Known Vulnerabilities for Powershell by Microsoft
Listed below are 10 of the newest known vulnerabilities associated with "Powershell" by "Microsoft".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-53836 json | OpenClaw before 2026.5.12 contains an allowlist bypass vulnerability in PowerShell encoded-command handling that allows attac... | Not Provided | 2026-06-12 | 2026-06-15 |
| CVE-2026-48989 json | Windows-MCP is an open-source project that integrates AI agents with Windows. In versions prior to 0.7.5, certain HTTP modes ... | Not Provided | 2026-06-17 | 2026-06-18 |
| CVE-2026-45369 json | python-utcp is the python implementation of UTCP. Prior to 1.1.3, the _substitute_utcp_args method in cli_communication_proto... | Not Provided | 2026-05-14 | 2026-05-16 |
| CVE-2026-45322 json | Microsoft UFO open-source framework for intelligent automation across devices and platforms. Microsoft UFO tagged releases up... | Not Provided | 2026-05-27 | 2026-05-28 |
| CVE-2026-42598 json | Pode is a Cross-Platform PowerShell web framework for creating REST APIs, Web Sites, and TCP/SMTP servers. From 2.4.0, to bef... | Not Provided | 2026-05-14 | 2026-05-14 |
| CVE-2026-33623 json | PinchTab is a standalone HTTP server that gives AI agents direct control over a Chrome browser. PinchTab `v0.8.4` contains a ... | Not Provided | 2026-03-26 | 2026-03-27 |
| CVE-2026-33414 json | Podman is a tool for managing OCI containers and pods. Versions 4.8.0 through 5.8.1 contain a command injection vulnerability... | Not Provided | 2026-04-14 | 2026-04-16 |
| CVE-2026-30313 json | DSAI-Cline's command auto-approval module contains a critical OS command injection vulnerability that renders its whitelist s... | Not Provided | 2026-03-30 | 2026-04-01 |
| CVE-2026-30312 json | DSAI-Cline's command auto-approval module contains a critical OS command injection vulnerability that renders its whitelist s... | Not Provided | 2026-03-31 | 2026-04-01 |
| CVE-2026-30309 json | InfCode's terminal auto-execution module contains a critical command filtering vulnerability that renders its blacklist secur... | Not Provided | 2026-03-31 | 2026-03-31 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Microsoft | Powershell | 7.0 |