SEARCHSearch the cs-graph

CVE-#### · MITRE T#### · CWE-#### · ATLAS AML.T#### · D3-XX · compliance article references. Authored by Adam Lundqvist.

37 results for “kev-cve-2026-45498” · 0.53 s · cached

Facets · 1 entity types

37 CVE
CVE-2026-45458CVE

CVE-2026-45458

Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.

CVSS 8.4EPSS 0.4%microsoft
Match for kev-cve-2026-45498
CVE-2026-44812CVE

CVE-2026-44812

Integer overflow or wraparound in Windows Win32K - GRFX allows an unauthorized attacker to execute code locally.

CVSS 7.8EPSS 0.5%microsoft
Match for kev-cve-2026-45498
CVE-2026-24754CVE

CVE-2026-24754

Kiteworks is a private data network (PDN). Prior to version 9.3.0, a stored XSS vulnerability in Kiteworks Secure Data Forms could allow an authenticated attacker to execute arbitrary JavaScript code…

CVSS 5.4EPSS 0.1%accellion
Match for kev-cve-2026-45498
CVE-2026-45434CVE

CVE-2026-45434

Improper Authentication vulnerability in Apache OFBiz via Password-Change Logic Flaw Leading to Remote Code Execution This issue affects Apache OFBiz: before 24.09.06. Users are recommended to upgr…

CVSS 9.8EPSS 1.3%
Match for kev-cve-2026-45498
CVE-2026-45654CVE

CVE-2026-45654

Improper access control in Windows Secure Boot allows an authorized attacker to bypass a security feature locally.

CVSS 7.9EPSS 0.3%microsoft
Match for kev-cve-2026-45498
CVE-2026-45463CVE

CVE-2026-45463

Integer underflow (wrap or wraparound) in Microsoft Office allows an unauthorized attacker to execute code locally.

CVSS 8.4EPSS 0.4%microsoft
Match for kev-cve-2026-45498
CVE-2026-45402CVE

CVE-2026-45402

Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Prior to 0.9.5, multiple endpoints accept a user-supplied file_id and attach the referenced file to …

CVSS 8.1EPSS 0.4%
Match for kev-cve-2026-45498
CVE-2026-45472CVE

CVE-2026-45472

Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.

CVSS 8.4EPSS 0.4%microsoft
Match for kev-cve-2026-45498
CVE-2026-45445CVE

CVE-2026-45445

Issue summary: When an application drives an AES-OCB context through the public EVP_Cipher() one-shot interface, the application-supplied initialisation vector (IV) is silently discarded. Impact sum…

CVSS 7.5EPSS 0.7%openssl
Match for kev-cve-2026-45498
CVE-2026-45456CVE

CVE-2026-45456

Access of resource using incompatible type ('type confusion') in Microsoft Office allows an unauthorized attacker to execute code locally.

CVSS 8.4EPSS 0.4%microsoft
Match for kev-cve-2026-45498
CVE-2026-45461CVE

CVE-2026-45461

Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.

CVSS 8.4EPSS 0.4%microsoft
Match for kev-cve-2026-45498
CVE-2026-45648CVE

CVE-2026-45648

Stack-based buffer overflow in Active Directory Domain Services allows an authorized attacker to execute code over a network.

CVSS 8.8EPSS 0.9%microsoft
Match for kev-cve-2026-45498
CVE-2026-45475CVE

CVE-2026-45475

Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally.

CVSS 7.8EPSS 0.6%microsoft
Match for kev-cve-2026-45498
CVE-2026-4460CVE

CVE-2026-4460

Out of bounds read in Skia in Google Chrome prior to 146.0.7680.153 allowed a remote attacker to perform an out of bounds memory read via a crafted HTML page. (Chromium security severity: High)

CVSS 8.8EPSS 0.3%
Match for kev-cve-2026-45498
CVE-2026-45486CVE

CVE-2026-45486

Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally.

CVSS 7.8EPSS 0.5%microsoft
Match for kev-cve-2026-45498
CVE-2026-47309CVE

CVE-2026-47309

Uncontrolled Recursion vulnerability in Samsung Open Source Escargot allows Oversized Serialized Data Payloads. This issue affects Escargot: 590345cc6258317c5da850d846ce6baaf2afc2d3.

CVSS 5.5EPSS 0.3%samsung
Match for kev-cve-2026-45498
CVE-2026-46291CVE

CVE-2026-46291

In the Linux kernel, the following vulnerability has been resolved: crypto: caam - guard HMAC key hex dumps in hash_digest_key Use print_hex_dump_devel() for dumping sensitive HMAC key bytes in has…

CVSS 5.5EPSS 0.2%linux
Match for kev-cve-2026-45498
Hybrid search: an exact-match keyword pass (title + MITRE-ID + body-head) fused with Vertex AI semantic similarity (text-embedding-005, cosine vector search over the corpus) via reciprocal-rank fusion — exact IDs stay pinned, related concepts surface by meaning. Curated by Adam Lundqvist, Founder at SQUR.