Exchange server
This hub aggregates every CVE we track for Exchange server, a product in the enterprise software space. Use it to gauge the current risk picture and drill into individual advisories.
239
CVEs tracked
26
Critical
99
High
20
In CISA KEV
Severity distribution
MEDIUM108HIGH99CRITICAL26LOW6
Monthly trend
0
0
1
0
0
0
0
0
0
0
0
5
0
3
0
2
0
1
0
0
1
7
4
0
2024-092026-08
Latest CVEs
The 15 most recently published vulnerabilities affecting Exchange server.
- CVE-2026-55009Microsoft Exchange Server Elevation of Privilege Vulnerability7.8
- CVE-2026-55006Microsoft Exchange Server Elevation of Privilege Vulnerability7.8
- CVE-2026-55008Microsoft Exchange Server Spoofing Vulnerability9.6
- CVE-2026-55005Microsoft Exchange Server Remote Code Execution Vulnerability8.8
- CVE-2026-47631Microsoft Exchange Server Spoofing Vulnerability8.1
- CVE-2026-45583Microsoft Exchange Server Remote Code Execution Vulnerability7.5
- CVE-2026-45504Microsoft Exchange Server Elevation of Privilege Vulnerability8.8
- CVE-2026-45503Microsoft Exchange Server Information Disclosure Vulnerability8.1
- CVE-2026-45502Microsoft Exchange Server Information Disclosure Vulnerability5.0
- CVE-2026-45501Microsoft Exchange Server Spoofing Vulnerability6.5
- CVE-2026-45500Microsoft Exchange Server Spoofing Vulnerability6.1
- CVE-2026-42897Microsoft Exchange Server Spoofing VulnerabilityKEV8.1
- CVE-2026-21527Microsoft Exchange Server Spoofing Vulnerability6.5
- CVE-2025-64666Microsoft Exchange Server Elevation of Privilege Vulnerability7.5
- CVE-2025-64667Microsoft Exchange Server Spoofing Vulnerability5.3
Product normalization is registry-driven with AI assist and human review. How it works