Known Vulnerabilities for Surface by Microsoft
Listed below are 1 of the newest known vulnerabilities associated with "Surface" by "Microsoft".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-43992 json | JunoClaw is an agentic AI platform built on Juno Network. Prior to 0.x.y-security-1, every MCP write tool (send_tokens, execu... | Not Provided | 2026-05-12 | 2026-05-12 |
| CVE-2026-43930 json | Parse Server is an open source backend that can be deployed to any infrastructure that can run Node.js. Prior to 8.6.76 and 9... | Not Provided | 2026-05-12 | 2026-05-12 |
| CVE-2026-42873 json | WeGIA is a web manager for charitable institutions. In versions prior to 3.6.10, when attempting to upload a file with malici... | Not Provided | 2026-05-11 | 2026-05-12 |
| CVE-2026-42871 json | WeGIA is a web manager for charitable institutions. In versions prior to 3.7.0, atendido/familiar_docfamiliar.php displays an... | Not Provided | 2026-05-11 | 2026-05-11 |
| CVE-2026-42786 json | Allocation of Resources Without Limits or Throttling vulnerability in mtrudel bandit allows unauthenticated remote denial of ... | Not Provided | 2026-05-01 | 2026-05-04 |
| CVE-2026-42027 json | Arbitrary Class Instantiation via Model Manifest in Apache OpenNLP ExtensionLoader Versions Affected: before 2.5.9, befo... | Not Provided | 2026-05-04 | 2026-05-05 |
| CVE-2026-41145 json | MinIO is a high-performance object storage system. Starting in RELEASE.2023-05-18T00-05-36Z and prior to RELEASE.2026-04-11T0... | Not Provided | 2026-04-22 | 2026-04-22 |
| CVE-2026-40557 json | Improper Certificate Validation via Global SSL Context Downgrade in Apache Storm Prometheus Reporter Versions Affected: fro... | Not Provided | 2026-04-27 | 2026-04-30 |
| CVE-2026-40525 json | OpenViking prior to version 0.3.9 contains an authentication bypass vulnerability in the VikingBot OpenAPI HTTP route surfac... | Not Provided | 2026-04-17 | 2026-04-21 |
| CVE-2026-40344 json | MinIO is a high-performance object storage system. Starting in RELEASE.2023-05-18T00-05-36Z and prior to RELEASE.2026-04-11T0... | Not Provided | 2026-04-22 | 2026-04-22 |