Known Vulnerabilities for Project Server by Microsoft
Listed below are 10 of the newest known vulnerabilities associated with "Project Server" by "Microsoft".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-55736 json | Improperly Controlled Modification of Dynamically-Determined Object Attributes vulnerability in ash-project ash allows a user... | Not Provided | 2026-06-23 | 2026-06-23 |
| CVE-2026-50178 json | The Angular Language Service VS Code Extension provides a rich editing experience for Angular templates. the client-side Angu... | Not Provided | 2026-06-22 | 2026-06-22 |
| CVE-2026-49357 json | Line Desktop MCP is a project that, while unaffiliated with the official line-bot-mcp-server, allows users to directly operat... | Not Provided | 2026-06-19 | 2026-06-22 |
| CVE-2026-49144 json | BrowserStack Runner through 0.9.5 contains a path traversal vulnerability in the _default HTTP handler in lib/server.js that ... | Not Provided | 2026-06-02 | 2026-06-03 |
| CVE-2026-48989 json | Windows-MCP is an open-source project that integrates AI agents with Windows. In versions prior to 0.7.5, certain HTTP modes ... | Not Provided | 2026-06-17 | 2026-06-18 |
| CVE-2026-45833 json | A code injection vulnerability in version 0.4.17 or later of the ChromaDB Python project allows an authenticated attacker to ... | Not Provided | 2026-06-12 | 2026-06-12 |
| CVE-2026-45829 json | A pre-authentication, code injection vulnerability in version 1.0.0 or later of the ChromaDB Python project allows an unauthe... | Not Provided | 2026-05-18 | 2026-05-19 |
| CVE-2026-45582 json | n8n-MCP is an MCP server that provides AI assistants access to n8n node documentation, properties, and operations. Prior to 2... | Not Provided | 2026-05-29 | 2026-05-29 |
| CVE-2026-45483 json | Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office Project Server allow... | Not Provided | 2026-06-09 | 2026-06-17 |
| CVE-2026-43624 json | F5-TTS through version 1.1.20 contains a path traversal vulnerability in the finetune Gradio handlers that allows unauthentic... | Not Provided | 2026-06-01 | 2026-06-01 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Microsoft | Project Server | 2013 | |||
| Application | Microsoft | Project Server | 2013 | |||
| Application | Microsoft | Project Server | 2013 | |||
| Application | Microsoft | Project Server | 2010 | |||
| Application | Microsoft | Project Server | 2010 | |||
| Application | Microsoft | Project Server | 2010 | |||
| Application | Microsoft | Project Server | 2003 | |||
| Application | Microsoft | Project Server | 2002 | |||
| Application | Microsoft | Project Server | - |