<?xml version="1.0" encoding="UTF-8"?>
<feed xmlns="http://www.w3.org/2005/Atom"><title>Exploit Reality — KEV: Microsoft</title><link href="https://xploitwatch.com/feed/hersteller/microsoft.xml" rel="self"/><link href="https://xploitwatch.com/"/><id>https://xploitwatch.com/feed/hersteller/microsoft.xml</id><updated>2026-09-25T00:00:00Z</updated><author><name>Exploit Reality</name></author><entry><title>CVE-2026-65660 — SharePoint</title><link href="https://xploitwatch.com/cve/CVE-2026-65660"/><id>https://xploitwatch.com/cve/CVE-2026-65660</id><updated>2026-09-25T00:00:00Z</updated><summary>Microsoft SharePoint Code Injection Vulnerability</summary></entry><entry><title>CVE-2026-85880 — Windows</title><link href="https://xploitwatch.com/cve/CVE-2026-85880"/><id>https://xploitwatch.com/cve/CVE-2026-85880</id><updated>2026-09-08T00:00:00Z</updated><summary>Microsoft Windows Heap-Based Buffer Overflow Vulnerability</summary></entry><entry><title>CVE-2026-81963 — Windows</title><link href="https://xploitwatch.com/cve/CVE-2026-81963"/><id>https://xploitwatch.com/cve/CVE-2026-81963</id><updated>2026-09-08T00:00:00Z</updated><summary>Microsoft Windows Link Following Vulnerability</summary></entry><entry><title>CVE-2019-1068 — SQL Server</title><link href="https://xploitwatch.com/cve/CVE-2019-1068"/><id>https://xploitwatch.com/cve/CVE-2019-1068</id><updated>2026-08-26T00:00:00Z</updated><summary>Microsoft SQL Server Remote Code Execution Vulnerability</summary></entry><entry><title>CVE-2026-55040 — SharePoint</title><link href="https://xploitwatch.com/cve/CVE-2026-55040"/><id>https://xploitwatch.com/cve/CVE-2026-55040</id><updated>2026-08-18T00:00:00Z</updated><summary>Microsoft SharePoint Weak Authentication Vulnerability</summary></entry><entry><title>CVE-2026-33824 — Internet Key Exchange (IKE) Service Extensions</title><link href="https://xploitwatch.com/cve/CVE-2026-33824"/><id>https://xploitwatch.com/cve/CVE-2026-33824</id><updated>2026-08-18T00:00:00Z</updated><summary>Microsoft Internet Key Exchange (IKE) Service Extensions Double Free Vulnerability</summary></entry><entry><title>CVE-2026-68820 — Windows Ancillary Function Driver for WinSock </title><link href="https://xploitwatch.com/cve/CVE-2026-68820"/><id>https://xploitwatch.com/cve/CVE-2026-68820</id><updated>2026-08-11T00:00:00Z</updated><summary>Microsoft Windows Ancillary Function Driver for WinSock Use-After-Free Vulnerability</summary></entry><entry><title>CVE-2026-50522 — SharePoint</title><link href="https://xploitwatch.com/cve/CVE-2026-50522"/><id>https://xploitwatch.com/cve/CVE-2026-50522</id><updated>2026-07-22T00:00:00Z</updated><summary>Microsoft SharePoint Deserialization of Untrusted Data Vulnerability </summary></entry><entry><title>CVE-2026-58644 — SharePoint</title><link href="https://xploitwatch.com/cve/CVE-2026-58644"/><id>https://xploitwatch.com/cve/CVE-2026-58644</id><updated>2026-07-16T00:00:00Z</updated><summary>Microsoft SharePoint Deserialization of Untrusted Data Vulnerability</summary></entry><entry><title>CVE-2026-56164 — SharePoint Server</title><link href="https://xploitwatch.com/cve/CVE-2026-56164"/><id>https://xploitwatch.com/cve/CVE-2026-56164</id><updated>2026-07-14T00:00:00Z</updated><summary>Microsoft SharePoint Server Missing Authentication for Critical Function Vulnerability</summary></entry><entry><title>CVE-2026-56155 — Active Directory Federation Services</title><link href="https://xploitwatch.com/cve/CVE-2026-56155"/><id>https://xploitwatch.com/cve/CVE-2026-56155</id><updated>2026-07-14T00:00:00Z</updated><summary>Microsoft Active Directory Federation Services Insufficient Granularity of Access Control Vulnerability </summary></entry><entry><title>CVE-2026-45659 — SharePoint Server</title><link href="https://xploitwatch.com/cve/CVE-2026-45659"/><id>https://xploitwatch.com/cve/CVE-2026-45659</id><updated>2026-07-01T00:00:00Z</updated><summary>Microsoft SharePoint Server Deserialization of Untrusted Data Vulnerability</summary></entry><entry><title>CVE-2026-45498 — Defender</title><link href="https://xploitwatch.com/cve/CVE-2026-45498"/><id>https://xploitwatch.com/cve/CVE-2026-45498</id><updated>2026-05-20T00:00:00Z</updated><summary>Microsoft Defender Denial of Service Vulnerability</summary></entry><entry><title>CVE-2026-41091 — Defender</title><link href="https://xploitwatch.com/cve/CVE-2026-41091"/><id>https://xploitwatch.com/cve/CVE-2026-41091</id><updated>2026-05-20T00:00:00Z</updated><summary>Microsoft Defender Link Following Vulnerability</summary></entry><entry><title>CVE-2010-0806 — Internet Explorer</title><link href="https://xploitwatch.com/cve/CVE-2010-0806"/><id>https://xploitwatch.com/cve/CVE-2010-0806</id><updated>2026-05-20T00:00:00Z</updated><summary>Microsoft Internet Explorer Use-After-Free Vulnerability</summary></entry><entry><title>CVE-2010-0249 — Internet Explorer</title><link href="https://xploitwatch.com/cve/CVE-2010-0249"/><id>https://xploitwatch.com/cve/CVE-2010-0249</id><updated>2026-05-20T00:00:00Z</updated><summary>Microsoft Internet Explorer Use-After-Free Vulnerability</summary></entry><entry><title>CVE-2009-1537 — DirectX</title><link href="https://xploitwatch.com/cve/CVE-2009-1537"/><id>https://xploitwatch.com/cve/CVE-2009-1537</id><updated>2026-05-20T00:00:00Z</updated><summary>Microsoft DirectX NULL Byte Overwrite Vulnerability</summary></entry><entry><title>CVE-2008-4250 — Windows</title><link href="https://xploitwatch.com/cve/CVE-2008-4250"/><id>https://xploitwatch.com/cve/CVE-2008-4250</id><updated>2026-05-20T00:00:00Z</updated><summary>Microsoft Windows Buffer Overflow Vulnerability</summary></entry><entry><title>CVE-2026-42897 — Microsoft</title><link href="https://xploitwatch.com/cve/CVE-2026-42897"/><id>https://xploitwatch.com/cve/CVE-2026-42897</id><updated>2026-05-15T00:00:00Z</updated><summary>Microsoft Exchange Server Cross-Site Scripting Vulnerability</summary></entry><entry><title>CVE-2026-32202 — Windows</title><link href="https://xploitwatch.com/cve/CVE-2026-32202"/><id>https://xploitwatch.com/cve/CVE-2026-32202</id><updated>2026-04-28T00:00:00Z</updated><summary>Microsoft Windows Protection Mechanism Failure Vulnerability</summary></entry><entry><title>CVE-2026-33825 — Defender</title><link href="https://xploitwatch.com/cve/CVE-2026-33825"/><id>https://xploitwatch.com/cve/CVE-2026-33825</id><updated>2026-04-22T00:00:00Z</updated><summary>Microsoft Defender Insufficient Granularity of Access Control Vulnerability</summary></entry><entry><title>CVE-2026-32201 — SharePoint Server</title><link href="https://xploitwatch.com/cve/CVE-2026-32201"/><id>https://xploitwatch.com/cve/CVE-2026-32201</id><updated>2026-04-14T00:00:00Z</updated><summary>Microsoft SharePoint Server Improper Input Validation Vulnerability</summary></entry><entry><title>CVE-2009-0238 — Office</title><link href="https://xploitwatch.com/cve/CVE-2009-0238"/><id>https://xploitwatch.com/cve/CVE-2009-0238</id><updated>2026-04-14T00:00:00Z</updated><summary>Microsoft Office Remote Code Execution</summary></entry><entry><title>CVE-2025-60710 — Windows</title><link href="https://xploitwatch.com/cve/CVE-2025-60710"/><id>https://xploitwatch.com/cve/CVE-2025-60710</id><updated>2026-04-13T00:00:00Z</updated><summary>Microsoft Windows Link Following Vulnerability</summary></entry><entry><title>CVE-2023-36424 — Windows</title><link href="https://xploitwatch.com/cve/CVE-2023-36424"/><id>https://xploitwatch.com/cve/CVE-2023-36424</id><updated>2026-04-13T00:00:00Z</updated><summary>Microsoft Windows Out-of-Bounds Read Vulnerability</summary></entry><entry><title>CVE-2023-21529 — Exchange Server</title><link href="https://xploitwatch.com/cve/CVE-2023-21529"/><id>https://xploitwatch.com/cve/CVE-2023-21529</id><updated>2026-04-13T00:00:00Z</updated><summary>Microsoft Exchange Server Deserialization of Untrusted Data Vulnerability</summary></entry><entry><title>CVE-2012-1854 — Visual Basic for Applications (VBA)</title><link href="https://xploitwatch.com/cve/CVE-2012-1854"/><id>https://xploitwatch.com/cve/CVE-2012-1854</id><updated>2026-04-13T00:00:00Z</updated><summary>Microsoft Visual Basic for Applications Insecure Library Loading Vulnerability</summary></entry><entry><title>CVE-2026-20963 — SharePoint</title><link href="https://xploitwatch.com/cve/CVE-2026-20963"/><id>https://xploitwatch.com/cve/CVE-2026-20963</id><updated>2026-03-18T00:00:00Z</updated><summary>Microsoft SharePoint Deserialization of Untrusted Data Vulnerability</summary></entry><entry><title>CVE-2008-0015 — Windows</title><link href="https://xploitwatch.com/cve/CVE-2008-0015"/><id>https://xploitwatch.com/cve/CVE-2008-0015</id><updated>2026-02-17T00:00:00Z</updated><summary> Microsoft Windows Video ActiveX Control Remote Code Execution Vulnerability</summary></entry><entry><title>CVE-2024-43468 — Configuration Manager</title><link href="https://xploitwatch.com/cve/CVE-2024-43468"/><id>https://xploitwatch.com/cve/CVE-2024-43468</id><updated>2026-02-12T00:00:00Z</updated><summary>Microsoft Configuration Manager SQL Injection Vulnerability</summary></entry><entry><title>CVE-2026-21533 — Windows</title><link href="https://xploitwatch.com/cve/CVE-2026-21533"/><id>https://xploitwatch.com/cve/CVE-2026-21533</id><updated>2026-02-10T00:00:00Z</updated><summary>Microsoft Windows Improper Privilege Management Vulnerability</summary></entry><entry><title>CVE-2026-21525 — Windows</title><link href="https://xploitwatch.com/cve/CVE-2026-21525"/><id>https://xploitwatch.com/cve/CVE-2026-21525</id><updated>2026-02-10T00:00:00Z</updated><summary>Microsoft Windows NULL Pointer Dereference Vulnerability</summary></entry><entry><title>CVE-2026-21519 — Windows</title><link href="https://xploitwatch.com/cve/CVE-2026-21519"/><id>https://xploitwatch.com/cve/CVE-2026-21519</id><updated>2026-02-10T00:00:00Z</updated><summary>Microsoft Windows Type Confusion Vulnerability</summary></entry><entry><title>CVE-2026-21514 — Office</title><link href="https://xploitwatch.com/cve/CVE-2026-21514"/><id>https://xploitwatch.com/cve/CVE-2026-21514</id><updated>2026-02-10T00:00:00Z</updated><summary>Microsoft Office Word Reliance on Untrusted Inputs in a Security Decision Vulnerability</summary></entry><entry><title>CVE-2026-21513 — Windows</title><link href="https://xploitwatch.com/cve/CVE-2026-21513"/><id>https://xploitwatch.com/cve/CVE-2026-21513</id><updated>2026-02-10T00:00:00Z</updated><summary>Microsoft MSHTML Framework Protection Mechanism Failure Vulnerability</summary></entry><entry><title>CVE-2026-21510 — Windows</title><link href="https://xploitwatch.com/cve/CVE-2026-21510"/><id>https://xploitwatch.com/cve/CVE-2026-21510</id><updated>2026-02-10T00:00:00Z</updated><summary>Microsoft Windows Shell Protection Mechanism Failure Vulnerability</summary></entry><entry><title>CVE-2026-21509 — Office</title><link href="https://xploitwatch.com/cve/CVE-2026-21509"/><id>https://xploitwatch.com/cve/CVE-2026-21509</id><updated>2026-01-26T00:00:00Z</updated><summary>Microsoft Office Security Feature Bypass Vulnerability</summary></entry><entry><title>CVE-2026-20805 — Windows</title><link href="https://xploitwatch.com/cve/CVE-2026-20805"/><id>https://xploitwatch.com/cve/CVE-2026-20805</id><updated>2026-01-13T00:00:00Z</updated><summary>Microsoft Windows Information Disclosure Vulnerability</summary></entry><entry><title>CVE-2009-0556 — Office</title><link href="https://xploitwatch.com/cve/CVE-2009-0556"/><id>https://xploitwatch.com/cve/CVE-2009-0556</id><updated>2026-01-07T00:00:00Z</updated><summary>Microsoft Office PowerPoint Code Injection Vulnerability</summary></entry><entry><title>CVE-2025-62221 — Windows</title><link href="https://xploitwatch.com/cve/CVE-2025-62221"/><id>https://xploitwatch.com/cve/CVE-2025-62221</id><updated>2025-12-09T00:00:00Z</updated><summary>Microsoft Windows Use After Free Vulnerability</summary></entry><entry><title>CVE-2025-62215 — Windows</title><link href="https://xploitwatch.com/cve/CVE-2025-62215"/><id>https://xploitwatch.com/cve/CVE-2025-62215</id><updated>2025-11-12T00:00:00Z</updated><summary>Microsoft Windows Race Condition Vulnerability</summary></entry><entry><title>CVE-2025-59287 — Windows</title><link href="https://xploitwatch.com/cve/CVE-2025-59287"/><id>https://xploitwatch.com/cve/CVE-2025-59287</id><updated>2025-10-24T00:00:00Z</updated><summary>Microsoft Windows Server Update Service (WSUS) Deserialization of Untrusted Data Vulnerability</summary></entry><entry><title>CVE-2025-33073 — Windows</title><link href="https://xploitwatch.com/cve/CVE-2025-33073"/><id>https://xploitwatch.com/cve/CVE-2025-33073</id><updated>2025-10-20T00:00:00Z</updated><summary>Microsoft Windows SMB Client Improper Access Control Vulnerability</summary></entry><entry><title>CVE-2025-59230 — Windows</title><link href="https://xploitwatch.com/cve/CVE-2025-59230"/><id>https://xploitwatch.com/cve/CVE-2025-59230</id><updated>2025-10-14T00:00:00Z</updated><summary>Microsoft Windows Improper Access Control Vulnerability</summary></entry><entry><title>CVE-2025-24990 — Windows</title><link href="https://xploitwatch.com/cve/CVE-2025-24990"/><id>https://xploitwatch.com/cve/CVE-2025-24990</id><updated>2025-10-14T00:00:00Z</updated><summary>Microsoft Windows Untrusted Pointer Dereference Vulnerability</summary></entry><entry><title>CVE-2021-43226 — Windows</title><link href="https://xploitwatch.com/cve/CVE-2021-43226"/><id>https://xploitwatch.com/cve/CVE-2021-43226</id><updated>2025-10-06T00:00:00Z</updated><summary>Microsoft Windows Privilege Escalation Vulnerability</summary></entry><entry><title>CVE-2013-3918 — Windows</title><link href="https://xploitwatch.com/cve/CVE-2013-3918"/><id>https://xploitwatch.com/cve/CVE-2013-3918</id><updated>2025-10-06T00:00:00Z</updated><summary>Microsoft Windows Out-of-Bounds Write Vulnerability</summary></entry><entry><title>CVE-2011-3402 — Windows</title><link href="https://xploitwatch.com/cve/CVE-2011-3402"/><id>https://xploitwatch.com/cve/CVE-2011-3402</id><updated>2025-10-06T00:00:00Z</updated><summary>Microsoft Windows Remote Code Execution Vulnerability</summary></entry><entry><title>CVE-2010-3962 — Internet Explorer</title><link href="https://xploitwatch.com/cve/CVE-2010-3962"/><id>https://xploitwatch.com/cve/CVE-2010-3962</id><updated>2025-10-06T00:00:00Z</updated><summary>Microsoft Internet Explorer Uninitialized Memory Corruption Vulnerability</summary></entry><entry><title>CVE-2013-3893 — Internet Explorer</title><link href="https://xploitwatch.com/cve/CVE-2013-3893"/><id>https://xploitwatch.com/cve/CVE-2013-3893</id><updated>2025-08-12T00:00:00Z</updated><summary>Microsoft Internet Explorer Resource Management Errors Vulnerability</summary></entry></feed>
