|
261
|
8.8 |
HIGH
Network
|
microsoft
|
windows_app windows_10_1607 windows_10_1809 windows_10_21h2 windows_10_22h2 windows_11_23h2 windows_11_24h2 windows_11_25h2 windows_11_26h1 windows_server_2012 windows_s…
|
Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code over a network.
Update
|
CWE-122
Heap-based Buffer Overflow
|
CVE-2026-47289
|
2026-06-13 02:39 |
2026-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
262
|
8.8 |
HIGH
Network
|
microsoft
|
windows_10_1607 windows_10_1809 windows_10_21h2 windows_10_22h2 windows_11_23h2 windows_11_24h2 windows_11_25h2 windows_11_26h1 windows_server_2012 windows_server_2016 w…
|
Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code over a network.
Update
|
CWE-416 CWE-787
Use After Free Out-of-bounds Write
|
CVE-2026-47653
|
2026-06-13 02:32 |
2026-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
263
|
7.5 |
HIGH
Network
|
microsoft
|
windows_server_2016 windows_server_2019 windows_server_2022 windows_server_2025
|
Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code over a network.
Update
|
CWE-416 CWE-787
Use After Free Out-of-bounds Write
|
CVE-2026-47654
|
2026-06-13 02:27 |
2026-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264
|
8.3 |
HIGH
Network
|
google
|
chrome
|
Use after free in WebMIDI in Google Chrome on Windows prior to 149.0.7827.115 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted …
New
|
CWE-416
Use After Free
|
CVE-2026-12011
|
2026-06-13 02:20 |
2026-06-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265
|
7.5 |
HIGH
Network
|
microsoft
|
remote_desktop_client windows_app windows_10_1607 windows_10_1809 windows_10_21h2 windows_10_22h2 windows_11_23h2 windows_11_24h2 windows_11_25h2 windows_11_26h1 windows…
|
Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code over a network.
Update
|
CWE-416 CWE-787
Use After Free Out-of-bounds Write
|
CVE-2026-44801
|
2026-06-13 02:20 |
2026-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266
|
8.3 |
HIGH
Network
|
google
|
chrome
|
Heap buffer overflow in GPU in Google Chrome on Android prior to 149.0.7827.115 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafte…
New
|
CWE-122
Heap-based Buffer Overflow
|
CVE-2026-12010
|
2026-06-13 02:19 |
2026-06-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267
|
8.3 |
HIGH
Network
|
google
|
chrome
|
Insufficient validation of untrusted input in Accessibility in Google Chrome on Mac prior to 149.0.7827.115 allowed a remote attacker who had compromised the renderer process to potentially perform a…
New
|
CWE-20 NVD-CWE-noinfo
Improper Input Validation
|
CVE-2026-12009
|
2026-06-13 02:18 |
2026-06-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268
|
8.8 |
HIGH
Network
|
-
|
-
|
Mattermost versions 11.6.x <= 11.6.1, 11.5.x <= 11.5.4, 10.11.x <= 10.11.15, 10.11.x <= 10.11.16 Mattermost fails to require role-management authorization when setting the scheme_admin flag on group …
New
|
CWE-863
Incorrect Authorization
|
CVE-2026-7387
|
2026-06-13 02:16 |
2026-06-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
269
|
6.5 |
MEDIUM
Network
|
-
|
-
|
Mattermost versions 11.6.x <= 11.6.1, 11.5.x <= 11.5.4, 10.11.x <= 10.11.15 fail to sanitize the Remote Cluster API response on PATCH operations, which allows authenticated users with the {{manage_se…
New
|
CWE-201
Insertion of Sensitive Information Into Sent Data
|
CVE-2026-7184
|
2026-06-13 02:16 |
2026-06-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270
|
7.6 |
HIGH
Network
|
-
|
-
|
Mattermost versions 11.6.x <= 11.6.1, 11.5.x <= 11.5.4, 10.11.x <= 10.11.15, 10.11.x <= 10.11.16 Mattermost fails to sanitize FileInfo.Name received from federated peers during shared channel file sy…
New
|
CWE-22
Path Traversal
|
CVE-2026-6961
|
2026-06-13 02:16 |
2026-06-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|