{"total":6,"items":[{"id":490,"title":"[UPDATE] [kritiek] Microsoft Windows Produkte: Meerdere kwetsbaarheden","original_title":"[UPDATE] [kritisch] Microsoft Windows Produkte: Mehrere Schwachstellen","source_rating":"kritiek","summary":"","ai":false,"actions":[],"url":"https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2026-2756","type":"advisory","language":"de","published_at":"2026-10-01T11:16:29+00:00","severity":"hoog","priority":45,"vendors":["Microsoft"],"cves":[],"cve_count":0,"in_kev":false,"exploited_by":[],"kev_ransomware":false,"cvss_max":null,"epss_max":null,"source_count":1,"ncsc":null,"source":{"slug":"bsi-wid","name":"BSI CERT-Bund WID","category":"overheid","country":"DE","license":"© BSI","reuse":"excerpt"},"bundle":null},{"id":139,"title":"CVE-2026-65660: Microsoft SharePoint Code Injection Vulnerability","original_title":"CVE-2026-65660: Microsoft SharePoint Code Injection Vulnerability","source_rating":null,"summary":"Microsoft SharePoint contains a code injection vulnerability which could allow an authorized attacker to execute code over a network.\n\nVereiste actie: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidan","ai":false,"actions":[],"url":"https://nvd.nist.gov/vuln/detail/CVE-2026-65660","type":"kev","language":"en","published_at":"2026-09-25T00:00:00+00:00","severity":"hoog","priority":48,"vendors":["Microsoft"],"cves":[{"id":"CVE-2026-65660","cvss":8.8,"epss":0.02101,"epss_percentile":0.81063,"in_kev":true,"kev_ransomware":false}],"cve_count":1,"in_kev":true,"exploited_by":["CISA KEV","ENISA EUVD"],"kev_ransomware":false,"cvss_max":8.8,"epss_max":0.02101,"source_count":1,"ncsc":null,"source":{"slug":"cisa-kev","name":"CISA Known Exploited Vulnerabilities","category":"vulnerability","country":"US","license":"Publiek domein (US-overheid)","reuse":"open"},"bundle":null},{"id":163,"title":"CVE-2026-87491: Google Chromium V8 Out of Bounds Write Vulnerability","original_title":"CVE-2026-87491: Google Chromium V8 Out of Bounds Write Vulnerability","source_rating":null,"summary":"Google Chromium V8 contains an out of bounds write vulnerability that allows a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. This vulnerability could affect multiple web browsers that utilize Chromium, including, but not limited to, Google Chrome, Microsoft Edge, and Opera.\n\nVere","ai":false,"actions":[],"url":"https://nvd.nist.gov/vuln/detail/CVE-2026-87491","type":"kev","language":"en","published_at":"2026-09-09T00:00:00+00:00","severity":"hoog","priority":48,"vendors":["Google","Microsoft"],"cves":[{"id":"CVE-2026-87491","cvss":8.8,"epss":0.03142,"epss_percentile":0.87483,"in_kev":true,"kev_ransomware":false}],"cve_count":1,"in_kev":true,"exploited_by":["CISA KEV","ENISA EUVD"],"kev_ransomware":false,"cvss_max":8.8,"epss_max":0.03142,"source_count":2,"ncsc":null,"source":{"slug":"cisa-kev","name":"CISA Known Exploited Vulnerabilities","category":"vulnerability","country":"US","license":"Publiek domein (US-overheid)","reuse":"open"},"bundle":null},{"id":166,"title":"CVE-2026-81963: Microsoft Windows Link Following Vulnerability","original_title":"CVE-2026-81963: Microsoft Windows Link Following Vulnerability","source_rating":null,"summary":"Microsoft Windows Update Stack contains a link following vulnerability that allows a local attacker to escalate privileges locally up to SYSTEM.\n\nVereiste actie: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in No","ai":false,"actions":[],"url":"https://nvd.nist.gov/vuln/detail/CVE-2026-81963","type":"kev","language":"en","published_at":"2026-09-08T00:00:00+00:00","severity":"hoog","priority":48,"vendors":["Microsoft"],"cves":[{"id":"CVE-2026-81963","cvss":7.8,"epss":0.00393,"epss_percentile":0.31186,"in_kev":true,"kev_ransomware":false}],"cve_count":1,"in_kev":true,"exploited_by":["CISA KEV","ENISA EUVD"],"kev_ransomware":false,"cvss_max":7.8,"epss_max":0.00393,"source_count":2,"ncsc":null,"source":{"slug":"cisa-kev","name":"CISA Known Exploited Vulnerabilities","category":"vulnerability","country":"US","license":"Publiek domein (US-overheid)","reuse":"open"},"bundle":null},{"id":168,"title":"CVE-2026-85880: Microsoft Windows Heap-Based Buffer Overflow Vulnerability","original_title":"CVE-2026-85880: Microsoft Windows Heap-Based Buffer Overflow Vulnerability","source_rating":null,"summary":"Microsoft Windows Advanced Local Procedure Call contains a heap-based buffer overflow vulnerability that allows an attacker to elevate privileges locally.\n\nVereiste actie: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see","ai":false,"actions":[],"url":"https://nvd.nist.gov/vuln/detail/CVE-2026-85880","type":"kev","language":"en","published_at":"2026-09-08T00:00:00+00:00","severity":"hoog","priority":48,"vendors":["Microsoft"],"cves":[{"id":"CVE-2026-85880","cvss":7.8,"epss":0.03616,"epss_percentile":0.89152,"in_kev":true,"kev_ransomware":false}],"cve_count":1,"in_kev":true,"exploited_by":["CISA KEV","ENISA EUVD"],"kev_ransomware":false,"cvss_max":7.8,"epss_max":0.03616,"source_count":2,"ncsc":null,"source":{"slug":"cisa-kev","name":"CISA Known Exploited Vulnerabilities","category":"vulnerability","country":"US","license":"Publiek domein (US-overheid)","reuse":"open"},"bundle":null},{"id":169,"title":"CVE-2026-85046: Google Chromium V8 Type Confusion Vulnerability","original_title":"CVE-2026-85046: Google Chromium V8 Type Confusion Vulnerability","source_rating":null,"summary":"Google Chromium V8 contains a type confusion vulnerability that allows a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. This vulnerability could affect multiple web browsers that utilize Chromium, including, but not limited to, Google Chrome, Microsoft Edge, and Opera.\n\nVereiste a","ai":false,"actions":[],"url":"https://nvd.nist.gov/vuln/detail/CVE-2026-85046","type":"kev","language":"en","published_at":"2026-09-04T00:00:00+00:00","severity":"hoog","priority":58,"vendors":["Google","Microsoft"],"cves":[{"id":"CVE-2026-85046","cvss":8.8,"epss":0.48881,"epss_percentile":0.98846,"in_kev":true,"kev_ransomware":false}],"cve_count":1,"in_kev":true,"exploited_by":["CISA KEV","ENISA EUVD"],"kev_ransomware":false,"cvss_max":8.8,"epss_max":0.48881,"source_count":1,"ncsc":null,"source":{"slug":"cisa-kev","name":"CISA Known Exploited Vulnerabilities","category":"vulnerability","country":"US","license":"Publiek domein (US-overheid)","reuse":"open"},"bundle":null}]}