[ENISA EUVD DB: MICROSOFT]SOURCE: euvd.enisa.europa.eu
- [2026-10-09] -> EUVD-2026-93425: Vulnerability report for MicrosoftKiota is an OpenAPI based HTTP Client code generator. From 0.5.0 until 1.35.0, Kiota's Java and PHP documentation-comment sanitizers delete block-comment terminators rather than neutralizing them, allowing overlapping...
- [2026-10-09] -> EUVD-2026-93419: Vulnerability report for MicrosoftMicrosoft UFO is an open-source framework for intelligent automation across devices and platforms. Prior to 3.0.9, the run_shell tool in the CommandLineExecutor component of ufo/client/mcp/local_servers/cli_mcp_server.py validates only the...
- [2026-10-09] -> EUVD-2026-95399: Vulnerability report for MicrosoftImproper certificate validation in Microsoft Partner Center allows an unauthorized attacker to elevate privileges over a network.
- [2026-10-09] -> EUVD-2026-95398: Vulnerability report for MicrosoftAuthorization bypass through user-controlled key in Microsoft Bookings allows an unauthorized attacker to elevate privileges over a network.