Each date says whether the vendor published or updated the bulletin. A vendor bulletin describes products that may be affected. It does not prove that the vulnerable product or version is installed in your environment.
Use after free in Windows Device Association Broker service allows an authorized attacker to elevate privileges over a network.
Affected productsWindows 10 Version 1809 for 32-bit Systems, Windows 10 Version 1809 for x64-based Systems, Windows Server 2019, Windows Server 2019 (Server Core installation)
Heap-based buffer overflow in Windows Error Reporting allows an authorized attacker to elevate privileges over a network.
Affected productsWindows 10 Version 1809 for 32-bit Systems, Windows 10 Version 1809 for x64-based Systems, Windows Server 2019, Windows Server 2019 (Server Core installation)
Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform spoofing over a network.
Affected productsazl3 kubevirt 1.7.1-8 on Azure Linux 3.0, azl3 packer 1.9.5-18 on Azure Linux 3.0, azl3 cert-manager 1.12.15-11 on Azure Linux 3.0, azl3 cf-cli 8.7.11-8 on Azure Linux 3.0
Affected productsazl3 cert-manager 1.12.15-11 on Azure Linux 3.0, azl3 kubernetes 1.30.10-27 on Azure Linux 3.0, azl3 moby-engine 25.0.3-19 on Azure Linux 3.0, azl3 cert-manager 1.12.15-12 on Azure Linux 3.0
We normalize the fields that vendors publish so you can search and compare advisories in one place. We do not replace the original bulletin or turn a product-name match into proof that a system is vulnerable.
Confirm the installed product and version, read the linked vendor guidance, and test the recommended update or mitigation through your normal change process.