Known Vulnerabilities for Expression Web by Microsoft
Listed below are 8 of the newest known vulnerabilities associated with "Expression Web" by "Microsoft".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-49943 json | CZ.NIC BIRD Internet Routing Daemon through 2.19.0 contains a stack-based buffer overflow in the BGP AS_PATH mask matching im... | Not Provided | 2026-06-02 | 2026-06-02 |
| CVE-2026-48962 json | IO::Compress versions before 2.220 for Perl can execute arbitrary code in File::GlobMapper via an attacker-controlled output ... | Not Provided | 2026-05-27 | 2026-05-27 |
| CVE-2026-48593 json | Uncontrolled Resource Consumption vulnerability in oban-bg oban_web ('Elixir.Oban.Web.CronExpr' modules) allows memory exhaus... | Not Provided | 2026-05-26 | 2026-05-27 |
| CVE-2026-46624 json | Twenty is an open source CRM. From 1.7.7 through 1.16.7, a critical Remote Code Execution (RCE) vulnerability exists in Twent... | Not Provided | 2026-05-26 | 2026-05-26 |
| CVE-2026-46209 json | In the Linux kernel, the following vulnerability has been resolved: drm/gem: Fix inconsistent plane dimension calculation in... | Not Provided | 2026-05-28 | 2026-06-01 |
| CVE-2026-45411 json | vm2 is an open source vm/sandbox for Node.js. Prior to 3.11.3, it is possible to catch a host exception using the yield* expr... | Not Provided | 2026-05-13 | 2026-05-13 |
| CVE-2026-45083 json | The Goobi viewer is a web application that allows digitised material to be displayed in a web browser. From 4.8.0 to before 2... | Not Provided | 2026-05-27 | 2026-05-28 |
| CVE-2026-44643 json | Angular Expressions provides expressions for the Angular.JS web framework as a standalone module. Prior to 1.5.2, an attacker... | Not Provided | 2026-05-11 | 2026-05-11 |
| CVE-2026-44637 json | libsixel is a SIXEL encoder/decoder implementation derived from kmiya's sixel. From to 1.8.7-r1, a signed integer overflow i... | Not Provided | 2026-05-14 | 2026-05-15 |
| CVE-2026-44477 json | CloudNativePG is a platform designed to manage PostgreSQL databases within Kubernetes environments. Prior to 1.29.1 and 1.28.... | Not Provided | 2026-05-28 | 2026-05-28 |