Vendor advisories

Microsoft Security Response Center

Browse 4,355 advisories from this official source. Search by product, CVE, severity, or advisory ID.

Current Checked 2 hours ago Checked every 6 hours

4,355 advisories

Each date says whether the vendor published or updated the bulletin. A vendor bulletin describes products that may be affected. It does not prove that the vulnerable product or version is installed in your environment.

RSS for these results
Microsoft Security Response CenterCVE-2026-50324
HighCVSS 5.9

Windows Active Directory Federation Services Denial of Service Vulnerability

Loop with unreachable exit condition ('infinite loop') in Active Directory Federation Services (AD FS) allows an unauthorized attacker to deny service over a network.

Affected productsWindows 10 Version 1809 for 32-bit Systems, Windows 10 Version 1809 for x64-based Systems, Windows Server 2019, Windows Server 2019 (Server Core installation)
Fixed versions10.0.17763.9020, 10.0.20348.5386, 10.0.26100.33158, 10.0.14393.9339
Vendor guidance

Install KB5099538. Install KB5099540. Install KB5099536. Install KB5099535. Install KB5099444. Install KB5101002. Install KB5101007. Install KB5101009. Install KB5101011. Install KB5101008. Install KB5101010. Install ...

Microsoft Security Response CenterCVE-2026-50304
HighCVSS 7.5

Windows Active Directory Federation Services Denial of Service Vulnerability

Stack-based buffer overflow in Active Directory Federation Services allows an unauthorized attacker to deny service over a network.

Affected productsMicrosoft .NET Framework 4.8 on Windows 10 Version 1607 for 32-bit Systems, Microsoft .NET Framework 4.8 on Windows 10 Version 1607 for x64-based Systems, Microsoft .NET Framework 4.8 on Windows Server 2016, Microsoft .NET Framework 4.8 on Windows Server 2016 (Server Core installation)
Fixed versions4.8.4803.0, 2.0.50727.9069 & 3.0.30729.9067 & 4.8.4803.0, 2.0.50727.9182 & 3.0.30729.9168 & 4.8.4803.0, 2.0.50727.9069 & 3.0.30729.9067 & 4.7.4143.0
Vendor guidance

Install KB5101007. Install KB5101009. Install KB5101011. Install KB5101008. Install KB5101010. Install KB5101006. Install KB5100989. Install KB5099535. Install KB5100990. Install KB5100991. Install KB5101005. Install ...

Microsoft Security Response CenterCVE-2026-47304
HighCVSS 8.1

.NET Security Feature Bypass Vulnerability

Improper verification of cryptographic signature in .NET allows an unauthorized attacker to bypass a security feature over a network.

Affected products.NET 10.0 installed on Mac OS, .NET 10.0 installed on Linux, .NET 8.0 installed on Windows, .NET 8.0 installed on Linux
Fixed versions10.0.10, 8.0.29, 9.0.18, 17.14.36
Vendor guidance

Release Notes Install KB5104034. Install KB5104032. Install KB5104033. Install KB5101007. Install KB5101009. Install KB5101011. Install KB5101008. Install KB5101010. Install KB5101006. Install KB5100989. Install KB509...

Before you act

Start with the vendor's bulletin.

We normalize the fields that vendors publish so you can search and compare advisories in one place. We do not replace the original bulletin or turn a product-name match into proof that a system is vulnerable.

Confirm the installed product and version, read the linked vendor guidance, and test the recommended update or mitigation through your normal change process.

Read how SecurityAlert collects and checks threat intelligence.