Exchange server
This hub aggregates every CVE we track for Exchange server, a product in the operating systems space. Use it to gauge the current risk picture and drill into individual advisories.
235
CVEs tracked
25
Critical
96
High
20
In CISA KEV
Severity distribution
MEDIUM108HIGH96CRITICAL25LOW6
Monthly trend
0
0
0
0
1
0
0
0
0
0
0
0
0
5
0
3
0
2
0
1
0
0
1
7
2024-072026-06
Latest CVEs
The 15 most recently published vulnerabilities affecting Exchange server.
- CVE-2026-47631Microsoft Exchange Server Spoofing Vulnerability8.1
- CVE-2026-45583Microsoft Exchange Server Remote Code Execution Vulnerability7.5
- CVE-2026-45504Microsoft Exchange Server Elevation of Privilege Vulnerability8.8
- CVE-2026-45503Microsoft Exchange Server Information Disclosure Vulnerability8.1
- CVE-2026-45502Microsoft Exchange Server Information Disclosure Vulnerability5.0
- CVE-2026-45501Microsoft Exchange Server Spoofing Vulnerability6.5
- CVE-2026-45500Microsoft Exchange Server Spoofing Vulnerability6.1
- CVE-2026-42897Microsoft Exchange Server Spoofing VulnerabilityKEV8.1
- CVE-2026-21527Microsoft Exchange Server Spoofing Vulnerability6.5
- CVE-2025-64666Microsoft Exchange Server Elevation of Privilege Vulnerability7.5
- CVE-2025-64667Microsoft Exchange Server Spoofing Vulnerability5.3
- CVE-2025-59248Microsoft Exchange Server Spoofing Vulnerability7.5
- CVE-2025-59249Microsoft Exchange Server Elevation of Privilege Vulnerability8.8
- CVE-2025-53782Microsoft Exchange Server Elevation of Privilege Vulnerability8.4
- CVE-2025-25007Microsoft Exchange Server Spoofing Vulnerability5.3
Product normalization is registry-driven with AI assist and human review. How it works