Vulnerabilità Microsoft sotto sfruttamento attivo
38 CVE in questa pagina mostrano prove di sfruttamento.
Quali vulnerabilità Microsoft vengono sfruttate?
35 di queste sono nel catalogo CISA KEV.
4 sono state aggiunte a KEV negli ultimi 90 giorni.
- CVE-2026-50522 In KEV dal 2026-07-22 · Correzione identificata
- CVE-2026-56164 In KEV dal 2026-07-14 · Correzione identificata
- CVE-2026-45498 In KEV dal 2026-05-20 · EPSS 63% · Correzione identificata
- CVE-2026-41091 In KEV dal 2026-05-20 · EPSS 10% · Correzione identificata
- CVE-2026-33825 In KEV dal 2026-04-22 · Correzione identificata
- CVE-2026-34197 In KEV dal 2026-04-16 · EPSS 97% · Nessuna correzione identificata qui
- CVE-2009-0238 In KEV dal 2026-04-14 · EPSS 43% · Nessuna correzione identificata qui
- CVE-2026-32201 In KEV dal 2026-04-14 · Correzione identificata
- CVE-2026-21643 In KEV dal 2026-04-13 · EPSS 94% · Nessuna correzione identificata qui
- CVE-2023-21529 In KEV dal 2026-04-13 · EPSS 62% · Nessuna correzione identificata qui
- CVE-2020-9715 In KEV dal 2026-04-13 · EPSS 48% · Nessuna correzione identificata qui
- CVE-2012-1854 In KEV dal 2026-04-13 · EPSS 21% · Nessuna correzione identificata qui
- CVE-2023-36424 In KEV dal 2026-04-13 · EPSS 12% · Nessuna correzione identificata qui
- CVE-2026-34621 In KEV dal 2026-04-13 · EPSS 7% · Nessuna correzione identificata qui
- CVE-2025-60710 In KEV dal 2026-04-13 · EPSS 5% · Nessuna correzione identificata qui
- CVE-2026-5281 In KEV dal 2026-04-01 · EPSS 5% · Correzione identificata
- CVE-2026-20963 In KEV dal 2026-03-18 · EPSS 32% · Nessuna correzione identificata qui
- CVE-2026-20700 In KEV dal 2026-02-12 · EPSS 1% · Correzione identificata
- CVE-2026-21510 In KEV dal 2026-02-10 · EPSS 26% · Correzione identificata
- CVE-2026-21513 In KEV dal 2026-02-10 · EPSS 15% · Correzione identificata
- CVE-2026-21525 In KEV dal 2026-02-10 · EPSS 5% · Correzione identificata
- CVE-2026-21533 In KEV dal 2026-02-10 · EPSS 4% · Correzione identificata
- CVE-2026-21519 In KEV dal 2026-02-10 · EPSS 2% · Correzione identificata
- CVE-2026-21514 In KEV dal 2026-02-10 · EPSS 2% · Correzione identificata
- CVE-2026-21509 In KEV dal 2026-01-26 · EPSS 72% · Nessuna correzione identificata qui
- CVE-2025-55182 In KEV dal 2025-12-05 · EPSS 99.6% · Usata nel ransomware · Correzione identificata
- CVE-2025-61882 In KEV dal 2025-10-06 · EPSS 99.7% · Usata nel ransomware · Nessuna correzione identificata qui
- CVE-2025-53770 In KEV dal 2025-07-20 · EPSS 100.0% · Usata nel ransomware · Nessuna correzione identificata qui
- CVE-2025-31324 In KEV dal 2025-04-29 · EPSS 99.5% · Usata nel ransomware · Nessuna correzione identificata qui
- CVE-2025-24472 In KEV dal 2025-03-18 · EPSS 4% · Usata nel ransomware · Nessuna correzione identificata qui
- CVE-2024-55591 In KEV dal 2025-01-14 · EPSS 98% · Usata nel ransomware · Nessuna correzione identificata qui
- CVE-2021-26855 In KEV dal 2021-11-03 · EPSS 100.0% · Usata nel ransomware · Nessuna correzione identificata qui
- CVE-2021-27065 In KEV dal 2021-11-03 · EPSS 99.9% · Usata nel ransomware · Nessuna correzione identificata qui
- CVE-2021-26857 In KEV dal 2021-11-03 · EPSS 94% · Usata nel ransomware · Nessuna correzione identificata qui
- CVE-2021-26858 In KEV dal 2021-11-03 · EPSS 90% · Usata nel ransomware · Nessuna correzione identificata qui
- CVE-2026-41089 EPSS 80% · Correzione identificata
- CVE-2026-28289 EPSS 31% · Nessuna correzione identificata qui
- CVE-2026-50656 EPSS 11% · Correzione identificata
Quali di queste hanno una correzione?
Possiamo indicare una correzione per 17 di queste.
Per le altre non abbiamo un identificativo di patch, il che non significa che una patch non esista.
Cosa ha pubblicato PlainSec su Microsoft
Quali prodotti Microsoft segue questa pagina
- Active Directory
- Azure
- Azure Sentinel
- Exchange Online
- Exchange Server
- Intune
- Microsoft
- Microsoft 365
- Microsoft Active Directory
- Microsoft Azure
- Microsoft Copilot
- Microsoft Defender
- Microsoft Edge
- Microsoft Entra ID
- Microsoft Excel
- Microsoft Exchange
- Microsoft Exchange Online
- Microsoft Intune
- Microsoft Office
- Microsoft Power Platform
- Microsoft Sentinel
- Microsoft SharePoint
- Microsoft Teams
- Microsoft Windows
- Microsoft Windows 10
- Microsoft Windows 11
- Microsoft Windows Server
- Microsoft Word
- Office 365
- Power Automate
- SharePoint
- Teams
- Windows
- Windows Defender
- Windows Server
KEV ed EPSS vengono ricontrollati ogni giorno. Pagina aggiornata il 2026-08-16.