SafeBreach Labs CVE Discoveries

Browse the list of vulnerabilities uncovered by leading edge researchers on the SafeBreach Labs team. For more of their work, visit our Research Hub.

Date CVE ID CVSS CVSS (FULL) CVE DESCRIPTION NVD LINK NOTES
6/2026CVE-2026-454593.3CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N/E:U/RL:O/RC:CMicrosoft Excel Security Feature Bypass Vulnerabilityhttps://msrc.microsoft.com/update-guide/en-US/advisory/CVE-2026-45459
5/2026CVE-2026-44809.8CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HUnauthenticated Remote Code Execution in Sambahttps://access.redhat.com/security/cve/cve-2026-4480
5/2026CVE-2026-44089.8CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HUnauthenticated Remote Code Execution in Sambahttps://access.redhat.com/security/cve/cve-2026-4408
2/2026CVE-2026-283727.8CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:HPrivilege Escalation in GNU telnetdhttps://www.cve.org/CVERecord?id=CVE-2026-28372
10/2025CVE-2025-591997.8CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:CSoftware Protection Platform (SPP) Elevation of Privilege Vulnerabilityhttps://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-59199
10/2025CVE-2025-592007.7CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:C/C:L/I:H/A:L/E:U/RL:O/RC:CData Sharing Service Spoofing Vulnerabilityhttps://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-59200
10/2025CVE-2025-595027.5CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H/E:U/RL:O/RC:CRemote Procedure Call Denial of Service Vulnerabilityhttps://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-59502
7/2025CVE-2025-497603.5CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:L/I:N/A:N/E:U/RL:O/RC:CWindows Storage Spoofing Vulnerabilityhttps://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-49760
7/2025CVE-2025-497167.5CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H/E:U/RL:O/RC:CWindows Netlogon Denial of Service Vulnerabilityhttps://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-49716
7/2025CVE-2025-497225.7CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H/E:U/RL:O/RC:CWindows Print Spooler Denial of Service Vulnerabilityhttps://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-49722
6/2025CVE-2025-327247.5CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H/E:U/RL:O/RC:CLocal Security Authority Subsystem Service (LSASS) Denial of Service Vulnerabilityhttps://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-32724
5/2025CVE-2025-299697.2CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:CMS-EVEN RPC Remote Code Execution Vulnerabilityhttps://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-29969
4/2025CVE-2025-266737.5CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H/E:U/RL:O/RC:CWindows Lightweight Directory Access Protocol (LDAP) Denial of Service Vulnerabilityhttps://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-26673
11/2024CVE-2024-106685.9CVSS:4.0/AV:A/AC:H/AT:N/PR:L/UI:A/VC:L/VI:H/VA:L/SC:L/SI:H/SA:L/AU:N/R:U/V:D/RE:L/U:GreenAuth Bypass In Quicksharehttps://www.cve.org/cverecord?id=CVE-2024-10668
8/2024CVE-2024-382027.3CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H/E:P/RL:U/RC:CWindows Update Stack Elevation of Privilege Vulnerabilityhttps://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-38202
8/2024CVE-2024-213026.7CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:CWindows Secure Kernel Mode Elevation of Privilege Vulnerabilityhttps://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-21302
6/2024CVE-2024-382727.1CVSS:4.0/AV:A/AC:H/AT:P/PR:L/UI:N/VC:H/VI:L/VA:L/SC:H/SI:L/SA:LAuth Bypass In Quick Sharehttps://www.cve.org/cverecord?id=CVE-2024-38272
6/2024CVE-2024-382715.9CVSS:4.0/AV:A/AC:H/AT:P/PR:L/UI:A/VC:H/VI:L/VA:L/SC:H/SI:L/SA:LDenial Of Service In Quick Sharehttps://www.cve.org/cverecord?id=CVE-2024-38271
6/2024CVE-2024-300937.3CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:CWindows Storage Elevation of Privilege Vulnerabilityhttps://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-30093
5/2024CVE-2023-427574.2CVSS:3.1/AV:L/AC:L/PR:H/UI:R/S:U/C:N/I:N/A:HProcess Explorer Denial of Servicehttps://www.safebreach.com/blog/magicdot-a-hackers-magic-show-of-disappearing-dots-and-spaces/
12/2023CVE-2023-360107.5CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:HMicrosoft Defender Denial of Service Vulnerabilityhttps://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-36010
11/2023CVE-2023-363967.8CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:HWindows Compressed Folder Remote Code Execution Vulnerabilityhttps://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-36396
7/2023CVE-2023-320547.3CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:HVolume Shadow Copy Elevation of Privilege Vulnerabilityhttps://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-32054
4/2023CVE-2023-249345.5CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:NMicrosoft Defender Security Feature Bypass Vulnerabilityhttps://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-24934
4/2023CVE-2023-248607.5CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:HWindows Defender Denial of Servicehttps://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-24860