Security Briefs
Page 90 of 111.
Alerts tracked
2651
Security flaws we track for Upstate SC businesses.
Known exploited
504
On CISA’s list of vulnerabilities attackers are actively using. Patch these first.
New exploited this month
60
Fresh additions to that CISA list since the first of the month.Feeds last synced Aug 23, 2026, 6:00 AM UTC.
Showing page 90 (24 alerts) of 2651.
net: ioam6: fix OOB and missing lock
net net: ioam6: fix OOB and missing lock (CVE-2026-43083) was added to Microsoft’s security update guidance. Information published. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.
Azure DevOps Information Disclosure vulnerability
Azure DevOps Information Disclosure vulnerability (CVE-2026-42826) was added to Microsoft’s security update guidance. Exposure of sensitive information to an unauthorized actor in Azure DevOps allows an unauthorized attacker to disclose information over a network. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.
Azure Monitor Action Group Notification System Elevation of Privilege vulnerability
Azure Monitor Action Group Notification System Elevation of Privilege vulnerability (CVE-2026-41105) was added to Microsoft’s security update guidance. Server-side request forgery (ssrf) in Azure Notification Service allows an authorized attacker to elevate privileges over a network. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.
Azure AI Foundry Elevation of Privilege vulnerability
Azure AI Foundry Elevation of Privilege vulnerability (CVE-2026-35435) was added to Microsoft’s security update guidance. Improper access control in Azure AI Foundry M365 published agents allows an unauthorized attacker to elevate privileges over a network. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.
Azure Cloud Shell Spoofing vulnerability
Azure Cloud Shell Spoofing vulnerability (CVE-2026-35428) was added to Microsoft’s security update guidance. Improper neutralization of special elements used in a command ('command injection') in Azure Cloud Shell allows an unauthorized attacker to perform spoofing over a network. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.
Microsoft Partner Center Spoofing vulnerability
Microsoft Partner Center Spoofing vulnerability (CVE-2026-34327) was added to Microsoft’s security update guidance. Externally controlled reference to a resource in another sphere in Microsoft Partner Center allows an unauthorized attacker to perform spoofing over a network. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.
Apache HTTP Server: mod_proxy_ajp: Heap Over-Read and memory disclosure in ajp_parse_data()
Apache Apache HTTP Server: mod_proxy_ajp: Heap Over-Read and memory disclosure in ajp_parse_data() (CVE-2026-34059) was added to Microsoft’s security update guidance. Information published. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.
Apache Apache HTTP Server: mod_proxy_ajp: Heap Buffer Over-Read Due to Missing Null-Termination Check (ajp_msg_get_string) vulnerability
Apache Apache HTTP Server: mod_proxy_ajp: Heap Buffer Over-Read Due to Missing Null-Termination Check (ajp_msg_get_string) vulnerability (CVE-2026-34032) was added to Microsoft’s security update guidance. Information published. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.
Apache HTTP Server: Off-by-one OOB reads in AJP getter functions
Apache Apache HTTP Server: Off-by-one OOB reads in AJP getter functions (CVE-2026-33857) was added to Microsoft’s security update guidance. Information published. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.
Azure Managed Instance for Apache Cassandra Remote Code Execution vulnerability
Azure Managed Instance for Apache Cassandra Remote Code Execution vulnerability (CVE-2026-33844) was added to Microsoft’s security update guidance. Improper input validation in Azure Managed Instance for Apache Cassandra allows an authorized attacker to execute code over a network. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.
Microsoft Team Events Portal Information Disclosure vulnerability
Microsoft Team Events Portal Information Disclosure vulnerability (CVE-2026-33823) was added to Microsoft’s security update guidance. Improper authorization in Microsoft Teams allows an authorized attacker to disclose information over a network. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.
Microsoft Dynamics 365 Customer Insights Elevation of Privilege vulnerability
Microsoft Dynamics 365 Customer Insights Elevation of Privilege vulnerability (CVE-2026-33821) was added to Microsoft’s security update guidance. Improper privilege management in Microsoft Dynamics 365 Customer Insights allows an authorized attacker to elevate privileges over a network. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.
Apache HTTP Server: multiple modules: HTTP response splitting forwarding malicious status line vulnerability
Apache HTTP Server: multiple modules: HTTP response splitting forwarding malicious status line vulnerability (CVE-2026-33523) was added to Microsoft’s security update guidance. Information published. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.
Copilot Chat (Microsoft Edge) Information Disclosure Vulnerability
Microsoft Copilot Chat (Microsoft Edge) Information Disclosure (CVE-2026-33111) was added to Microsoft’s security update guidance. Improper neutralization of special elements used in a command ('command injection') in Copilot Chat (Microsoft Edge) allows an unauthorized attacker to disclose information over a network. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.
Azure Managed Instance for Apache Cassandra Remote Code Execution vulnerability
Azure Managed Instance for Apache Cassandra Remote Code Execution vulnerability (CVE-2026-33109) was added to Microsoft’s security update guidance. Improper access control in Azure Managed Instance for Apache Cassandra allows an authorized attacker to execute code over a network. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.
Apache HTTP Server: mod_authn_socache crash vulnerability
Apache HTTP Server: mod_authn_socache crash vulnerability (CVE-2026-33007) was added to Microsoft’s security update guidance. Information published. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.
Apache HTTP Server: mod_auth_digest timing attack vulnerability
Apache HTTP Server: mod_auth_digest timing attack vulnerability (CVE-2026-33006) was added to Microsoft’s security update guidance. Information published. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.
Azure Machine Learning Notebook Spoofing vulnerability
Azure Machine Learning Notebook Spoofing vulnerability (CVE-2026-32207) was added to Microsoft’s security update guidance. Improper neutralization of input during web page generation ('cross-site scripting') in Azure Machine Learning allows an unauthorized attacker to perform spoofing over a network. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.
Apache HTTP Server: mod_dav_lock indirect lock crash vulnerability
Apache HTTP Server: mod_dav_lock indirect lock crash vulnerability (CVE-2026-29169) was added to Microsoft’s security update guidance. Information published. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.
Apache HTTP Server: mod_md unrestricted OCSP response vulnerability
Apache HTTP Server: mod_md unrestricted OCSP response vulnerability (CVE-2026-29168) was added to Microsoft’s security update guidance. Information published. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.
Apache HTTP Server: mod_rewrite elevation of privileges via ap_expr vulnerability
Apache HTTP Server: mod_rewrite elevation of privileges via ap_expr vulnerability (CVE-2026-24072) was added to Microsoft’s security update guidance. Information published. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.
Apache HTTP Server: http2: double free and possible RCE on early reset vulnerability
Apache HTTP Server: http2: double free and possible RCE on early reset vulnerability (CVE-2026-23918) was added to Microsoft’s security update guidance. Information published. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.
net: qrtr: Drop the MHI auto_queue feature for IPCR DL channels
net net: qrtr: Drop the MHI auto_queue feature for IPCR DL channels (CVE-2025-71285) was added to Microsoft’s security update guidance. Information published. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.
inet: frags: flush pending skbs in fqdir_pre_exit()
inet inet: frags: flush pending skbs in fqdir_pre_exit() (CVE-2025-68768) was added to Microsoft’s security update guidance. Information published. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.