Security Briefs
Page 41 of 141.
Alerts tracked
3939
Security flaws we track for Upstate SC businesses.
Known exploited
545
On CISA’s list of vulnerabilities attackers are actively using. Patch these first.
New exploited this month
2
Fresh additions to that CISA list since the first of the month.Feeds last synced Oct 6, 2026, 6:01 AM UTC.
Showing page 41 (24 alerts) of 3384.
Microsoft Windows Media Foundation Remote Code Execution vulnerability
Microsoft Windows Media Foundation Remote Code Execution vulnerability (CVE-2026-62706) was added to Microsoft’s security update guidance. <p>Out-of-bounds read in Microsoft Windows Media Foundation allows an unauthorized attacker to execute code over a network.</p> If you need help checking exposure, call (864) 335-9223.
Windows Push Notifications Elevation of Privilege vulnerability
Windows Push Notifications Elevation of Privilege vulnerability (CVE-2026-62697) was added to Microsoft’s security update guidance. Acknowledgement Updated If you need help checking exposure, call (864) 335-9223.
Windows Installer Elevation of Privilege vulnerability
Windows Installer Elevation of Privilege vulnerability (CVE-2026-62694) was added to Microsoft’s security update guidance. Updated an acknowledgement. This is an informational change only. If you need help checking exposure, call (864) 335-9223.
Microsoft Remote Desktop App for Windows Information Disclosure vulnerability
Microsoft Remote Desktop App for Windows Information Disclosure vulnerability (CVE-2026-57098) was added to Microsoft’s security update guidance. <p>Improper verification of cryptographic signature in Windows RDP Client allows an unauthorized attacker to disclose information over a network.</p> If you need help checking exposure, call (864) 335-9223.
Windows Print Spooler Information Disclosure vulnerability
Windows Print Spooler Information Disclosure vulnerability (CVE-2026-57085) was added to Microsoft’s security update guidance. Updated an acknowledgement. This is an informational change only. If you need help checking exposure, call (864) 335-9223.
Microsoft Trace Data Helper Elevation of Privilege vulnerability
Microsoft Trace Data Helper Elevation of Privilege vulnerability (CVE-2026-56198) was added to Microsoft’s security update guidance. <p>Out-of-bounds read in Microsoft Trace Data Helper allows an authorized attacker to elevate privileges locally.</p> If you need help checking exposure, call (864) 335-9223.
Windows Server Elevation of Privilege vulnerability
Windows Server Elevation of Privilege vulnerability (CVE-2026-56177) was added to Microsoft’s security update guidance. <p>Use after free in Windows Server allows an authorized attacker to elevate privileges locally.</p> If you need help checking exposure, call (864) 335-9223.
Windows VHD miniport driver Elevation of Privilege vulnerability
Windows VHD miniport driver Elevation of Privilege vulnerability (CVE-2026-56172) was added to Microsoft’s security update guidance. Updated an acknowledgement. This is an informational change only. If you need help checking exposure, call (864) 335-9223.
Microsoft Exchange Server Remote Code Execution vulnerability
Microsoft Exchange Server Remote Code Execution vulnerability (CVE-2026-55007) was added to Microsoft’s security update guidance. Double free in Microsoft Exchange Server allows an unauthorized attacker to execute code over a network. If you need help checking exposure, call (864) 335-9223.
Windows USB Audio Class Driver Information Disclosure vulnerability
Windows USB Audio Class Driver Information Disclosure vulnerability (CVE-2026-50453) was added to Microsoft’s security update guidance. Updated an acknowledgement. This is an informational change only. If you need help checking exposure, call (864) 335-9223.
Windows Ancillary Function Driver for WinSock Elevation of Privilege vulnerability
Windows Ancillary Function Driver for WinSock Elevation of Privilege vulnerability (CVE-2026-50349) was added to Microsoft’s security update guidance. Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally. If you need help checking exposure, call (864) 335-9223.
Microsoft SQL Server Remote Code Execution vulnerability
Microsoft SQL Server Remote Code Execution vulnerability (CVE-2026-47297) was added to Microsoft’s security update guidance. Deserialization of untrusted data in SQL Server allows an unauthorized attacker to execute code over a network. If you need help checking exposure, call (864) 335-9223.
Windows DWM Core Library Information Disclosure vulnerability
Windows DWM Core Library Information Disclosure vulnerability (CVE-2026-44814) was added to Microsoft’s security update guidance. Updated an acknowledgement. This is an informational change only. If you need help checking exposure, call (864) 335-9223.
Windows Kerberos Denial of Service vulnerability
Windows Kerberos Denial of Service vulnerability (CVE-2026-42914) was added to Microsoft’s security update guidance. Updated an acknowledgement. This is an informational change only. If you need help checking exposure, call (864) 335-9223.
Windows Remote Desktop Client Information Disclosure vulnerability
Windows Remote Desktop Client Information Disclosure vulnerability (CVE-2026-50376) was added to Microsoft’s security update guidance. Acknowledgment updated If you need help checking exposure, call (864) 335-9223.
Windows Ancillary Function Driver for WinSock Elevation of Privilege vulnerability
Windows Ancillary Function Driver for WinSock Elevation of Privilege vulnerability (CVE-2026-50462) was added to Microsoft’s security update guidance. Acknowledgement Updated If you need help checking exposure, call (864) 335-9223.
Windows NTFS Remote Code Execution vulnerability
Windows NTFS Remote Code Execution vulnerability (CVE-2026-50448) was added to Microsoft’s security update guidance. Updated an acknowledgement. This is an informational change only. If you need help checking exposure, call (864) 335-9223.
Windows OLE Elevation of Privilege vulnerability
Windows OLE Elevation of Privilege vulnerability (CVE-2026-50344) was added to Microsoft’s security update guidance. Updated an acknowledgement. This is an informational change only. If you need help checking exposure, call (864) 335-9223.
Windows TCP/IP Information Disclosure vulnerability
Windows TCP/IP Information Disclosure vulnerability (CVE-2026-49177) was added to Microsoft’s security update guidance. Updated an acknowledgement. This is an informational change only. If you need help checking exposure, call (864) 335-9223.
Windows Server Update Service (WSUS) Elevation of Privilege vulnerability
Windows Server Update Service (WSUS) Elevation of Privilege vulnerability (CVE-2026-26174) was added to Microsoft’s security update guidance. Updated an acknowledgement. This is an informational change only. If you need help checking exposure, call (864) 335-9223.
Information leak in Animation in Microsoft Edge vulnerability
Information leak in Animation in Microsoft Edge vulnerability (CVE-2026-79293) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2026) for more information. If you need help checking exposure, call (864) 335-9223.
Integer overflow in Chromecast in Microsoft Edge vulnerability
Integer overflow in Chromecast in Microsoft Edge vulnerability (CVE-2026-79292) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2026) for more information. If you need help checking exposure, call (864) 335-9223.
Information leak in CSS in Microsoft Edge vulnerability
Information leak in CSS in Microsoft Edge vulnerability (CVE-2026-79291) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2026) for more information. If you need help checking exposure, call (864) 335-9223.
Use after free in Aura in Microsoft Edge vulnerability
Use after free in Aura in Microsoft Edge vulnerability (CVE-2026-79290) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2026) for more information. If you need help checking exposure, call (864) 335-9223.