February 13, 2026 · Vulnerability Assurance
Analysis of CVE-2026-21514, a vulnerability in Microsoft Office Word involving reliance on untrusted inputs that may allow authorized attackers to elevate privileges locally.
Read analysis →
February 13, 2026 · Vulnerability Assurance
Analysis of a type confusion vulnerability in the Microsoft Windows Desktop Window Manager that allows authorized attackers to elevate privileges locally.
Read analysis →
February 13, 2026 · Vulnerability Assurance
Analysis of CVE-2026-21533, an improper privilege management vulnerability in Microsoft Windows Remote Desktop Services that allows authorized attackers to elevate local privileges.
Read analysis →
February 13, 2026 · Vulnerability Assurance
Analysis of CVE-2026-21510, a vulnerability in the Microsoft Windows Shell that allows for the network-based bypass of a security feature.
Read analysis →
February 13, 2026 · Vulnerability Assurance
Analysis of CVE-2026-21525, a local denial of service vulnerability in the Microsoft Windows Remote Access Connection Manager now listed in CISA's Known Exploited Vulnerabilities catalog.
Read analysis →
February 13, 2026 · Vulnerability Assurance
Analysis of CVE-2026-21513, a protection mechanism failure in the Microsoft MSHTML Framework that allows for the bypass of security features over a network.
Read analysis →
February 8, 2026 · Vulnerability Assurance
Analysis of CVE-2026-24423, a missing authentication vulnerability in SmarterTools SmarterMail that allows remote command execution and has been linked to ransomware campaigns.
Read analysis →
February 8, 2026 · Vulnerability Assurance
An OS command injection vulnerability in the React Native Community CLI's Metro Development Server allows unauthenticated network attackers to execute arbitrary executables or shell commands via POST requests.
Read analysis →