Skip to main content

Security Briefs

Page 82 of 90.

Alerts tracked

2651

Security flaws we track for Upstate SC businesses.

Known exploited

504

On CISA’s list of vulnerabilities attackers are actively using. Patch these first.

New exploited this month

60

Fresh additions to that CISA list since the first of the month.Feeds last synced Aug 23, 2026, 6:00 AM UTC.

Showing page 82 (24 alerts) of 2139.

Microsoft MSRC

CVE-2026-41615

Microsoft Authenticator Information Disclosure vulnerability

Microsoft Authenticator Information Disclosure vulnerability (CVE-2026-41615) was added to Microsoft’s security update guidance. Exposure of sensitive information to an unauthorized actor in Microsoft Authenticator allows an unauthorized attacker to disclose information over a network. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-42833

Microsoft Dynamics 365 On-Premises Remote Code Execution vulnerability

Microsoft Dynamics 365 On-Premises Remote Code Execution vulnerability (CVE-2026-42833) was added to Microsoft’s security update guidance. Updated the fixed version number. This is an informational change only. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.

Microsoft MSRC

CVE-2026-41636

Apache Thrift: Node.js skip() recursion vulnerability

Apache Thrift: Node.js skip() recursion vulnerability (CVE-2026-41636) was added to Microsoft’s security update guidance. Information published. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.

Microsoft MSRC

CVE-2026-41605

Apache Thrift: Swift Compact Protocol integer overflow vulnerability

Apache Thrift: Swift Compact Protocol integer overflow vulnerability (CVE-2026-41605) was added to Microsoft’s security update guidance. Information published. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.

Microsoft MSRC

CVE-2026-41603

Apache Thrift: Java TSSLTransportFactory hostname verification vulnerability

Apache Thrift: Java TSSLTransportFactory hostname verification vulnerability (CVE-2026-41603) was added to Microsoft’s security update guidance. Information published. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.

Microsoft MSRC

CVE-2026-41602

Apache Thrift: Go TFramedTransport uint32 overflow vulnerability

Apache Thrift: Go TFramedTransport uint32 overflow vulnerability (CVE-2026-41602) was added to Microsoft’s security update guidance. Information published. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.

Microsoft MSRC

CVE-2025-48431

Apache Thrift: Specially crafted input can crash a c_glib Thrift server with invalid pointer error. vulnerability

Apache Thrift: Specially crafted input can crash a c_glib Thrift server with invalid pointer error. vulnerability (CVE-2025-48431) was added to Microsoft’s security update guidance. Information published. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.

Microsoft MSRC

CVE-2026-42896

Windows DWM Core Library Elevation of Privilege vulnerability

Windows DWM Core Library Elevation of Privilege vulnerability (CVE-2026-42896) was added to Microsoft’s security update guidance. Integer overflow or wraparound in Windows DWM Core Library allows an authorized attacker to elevate privileges locally. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.

Microsoft MSRC

CVE-2026-42893

Microsoft Outlook for iOS Tampering vulnerability

Microsoft Outlook for iOS Tampering vulnerability (CVE-2026-42893) was added to Microsoft’s security update guidance. Improper neutralization of special elements used in a command ('command injection') in M365 Copilot allows an unauthorized attacker to perform tampering over a network. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.

Microsoft MSRC

CVE-2026-42832

Microsoft Office Spoofing vulnerability

Microsoft Office Spoofing vulnerability (CVE-2026-42832) was added to Microsoft’s security update guidance. Improper access control in Microsoft Office allows an unauthorized attacker to perform spoofing locally. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.

Microsoft MSRC

CVE-2026-42831

Microsoft Office Remote Code Execution vulnerability

Microsoft Office Remote Code Execution vulnerability (CVE-2026-42831) was added to Microsoft’s security update guidance. Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.

Microsoft MSRC

CVE-2026-42830

Azure Monitor Agent Metrics Extension Elevation of Privilege vulnerability

Azure Monitor Agent Metrics Extension Elevation of Privilege vulnerability (CVE-2026-42830) was added to Microsoft’s security update guidance. Untrusted search path in Azure Monitor Agent allows an authorized attacker to elevate privileges locally. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.

Microsoft MSRC

CVE-2026-42823

Azure Logic Apps Elevation of Privilege vulnerability

Azure Logic Apps Elevation of Privilege vulnerability (CVE-2026-42823) was added to Microsoft’s security update guidance. Improper access control in Azure Logic Apps allows an authorized attacker to elevate privileges over a network. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.

Microsoft MSRC

CVE-2026-41613

Visual Studio Code Elevation of Privilege vulnerability

Visual Studio Code Elevation of Privilege vulnerability (CVE-2026-41613) was added to Microsoft’s security update guidance. Session fixation in Visual Studio Code allows an unauthorized attacker to elevate privileges over a network. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.

Microsoft MSRC

CVE-2026-41612

Visual Studio Code Information Disclosure vulnerability

Visual Studio Code Information Disclosure vulnerability (CVE-2026-41612) was added to Microsoft’s security update guidance. Relative path traversal in Visual Studio Code allows an unauthorized attacker to disclose information locally. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.

Microsoft MSRC

CVE-2026-41611

Visual Studio Code Remote Code Execution vulnerability

Visual Studio Code Remote Code Execution vulnerability (CVE-2026-41611) was added to Microsoft’s security update guidance. Improper neutralization of script-related html tags in a web page (basic xss) in Visual Studio Code allows an unauthorized attacker to execute code locally. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.

Microsoft MSRC

CVE-2026-41610

Visual Studio Code Security Feature Bypass vulnerability

Visual Studio Code Security Feature Bypass vulnerability (CVE-2026-41610) was added to Microsoft’s security update guidance. Improper neutralization of input during web page generation ('cross-site scripting') in Visual Studio Code allows an unauthorized attacker to bypass a security feature locally. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.

Microsoft MSRC

CVE-2026-41103

Microsoft SSO Plugin for Jira & Confluence Elevation of Privilege vulnerability

Microsoft SSO Plugin for Jira & Confluence Elevation of Privilege vulnerability (CVE-2026-41103) was added to Microsoft’s security update guidance. Incorrect implementation of authentication algorithm in Microsoft SSO Plugin for Jira & Confluence allows an unauthorized attacker to elevate privileges over a network. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.

Microsoft MSRC

CVE-2026-41102

Microsoft PowerPoint for Android Spoofing vulnerability

Microsoft PowerPoint for Android Spoofing vulnerability (CVE-2026-41102) was added to Microsoft’s security update guidance. Improper access control in Microsoft Office PowerPoint allows an authorized attacker to perform spoofing locally. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.

Microsoft MSRC

CVE-2026-41101

Microsoft Word for Android Spoofing vulnerability

Microsoft Word for Android Spoofing vulnerability (CVE-2026-41101) was added to Microsoft’s security update guidance. Improper access control in Microsoft Office Word allows an authorized attacker to perform spoofing locally. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.

Microsoft MSRC

CVE-2026-41096

Windows DNS Client Remote Code Execution vulnerability

Windows DNS Client Remote Code Execution vulnerability (CVE-2026-41096) was added to Microsoft’s security update guidance. Heap-based buffer overflow in Microsoft Windows DNS allows an unauthorized attacker to execute code over a network. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.

Microsoft MSRC

CVE-2026-41094

Microsoft Data Formulator Remote Code Execution vulnerability

Microsoft Data Formulator Remote Code Execution vulnerability (CVE-2026-41094) was added to Microsoft’s security update guidance. Improper control of generation of code ('code injection') in Microsoft Data Formulator allows an unauthorized attacker to execute code over a network. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.

Microsoft MSRC

CVE-2026-41089

Windows Netlogon Remote Code Execution vulnerability

Windows Netlogon Remote Code Execution vulnerability (CVE-2026-41089) was added to Microsoft’s security update guidance. Stack-based buffer overflow in Windows Netlogon allows an unauthorized attacker to execute code over a network. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.

Microsoft MSRC

CVE-2026-40421

Microsoft Word Information Disclosure vulnerability

Microsoft Word Information Disclosure vulnerability (CVE-2026-40421) was added to Microsoft’s security update guidance. External control of file name or path in Microsoft Office Word allows an unauthorized attacker to disclose information over a network. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.