Search
CVE Explorer
Search the full tracked CVE corpus across every vendor — by keyword, vendor, severity, CVSS band and publication date. Server-rendered; each filtered view has its own URL.
01
Filters
Submit to refine — state is held in the URL.
02
Results
32,696 matching · page 521/654Each CVE id links to its NVD record.
| CVE | Severity | CVSS | Summary | Published |
|---|---|---|---|---|
| CVE-2025-53769(opens NVD record) | Medium | 5.5 | External control of file name or path in Windows Security App allows an authorized attacker to perform spoofing locally. | Aug 12, 2025 |
| CVE-2025-53766(opens NVD record) | Critical | 9.8 | Heap-based buffer overflow in Windows GDI+ allows an unauthorized attacker to execute code over a network. | Aug 12, 2025 |
| CVE-2025-53765(opens NVD record) | Medium | 4.4 | Exposure of private personal information to an unauthorized actor in Azure Stack allows an authorized attacker to disclose information locally. | Aug 12, 2025 |
| CVE-2025-53761(opens NVD record) | High | 7.8 | Use after free in Microsoft Office PowerPoint allows an unauthorized attacker to execute code locally. | Aug 12, 2025 |
| CVE-2025-53760(opens NVD record) | High | 7.1 | Server-side request forgery (ssrf) in Microsoft Office SharePoint allows an authorized attacker to elevate privileges over a network. | Aug 12, 2025 |
| CVE-2025-53759(opens NVD record) | High | 7.8 | Use of uninitialized resource in Microsoft Office Excel allows an unauthorized attacker to execute code locally. | Aug 12, 2025 |
| CVE-2025-53741(opens NVD record) | High | 7.8 | Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally. | Aug 12, 2025 |
| CVE-2025-53740(opens NVD record) | High | 8.4 | Use after free in Microsoft Office allows an unauthorized attacker to execute code locally. | Aug 12, 2025 |
| CVE-2025-53739(opens NVD record) | High | 7.8 | Access of resource using incompatible type ('type confusion') in Microsoft Office Excel allows an unauthorized attacker to execute code locally. | Aug 12, 2025 |
| CVE-2025-53738(opens NVD record) | High | 7.8 | Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally. | Aug 12, 2025 |
| CVE-2025-53737(opens NVD record) | High | 7.8 | Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally. | Aug 12, 2025 |
| CVE-2025-53736(opens NVD record) | Medium | 6.8 | Buffer over-read in Microsoft Office Word allows an unauthorized attacker to disclose information locally. | Aug 12, 2025 |
| CVE-2025-53735(opens NVD record) | High | 7.8 | Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally. | Aug 12, 2025 |
| CVE-2025-53734(opens NVD record) | High | 7.8 | Use after free in Microsoft Office Visio allows an unauthorized attacker to execute code locally. | Aug 12, 2025 |
| CVE-2025-53733(opens NVD record) | High | 8.4 | Incorrect conversion between numeric types in Microsoft Office Word allows an unauthorized attacker to execute code locally. | Aug 12, 2025 |
| CVE-2025-53732(opens NVD record) | High | 7.8 | Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally. | Aug 12, 2025 |
| CVE-2025-53731(opens NVD record) | High | 8.4 | Use after free in Microsoft Office allows an unauthorized attacker to execute code locally. | Aug 12, 2025 |
| CVE-2025-53730(opens NVD record) | High | 7.8 | Use after free in Microsoft Office Visio allows an unauthorized attacker to execute code locally. | Aug 12, 2025 |
| CVE-2025-53729(opens NVD record) | High | 7.8 | Improper access control in Azure File Sync allows an authorized attacker to elevate privileges locally. | Aug 12, 2025 |
| CVE-2025-53728(opens NVD record) | Medium | 6.5 | Exposure of sensitive information to an unauthorized actor in Microsoft Dynamics 365 (on-premises) allows an unauthorized attacker to disclose information over a network. | Aug 12, 2025 |
| CVE-2025-53727(opens NVD record) | High | 8.8 | Improper neutralization of special elements used in an sql command ('sql injection') in SQL Server allows an authorized attacker to elevate privileges over a network. | Aug 12, 2025 |
| CVE-2025-53726(opens NVD record) | High | 7.8 | Access of resource using incompatible type ('type confusion') in Windows Push Notifications allows an authorized attacker to elevate privileges locally. | Aug 12, 2025 |
| CVE-2025-53725(opens NVD record) | High | 7.8 | Access of resource using incompatible type ('type confusion') in Windows Push Notifications allows an authorized attacker to elevate privileges locally. | Aug 12, 2025 |
| CVE-2025-53724(opens NVD record) | High | 7.8 | Access of resource using incompatible type ('type confusion') in Windows Push Notifications allows an authorized attacker to elevate privileges locally. | Aug 12, 2025 |
| CVE-2025-53723(opens NVD record) | High | 7.8 | Numeric truncation error in Windows Hyper-V allows an authorized attacker to elevate privileges locally. | Aug 12, 2025 |
| CVE-2025-53722(opens NVD record) | High | 7.5 | Uncontrolled resource consumption in Windows Remote Desktop Services allows an unauthorized attacker to deny service over a network. | Aug 12, 2025 |
| CVE-2025-53721(opens NVD record) | High | 7.0 | Use after free in Windows Connected Devices Platform Service allows an authorized attacker to elevate privileges locally. | Aug 12, 2025 |
| CVE-2025-53720(opens NVD record) | High | 8.0 | Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to execute code over a network. | Aug 12, 2025 |
| CVE-2025-53719(opens NVD record) | Medium | 5.7 | Use of uninitialized resource in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to disclose information over a network. | Aug 12, 2025 |
| CVE-2025-53718(opens NVD record) | High | 7.0 | Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally. | Aug 12, 2025 |
| CVE-2025-53716(opens NVD record) | Medium | 6.5 | Null pointer dereference in Windows Local Security Authority Subsystem Service (LSASS) allows an authorized attacker to deny service over a network. | Aug 12, 2025 |
| CVE-2025-53156(opens NVD record) | Medium | 5.5 | Exposure of sensitive information to an unauthorized actor in Storage Port Driver allows an authorized attacker to disclose information locally. | Aug 12, 2025 |
| CVE-2025-53155(opens NVD record) | High | 7.8 | Heap-based buffer overflow in Windows Hyper-V allows an authorized attacker to elevate privileges locally. | Aug 12, 2025 |
| CVE-2025-53154(opens NVD record) | High | 7.8 | Null pointer dereference in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally. | Aug 12, 2025 |
| CVE-2025-53153(opens NVD record) | Medium | 5.7 | Use of uninitialized resource in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to disclose information over a network. | Aug 12, 2025 |
| CVE-2025-53152(opens NVD record) | High | 7.8 | Use after free in Desktop Windows Manager allows an authorized attacker to execute code locally. | Aug 12, 2025 |
| CVE-2025-53151(opens NVD record) | High | 7.8 | Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally. | Aug 12, 2025 |
| CVE-2025-53149(opens NVD record) | High | 7.8 | Heap-based buffer overflow in Kernel Streaming WOW Thunk Service Driver allows an authorized attacker to elevate privileges locally. | Aug 12, 2025 |
| CVE-2025-53148(opens NVD record) | Medium | 5.7 | Use of uninitialized resource in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to disclose information over a network. | Aug 12, 2025 |
| CVE-2025-53147(opens NVD record) | High | 7.0 | Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally. | Aug 12, 2025 |
| CVE-2025-53145(opens NVD record) | High | 8.8 | Access of resource using incompatible type ('type confusion') in Windows Message Queuing allows an authorized attacker to execute code over a network. | Aug 12, 2025 |
| CVE-2025-53144(opens NVD record) | High | 8.8 | Access of resource using incompatible type ('type confusion') in Windows Message Queuing allows an authorized attacker to execute code over a network. | Aug 12, 2025 |
| CVE-2025-53143(opens NVD record) | High | 8.8 | Access of resource using incompatible type ('type confusion') in Windows Message Queuing allows an authorized attacker to execute code over a network. | Aug 12, 2025 |
| CVE-2025-53142(opens NVD record) | High | 7.0 | Use after free in Microsoft Brokering File System allows an authorized attacker to elevate privileges locally. | Aug 12, 2025 |
| CVE-2025-53141(opens NVD record) | High | 7.8 | Null pointer dereference in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally. | Aug 12, 2025 |
| CVE-2025-53140(opens NVD record) | High | 7.0 | Use after free in Kernel Transaction Manager allows an authorized attacker to elevate privileges locally. | Aug 12, 2025 |
| CVE-2025-53138(opens NVD record) | Medium | 5.7 | Use of uninitialized resource in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to disclose information over a network. | Aug 12, 2025 |
| CVE-2025-53137(opens NVD record) | High | 7.0 | Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally. | Aug 12, 2025 |
| CVE-2025-53136(opens NVD record) | Medium | 5.5 | Exposure of sensitive information to an unauthorized actor in Windows NT OS Kernel allows an authorized attacker to disclose information locally. | Aug 12, 2025 |
| CVE-2025-53135(opens NVD record) | High | 7.0 | Concurrent execution using shared resource with improper synchronization ('race condition') in Windows DirectX allows an authorized attacker to elevate privileges locally. | Aug 12, 2025 |