Analyst command view

MSRC Driver CVE Board

Latest-state board for filtered MSRC CVEs from 2020-01-01 to today, tuned for fast triage across module, CWE, release window, exploitation signal, and acknowledgement context.

Live snapshot
Last Sync
2026-05-20T07:39:30Z
Freshness
1 day(s) ago
Refresh Policy
24h baseline + release watch
Storage
Latest snapshot only
Rows In View
3
Current result set after filter and search.
Exploited Flagged
1
Rows with a non-empty exploitation signal.
Distinct CWE
1
Unique weakness classes in this view.
Modules
3
Unique inferred driver or component labels.
Reset
Active filters CWE CWE-427: Uncontrolled Search Path Element Clear filters
Release Month
April 2026
1 CVE | last update 1 day(s) ago
Release 2026-04-23 Other / OOB Count 1
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2026-32172
Microsoft Power Apps
N/A
Microsoft Power Apps Remote Code Execution Vulnerability
CVSS vector: AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:N/E:U/RL:O/RC:C
2026-04-23 No
Reported By
Hritik Sateesh, Application Security Researcher with Stantec
Release Month
December 2025
1 CVE | last update 1 day(s) ago
Release 2025-12-05 Other / OOB Count 1
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2025-66476
Vim for Windows Uncontrolled Search Path Element
No latest release note
Vim for Windows Uncontrolled Search Path Element Remote Code Execution Vulnerability
CVSS vector: AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
2025-12-05 - -
Release Month
June 2024
1 CVE | last update 1 day(s) ago
Release 2024-06-30 Other / OOB Count 1
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2021-3115
Go before 1.14.14 and 1.15.x before 1.15.7 on Windows is vulnerable to Command Injection and
No latest release note
Go before 1.14.14 and 1.15.x before 1.15.7 on Windows is vulnerable to Command Injection and remote code execution when using the "go get" command to fetch modules that make use of cgo (for example cgo can execute a gcc program from an untrusted download).
CVSS vector: AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H
2024-06-30 - -