Export limit exceeded: 10295 CVEs match your query. Please refine your search to export 10,000 CVEs or fewer.
Search
Search Results (10295 CVEs found)
| CVE | Vendors | Products | Updated | CVSS v3.1 |
|---|---|---|---|---|
| CVE-2021-42285 | 1 Microsoft | 22 Windows 10, Windows 10 1507, Windows 10 1607 and 19 more | 2026-08-19 | 7.8 High |
| Windows Kernel Elevation of Privilege Vulnerability | ||||
| CVE-2021-42283 | 1 Microsoft | 23 Windows 10, Windows 10 1507, Windows 10 1607 and 20 more | 2026-08-19 | 8.8 High |
| NTFS Elevation of Privilege Vulnerability | ||||
| CVE-2021-42282 | 1 Microsoft | 11 Windows Server, Windows Server 2004, Windows Server 2008 and 8 more | 2026-08-19 | 7.5 High |
| Active Directory Domain Services Elevation of Privilege Vulnerability | ||||
| CVE-2021-42277 | 1 Microsoft | 18 Visual Studio, Visual Studio 2015, Visual Studio 2017 and 15 more | 2026-08-19 | 5.5 Medium |
| Diagnostics Hub Standard Collector Elevation of Privilege Vulnerability | ||||
| CVE-2021-41370 | 1 Microsoft | 22 Windows 10, Windows 10 1507, Windows 10 1607 and 19 more | 2026-08-19 | 7.8 High |
| NTFS Elevation of Privilege Vulnerability | ||||
| CVE-2021-43211 | 1 Microsoft | 1 Windows 10 Update Assistant | 2026-08-19 | 5.5 Medium |
| Windows 10 Update Assistant Elevation of Privilege Vulnerability | ||||
| CVE-2021-42322 | 1 Microsoft | 1 Visual Studio Code | 2026-08-19 | 7.8 High |
| Visual Studio Code Elevation of Privilege Vulnerability | ||||
| CVE-2021-42319 | 1 Microsoft | 2 Visual Studio 2017, Visual Studio 2019 | 2026-08-19 | 4.7 Medium |
| Visual Studio Elevation of Privilege Vulnerability | ||||
| CVE-2021-42304 | 1 Microsoft | 1 Azure Real Time Operating System | 2026-08-19 | 6.6 Medium |
| Azure RTOS Elevation of Privilege Vulnerability | ||||
| CVE-2021-42303 | 1 Microsoft | 1 Azure Real Time Operating System | 2026-08-19 | 6.6 Medium |
| Azure RTOS Elevation of Privilege Vulnerability | ||||
| CVE-2021-42302 | 1 Microsoft | 1 Azure Real Time Operating System | 2026-08-19 | 6.6 Medium |
| Azure RTOS Elevation of Privilege Vulnerability | ||||
| CVE-2021-42280 | 1 Microsoft | 13 Windows 10, Windows 10 1607, Windows 10 1809 and 10 more | 2026-08-19 | 5.5 Medium |
| Windows Feedback Hub Elevation of Privilege Vulnerability | ||||
| CVE-2021-41377 | 1 Microsoft | 22 Windows 10, Windows 10 1507, Windows 10 1607 and 19 more | 2026-08-19 | 7.8 High |
| Windows Fast FAT File System Driver Elevation of Privilege Vulnerability | ||||
| CVE-2021-41367 | 1 Microsoft | 22 Windows 10, Windows 10 1507, Windows 10 1607 and 19 more | 2026-08-19 | 7.8 High |
| NTFS Elevation of Privilege Vulnerability | ||||
| CVE-2021-41366 | 1 Microsoft | 18 Windows 10, Windows 10 1507, Windows 10 1607 and 15 more | 2026-08-19 | 7.8 High |
| Credential Security Support Provider Protocol (CredSSP) Elevation of Privilege Vulnerability | ||||
| CVE-2021-36957 | 1 Microsoft | 12 Windows 10, Windows 10 1607, Windows 10 1809 and 9 more | 2026-08-19 | 7.8 High |
| Windows Desktop Bridge Elevation of Privilege Vulnerability | ||||
| CVE-2026-19986 | 1 Adblock For Youtube Extension | 1 Adblock For Youtube Extension | 2026-08-19 | 5.4 Medium |
| A weakness has been identified in Adblock for Youtube Extension up to 7.2.1 on Chrome. The impacted element is the function updateDynamicRules of the file contentscript.js of the component Event Listener. This manipulation of the argument yt-anti-adblock-detected causes improper authorization. It is possible to initiate the attack remotely. The exploit has been made available to the public and could be used for attacks. The vendor was contacted early about this disclosure but did not respond in any way. | ||||
| CVE-2026-74942 | 1 Mozilla | 2 Firefox, Thunderbird | 2026-08-19 | 8.8 High |
| Privilege escalation in the Remote Settings Client component. This vulnerability was fixed in Firefox 154, Firefox ESR 115.39, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1. | ||||
| CVE-2026-75857 | 1 Hmbown | 1 Codewhale | 2026-08-19 | 7 High |
| CodeWhale versions >= 0.8.41 and < 0.8.64 contain a vulnerability in the exec_shell_interact (alias exec_interact) tool, whose approval_requirement returns ApprovalRequirement::Auto. This overrides the default Required approval for code-executing tools, so LLM-controlled stdin is written into an already-approved long-running interactive shell (e.g., a python3 -i REPL, mysql, ssh, or sudo -i session) without any approval prompt. An attacker who can inject instructions via untrusted content the agent ingests (a fetched page, MCP result, or repo file) can cause commands to run at the privilege level of that approved process. Fixed in 0.8.64. | ||||
| CVE-2026-75837 | 1 Getgrav | 1 Grav | 2026-08-19 | 9.1 Critical |
| Grav before 2.0.14 fails to guard the access field in the core group blueprint with the required security@: admin.super restriction. A delegated admin.users operator can save a group with access[admin][super]=true to escalate to super-admin, gaining scheduler and Twig evaluation capabilities. | ||||