Skip to main content

Security Briefs

Page 67 of 111.

Alerts tracked

2651

Security flaws we track for Upstate SC businesses.

Known exploited

504

On CISA’s list of vulnerabilities attackers are actively using. Patch these first.

New exploited this month

60

Fresh additions to that CISA list since the first of the month.Feeds last synced Aug 22, 2026, 6:00 AM UTC.

Showing page 67 (24 alerts) of 2651.

Microsoft MSRC

CVE-2026-12451

Use after free in DigitalCredentials in Microsoft Edge vulnerability

Use after free in DigitalCredentials in Microsoft Edge vulnerability (CVE-2026-12451) was added to Microsoft’s security update guidance. Corrected CVE title. This is an informational change only. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-12449

Use after free in Chromoting in Microsoft Edge vulnerability

Use after free in Chromoting in Microsoft Edge vulnerability (CVE-2026-12449) was added to Microsoft’s security update guidance. Corrected CVE title. This is an informational change only. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-12447

Heap buffer overflow in WebRTC in Microsoft Edge vulnerability

Heap buffer overflow in WebRTC in Microsoft Edge vulnerability (CVE-2026-12447) was added to Microsoft’s security update guidance. Corrected CVE title. This is an informational change only. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-12446

Insufficient data validation in Passwords in Microsoft Edge vulnerability

Insufficient data validation in Passwords in Microsoft Edge vulnerability (CVE-2026-12446) was added to Microsoft’s security update guidance. Corrected CVE title. This is an informational change only. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-12445

Use after free in Extensions in Microsoft Edge vulnerability

Use after free in Extensions in Microsoft Edge vulnerability (CVE-2026-12445) was added to Microsoft’s security update guidance. Corrected CVE title. This is an informational change only. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-12444

Out of bounds read in Chromoting in Microsoft Edge vulnerability

Out of bounds read in Chromoting in Microsoft Edge vulnerability (CVE-2026-12444) was added to Microsoft’s security update guidance. Corrected CVE title. This is an informational change only. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-12443

Use after free in Web Authentication in Microsoft Edge vulnerability

Use after free in Web Authentication in Microsoft Edge vulnerability (CVE-2026-12443) was added to Microsoft’s security update guidance. Corrected CVE title. This is an informational change only. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-12441

Use after free in File Input in Microsoft Edge vulnerability

Use after free in File Input in Microsoft Edge vulnerability (CVE-2026-12441) was added to Microsoft’s security update guidance. Corrected CVE title. This is an informational change only. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-12440

Use after free in DigitalCredentials in Microsoft Edge vulnerability

Use after free in DigitalCredentials in Microsoft Edge vulnerability (CVE-2026-12440) was added to Microsoft’s security update guidance. Corrected CVE title. This is an informational change only. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-12439

Use after free in Digital Credentials in Microsoft Edge vulnerability

Use after free in Digital Credentials in Microsoft Edge vulnerability (CVE-2026-12439) was added to Microsoft’s security update guidance. Corrected CVE title. This is an informational change only. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-12437

Use after free in WebShare in Microsoft Edge vulnerability

Use after free in WebShare in Microsoft Edge vulnerability (CVE-2026-12437) was added to Microsoft’s security update guidance. Corrected CVE title. This is an informational change only. If you need help checking exposure, call (864) 335-9223.

Industry news

Cyber Criminals Redirecting Users to Fraudulent Websites with Malicious Traffic Distribution Systems

Cyber Criminals Redirecting Users to Fraudulent Websites with Malicious Traffic Distribution Systems — FBI IC3 industry advisory relevant to cyber risk. PremierePC monitors federal alerts for Upstate SC businesses. Read the source link for full guidance or open a ticket if you want help assessing impact.

  • Vendor:FBI IC3
Microsoft MSRC

CVE-2026-48584

Microsoft Azure Synapse Elevation of Privilege vulnerability

Microsoft Azure Synapse Elevation of Privilege vulnerability (CVE-2026-48584) was added to Microsoft’s security update guidance. Execution with unnecessary privileges in Azure Synapse allows an authorized attacker to elevate privileges over a network. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-48582

Microsoft Exchange Online Elevation of Privilege vulnerability

Microsoft Exchange Online Elevation of Privilege vulnerability (CVE-2026-48582) was added to Microsoft’s security update guidance. Missing authorization in Microsoft Exchange Online allows an authorized attacker to elevate privileges over a network. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-47647

Dynamics 365 Elevation of Privilege vulnerability

Dynamics 365 Elevation of Privilege vulnerability (CVE-2026-47647) was added to Microsoft’s security update guidance. Improper access control in Microsoft Dynamics 365 allows an authorized attacker to elevate privileges over a network. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-47646

Dynamics 365 Customer Voice Spoofing vulnerability

Dynamics 365 Customer Voice Spoofing vulnerability (CVE-2026-47646) was added to Microsoft’s security update guidance. Improper neutralization of input during web page generation ('cross-site scripting') in Dynamics 365 Customer Voice allows an unauthorized attacker to perform spoofing over a network. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-47645

Microsoft 365 Copilot's Business Chat Elevation of Privilege vulnerability

Microsoft 365 Copilot's Business Chat Elevation of Privilege vulnerability (CVE-2026-47645) was added to Microsoft’s security update guidance. Url redirection to untrusted site ('open redirect') in Microsoft 365 Copilot's Business Chat allows an unauthorized attacker to elevate privileges over a network. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-47633

Microsoft Cost Management Information Disclosure vulnerability

Microsoft Cost Management Information Disclosure vulnerability (CVE-2026-47633) was added to Microsoft’s security update guidance. Exposure of sensitive information to an unauthorized actor in Cost Management Interactive Experiences allows an unauthorized attacker to disclose information over a network. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-45480

Azure Active Directory Elevation of Privilege vulnerability

Azure Active Directory Elevation of Privilege vulnerability (CVE-2026-45480) was added to Microsoft’s security update guidance. Improper authentication in Azure Active Directory allows an unauthorized attacker to elevate privileges over a network. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-42895

Microsoft Copilot Tampering vulnerability

Microsoft Copilot Tampering vulnerability (CVE-2026-42895) was added to Microsoft’s security update guidance. Improper neutralization of special elements used in a command ('command injection') in Microsoft Copilot allows an unauthorized attacker to perform tampering over a network. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-32174

Azure Bot Service Elevation of Privilege vulnerability

Azure Bot Service Elevation of Privilege vulnerability (CVE-2026-32174) was added to Microsoft’s security update guidance. Improper authentication in Azure Bot Service allows an authorized attacker to elevate privileges over a network. If you need help checking exposure, call (864) 335-9223.

Actively exploited (KEV)

CVE-2026-20253

Splunk Enterprise Missing Authentication for Critical Function Vulnerability

Splunk Enterprise is listed in CISA's Known Exploited Vulnerabilities catalog (CVE-2026-20253). Splunk Enterprise contains a missing authentication for critical function vulnerability which could allow an unauthenticated user to create or truncate arbitrary files through a PostgreSQL sidecar service endpoint. CISA remediation due date: 2026-06-21. PremierePC tracks KEV alerts for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.

Microsoft MSRC

CVE-2026-47636

Microsoft SharePoint Server Spoofing vulnerability

Microsoft SharePoint Server Spoofing vulnerability (CVE-2026-47636) was added to Microsoft’s security update guidance. Acknowledgement added. This is an informational change only. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-42828

Windows Projected File System Elevation of Privilege vulnerability

Windows Projected File System Elevation of Privilege vulnerability (CVE-2026-42828) was added to Microsoft’s security update guidance. Acknowledgement added. This is an informational change only. If you need help checking exposure, call (864) 335-9223.