CVE-2026-74835 Microsoft
Review the authoritative advisory for the vulnerability description and applicability.
CVSS Not supplied
Update availability Security update available Affected: azl3 erlang 26.2.5.21-4 on Azure Linux 3.0 · azl3 erlang 26.2.5.21-6 on Azure Linux 3.0
Updated September 10, 2026
CVE-2026-73812 Microsoft
Review the authoritative advisory for the vulnerability description and applicability.
CVSS Not supplied
Update availability Security update available Affected: azl3 erlang 26.2.5.21-4 on Azure Linux 3.0 · azl3 erlang 26.2.5.21-6 on Azure Linux 3.0
Updated September 10, 2026
CVE-2026-73276 Microsoft
Review the authoritative advisory for the vulnerability description and applicability.
CVSS Not supplied
Update availability Security update available Affected: azl3 erlang 26.2.5.21-4 on Azure Linux 3.0 · azl3 erlang 26.2.5.21-6 on Azure Linux 3.0
Updated September 10, 2026
CVE-2026-73270 Microsoft
Review the authoritative advisory for the vulnerability description and applicability.
CVSS Not supplied
Update availability Security update available Affected: azl3 erlang 26.2.5.21-4 on Azure Linux 3.0 · azl3 erlang 26.2.5.21-6 on Azure Linux 3.0
Updated September 10, 2026
CVE-2026-71380 Microsoft
Review the authoritative advisory for the vulnerability description and applicability.
CVSS Not supplied
Update availability Security update available Affected: azl3 erlang 26.2.5.21-4 on Azure Linux 3.0 · azl3 erlang 26.2.5.21-6 on Azure Linux 3.0
Updated September 10, 2026
CVE-2026-69664 Microsoft
Review the authoritative advisory for the vulnerability description and applicability.
CVSS Not supplied
Update availability Security update available Affected: azl3 erlang 26.2.5.21-4 on Azure Linux 3.0 · azl3 erlang 26.2.5.21-6 on Azure Linux 3.0
Updated September 10, 2026
CVE-2026-66835 Microsoft
Review the authoritative advisory for the vulnerability description and applicability.
CVSS Not supplied
Update availability Security update available Affected: azl3 erlang 26.2.5.21-4 on Azure Linux 3.0 · azl3 erlang 26.2.5.21-6 on Azure Linux 3.0
Updated September 10, 2026
CVE-2026-66357 Microsoft
Review the authoritative advisory for the vulnerability description and applicability.
CVSS Not supplied
Update availability Security update available Affected: azl3 erlang 26.2.5.21-4 on Azure Linux 3.0 · azl3 erlang 26.2.5.21-6 on Azure Linux 3.0
Updated September 10, 2026
CVE-2026-55951 Microsoft
Review the authoritative advisory for the vulnerability description and applicability.
CVSS Not supplied
Update availability Security update available Affected: azl3 erlang 26.2.5.21-4 on Azure Linux 3.0 · azl3 erlang 26.2.5.21-6 on Azure Linux 3.0
Updated September 10, 2026
CVE-2026-82209 Microsoft
Review the authoritative advisory for the vulnerability description and applicability.
CVSS 8.2
Update availability Security update available Affected: azl3 cmake 3.30.3-15 on Azure Linux 3.0 · azl3 curl 8.11.1-11 on Azure Linux 3.0
Updated September 9, 2026
CVE-2026-62693 Microsoft
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows MIDI Service Module allows an authorized attacker to elevate privileges locally.
CVSS 7.0
Update availability Security update available Affected: Windows 11 Version 24H2 for ARM64-based Systems · Windows 11 Version 24H2 for x64-based Systems · +4 more
Updated September 9, 2026
CVE-2026-64901 Microsoft
Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.
CVSS 8.8
Update availability Security update available Affected: Microsoft SharePoint Enterprise Server 2016 · Microsoft SharePoint Server 2019 · +1 more
Updated September 9, 2026
CVE-2026-68877 Microsoft
Heap-based buffer overflow in Windows Storage Spaces Controller allows an authorized attacker to execute code locally.
CVSS 7.8
Update availability Security update available Affected: Windows 10 Version 1607 for 32-bit Systems · Windows 10 Version 1607 for x64-based Systems · +24 more
Updated September 9, 2026
CVE-2026-69334 Microsoft
Heap-based buffer overflow in Windows Volume Manager Extension Driver allows an unauthorized attacker to execute code over a network.
CVSS 8.8
Update availability Security update available Affected: Windows 10 Version 1607 for 32-bit Systems · Windows 10 Version 1607 for x64-based Systems · +28 more
Updated September 9, 2026
CVE-2026-69492 Microsoft
Heap-based buffer overflow in Windows Partition Management Driver allows an authorized attacker to elevate privileges locally.
CVSS 7.0
Update availability Security update available Affected: Windows 10 Version 1607 for 32-bit Systems · Windows 10 Version 1607 for x64-based Systems · +28 more
Updated September 9, 2026
CVE-2026-69508 Microsoft
Stack-based buffer overflow in Windows MIDI Service Module allows an authorized attacker to elevate privileges locally.
CVSS 7.8
Update availability Security update available Affected: Windows 11 Version 24H2 for x64-based Systems · Windows 11 Version 25H2 for ARM64-based Systems · +3 more
Updated September 9, 2026
CVE-2026-69777 Microsoft
Heap-based buffer overflow in Windows DHCP Client allows an authorized attacker to elevate privileges over an adjacent network.
CVSS 8.0
Update availability Security update available Affected: Windows 11 Version 24H2 for ARM64-based Systems · Windows 11 Version 24H2 for x64-based Systems · +4 more
Updated September 9, 2026
CVE-2026-73024 Microsoft
Heap-based buffer overflow in Windows Services for NFS ONCRPC XDR Driver allows an authorized attacker to elevate privileges locally.
CVSS 7.8
Update availability Security update available Affected: Windows 10 Version 1607 for 32-bit Systems · Windows 10 Version 1607 for x64-based Systems · +28 more
Updated September 9, 2026
CVE-2026-56852 Microsoft
Review the authoritative advisory for the vulnerability description and applicability.
CVSS 7.5
Update availability Patch status unknown Affected: azl3 application-gateway-kubernetes-ingress 1.7.7-5 on Azure Linux 3.0 · azl3 azcopy 10.25.1-6 on Azure Linux 3.0 · +40 more
Updated September 9, 2026
CVE-2026-55893 Microsoft
Review the authoritative advisory for the vulnerability description and applicability.
CVSS Not supplied
Update availability Patch status unknown Affected: azl3 rust 1.75.0-30 on Azure Linux 3.0
Updated September 9, 2026
CVE-2026-14457 Microsoft
Review the authoritative advisory for the vulnerability description and applicability.
CVSS 7.5
Update availability Patch status unknown Affected: azl3 cloud-hypervisor 51.1.101-2 on Azure Linux 3.0 · azl3 kata-containers 3.32.0.kata0-2 on Azure Linux 3.0 · +2 more
Updated September 9, 2026
CVE-2025-70873 Microsoft
An information disclosure issue in the zipfileInflate function in the zipfile extension in SQLite v3.51.1 and earlier allows attackers to obtain heap memory via supplying a crafted ZIP file.
CVSS 7.5
Update availability Security update available Affected: Microsoft Visual Studio 2017 version 15.9 (includes 15.0 - 15.8) · Microsoft Visual Studio 2019 version 16.11 (includes 16.0 - 16.10) · +4 more
Updated September 8, 2026
CVE-2026-42914 Microsoft
Out-of-bounds read in Windows Kerberos allows an authorized attacker to deny service over a network.
CVSS 5.3
Update availability Security update available Affected: Windows 10 Version 1607 for 32-bit Systems · Windows 10 Version 1607 for x64-based Systems · +28 more
Updated September 8, 2026
CVE-2026-44814 Microsoft
Out-of-bounds read in Windows DWM Core Library allows an authorized attacker to disclose information locally.
CVSS 5.5
Update availability Security update available Affected: Windows 11 Version 26H1 for ARM64-based Systems · Windows 11 version 26H1 for x64-based Systems
Updated September 8, 2026