MSXML vulnerabilities
Showing 1 - 5 of 5 CVEs
- CVE-2026-21513 Published Feb 10, 2026
Protection mechanism failure in MSHTML Framework allows an unauthorized attacker to bypass a security feature over a network.
- CVE-2024-30040 Published May 14, 2024
Windows MSHTML Platform Security Feature Bypass Vulnerability
- CVE-2023-49093 Published Dec 4, 2023
HtmlUnit is a GUI-less browser for Java programs. HtmlUnit is vulnerable to Remote Code Execution (RCE) via XSTL, when browsing the attacker’s webpage. This vulnerability has been patched in version 3.9.0
- CVE-2021-33739 Published Jun 8, 2021
Microsoft DWM Core Library Elevation of Privilege Vulnerability
- CVE-2020-1147 Published Jul 14, 2020
A remote code execution vulnerability exists in .NET Framework, Microsoft SharePoint, and Visual Studio when the software fails to check the source markup of XML file input, aka '.NET Framework, SharePoint Server, and Visual Studio Remote Code Execution Vulnerability'.
Protection mechanism failure in MSHTML Framework allows an unauthorized attacker to bypass a security feature over a network.
high 8.8
Windows MSHTML Platform Security Feature Bypass Vulnerability
high 8.8
HtmlUnit is a GUI-less browser for Java programs. HtmlUnit is vulnerable to Remote Code Execution (RCE) via XSTL, when browsing the attacker’s webpage. This vulnerability has been patched in version 3.9.0
critical 9.8
Microsoft DWM Core Library Elevation of Privilege Vulnerability
high 8.4
A remote code execution vulnerability exists in .NET Framework, Microsoft SharePoint, and Visual Studio when the software fails to check the source markup of XML file input, aka '.NET Framework, SharePoint Server, and Visual Studio Remote Code Execution Vulnerability'.
high 7.8