Security Briefs
Page 30 of 90.
Alerts tracked
2649
Security flaws we track for Upstate SC businesses.
Known exploited
503
On CISA’s list of vulnerabilities attackers are actively using. Patch these first.
New exploited this month
43
Fresh additions to that CISA list since the first of the month.Feeds last synced Aug 21, 2026, 6:00 AM UTC.
Showing page 30 (24 alerts) of 2138.
Microsoft Excel Information Disclosure vulnerability
Microsoft Excel Information Disclosure vulnerability (CVE-2026-54988) was added to Microsoft’s security update guidance. Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information locally. If you need help checking exposure, call (864) 335-9223.
Windows Overlay Filter Elevation of Privilege vulnerability
Windows Overlay Filter Elevation of Privilege vulnerability (CVE-2026-54987) was added to Microsoft’s security update guidance. Heap-based buffer overflow in Windows Overlay Filter allows an authorized attacker to elevate privileges locally. If you need help checking exposure, call (864) 335-9223.
Windows Win32k Elevation of Privilege vulnerability
Windows Win32k Elevation of Privilege vulnerability (CVE-2026-54986) was added to Microsoft’s security update guidance. Heap-based buffer overflow in Windows Win32K allows an authorized attacker to elevate privileges locally. If you need help checking exposure, call (864) 335-9223.
Windows Active Directory Federation Services Denial of Service vulnerability
Windows Active Directory Federation Services Denial of Service vulnerability (CVE-2026-54983) was added to Microsoft’s security update guidance. Stack-based buffer overflow in Active Directory Federation Services (AD FS) allows an unauthorized attacker to deny service over a network. If you need help checking exposure, call (864) 335-9223.
Windows Reliable Multicast Transport Driver (RMCAST) Remote Code Execution vulnerability
Windows Reliable Multicast Transport Driver (RMCAST) Remote Code Execution vulnerability (CVE-2026-54982) was added to Microsoft’s security update guidance. Integer underflow (wrap or wraparound) in Reliable Multicast Transport Driver (RMCAST) allows an unauthorized attacker to execute code over an adjacent network. If you need help checking exposure, call (864) 335-9223.
Windows Kernel Elevation of Privilege vulnerability
Windows Kernel Elevation of Privilege vulnerability (CVE-2026-54132) was added to Microsoft’s security update guidance. Heap-based buffer overflow in Windows Kernel allows an unauthorized attacker to elevate privileges with a physical attack. If you need help checking exposure, call (864) 335-9223.
Microsoft Excel Remote Code Execution vulnerability
Microsoft Excel Remote Code Execution vulnerability (CVE-2026-54131) was added to Microsoft’s security update guidance. Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally. If you need help checking exposure, call (864) 335-9223.
Windows Hyper-V Elevation of Privilege vulnerability
Windows Hyper-V Elevation of Privilege vulnerability (CVE-2026-54129) was added to Microsoft’s security update guidance. Use after free in Windows Hyper-V allows an authorized attacker to elevate privileges locally. If you need help checking exposure, call (864) 335-9223.
Windows Hyper-V Elevation of Privilege vulnerability
Windows Hyper-V Elevation of Privilege vulnerability (CVE-2026-54127) was added to Microsoft’s security update guidance. Use after free in Windows Hyper-V allows an unauthorized attacker to elevate privileges locally. If you need help checking exposure, call (864) 335-9223.
Windows Remote Desktop Protocol (RDP) Information Disclosure vulnerability
Windows Remote Desktop Protocol (RDP) Information Disclosure vulnerability (CVE-2026-54126) was added to Microsoft’s security update guidance. Out-of-bounds read in Windows RDP allows an unauthorized attacker to disclose information over a network. If you need help checking exposure, call (864) 335-9223.
Windows Runtime Elevation of Privilege vulnerability
Windows Runtime Elevation of Privilege vulnerability (CVE-2026-54125) was added to Microsoft’s security update guidance. Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Runtime allows an authorized attacker to elevate privileges locally. If you need help checking exposure, call (864) 335-9223.
Windows Terminal Remote Code Execution vulnerability
Windows Terminal Remote Code Execution vulnerability (CVE-2026-54124) was added to Microsoft’s security update guidance. Integer overflow or wraparound in Windows Terminal allows an unauthorized attacker to execute code locally. If you need help checking exposure, call (864) 335-9223.
Windows GDI+ Remote Code Execution vulnerability
Windows GDI+ Remote Code Execution vulnerability (CVE-2026-54122) was added to Microsoft’s security update guidance. Heap-based buffer overflow in Windows GDI+ allows an unauthorized attacker to execute code locally. If you need help checking exposure, call (864) 335-9223.
Windows Active Directory Denial of Service vulnerability
Windows Active Directory Denial of Service vulnerability (CVE-2026-54119) was added to Microsoft’s security update guidance. Loop with unreachable exit condition ('infinite loop') in Windows Active Directory allows an unauthorized attacker to deny service over a network. If you need help checking exposure, call (864) 335-9223.
Microsoft SQL Server Information Disclosure vulnerability
Microsoft SQL Server Information Disclosure vulnerability (CVE-2026-54116) was added to Microsoft’s security update guidance. Access of resource using incompatible type ('type confusion') in SQL Server allows an authorized attacker to disclose information over a network. If you need help checking exposure, call (864) 335-9223.
Windows Message Queuing (MSMQ) Elevation of Privilege vulnerability
Windows Message Queuing (MSMQ) Elevation of Privilege vulnerability (CVE-2026-54115) was added to Microsoft’s security update guidance. Integer overflow or wraparound in Windows Active Directory allows an authorized attacker to elevate privileges locally. If you need help checking exposure, call (864) 335-9223.
Windows Win32k Elevation of Privilege vulnerability
Windows Win32k Elevation of Privilege vulnerability (CVE-2026-54114) was added to Microsoft’s security update guidance. Use after free in Windows Win32K allows an authorized attacker to elevate privileges locally. If you need help checking exposure, call (864) 335-9223.
Windows Win32k Elevation of Privilege vulnerability
Windows Win32k Elevation of Privilege vulnerability (CVE-2026-54112) was added to Microsoft’s security update guidance. Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Win32K allows an authorized attacker to elevate privileges locally. If you need help checking exposure, call (864) 335-9223.
Windows Resilient File System (ReFS) Remote Code Execution vulnerability
Windows Resilient File System (ReFS) Remote Code Execution vulnerability (CVE-2026-54109) was added to Microsoft’s security update guidance. Integer overflow or wraparound in Windows Resilient File System (ReFS) allows an authorized attacker to execute code locally. If you need help checking exposure, call (864) 335-9223.
Microsoft SharePoint Server Spoofing vulnerability
Microsoft SharePoint Server Spoofing vulnerability (CVE-2026-54108) was added to Microsoft’s security update guidance. External control of file name or path in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network. If you need help checking exposure, call (864) 335-9223.
Windows Win32k Elevation of Privilege vulnerability
Windows Win32k Elevation of Privilege vulnerability (CVE-2026-54107) was added to Microsoft’s security update guidance. Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Win32K allows an authorized attacker to elevate privileges locally. If you need help checking exposure, call (864) 335-9223.
Windows Active Directory Federation Services Denial of Service vulnerability
Windows Active Directory Federation Services Denial of Service vulnerability (CVE-2026-50695) was added to Microsoft’s security update guidance. Stack-based buffer overflow in Active Directory Federation Services allows an unauthorized attacker to deny service over a network. If you need help checking exposure, call (864) 335-9223.
Windows Secure Socket Tunneling Protocol (SSTP) Remote Code Execution vulnerability
Windows Secure Socket Tunneling Protocol (SSTP) Remote Code Execution vulnerability (CVE-2026-50694) was added to Microsoft’s security update guidance. Use after free in Windows Secure Socket Tunneling Protocol (SSTP) allows an unauthorized attacker to execute code over a network. If you need help checking exposure, call (864) 335-9223.
Windows SMB Information Disclosure vulnerability
Windows SMB Information Disclosure vulnerability (CVE-2026-50690) was added to Microsoft’s security update guidance. Use of uninitialized resource in Windows SMB allows an authorized attacker to disclose information locally. If you need help checking exposure, call (864) 335-9223.