VULNERABILITY REMEDIATION

CVE remediation guides

Move from asset identification to supported remediation and post-change verification while keeping source evidence visible.

These defensive guides do not provide exploit reproduction or bypass instructions.
01

Confirm exposure first

Match the product, version, installation path, and external exposure before treating a score as an action order.

02

Prefer supported fixes

Use vendor advisories and supported update paths. An unverified fixed-version field stays visibly unresolved.

03

Verify and retain rollback

Confirm version state, service health, access paths, logs, and rollback readiness after the change.

19,449 guide candidatesPage 441 of 1621
Review reviewHighFixed-version data
CVE-2026-47642

Microsoft Microsoft 365 Apps for Enterprise, Microsoft Office 2019, Microsoft Office 365 for Mac

Affected
>= 16.0.1 < https://aka.ms/OfficeSecurityReleases, >= 19.0.0 < https://aka.ms/OfficeSecurityReleases, >= 1.0.0 < 16.111.26071215, >= 16.0.0 < https://aka.ms/OfficeSecurityReleases, >= 16.0.1 < 16.111.26071215, >= 16.0.0 < 16.111.26071215, >= 16.0.0.0 < 16.0.10417.20175
Fixed
16.0.10417.20175
Review reviewHighFixed-version data
CVE-2026-47295

Microsoft Microsoft SQL Server 2016 Service Pack 3 (GDR), Microsoft SQL Server 2016 Service Pack 3 Azure Connect Feature Pack, Microsoft SQL Server 2017 (CU 31)

Affected
>= 13.0.0 < 13.0.6500.1, >= 13.0.0 < 13.0.7095.1, >= 14.0.0 < 14.0.3540.1, >= 14.0.0 < 14.0.2120.1, >= 15.0.0.0 < 15.0.4480.2, >= 15.0.0 < 15.0.2180.2, >= 16.0.0 < 16.0.1190.2, >= 16.0.4260.1 < 16.0.4262.2, >= 17.0.4060.2 < 17.0.4060.2, >= 17.0.1050.2 < 17.0.1125.2, >= 13.0.6300.2 < 13.0.6500.1, >= 13.0.7000.253 < 13.0.7095.1, >= 14.0.1000.169 < 14.0.2120.1, >= 14.0.3006.16 < 14.0.3540.1, >= 15.0.2000.5 < 15.0.2180.2, >= 15.0.4003.23 < 15.0.4480.2, >= 16.0.1000.6 < 16.0.1190.2, >= 16.0.4003.1 < 16.0.4262.2, >= 17.0.1000.7 < 17.0.1125.2, >= 17.0.4006.2 < 17.0.4060.2
Fixed
13.0.6500.1, 13.0.7095.1, 14.0.2120.1, 14.0.3540.1, 15.0.2180.2, 15.0.4480.2, 16.0.1190.2, 16.0.4262.2, 17.0.1125.2, 17.0.4060.2
Review reviewHighResearch in progress
CVE-2026-47290

Microsoft Microsoft 365 Apps for Enterprise, Microsoft Office 2016, Microsoft Office 2019

Affected
>= 16.0.1 < https://aka.ms/OfficeSecurityReleases, >= 16.0.0 < 16.0.5561.1000, >= 19.0.0 < https://aka.ms/OfficeSecurityReleases, >= 16.0.0 < https://aka.ms/OfficeSecurityReleases
Fixed
No verified fixed-version field is available yet
Review reviewHighFixed-version data
CVE-2026-45756

symfony symfony, json-path

Affected
>= >= 7.3.0-BETA1, >= >= 8.0.0-BETA1, >= 7.3.0 < 7.4.12, >= 8.0.0 < 8.0.12
Fixed
7.4.12, 8.0.12
Review reviewHighFixed-version data
CVE-2026-45077

symfony symfony, monolog-bridge

Affected
< 5.4.52, >= >= 6.0.0-BETA1, >= >= 7.0.0-BETA1, >= >= 8.0.0-BETA1, >= 6.0.0 < 6.4.40, >= 7.0.0 < 7.4.12, >= 8.0.0 < 8.0.12
Fixed
5.4.52, 6.4.40, 7.4.12, 8.0.12
Review reviewHighFixed-version data
CVE-2026-45074

symfony symfony, security-http

Affected
>= >= 7.1.0-BETA1, >= >= 8.0.0-BETA1, >= 7.1.0 < 7.4.12, >= 8.0.0 < 8.0.12
Fixed
7.4.12, 8.0.12
Review reviewCriticalResearch in progress
CVE-2026-15747

SRI Mojolicious

Affected
>= 4.59 < 9.48
Fixed
No verified fixed-version field is available yet
Review reviewCriticalResearch in progress
CVE-2026-59891

sigstore sigstore-js

Affected
< 0.7.1
Fixed
No verified fixed-version field is available yet
Review reviewHighFixed-version data
CVE-2026-59886

pyasn1

Affected
< 0.6.4
Fixed
0.6.4
Review reviewHighFixed-version data
CVE-2026-59885

pyasn1

Affected
< 0.6.4
Fixed
0.6.4
Review reviewHighFixed-version data
CVE-2026-59884

pyasn1

Affected
< 0.6.4
Fixed
0.6.4
Review reviewHighFixed-version data
CVE-2026-59200

python-pillow Pillow, pillow

Affected
>= >= 5.1.0, >= 5.1.0 < 12.3.0
Fixed
12.3.0