Blog

"Prevention is cheaper than a breach"

Live Vulnerability Intelligence

Threat Database

Search CVEs, inspect descriptions, and open detail pages with AI-assisted technical context.

Total35
Critical0
High22
Medium13
Reset
Showing 1-20 of 35 records
Threat Entry Updated 2026-01-14

CVE-2026-21265 - Windows Server 2012 R2 Plugin

Windows Secure Boot stores Microsoft certificates in the UEFI KEK and DB. These original certificates are approaching expiration, and devices containing affected certificate versions must update them to maintain Secure Boot functionality and avoid compromising security by losing security fixes related to Windows boot manager or Secure Boot. The operating system’s certificate update protection mechanism relies on firmware components that might contain defects, which can cause certificate trust updates to fail or behave unpredictably. This leads to potential disruption of the Secure Boot trust chain and requires careful validation and…

PLUGIN Windows Server 2012 R2

CVE-2026-21265

MEDIUM CVSS 6.4 2026-01-13
Threat Entry Updated 2026-01-15

CVE-2026-20869 - Windows Server 2012 R2 Plugin

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Local Session Manager (LSM) allows an authorized attacker to elevate privileges locally.

PLUGIN Windows Server 2012 R2

CVE-2026-20869

HIGH CVSS 7.0 2026-01-13
Scroll to top