Known Vulnerabilities for Windows COM by Microsoft Corporation
Listed below are 10 of the newest known vulnerabilities associated with "Windows COM" by "Microsoft Corporation".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-93393 json | A heap-based buffer overflow exists in the TLS transport layer of the MongoDB C Driver when built with the Windows platform T... | Not Provided | 2026-09-17 | 2026-09-17 |
| CVE-2026-93381 json | Buffer overflow in PDFium in Google Chrome on on Windows prior to 153.0.8010.52 allowed a remote attacker leveraging social e... | Not Provided | 2026-09-17 | 2026-09-17 |
| CVE-2026-93375 json | Incorrect reference resolution in Tracing in Google Chrome on on Windows prior to 153.0.8010.52 allowed a local attacker to p... | Not Provided | 2026-09-17 | 2026-09-17 |
| CVE-2026-93093 json | In the Linux kernel, the following vulnerability has been resolved: firmware: arm_scmi: Publish channel state before callbac... | Not Provided | 2026-09-17 | 2026-09-17 |
| CVE-2026-92919 json | admin3 through 3.0.0 fails to sanitize client-supplied filenames in the upload handler, allowing authenticated users to write... | Not Provided | 2026-09-17 | 2026-09-17 |
| CVE-2026-92299 json | @jitsi/electron-sdk before 10.0.5 exposes getDesktopSources() via contextBridge without requiring an active getDisplayMedia()... | Not Provided | 2026-09-16 | 2026-09-16 |
| CVE-2026-91734 json | Incorrect authorization in Core in Google Chrome on on Windows prior to 153.0.8010.47 allowed a local attacker to execute arb... | Not Provided | 2026-09-15 | 2026-09-17 |
| CVE-2026-90982 json | @fastify/static is a Fastify plugin that serves static files from a configured root directory. In versions before 10.1.4, on ... | Not Provided | 2026-09-17 | 2026-09-17 |
| CVE-2026-90647 json | ASE/Kalkitech ASE2000 V2 Communication Test Set 2.35 through 2.37 on Windows contains an improper certificate validation vuln... | Not Provided | 2026-09-12 | 2026-09-15 |
| CVE-2026-90493 json | A vulnerability was detected in Tonec Internet Download Manager up to 6.42 Build 63 on Windows. The impacted element is an un... | Not Provided | 2026-09-13 | 2026-09-15 |