CVE-2026-50523
- EPSS 0.22%
- Veröffentlicht 14.08.2026 21:17:18
- Zuletzt bearbeitet 18.08.2026 13:16:20
Improper neutralization of special elements used in a command ('command injection') in Microsoft PowerShell allows an authorized attacker to execute code locally.
CVE-2026-70337
- EPSS 0.76%
- Veröffentlicht 11.08.2026 17:07:13
- Zuletzt bearbeitet 14.08.2026 15:34:31
Relative path traversal in Microsoft PowerShell Core allows an unauthorized attacker to execute code over a network.
CVE-2026-70338
- EPSS 0.34%
- Veröffentlicht 11.08.2026 17:07:12
- Zuletzt bearbeitet 14.08.2026 17:09:32
Improper control of generation of code ('code injection') in Microsoft PowerShell allows an unauthorized attacker to bypass a security feature locally.
CVE-2026-59119
- EPSS 0.36%
- Veröffentlicht 11.08.2026 17:05:43
- Zuletzt bearbeitet 17.08.2026 11:31:25
Incorrect default permissions in Microsoft PowerShell allows an authorized attacker to elevate privileges locally.
CVE-2026-58612
- EPSS 0.79%
- Veröffentlicht 11.08.2026 17:03:39
- Zuletzt bearbeitet 17.08.2026 11:10:54
Server-side request forgery (ssrf) in Microsoft PowerShell Core allows an unauthorized attacker to disclose information over a network.
CVE-2026-26171
- EPSS 1.75%
- Veröffentlicht 14.04.2026 16:58:37
- Zuletzt bearbeitet 15.07.2026 02:19:00
Uncontrolled resource consumption in .NET allows an unauthorized attacker to deny service over a network.
CVE-2026-26143
- EPSS 0.54%
- Veröffentlicht 14.04.2026 16:57:53
- Zuletzt bearbeitet 27.04.2026 19:59:18
Improper input validation in Microsoft PowerShell allows an unauthorized attacker to bypass a security feature locally.
CVE-2025-25004
- EPSS 0.45%
- Veröffentlicht 14.10.2025 17:00:54
- Zuletzt bearbeitet 20.10.2025 20:06:19
Improper access control in Microsoft PowerShell allows an authorized attacker to elevate privileges locally.
- EPSS 0.32%
- Veröffentlicht 09.09.2025 17:00:41
- Zuletzt bearbeitet 02.10.2025 18:45:04
Improper restriction of communication channel to intended endpoints in Windows PowerShell allows an authorized attacker to elevate privileges locally.
CVE-2025-30399
- EPSS 0.92%
- Veröffentlicht 13.06.2025 01:08:00
- Zuletzt bearbeitet 10.07.2025 14:25:37
Untrusted search path in .NET and Visual Studio allows an unauthorized attacker to execute code over a network.