CWE-252
- 2
- vulnerabilities tracked
- 11 August 2026
- latest publication
cve
Vulnerability watch
idvulnerabilityseveritypublished
CVE-2026-62909Uncaught exception in .NET allows an authorized attacker to elevate privileges locally.Microsoft Visual Studio 2022 High CVSS 7.8 CVE-2026-61857ImageMagick before 7.1.2-26 contains a heap use-after-free vulnerability caused by missing null check when parsing XMP profiles. Attackers can craft malicious image files with specially crafted XMP data to trigger the vulnerability and cause application crashes.Imagemagick High CVSS 7.5