Known Vulnerabilities for Active Directory by Microsoft Corporation
Listed below are 10 of the newest known vulnerabilities associated with "Active Directory" by "Microsoft Corporation".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-59998 json | sshd in OpenSSH before 10.4 has an undocumented security-relevant behavior: GSSAPIStrictAcceptorCheck has no value if the ser... | Not Provided | 2026-07-08 | 2026-07-08 |
| CVE-2026-59269 json | A user authenticating to Kubernetes clusters via the Pinniped Supervisor could potentially gain elevated permissions in the c... | Not Provided | 2026-07-09 | 2026-07-09 |
| CVE-2026-58529 json | Out-of-bounds read in Active Directory Federation Services (AD FS) allows an authorized attacker to disclose information over... | Not Provided | 2026-07-14 | 2026-07-15 |
| CVE-2026-57976 json | Null pointer dereference in Active Directory Domain Services allows an authorized attacker to deny service over a network. | Not Provided | 2026-07-14 | 2026-07-22 |
| CVE-2026-57288 json | Jenkins Active Directory Plugin 2.41.1 and earlier does not escape the user name before building the LDAP search filter in th... | Not Provided | 2026-06-24 | 2026-06-24 |
| CVE-2026-56425 json | The Azure Active Directory (AAD) authentication implementation contained multiple weaknesses in its OAuth 2.0 authorization f... | Not Provided | 2026-06-22 | 2026-06-23 |
| CVE-2026-56155 json | Insufficient granularity of access control in Active Directory Federation Services (AD FS) allows an authorized attacker to e... | Not Provided | 2026-07-14 | 2026-07-15 |
| CVE-2026-55001 json | Improper certificate validation in Windows Active Directory allows an authorized attacker to elevate privileges locally. | Not Provided | 2026-07-14 | 2026-07-15 |
| CVE-2026-54983 json | Stack-based buffer overflow in Active Directory Federation Services (AD FS) allows an unauthorized attacker to deny service o... | Not Provided | 2026-07-14 | 2026-07-17 |
| CVE-2026-54733 json | The Microsoft 365 and Microsoft Entra ID Plugins for Moodle provide Office 365 and Azure Active Directory integration for Moo... | Not Provided | 2026-07-16 | 2026-07-16 |