Security Briefs
Page 93 of 142.
Alerts tracked
3940
Security flaws we track for Upstate SC businesses.
Known exploited
545
On CISA’s list of vulnerabilities attackers are actively using. Patch these first.
New exploited this month
2
Fresh additions to that CISA list since the first of the month.Feeds last synced Oct 8, 2026, 6:01 AM UTC.
Showing page 93 (24 alerts) of 3385.
Microsoft Windows App Store Elevation of Privilege vulnerability
Microsoft Windows App Store Elevation of Privilege vulnerability (CVE-2026-42900) was added to Microsoft’s security update guidance. Concurrent execution using shared resource with improper synchronization ('race condition') in Windows App Store allows an unauthorized attacker to elevate privileges over a network. If you need help checking exposure, call (864) 335-9223.
Microsoft Exchange Server Spoofing vulnerability
Microsoft Exchange Server Spoofing vulnerability (CVE-2026-42897) was added to Microsoft’s security update guidance. Updated FAQ information. This is an informational change only. If you need help checking exposure, call (864) 335-9223.
Windows File Explorer Information Disclosure vulnerability
Windows File Explorer Information Disclosure vulnerability (CVE-2026-41087) was added to Microsoft’s security update guidance. Exposure of sensitive information to an unauthorized actor in Windows File Explorer allows an authorized attacker to disclose information locally. If you need help checking exposure, call (864) 335-9223.
Windows File Explorer Information Disclosure vulnerability
Windows File Explorer Information Disclosure vulnerability (CVE-2026-40422) was added to Microsoft’s security update guidance. Use of uninitialized resource in Windows File Explorer allows an authorized attacker to disclose information locally. If you need help checking exposure, call (864) 335-9223.
Windows Local Security Authority Subsystem Service (LSASS) Denial of Service vulnerability
Windows Local Security Authority Subsystem Service (LSASS) Denial of Service vulnerability (CVE-2026-40378) was added to Microsoft’s security update guidance. Memory allocation with excessive size value in Windows Local Security Authority Subsystem Service (LSASS) allows an unauthorized attacker to deny service over a network. If you need help checking exposure, call (864) 335-9223.
Windows Media Information Disclosure vulnerability
Windows Media Information Disclosure vulnerability (CVE-2026-34349) was added to Microsoft’s security update guidance. Exposure of sensitive information to an unauthorized actor in Windows Media allows an authorized attacker to disclose information locally. If you need help checking exposure, call (864) 335-9223.
Windows Event Logging Service Information Disclosure vulnerability
Windows Event Logging Service Information Disclosure vulnerability (CVE-2026-34348) was added to Microsoft’s security update guidance. Protection mechanism failure in Windows Event Logging Service allows an authorized attacker to disclose information over a network. If you need help checking exposure, call (864) 335-9223.
Windows Ancillary Function Driver for WinSock Information Disclosure vulnerability
Windows Ancillary Function Driver for WinSock Information Disclosure vulnerability (CVE-2026-34346) was added to Microsoft’s security update guidance. Cleartext transmission of sensitive information in Windows Ancillary Function Driver for WinSock allows an authorized attacker to disclose information locally. If you need help checking exposure, call (864) 335-9223.
Windows Audio Service Information Disclosure vulnerability
Windows Audio Service Information Disclosure vulnerability (CVE-2026-34328) was added to Microsoft’s security update guidance. Exposure of sensitive information to an unauthorized actor in Windows Audio Service allows an authorized attacker to disclose information locally. If you need help checking exposure, call (864) 335-9223.
Windows File Explorer Information Disclosure vulnerability
Windows File Explorer Information Disclosure vulnerability (CVE-2026-33842) was added to Microsoft’s security update guidance. Exposure of sensitive information to an unauthorized actor in Windows File Explorer allows an authorized attacker to disclose information locally. If you need help checking exposure, call (864) 335-9223.
Microsoft Edge (Chromium-based) Spoofing vulnerability
Microsoft Edge (Chromium-based) Spoofing vulnerability (CVE-2026-45489) was added to Microsoft’s security update guidance. CWE added. Informational change only. If you need help checking exposure, call (864) 335-9223.
Microsoft Edge (Chromium-based) Remote Code Execution vulnerability
Microsoft Edge (Chromium-based) Remote Code Execution vulnerability (CVE-2026-58281) was added to Microsoft’s security update guidance. Deserialization of untrusted data in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network. If you need help checking exposure, call (864) 335-9223.
Use after free in V8 in Microsoft Edge vulnerability
Use after free in V8 in Microsoft Edge vulnerability (CVE-2026-14432) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2025) for more information. If you need help checking exposure, call (864) 335-9223.
Type Confusion in V8 in Microsoft Edge vulnerability
Type Confusion in V8 in Microsoft Edge vulnerability (CVE-2026-14431) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2025) for more information. If you need help checking exposure, call (864) 335-9223.
Integer overflow in V8 in Microsoft Edge vulnerability
Integer overflow in V8 in Microsoft Edge vulnerability (CVE-2026-14430) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2025) for more information. If you need help checking exposure, call (864) 335-9223.
Insufficient validation of untrusted input in Skia in Microsoft Edge vulnerability
Insufficient validation of untrusted input in Skia in Microsoft Edge vulnerability (CVE-2026-14429) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2025) for more information. If you need help checking exposure, call (864) 335-9223.
Insufficient validation of untrusted input in Dawn in Microsoft Edge vulnerability
Insufficient validation of untrusted input in Dawn in Microsoft Edge vulnerability (CVE-2026-14428) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2025) for more information. If you need help checking exposure, call (864) 335-9223.
Heap buffer overflow in Skia in Microsoft Edge vulnerability
Heap buffer overflow in Skia in Microsoft Edge vulnerability (CVE-2026-14427) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2025) for more information. If you need help checking exposure, call (864) 335-9223.
Use after free in V8 in Microsoft Edge vulnerability
Use after free in V8 in Microsoft Edge vulnerability (CVE-2026-14426) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2025) for more information. If you need help checking exposure, call (864) 335-9223.
Use after free in ANGLE in Microsoft Edge vulnerability
Use after free in ANGLE in Microsoft Edge vulnerability (CVE-2026-14425) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2025) for more information. If you need help checking exposure, call (864) 335-9223.
Use after free in Dawn in Microsoft Edge vulnerability
Use after free in Dawn in Microsoft Edge vulnerability (CVE-2026-14424) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2025) for more information. If you need help checking exposure, call (864) 335-9223.
Type Confusion in Tint in Microsoft Edge vulnerability
Type Confusion in Tint in Microsoft Edge vulnerability (CVE-2026-14423) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2025) for more information. If you need help checking exposure, call (864) 335-9223.
Out of bounds read and write in Tint in Microsoft Edge vulnerability
Out of bounds read and write in Tint in Microsoft Edge vulnerability (CVE-2026-14422) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2025) for more information. If you need help checking exposure, call (864) 335-9223.
Uninitialized Use in Dawn in Microsoft Edge vulnerability
Uninitialized Use in Dawn in Microsoft Edge vulnerability (CVE-2026-14421) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2025) for more information. If you need help checking exposure, call (864) 335-9223.