Skip to main content

Security Briefs

Page 73 of 90.

Alerts tracked

2651

Security flaws we track for Upstate SC businesses.

Known exploited

504

On CISA’s list of vulnerabilities attackers are actively using. Patch these first.

New exploited this month

60

Fresh additions to that CISA list since the first of the month.Feeds last synced Aug 23, 2026, 6:00 AM UTC.

Showing page 73 (24 alerts) of 2139.

Microsoft MSRC

CVE-2026-45595

Windows Mark of the Web Security Feature Bypass vulnerability

Windows Mark of the Web Security Feature Bypass vulnerability (CVE-2026-45595) was added to Microsoft’s security update guidance. Protection mechanism failure in Windows Mark of the Web (MOTW) allows an unauthorized attacker to bypass a security feature over a network. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-45594

Windows Application Identity (AppID) Information Disclosure vulnerability

Windows Application Identity (AppID) Information Disclosure vulnerability (CVE-2026-45594) was added to Microsoft’s security update guidance. Exposure of sensitive information to an unauthorized actor in Windows Application Identity (AppID) Subsystem allows an authorized attacker to disclose information locally. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-45586

Windows Collaborative Translation Framework (CTFMON) Elevation of Privilege vulnerability

Windows Collaborative Translation Framework (CTFMON) Elevation of Privilege vulnerability (CVE-2026-45586) was added to Microsoft’s security update guidance. Improper link resolution before file access ('link following') in Windows Collaborative Translation Framework allows an authorized attacker to elevate privileges locally. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-45585

Windows BitLocker Security Feature Bypass vulnerability

Windows BitLocker Security Feature Bypass vulnerability (CVE-2026-45585) was added to Microsoft’s security update guidance. Updated product information in the Software Update table. This is an informational change only. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-45583

Microsoft Exchange Server Remote Code Execution vulnerability

Microsoft Exchange Server Remote Code Execution vulnerability (CVE-2026-45583) was added to Microsoft’s security update guidance. Improper control of generation of code ('code injection') in Microsoft Exchange Server allows an unauthorized attacker to execute code over a network. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-45503

Microsoft Exchange Server Information Disclosure vulnerability

Microsoft Exchange Server Information Disclosure vulnerability (CVE-2026-45503) was added to Microsoft’s security update guidance. Server-side request forgery (ssrf) in Microsoft Exchange Server allows an authorized attacker to disclose information over a network. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-45502

Microsoft Exchange Server Information Disclosure vulnerability

Microsoft Exchange Server Information Disclosure vulnerability (CVE-2026-45502) was added to Microsoft’s security update guidance. Server-side request forgery (ssrf) in Microsoft Exchange Server allows an authorized attacker to disclose information over a network. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-45501

Microsoft Exchange Server Spoofing vulnerability

Microsoft Exchange Server Spoofing vulnerability (CVE-2026-45501) was added to Microsoft’s security update guidance. Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Exchange Server allows an unauthorized attacker to perform spoofing over a network. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-45500

Microsoft Exchange Server Spoofing vulnerability

Microsoft Exchange Server Spoofing vulnerability (CVE-2026-45500) was added to Microsoft’s security update guidance. Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Exchange Server allows an unauthorized attacker to perform spoofing over a network. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-45487

Windows Program Compatibility Assistant Service Elevation of Privilege vulnerability

Windows Program Compatibility Assistant Service Elevation of Privilege vulnerability (CVE-2026-45487) was added to Microsoft’s security update guidance. Time-of-check time-of-use (TOCTOU) race condition in Program Compatibility Assistant Service allows an authorized attacker to elevate privileges locally. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-45484

Microsoft SharePoint Elevation of Privilege vulnerability

Microsoft SharePoint Elevation of Privilege vulnerability (CVE-2026-45484) was added to Microsoft’s security update guidance. Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to elevate privileges over a network. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-45483

Microsoft Office Project Server Spoofing vulnerability

Microsoft Office Project Server Spoofing vulnerability (CVE-2026-45483) was added to Microsoft’s security update guidance. Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office Project Server allows an authorized attacker to perform spoofing over a network. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-45481

Microsoft SharePoint Server Spoofing vulnerability

Microsoft SharePoint Server Spoofing vulnerability (CVE-2026-45481) was added to Microsoft’s security update guidance. Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-45479

Microsoft SharePoint Server Spoofing vulnerability

Microsoft SharePoint Server Spoofing vulnerability (CVE-2026-45479) was added to Microsoft’s security update guidance. Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-45476

Microsoft Azure Network Adapter Elevation of Privilege vulnerability

Microsoft Azure Network Adapter Elevation of Privilege vulnerability (CVE-2026-45476) was added to Microsoft’s security update guidance. Use after free in Linux MANA Driver allows an authorized attacker to elevate privileges locally. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-45468

Microsoft SharePoint Server Spoofing vulnerability

Microsoft SharePoint Server Spoofing vulnerability (CVE-2026-45468) was added to Microsoft’s security update guidance. Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-45467

Microsoft SharePoint Server Spoofing vulnerability

Microsoft SharePoint Server Spoofing vulnerability (CVE-2026-45467) was added to Microsoft’s security update guidance. Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-45465

Microsoft SharePoint Server Spoofing vulnerability

Microsoft SharePoint Server Spoofing vulnerability (CVE-2026-45465) was added to Microsoft’s security update guidance. Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-45464

Microsoft SharePoint Server Spoofing vulnerability

Microsoft SharePoint Server Spoofing vulnerability (CVE-2026-45464) was added to Microsoft’s security update guidance. Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-45462

Microsoft SharePoint Server Spoofing vulnerability

Microsoft SharePoint Server Spoofing vulnerability (CVE-2026-45462) was added to Microsoft’s security update guidance. Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-45454

Microsoft SharePoint Remote Code Execution vulnerability

Microsoft SharePoint Remote Code Execution vulnerability (CVE-2026-45454) was added to Microsoft’s security update guidance. Improper limitation of a pathname to a restricted directory ('path traversal') in Microsoft Office SharePoint allows an authorized attacker to execute code over a network. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-45453

Microsoft SharePoint Server Spoofing vulnerability

Microsoft SharePoint Server Spoofing vulnerability (CVE-2026-45453) was added to Microsoft’s security update guidance. Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-44813

Windows DWM Core Library Elevation of Privilege vulnerability

Windows DWM Core Library Elevation of Privilege vulnerability (CVE-2026-44813) was added to Microsoft’s security update guidance. Use after free in Windows DWM Core Library allows an authorized attacker to elevate privileges locally. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-44811

Windows DWM Core Library Elevation of Privilege vulnerability

Windows DWM Core Library Elevation of Privilege vulnerability (CVE-2026-44811) was added to Microsoft’s security update guidance. Use after free in Windows DWM Core Library allows an authorized attacker to elevate privileges locally. If you need help checking exposure, call (864) 335-9223.