🛡️ مركز معلومات الثغرات
قاعدة بيانات الثغرات والتهديدات الأمنية المحدّثة
| المعرّف | الخطورة | CVSS | الوصف | الحالة | النشر |
|---|---|---|---|---|---|
| CVE-2026-34617 | مرتفع | 8.7 |
Adobe Connect versions 2025.3, 12.10 and earlier are affected by a Cross-Site Scripting (XSS) vulnerability that could r…
|
— | أبريل 14, 2026 |
| CVE-2026-27928 | مرتفع | 8.7 |
Improper input validation in Windows Hello allows an unauthorized attacker to bypass a security feature over a network.
|
— | أبريل 14, 2026 |
| CVE-2026-27305 | مرتفع | 8.6 |
ColdFusion versions 2023.18, 2025.6 and earlier are affected by an Improper Limitation of a Pathname to a Restricted Dir…
|
— | أبريل 14, 2026 |
| CVE-2026-33114 | مرتفع | 8.4 |
Untrusted pointer dereference in Microsoft Office Word allows an unauthorized attacker to execute code locally.
|
— | أبريل 14, 2026 |
| CVE-2026-32190 | مرتفع | 8.4 |
Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.
|
— | أبريل 14, 2026 |
| CVE-2026-27306 | مرتفع | 8.4 |
ColdFusion versions 2023.18, 2025.6 and earlier are affected by an Improper Input Validation vulnerability that could re…
|
— | أبريل 14, 2026 |
| CVE-2026-33115 | مرتفع | 8.4 |
Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally.
|
— | أبريل 14, 2026 |
| CVE-2026-33826 | مرتفع | 8.0 |
Improper input validation in Windows Active Directory allows an authorized attacker to execute code over an adjacent net…
|
— | أبريل 14, 2026 |
| CVE-2026-27912 | مرتفع | 8.0 |
Improper authorization in Windows Kerberos allows an authorized attacker to elevate privileges over an adjacent network.
|
— | أبريل 14, 2026 |
| CVE-2026-27291 | مرتفع | 7.8 |
InDesign Desktop versions 20.5.2, 21.2 and earlier are affected by an out-of-bounds write vulnerability that could resul…
|
— | أبريل 14, 2026 |
| CVE-2026-26183 | مرتفع | 7.8 |
Improper access control in Windows RPC API allows an authorized attacker to elevate privileges locally.
|
— | أبريل 14, 2026 |
| CVE-2026-27238 | مرتفع | 7.8 |
InDesign Desktop versions 20.5.2, 21.2 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could…
|
— | أبريل 14, 2026 |
| CVE-2026-26143 | مرتفع | 7.8 |
Improper input validation in Microsoft PowerShell allows an unauthorized attacker to bypass a security feature locally.
|
— | أبريل 14, 2026 |
| CVE-2026-27293 | مرتفع | 7.8 |
Adobe Framemaker versions 2022.8 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could resul…
|
— | أبريل 14, 2026 |
| CVE-2026-27292 | مرتفع | 7.8 |
Adobe Framemaker versions 2022.8 and earlier are affected by a Use After Free vulnerability that could result in arbitra…
|
— | أبريل 14, 2026 |
| CVE-2026-27289 | مرتفع | 7.8 |
Photoshop Desktop versions 27.4 and earlier are affected by an out-of-bounds read vulnerability when parsing a crafted f…
|
— | أبريل 14, 2026 |
| CVE-2026-27283 | مرتفع | 7.8 |
InDesign Desktop versions 20.5.2, 21.2 and earlier are affected by a Use After Free vulnerability that could result in a…
|
— | أبريل 14, 2026 |
| CVE-2026-27284 | مرتفع | 7.8 |
InDesign Desktop versions 20.5.2, 21.2 and earlier are affected by an out-of-bounds read vulnerability when parsing a cr…
|
— | أبريل 14, 2026 |
| CVE-2026-27287 | مرتفع | 7.8 |
InCopy versions 20.5.2, 21.2 and earlier are affected by an out-of-bounds read vulnerability when parsing a crafted file…
|
— | أبريل 14, 2026 |
| CVE-2026-27294 | مرتفع | 7.8 |
Adobe Framemaker versions 2022.8 and earlier are affected by an out-of-bounds read vulnerability when parsing a crafted …
|
— | أبريل 14, 2026 |