Search
CVE Explorer
Search the full tracked CVE corpus across every vendor — by keyword, vendor, severity, CVSS band and publication date. Server-rendered; each filtered view has its own URL.
01
Filters
Submit to refine — state is held in the URL.
02
Results
60,857 matching · page 788/1218Each CVE id links to its NVD record.
| CVE | Severity | CVSS | Summary | Published |
|---|---|---|---|---|
| CVE-2025-29824(opens NVD record) | High | 7.8 | Use after free in Windows Common Log File System Driver allows an authorized attacker to elevate privileges locally. | Apr 8, 2025 |
| CVE-2025-29823(opens NVD record) | High | 7.8 | Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally. | Apr 8, 2025 |
| CVE-2025-29822(opens NVD record) | High | 7.8 | Incomplete list of disallowed inputs in Microsoft Office OneNote allows an unauthorized attacker to bypass a security feature locally. | Apr 8, 2025 |
| CVE-2025-29821(opens NVD record) | Medium | 5.5 | Improper input validation in Dynamics Business Central allows an authorized attacker to disclose information locally. | Apr 8, 2025 |
| CVE-2025-29820(opens NVD record) | High | 7.8 | Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally. | Apr 8, 2025 |
| CVE-2025-29819(opens NVD record) | Medium | 6.2 | External control of file name or path in Azure Portal Windows Admin Center allows an unauthorized attacker to disclose information locally. | Apr 8, 2025 |
| CVE-2025-29816(opens NVD record) | High | 7.5 | Improper input validation in Microsoft Office Word allows an unauthorized attacker to bypass a security feature over a network. | Apr 8, 2025 |
| CVE-2025-29812(opens NVD record) | High | 7.8 | Untrusted pointer dereference in Windows Kernel Memory allows an authorized attacker to elevate privileges locally. | Apr 8, 2025 |
| CVE-2025-29811(opens NVD record) | High | 7.8 | Improper input validation in Windows Mobile Broadband allows an authorized attacker to elevate privileges locally. | Apr 8, 2025 |
| CVE-2025-29810(opens NVD record) | High | 7.5 | Improper access control in Active Directory Domain Services allows an authorized attacker to elevate privileges over a network. | Apr 8, 2025 |
| CVE-2025-29809(opens NVD record) | High | 7.1 | Insecure storage of sensitive information in Windows Kerberos allows an authorized attacker to bypass a security feature locally. | Apr 8, 2025 |
| CVE-2025-29808(opens NVD record) | Medium | 5.5 | Use of a cryptographic primitive with a risky implementation in Windows Cryptographic Services allows an authorized attacker to disclose information locally. | Apr 8, 2025 |
| CVE-2025-29805(opens NVD record) | High | 7.5 | Exposure of sensitive information to an unauthorized actor in Outlook for Android allows an unauthorized attacker to disclose information over a network. | Apr 8, 2025 |
| CVE-2025-29804(opens NVD record) | High | 7.3 | Improper access control in Visual Studio allows an authorized attacker to elevate privileges locally. | Apr 8, 2025 |
| CVE-2025-29802(opens NVD record) | High | 7.3 | Improper access control in Visual Studio allows an authorized attacker to elevate privileges locally. | Apr 8, 2025 |
| CVE-2025-29801(opens NVD record) | High | 7.8 | Incorrect default permissions in Microsoft AutoUpdate (MAU) allows an authorized attacker to elevate privileges locally. | Apr 8, 2025 |
| CVE-2025-29800(opens NVD record) | High | 7.8 | Improper privilege management in Microsoft AutoUpdate (MAU) allows an authorized attacker to elevate privileges locally. | Apr 8, 2025 |
| CVE-2025-29794(opens NVD record) | High | 8.8 | Improper authorization in Microsoft Office SharePoint allows an authorized attacker to execute code over a network. | Apr 8, 2025 |
| CVE-2025-29793(opens NVD record) | High | 7.2 | Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network. | Apr 8, 2025 |
| CVE-2025-29792(opens NVD record) | High | 7.3 | Use after free in Microsoft Office allows an authorized attacker to elevate privileges locally. | Apr 8, 2025 |
| CVE-2025-29791(opens NVD record) | High | 7.8 | Access of resource using incompatible type ('type confusion') in Microsoft Office allows an unauthorized attacker to execute code locally. | Apr 8, 2025 |
| CVE-2025-27752(opens NVD record) | High | 7.8 | Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally. | Apr 8, 2025 |
| CVE-2025-27751(opens NVD record) | High | 7.8 | Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally. | Apr 8, 2025 |
| CVE-2025-27750(opens NVD record) | High | 7.8 | Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally. | Apr 8, 2025 |
| CVE-2025-27749(opens NVD record) | High | 7.8 | Use after free in Microsoft Office allows an unauthorized attacker to execute code locally. | Apr 8, 2025 |
| CVE-2025-27748(opens NVD record) | High | 7.8 | Use after free in Microsoft Office allows an unauthorized attacker to execute code locally. | Apr 8, 2025 |
| CVE-2025-27747(opens NVD record) | High | 7.8 | Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally. | Apr 8, 2025 |
| CVE-2025-27746(opens NVD record) | High | 7.8 | Use after free in Microsoft Office allows an unauthorized attacker to execute code locally. | Apr 8, 2025 |
| CVE-2025-27745(opens NVD record) | High | 7.8 | Use after free in Microsoft Office allows an unauthorized attacker to execute code locally. | Apr 8, 2025 |
| CVE-2025-27744(opens NVD record) | High | 7.8 | Improper access control in Microsoft Office allows an authorized attacker to elevate privileges locally. | Apr 8, 2025 |
| CVE-2025-27743(opens NVD record) | High | 7.8 | Untrusted search path in System Center allows an authorized attacker to elevate privileges locally. | Apr 8, 2025 |
| CVE-2025-27742(opens NVD record) | Medium | 5.5 | Out-of-bounds read in Windows NTFS allows an unauthorized attacker to disclose information locally. | Apr 8, 2025 |
| CVE-2025-27741(opens NVD record) | High | 7.8 | Out-of-bounds read in Windows NTFS allows an unauthorized attacker to elevate privileges locally. | Apr 8, 2025 |
| CVE-2025-27740(opens NVD record) | High | 8.8 | Weak authentication in Windows Active Directory Certificate Services allows an authorized attacker to elevate privileges over a network. | Apr 8, 2025 |
| CVE-2025-27739(opens NVD record) | High | 7.8 | Untrusted pointer dereference in Windows Kernel allows an authorized attacker to elevate privileges locally. | Apr 8, 2025 |
| CVE-2025-27738(opens NVD record) | Medium | 6.5 | Improper access control in Windows Resilient File System (ReFS) allows an authorized attacker to disclose information over a network. | Apr 8, 2025 |
| CVE-2025-27737(opens NVD record) | High | 8.6 | Improper input validation in Windows Security Zone Mapping allows an unauthorized attacker to bypass a security feature locally. | Apr 8, 2025 |
| CVE-2025-27736(opens NVD record) | Medium | 5.5 | Exposure of sensitive information to an unauthorized actor in Windows Power Dependency Coordinator allows an authorized attacker to disclose information locally. | Apr 8, 2025 |
| CVE-2025-27735(opens NVD record) | Medium | 6.0 | Insufficient verification of data authenticity in Windows Virtualization-Based Security (VBS) Enclave allows an authorized attacker to bypass a security feature locally. | Apr 8, 2025 |
| CVE-2025-27733(opens NVD record) | High | 7.8 | Out-of-bounds read in Windows NTFS allows an unauthorized attacker to elevate privileges locally. | Apr 8, 2025 |
| CVE-2025-27732(opens NVD record) | High | 7.0 | Sensitive data storage in improperly locked memory in Windows Win32K - GRFX allows an authorized attacker to elevate privileges locally. | Apr 8, 2025 |
| CVE-2025-27731(opens NVD record) | High | 7.8 | Improper input validation in OpenSSH for Windows allows an authorized attacker to elevate privileges locally. | Apr 8, 2025 |
| CVE-2025-27730(opens NVD record) | High | 7.8 | Use after free in Windows Digital Media allows an authorized attacker to elevate privileges locally. | Apr 8, 2025 |
| CVE-2025-27729(opens NVD record) | High | 7.8 | Use after free in Windows Shell allows an unauthorized attacker to execute code locally. | Apr 8, 2025 |
| CVE-2025-27728(opens NVD record) | High | 7.8 | Out-of-bounds read in Windows Kernel-Mode Drivers allows an authorized attacker to elevate privileges locally. | Apr 8, 2025 |
| CVE-2025-27727(opens NVD record) | High | 7.8 | Improper link resolution before file access ('link following') in Windows Installer allows an authorized attacker to elevate privileges locally. | Apr 8, 2025 |
| CVE-2025-27492(opens NVD record) | High | 7.0 | Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Secure Channel allows an authorized attacker to elevate privileges locally. | Apr 8, 2025 |
| CVE-2025-27491(opens NVD record) | High | 7.1 | Use after free in Windows Hyper-V allows an authorized attacker to execute code over a network. | Apr 8, 2025 |
| CVE-2025-27490(opens NVD record) | High | 7.8 | Heap-based buffer overflow in Windows Bluetooth Service allows an authorized attacker to elevate privileges locally. | Apr 8, 2025 |
| CVE-2025-27489(opens NVD record) | High | 7.8 | Improper input validation in Azure Local allows an authorized attacker to elevate privileges locally. | Apr 8, 2025 |