Vulnerabilities
Summary — last 7 days
New vulnerabilities2,819→ no change vs. last week
Critical / high1,469▲ 239 vs. last week
New active exploitation (KEV)5▼ 5 vs. last week
Unscored (no CVSS)83▼ 429 vs. last week
15 results, sorted by published date (most recent first)
| CVE | Status | Severity | EPSS | Active exploitation | Affected technologies | Published ▼ | Modified | Description |
|---|---|---|---|---|---|---|---|---|
| Analyzed | High (7.2) | 1.0% | — | Microsoft Azure Monitor Agent | 8/11/2026 | 8/13/2026 | Improper neutralization of special elements used in a command ('command injection') in Azure Monitor Agent allows an authorized attacker to elevate privileges over a network. | |
| Analyzed | Medium (6.5) | 0.64% | — | Microsoft Azure Monitor Agent | 5/12/2026 | 6/17/2026 | Untrusted search path in Azure Monitor Agent allows an authorized attacker to elevate privileges locally. | |
| Analyzed | High (7.8) | 0.36% | — | Microsoft Azure Monitor Agent | 5/12/2026 | 6/18/2026 | External control of file name or path in Azure Monitor Agent allows an authorized attacker to elevate privileges locally. | |
| Analyzed | High (7.8) | 2.5% | — | Microsoft Azure Monitor Agent | 4/14/2026 | 6/17/2026 | Deserialization of untrusted data in Azure Monitor Agent allows an authorized attacker to elevate privileges locally. | |
| Analyzed | High (7.8) | 0.33% | — | Microsoft Azure Monitor Agent | 4/14/2026 | 6/17/2026 | Improper input validation in Azure Monitor Agent allows an authorized attacker to elevate privileges locally. | |
| Analyzed | High (8.8) | 0.74% | — | Microsoft Azure Monitor Agent | 12/9/2025 | 6/17/2026 | Out-of-bounds write in Azure Monitor Agent allows an authorized attacker to execute code over a network. | |
| Analyzed | High (7.3) | 0.33% | — | Microsoft Azure Monitor Agent | 11/11/2025 | 6/17/2026 | Heap-based buffer overflow in Azure Monitor Agent allows an unauthorized attacker to execute code locally. | |
| Analyzed | High (7.8) | 0.64% | — | Microsoft Azure Monitor Agent | 10/14/2025 | 6/17/2026 | Improper access control in Azure Monitor Agent allows an authorized attacker to elevate privileges locally. | |
| Analyzed | High (7) | 0.78% | — | Microsoft Azure Monitor Agent | 10/14/2025 | 6/17/2026 | Deserialization of untrusted data in Azure Monitor Agent allows an authorized attacker to elevate privileges locally. | |
| Analyzed | High (7.5) | 0.96% | — | Microsoft Azure Monitor Agent | 7/8/2025 | 6/17/2026 | Improper control of generation of code ('code injection') in Azure Monitor Agent allows an unauthorized attacker to execute code over an adjacent network. | |
| Deferred | Critical (9.8) | 1.2% | — | Opsview Monitor AgentAI | 1/9/2025 | 6/17/2026 | An issue was discovered in Opsview Monitor Agent 6.8. An unauthenticated remote attacker can call check_nrpe against affected targets, specifying known NRPE plugins, which in default installations are configured to accept command control characters and pass them to command-line interpreters for NRPE plugin execution.… | |
| Analyzed | High (7.1) | 0.65% | — | Microsoft Azure Monitor Agent | 10/8/2024 | 6/17/2026 | Azure Monitor Agent Elevation of Privilege Vulnerability | |
| Modified | High (7.1) | 0.83% | — | Microsoft Azure Monitor Agent | 6/11/2024 | 7/20/2026 | Azure Monitor Agent Elevation of Privilege Vulnerability | |
| Analyzed | High (7.8) | 0.49% | — | Microsoft Azure Monitor Agent | 5/16/2024 | 6/17/2026 | Azure Monitor Agent Elevation of Privilege Vulnerability | |
| Analyzed | High (8.4) | 0.75% | — | Microsoft Azure Monitor Agent | 4/9/2024 | 6/17/2026 | Azure Monitor Agent Elevation of Privilege Vulnerability |