Security Briefs
Page 82 of 90.
Alerts tracked
2651
Security flaws we track for Upstate SC businesses.
Known exploited
504
On CISA’s list of vulnerabilities attackers are actively using. Patch these first.
New exploited this month
60
Fresh additions to that CISA list since the first of the month.Feeds last synced Aug 23, 2026, 6:00 AM UTC.
Showing page 82 (24 alerts) of 2139.
Microsoft Authenticator Information Disclosure vulnerability
Microsoft Authenticator Information Disclosure vulnerability (CVE-2026-41615) was added to Microsoft’s security update guidance. Exposure of sensitive information to an unauthorized actor in Microsoft Authenticator allows an unauthorized attacker to disclose information over a network. If you need help checking exposure, call (864) 335-9223.
Microsoft Dynamics 365 On-Premises Remote Code Execution vulnerability
Microsoft Dynamics 365 On-Premises Remote Code Execution vulnerability (CVE-2026-42833) was added to Microsoft’s security update guidance. Updated the fixed version number. This is an informational change only. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.
Apache Thrift: Node.js skip() recursion vulnerability
Apache Thrift: Node.js skip() recursion vulnerability (CVE-2026-41636) was added to Microsoft’s security update guidance. Information published. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.
Apache Thrift: Swift Compact Protocol integer overflow vulnerability
Apache Thrift: Swift Compact Protocol integer overflow vulnerability (CVE-2026-41605) was added to Microsoft’s security update guidance. Information published. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.
Apache Thrift: Java TSSLTransportFactory hostname verification vulnerability
Apache Thrift: Java TSSLTransportFactory hostname verification vulnerability (CVE-2026-41603) was added to Microsoft’s security update guidance. Information published. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.
Apache Thrift: Go TFramedTransport uint32 overflow vulnerability
Apache Thrift: Go TFramedTransport uint32 overflow vulnerability (CVE-2026-41602) was added to Microsoft’s security update guidance. Information published. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.
Apache Thrift: Specially crafted input can crash a c_glib Thrift server with invalid pointer error. vulnerability
Apache Thrift: Specially crafted input can crash a c_glib Thrift server with invalid pointer error. vulnerability (CVE-2025-48431) was added to Microsoft’s security update guidance. Information published. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.
Windows DWM Core Library Elevation of Privilege vulnerability
Windows DWM Core Library Elevation of Privilege vulnerability (CVE-2026-42896) was added to Microsoft’s security update guidance. Integer overflow or wraparound in Windows DWM Core Library allows an authorized attacker to elevate privileges locally. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.
Microsoft Outlook for iOS Tampering vulnerability
Microsoft Outlook for iOS Tampering vulnerability (CVE-2026-42893) was added to Microsoft’s security update guidance. Improper neutralization of special elements used in a command ('command injection') in M365 Copilot allows an unauthorized attacker to perform tampering over a network. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.
Microsoft Office Spoofing vulnerability
Microsoft Office Spoofing vulnerability (CVE-2026-42832) was added to Microsoft’s security update guidance. Improper access control in Microsoft Office allows an unauthorized attacker to perform spoofing locally. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.
Microsoft Office Remote Code Execution vulnerability
Microsoft Office Remote Code Execution vulnerability (CVE-2026-42831) was added to Microsoft’s security update guidance. Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.
Azure Monitor Agent Metrics Extension Elevation of Privilege vulnerability
Azure Monitor Agent Metrics Extension Elevation of Privilege vulnerability (CVE-2026-42830) was added to Microsoft’s security update guidance. Untrusted search path in Azure Monitor Agent allows an authorized attacker to elevate privileges locally. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.
Azure Logic Apps Elevation of Privilege vulnerability
Azure Logic Apps Elevation of Privilege vulnerability (CVE-2026-42823) was added to Microsoft’s security update guidance. Improper access control in Azure Logic Apps allows an authorized attacker to elevate privileges over a network. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.
Visual Studio Code Elevation of Privilege vulnerability
Visual Studio Code Elevation of Privilege vulnerability (CVE-2026-41613) was added to Microsoft’s security update guidance. Session fixation in Visual Studio Code allows an unauthorized attacker to elevate privileges over a network. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.
Visual Studio Code Information Disclosure vulnerability
Visual Studio Code Information Disclosure vulnerability (CVE-2026-41612) was added to Microsoft’s security update guidance. Relative path traversal in Visual Studio Code allows an unauthorized attacker to disclose information locally. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.
Visual Studio Code Remote Code Execution vulnerability
Visual Studio Code Remote Code Execution vulnerability (CVE-2026-41611) was added to Microsoft’s security update guidance. Improper neutralization of script-related html tags in a web page (basic xss) in Visual Studio Code allows an unauthorized attacker to execute code locally. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.
Visual Studio Code Security Feature Bypass vulnerability
Visual Studio Code Security Feature Bypass vulnerability (CVE-2026-41610) was added to Microsoft’s security update guidance. Improper neutralization of input during web page generation ('cross-site scripting') in Visual Studio Code allows an unauthorized attacker to bypass a security feature locally. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.
Microsoft SSO Plugin for Jira & Confluence Elevation of Privilege vulnerability
Microsoft SSO Plugin for Jira & Confluence Elevation of Privilege vulnerability (CVE-2026-41103) was added to Microsoft’s security update guidance. Incorrect implementation of authentication algorithm in Microsoft SSO Plugin for Jira & Confluence allows an unauthorized attacker to elevate privileges over a network. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.
Microsoft PowerPoint for Android Spoofing vulnerability
Microsoft PowerPoint for Android Spoofing vulnerability (CVE-2026-41102) was added to Microsoft’s security update guidance. Improper access control in Microsoft Office PowerPoint allows an authorized attacker to perform spoofing locally. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.
Microsoft Word for Android Spoofing vulnerability
Microsoft Word for Android Spoofing vulnerability (CVE-2026-41101) was added to Microsoft’s security update guidance. Improper access control in Microsoft Office Word allows an authorized attacker to perform spoofing locally. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.
Windows DNS Client Remote Code Execution vulnerability
Windows DNS Client Remote Code Execution vulnerability (CVE-2026-41096) was added to Microsoft’s security update guidance. Heap-based buffer overflow in Microsoft Windows DNS allows an unauthorized attacker to execute code over a network. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.
Microsoft Data Formulator Remote Code Execution vulnerability
Microsoft Data Formulator Remote Code Execution vulnerability (CVE-2026-41094) was added to Microsoft’s security update guidance. Improper control of generation of code ('code injection') in Microsoft Data Formulator allows an unauthorized attacker to execute code over a network. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.
Windows Netlogon Remote Code Execution vulnerability
Windows Netlogon Remote Code Execution vulnerability (CVE-2026-41089) was added to Microsoft’s security update guidance. Stack-based buffer overflow in Windows Netlogon allows an unauthorized attacker to execute code over a network. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.
Microsoft Word Information Disclosure vulnerability
Microsoft Word Information Disclosure vulnerability (CVE-2026-40421) was added to Microsoft’s security update guidance. External control of file name or path in Microsoft Office Word allows an unauthorized attacker to disclose information over a network. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.