s security update guidance. Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to elevate privileges locally. If you need help checking exposure, call (864) 335-9223.
Microsoft Windows Media Foundation Remote Code Execution vulnerability
Microsoft Windows Media Foundation Remote Code Execution vulnerability (CVE-2026-57094) was added to Microsoft’s security update guidance. Heap-based buffer overflow in Microsoft Windows Media Foundation allows an unauthorized attacker to execute code over a network. If you need help checking exposure, call (864) 335-9223.
Windows Ancillary Function Driver for WinSock Elevation of Privilege vulnerability
Windows Ancillary Function Driver for WinSock Elevation of Privilege vulnerability (CVE-2026-57093) was added to Microsoft’s security update guidance. Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally. If you need help checking exposure, call (864) 335-9223.