Skip to content
Appaloosa Scout

Windows

Windows Windows 11 25H2 · 2025-H2

Official advisory

1012 CVEs fixed by this release.

Release date
2020-12-08
End of support
CVEs fixed
1012
CISA KEV
13
Critical
25
High
834
NVD pending
0

CVEs fixed

CVE Severity
CVE-2026-21510
KEV

Windows Shell Security Feature Bypass Vulnerability

HIGH 8.8
CVE-2026-21513
KEV

MSHTML Framework Security Feature Bypass Vulnerability

HIGH 8.8
CVE-2026-21519
KEV

Desktop Window Manager Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2026-21533
KEV

Windows Remote Desktop Services Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2025-62221
KEV

Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2025-60710
KEV

Host Process for Windows Tasks Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2025-24990
KEV

Windows Agere Modem Driver Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2025-59230
KEV

Windows Remote Access Connection Manager Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2025-62215
KEV

Windows Kernel Elevation of Privilege Vulnerability

HIGH 7.0
CVE-2026-21525
KEV

Windows Remote Access Connection Manager Denial of Service Vulnerability

MEDIUM 6.2
CVE-2026-20805
KEV

Exposure of sensitive information to an unauthorized actor in Desktop Windows Manager allows an authorized attacker to …

MEDIUM 5.5
CVE-2025-47827
KEV

MITRE CVE-2025-47827: Secure Boot bypass in IGEL OS before 11

HIGH 4.6
CVE-2026-32202
KEV

Windows Shell Spoofing Vulnerability

HIGH 4.3
CVE-2026-57092

Use after free in Windows VMSwitch allows an authorized attacker to elevate privileges over a network.

CRITICAL 9.9
CVE-2025-49708

Microsoft Graphics Component Elevation of Privilege Vulnerability

CRITICAL 9.9
CVE-2026-56190

Use of uninitialized resource in Windows RDP allows an unauthorized attacker to execute code over a network.

CRITICAL 9.8
CVE-2026-56188

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Server Network d…

CRITICAL 9.8
CVE-2026-50447

Heap-based buffer overflow in Windows Message Queuing allows an unauthorized attacker to execute code over a network.

CRITICAL 9.8
CVE-2026-54990

Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code over a network.

CRITICAL 9.8
CVE-2026-49172

Heap-based buffer overflow in Windows FTP Service allows an unauthorized attacker to execute code over a network.

CRITICAL 9.8
CVE-2026-42990

Heap-based buffer overflow in SQL Server ODBC driver allows an unauthorized attacker to execute code over a network.

CRITICAL 9.8
CVE-2026-47291

Integer overflow or wraparound in Windows HTTP.sys allows an unauthorized attacker to execute code over a network.

CRITICAL 9.8
CVE-2026-45657

Use after free in Windows Kernel allows an unauthorized attacker to execute code over a network.

CRITICAL 9.8
CVE-2026-44815

Stack-based buffer overflow in Windows DHCP Client allows an unauthorized attacker to execute code over a network.

CRITICAL 9.8
CVE-2026-41096

Windows DNS Client Remote Code Execution Vulnerability

CRITICAL 9.8
CVE-2026-33824

Double free in Windows IKE Extension allows an unauthorized attacker to execute code over a network.

CRITICAL 9.8
CVE-2025-60724

Heap-based buffer overflow in Microsoft Graphics Component allows an unauthorized attacker to execute code over a netwo…

CRITICAL 9.8
CVE-2016-9535

tif_predict.h and tif_predict.c in libtiff 4.0.6 have assertions that can lead to assertion failures in debug mode, or …

CRITICAL 9.8
CVE-2026-50380

Heap-based buffer overflow in Windows GDI+ allows an unauthorized attacker to execute code over a network.

CRITICAL 9.6
CVE-2026-42904

Heap-based buffer overflow in Windows TCP/IP allows an unauthorized attacker to elevate privileges over an adjacent net…

CRITICAL 9.6
CVE-2026-49798

Use after free in Windows Kernel allows an unauthorized attacker to elevate privileges locally.

CRITICAL 9.3
CVE-2026-45602

No cwe for this issue in Windows DHCP Server allows an unauthorized attacker to perform tampering over a network.

CRITICAL 9.1
CVE-2025-10263

Arm C1-Ultra, C1-Premium, Neoverse V3 & V3AE, Neoverse V2, Neoverse V1, Neoverse-N2, Neoverse-N1, Cortex-X925, Cortex-X…

CRITICAL 9.1
CVE-2026-58626

Use after free in Windows Remote Desktop Services allows an authorized attacker to execute code over a network.

HIGH 8.8
CVE-2026-58594

Integer overflow or wraparound in Windows RDP allows an unauthorized attacker to execute code over a network.

HIGH 8.8
CVE-2026-58534

Heap-based buffer overflow in Microsoft Input Method Editor (IME) allows an authorized attacker to elevate privileges l…

HIGH 8.8
CVE-2026-57094

Heap-based buffer overflow in Microsoft Windows Media Foundation allows an unauthorized attacker to execute code over a…

HIGH 8.8
CVE-2026-57090

Heap-based buffer overflow in Microsoft Windows Media Foundation allows an unauthorized attacker to execute code over a…

HIGH 8.8
CVE-2026-57087

Heap-based buffer overflow in Microsoft Windows Media Foundation allows an unauthorized attacker to execute code over a…

HIGH 8.8
CVE-2026-56647

Integer overflow or wraparound in Windows Remote Access Service Infrastructure allows an authorized attacker to elevate…

HIGH 8.8
CVE-2026-56194

Heap-based buffer overflow in Windows Network File System allows an authorized attacker to elevate privileges over a ne…

HIGH 8.8
CVE-2026-50692

Heap-based buffer overflow in Desktop Window Manager allows an authorized attacker to elevate privileges locally.

HIGH 8.8
CVE-2026-50687

Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally.

HIGH 8.8
CVE-2026-50670

Out-of-bounds read in Windows Kernel allows an authorized attacker to elevate privileges locally.

HIGH 8.8
CVE-2026-50666

Use after free in Windows Remote Access Connection Manager allows an authorized attacker to elevate privileges over a n…

HIGH 8.8
CVE-2026-50489

Heap-based buffer overflow in Windows Win32K allows an authorized attacker to elevate privileges locally.

HIGH 8.8
CVE-2026-50474

Use after free in Remote Desktop Client allows an unauthorized attacker to execute code over a network.

HIGH 8.8
CVE-2026-50477

Heap-based buffer overflow in Windows Kernel allows an authorized attacker to elevate privileges locally.

HIGH 8.8
CVE-2026-50413

Use after free in Windows Runtime allows an authorized attacker to elevate privileges locally.

HIGH 8.8
CVE-2026-50398

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Media allows an …

HIGH 8.8
CVE-2026-50385

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Runtime allows a…

HIGH 8.8
CVE-2026-50382

Untrusted pointer dereference in Windows DirectX allows an authorized attacker to execute code locally.

HIGH 8.8
CVE-2026-50369

Use after free in Windows Remote Desktop Services allows an authorized attacker to elevate privileges over a network.

HIGH 8.8
CVE-2026-50360

Incorrect implementation of authentication algorithm in Windows SMB Server allows an authorized attacker to elevate pri…

HIGH 8.8
CVE-2026-58608

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Print Spooler Co…

HIGH 8.8
CVE-2026-54999

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows TCP/IP allows an…

HIGH 8.8
CVE-2026-54982

Integer underflow (wrap or wraparound) in Reliable Multicast Transport Driver (RMCAST) allows an unauthorized attacker …

HIGH 8.8
CVE-2026-54107

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Win32K allows an…

HIGH 8.8
CVE-2026-50342

Improper access control in Windows MIDI Service Module allows an authorized attacker to elevate privileges locally.

HIGH 8.8
CVE-2026-49795

Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally.

HIGH 8.8
CVE-2026-49178

Heap-based buffer overflow in Active Directory Domain Services allows an authorized attacker to execute code over a net…

HIGH 8.8
CVE-2026-47653

Use after free in Remote Desktop Client allows an unauthorized attacker to execute code over a network.

HIGH 8.8
CVE-2026-47289

Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code over a network.

HIGH 8.8
CVE-2026-42985

Use after free in Remote Desktop Client allows an unauthorized attacker to execute code over a network.

HIGH 8.8
CVE-2026-34329

Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability

HIGH 8.8
CVE-2026-40403

Windows Graphics Component Remote Code Execution Vulnerability

CRITICAL 8.8
CVE-2026-32225

Protection mechanism failure in Windows Shell allows an unauthorized attacker to bypass a security feature over a netwo…

HIGH 8.8
CVE-2026-26167

Windows Push Notifications Elevation of Privilege Vulnerability

HIGH 8.8
CVE-2026-26178

Windows Advanced Rasterization Platform Elevation of Privilege Vulnerability

HIGH 8.8
CVE-2026-32157

Remote Desktop Client Remote Code Execution Vulnerability

CRITICAL 8.8
CVE-2026-23669

RPC Runtime Library Remote Code Execution Vulnerability

HIGH 8.8
CVE-2026-24283

Multiple UNC Provider Kernel Driver Elevation of Privilege Vulnerability

HIGH 8.8
CVE-2026-25177

Active Directory Domain Services Elevation of Privilege Vulnerability

HIGH 8.8
CVE-2026-25188

Windows Telephony Service Elevation of Privilege Vulnerability

HIGH 8.8
CVE-2026-21255

Windows Hyper-V Security Feature Bypass Vulnerability

HIGH 8.8
CVE-2026-20868

Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execu…

HIGH 8.8
CVE-2025-62456

Windows Resilient File System (ReFS) Remote Code Execution Vulnerability

HIGH 8.8
CVE-2025-62549

Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability

HIGH 8.8
CVE-2025-64678

Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability

HIGH 8.8
CVE-2025-58715

Windows Speech Runtime Elevation of Privilege Vulnerability

HIGH 8.8
CVE-2025-58716

Windows Speech Runtime Elevation of Privilege Vulnerability

HIGH 8.8
CVE-2025-58718

Remote Desktop Client Remote Code Execution Vulnerability

HIGH 8.8
CVE-2025-59295

Windows URL Parsing Remote Code Execution Vulnerability

HIGH 8.8
CVE-2026-50340

Use after free in Windows Runtime allows an authorized attacker to elevate privileges over a network.

HIGH 8.5
CVE-2026-54128

Use after free in Windows DHCP Client allows an unauthorized attacker to execute code locally.

HIGH 8.4
CVE-2026-54992

Heap-based buffer overflow in Windows Message Queuing Queue Manager allows an unauthorized attacker to execute code loc…

HIGH 8.4
CVE-2026-54122

Heap-based buffer overflow in Windows GDI+ allows an unauthorized attacker to execute code locally.

HIGH 8.4
CVE-2026-49184

Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to execute code locally.

HIGH 8.4
CVE-2026-45641

Access of resource using incompatible type ('type confusion') in Windows Hyper-V allows an unauthorized attacker to exe…

HIGH 8.4
CVE-2026-45607

Out-of-bounds read in Windows Hyper-V allows an unauthorized attacker to execute code locally.

HIGH 8.4
CVE-2026-44810

Improper authentication in Windows Cryptographic Services allows an unauthorized attacker to elevate privileges locally.

HIGH 8.4
CVE-2026-32221

Heap-based buffer overflow in Microsoft Graphics Component allows an unauthorized attacker to execute code locally.

HIGH 8.4
CVE-2026-32091

Microsoft Brokering File System Elevation of Privilege Vulnerability

HIGH 8.4
CVE-2026-32162

Windows COM Elevation of Privilege Vulnerability

HIGH 8.4
CVE-2026-56181

Origin validation error in Windows Network Address Translation (NAT) allows an unauthorized attacker to perform spoofin…

HIGH 8.3
CVE-2026-50680

Heap-based buffer overflow in Windows Hyper-V allows an authorized attacker to elevate privileges locally.

HIGH 8.2
CVE-2026-50429

Out-of-bounds read in Windows Kernel allows an unauthorized attacker to disclose information over a network.

HIGH 8.2
CVE-2026-47652

Heap-based buffer overflow in Windows Hyper-V allows an authorized attacker to execute code locally.

HIGH 8.2
CVE-2026-56186

Out-of-bounds read in Windows Schannel allows an authorized attacker to disclose information over a network.

HIGH 8.1
CVE-2026-50686

Access of resource using incompatible type ('type confusion') in Windows OLE allows an unauthorized attacker to execute…

HIGH 8.1
CVE-2026-50487

Use after free in Microsoft Windows DNS allows an unauthorized attacker to elevate privileges over a network.

HIGH 8.1
CVE-2026-50460

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Runtime allows a…

HIGH 8.1
CVE-2026-50439

Use after free in Microsoft Message Queuing Queue Manager allows an unauthorized attacker to execute code over a networ…

HIGH 8.1
CVE-2026-54995

Use after free in Reliable Multicast Transport Driver (RMCAST) allows an unauthorized attacker to execute code over a n…

HIGH 8.1
CVE-2026-50694

Use after free in Windows Secure Socket Tunneling Protocol (SSTP) allows an unauthorized attacker to execute code over …

HIGH 8.1
CVE-2026-49164

Heap-based buffer overflow in Active Directory Domain Services allows an unauthorized attacker to execute code over a n…

HIGH 8.1
CVE-2026-42900

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows App Store allows…

HIGH 8.1
CVE-2026-45635

Access of resource using incompatible type ('type confusion') in Universal Plug and Play (upnp.dll) allows an unauthori…

HIGH 8.1
CVE-2026-45599

Use after free in Universal Plug and Play (upnp.dll) allows an unauthorized attacker to execute code over a network.

HIGH 8.1
CVE-2026-42981

Integer underflow (wrap or wraparound) in Windows Performance Monitor allows an unauthorized attacker to execute code o…

HIGH 8.1
CVE-2026-42974

Integer overflow or wraparound in Windows Performance Monitor allows an unauthorized attacker to execute code over a ne…

HIGH 8.1
CVE-2026-40415

Windows TCP/IP Remote Code Execution Vulnerability

HIGH 8.1
CVE-2026-33827

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows TCP/IP allows an…

HIGH 8.1
CVE-2026-20856

Improper input validation in Windows Server Update Service allows an unauthorized attacker to execute code over a netwo…

HIGH 8.1
CVE-2026-50502

Insufficient granularity of access control in Windows Event Logging Service allows an authorized attacker to execute co…

HIGH 8.0
CVE-2026-50365

Improper authentication in Windows RPC API allows an unauthorized attacker to elevate privileges over an adjacent netwo…

HIGH 8.0
CVE-2026-42975

Heap-based buffer overflow in Windows Bluetooth Port Driver allows an unauthorized attacker to execute code over an adj…

HIGH 8.0
CVE-2026-40400

Relative path traversal in Windows PowerShell allows an authorized attacker to execute code over a network.

HIGH 8.0
CVE-2026-25172

Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability

HIGH 8.0
CVE-2026-25173

Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability

HIGH 8.0
CVE-2026-26111

Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability

HIGH 8.0
CVE-2026-20931

External control of file name or path in Windows Telephony Service allows an authorized attacker to elevate privileges …

HIGH 8.0
CVE-2025-60715

Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability

HIGH 8.0
CVE-2025-62452

Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability

HIGH 8.0
CVE-2026-48575

Protection mechanism failure in Windows Secure Boot allows an authorized attacker to bypass a security feature locally.

HIGH 7.9
CVE-2026-48576

No cwe for this issue in Windows Secure Boot allows an authorized attacker to bypass a security feature locally.

HIGH 7.9
CVE-2026-48578

Improper access control in Windows Secure Boot allows an authorized attacker to elevate privileges locally.

HIGH 7.9
CVE-2026-48568

Protection mechanism failure in Windows Secure Boot allows an authorized attacker to bypass a security feature locally.

HIGH 7.9
CVE-2026-48570

Protection mechanism failure in Windows Secure Boot allows an authorized attacker to bypass a security feature locally.

HIGH 7.9
CVE-2026-48573

No cwe for this issue in Windows Secure Boot allows an authorized attacker to bypass a security feature locally.

HIGH 7.9
CVE-2026-47656

Protection mechanism failure in Windows Boot Manager allows an authorized attacker to bypass a security feature locally.

HIGH 7.9
CVE-2026-45654

Improper access control in Windows Secure Boot allows an authorized attacker to bypass a security feature locally.

HIGH 7.9
CVE-2026-45588

Protection mechanism failure in Windows Secure Boot allows an authorized attacker to bypass a security feature locally.

HIGH 7.9
CVE-2026-58632

Use after free in Windows Win32K allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-58613

Use after free in Windows Cloud Files Mini Filter Driver allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-58628

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Wireless Network…

HIGH 7.8
CVE-2026-58542

Heap-based buffer overflow in Windows Media allows an unauthorized attacker to execute code locally.

HIGH 7.8
CVE-2026-58538

Heap-based buffer overflow in Windows Bluetooth Service allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-58540

Improper authorization in Windows Installer allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-58541

Access of resource using incompatible type ('type confusion') in Windows DWM allows an authorized attacker to elevate p…

HIGH 7.8
CVE-2026-58532

Integer overflow or wraparound in Windows Kernel allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-58536

Use after free in Windows Cloud Files Mini Filter Driver allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-58537

Use after free in Microsoft NAT Helper Components (ipnathlp.dll) allows an authorized attacker to elevate privileges lo…

HIGH 7.8
CVE-2026-58527

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Runtime allows a…

HIGH 7.8
CVE-2026-58530

Heap-based buffer overflow in Windows Resilient File System (ReFS) allows an unauthorized attacker to execute code loca…

HIGH 7.8
CVE-2026-57096

Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to elevate…

HIGH 7.8
CVE-2026-57091

Stack-based buffer overflow in Windows File History Service allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-56650

Heap-based buffer overflow in Windows Network File System allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-56643

Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-56644

Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-56189

Heap-based buffer overflow in Microsoft Windows Media Foundation allows an unauthorized attacker to execute code locall…

HIGH 7.8
CVE-2026-56182

Integer overflow or wraparound in Windows NTFS allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-56175

Heap-based buffer overflow in Windows NTFS allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-56176

Out-of-bounds read in Windows Win32K - GRFX allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-54124

Integer overflow or wraparound in Windows Terminal allows an unauthorized attacker to execute code locally.

HIGH 7.8
CVE-2026-54125

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Runtime allows a…

HIGH 7.8
CVE-2026-54115

Integer overflow or wraparound in Windows Active Directory allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-50689

Use after free in Windows Clipboard Server allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-50688

Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-50677

Use after free in Windows Media allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-50679

Heap-based buffer overflow in Microsoft Windows Search Component allows an authorized attacker to elevate privileges lo…

HIGH 7.8
CVE-2026-50673

Null pointer dereference in Windows Kernel allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-50676

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Media allows an …

HIGH 7.8
CVE-2026-50667

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows NTFS allows an a…

HIGH 7.8
CVE-2026-50655

Heap-based buffer overflow in Windows Media allows an unauthorized attacker to execute code locally.

HIGH 7.8
CVE-2026-50509

Deserialization of untrusted data in Windows Wireless Wide Area Network Service allows an authorized attacker to elevat…

HIGH 7.8
CVE-2026-50501

Stack-based buffer overflow in Windows Resilient File System (ReFS) allows an unauthorized attacker to execute code loc…

HIGH 7.8
CVE-2026-50498

Windows Universal Disk Format File System Driver (UDFS) Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2026-50499

Heap-based buffer overflow in Windows Print Spooler Components allows an authorized attacker to elevate privileges loca…

HIGH 7.8
CVE-2026-50493

Use after free in Windows Graphics Kernel allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-50494

Heap-based buffer overflow in Windows NTFS allows an authorized attacker to execute code locally.

HIGH 7.8
CVE-2026-50484

Heap-based buffer overflow in Windows Kernel allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-50486

Use after free in Windows Runtime allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-50488

Improper neutralization of special elements used in a command ('command injection') in Windows Clipboard User Service a…

HIGH 7.8
CVE-2026-50476

Use after free in Microsoft Windows allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-50478

Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-50469

Improper link resolution before file access ('link following') in Windows Projected File System allows an authorized at…

HIGH 7.8
CVE-2026-50471

Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to execute code locally.

HIGH 7.8
CVE-2026-50461

Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to execute code locally.

HIGH 7.8
CVE-2026-50462

External control of file name or path in Windows Ancillary Function Driver for WinSock allows an authorized attacker to…

HIGH 7.8
CVE-2026-50466

Use after free in Windows Brokering File System allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-50454

Relative path traversal in Windows User Interface Core allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-50457

Use after free in Windows Runtime allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-50458

Use after free in Microsoft Brokering File System allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-50448

Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to execute code locally.

HIGH 7.8
CVE-2026-50450

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Wireless Wide Ar…

HIGH 7.8
CVE-2026-50440

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Audio Service al…

HIGH 7.8
CVE-2026-50441

Untrusted pointer dereference in Windows Resilient File System (ReFS) allows an authorized attacker to elevate privileg…

HIGH 7.8
CVE-2026-50433

Use after free in Windows Media allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-50435

Buffer over-read in Windows Overlay Filter allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-50436

Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-50427

Use after free in Content Delivery Manager allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-50421

Access of resource using incompatible type ('type confusion') in Windows Connected User Experiences and Telemetry allow…

HIGH 7.8
CVE-2026-50422

Out-of-bounds read in Windows NTFS allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-50423

Improper access control in Windows Kernel allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-50425

Use after free in Windows Internal System User Profile allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-50412

Stack-based buffer overflow in Windows NTFS allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-50417

Heap-based buffer overflow in Windows NTFS allows an authorized attacker to execute code locally.

HIGH 7.8
CVE-2026-50405

Insufficient granularity of access control in Windows Filtering Platform (WFP) allows an authorized attacker to elevate…

HIGH 7.8
CVE-2026-50407

Heap-based buffer overflow in Windows Resilient File System (ReFS) allows an authorized attacker to elevate privileges …

HIGH 7.8
CVE-2026-50399

Out-of-bounds read in Windows Kernel allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-50400

Stack-based buffer overflow in Windows App Installer allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-50402

Incorrect conversion between numeric types in Windows NTFS allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-50391

Improper privilege management in Windows Group Policy allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-50386

Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to execute code locally.

HIGH 7.8
CVE-2026-50387

Stack-based buffer overflow in Windows GDI allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-50388

Out-of-bounds read in Windows NTFS allows an unauthorized attacker to execute code locally.

HIGH 7.8
CVE-2026-50378

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Key Guard allows…

HIGH 7.8
CVE-2026-50373

Improper access control in Microsoft Windows Search Component allows an authorized attacker to elevate privileges local…

HIGH 7.8
CVE-2026-50367

Incorrect access of indexable resource ('range error') in Windows Sensor Data Service allows an authorized attacker to …

HIGH 7.8
CVE-2026-50361

Double free in Microsoft Brokering File System allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-50362

Heap-based buffer overflow in Windows Resilient File System (ReFS) allows an unauthorized attacker to execute code loca…

HIGH 7.8
CVE-2026-50363

Heap-based buffer overflow in Windows Push Notifications allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-50353

Use after free in Windows DirectX allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-50357

Numeric truncation error in Windows Resilient File System (ReFS) allows an authorized attacker to execute code locally.

HIGH 7.8
CVE-2026-50344

Improper authorization in Windows OLE allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-50346

Improper authorization in RPC Runtime allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-50347

Heap-based buffer overflow in Windows Data dll allows an unauthorized attacker to execute code locally.

HIGH 7.8
CVE-2026-50336

Heap-based buffer overflow in Windows Media allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-50337

Incorrect type conversion or cast in Windows Notification allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-50343

Improper privilege management in Microsoft Install Service allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-50331

Use after free in Windows Application Model allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-50332

Heap-based buffer overflow in Windows Kernel allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-50335

Improper access control in Windows Operating Systems allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-50326

Use after free in Windows Unified Consent System allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-50327

Heap-based buffer overflow in Windows Media allows an authorized attacker to execute code locally.

HIGH 7.8
CVE-2026-50329

Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-50315

Null pointer dereference in Windows Image Acquisition allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-50317

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Operating System…

HIGH 7.8
CVE-2026-50321

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows USB Driver allow…

HIGH 7.8
CVE-2026-50309

Heap-based buffer overflow in Windows NTFS allows an authorized attacker to execute code locally.

HIGH 7.8
CVE-2026-50313

Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to execute code locally.

HIGH 7.8
CVE-2026-50305

Use after free in Microsoft Brokering File System allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-50306

Use after free in Windows TCP/IP allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-58609

Out-of-bounds read in Microsoft Graphics Component allows an unauthorized attacker to execute code locally.

HIGH 7.8
CVE-2026-58610

Heap-based buffer overflow in Microsoft Windows Media Foundation allows an unauthorized attacker to execute code locall…

HIGH 7.8
CVE-2026-58635

Improper neutralization of special elements used in a command ('command injection') in Windows Narrator Braille allows …

HIGH 7.8
CVE-2026-58601

Heap-based buffer overflow in Virtual Hard Disk (VHD) Miniport Driver allows an authorized attacker to elevate privileg…

HIGH 7.8
CVE-2026-58602

Use after free in Windows Kernel Mode Driver allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-55004

Double free in Microsoft Printer Drivers allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-54993

Heap-based buffer overflow in Microsoft Windows Media Foundation allows an unauthorized attacker to execute code locall…

HIGH 7.8
CVE-2026-54986

Heap-based buffer overflow in Windows Win32K allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-54987

Heap-based buffer overflow in Windows Overlay Filter allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-54991

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows USB Print Driver…

HIGH 7.8
CVE-2026-54112

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Win32K allows an…

HIGH 7.8
CVE-2026-54114

Use after free in Windows Win32K allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-54109

Integer overflow or wraparound in Windows Resilient File System (ReFS) allows an authorized attacker to execute code lo…

HIGH 7.8
CVE-2026-50697

Exposure of sensitive information to an unauthorized actor in Windows Common Log File System Driver allows an authorize…

HIGH 7.8
CVE-2026-50351

Improper access control in Windows Audio Compression Manager (ACM) allows an authorized attacker to elevate privileges …

HIGH 7.8
CVE-2026-50311

Improper access control in Windows Server allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-50318

Stack-based buffer overflow in Windows Resilient File System (ReFS) allows an authorized attacker to elevate privileges…

HIGH 7.8
CVE-2026-50333

Missing authentication for critical function in Windows Spaceport.sys allows an authorized attacker to elevate privileg…

HIGH 7.8
CVE-2026-50308

Integer underflow (wrap or wraparound) in Windows NTFS allows an unauthorized attacker to execute code locally.

HIGH 7.8
CVE-2026-49808

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Kernel allows an…

HIGH 7.8
CVE-2026-50293

Use after free in Windows Internal Task Bar allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-49800

Integer overflow or wraparound in Windows Web Proxy Auto-Discovery Protocol (WPAD) allows an authorized attacker to ele…

HIGH 7.8
CVE-2026-49793

Heap-based buffer overflow in Windows Resilient File System (ReFS) allows an authorized attacker to execute code locall…

HIGH 7.8
CVE-2026-49796

Heap-based buffer overflow in Windows GDI+ allows an unauthorized attacker to execute code locally.

HIGH 7.8
CVE-2026-49797

Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to execute code locally.

HIGH 7.8
CVE-2026-49792

Numeric truncation error in Windows Resilient File System (ReFS) allows an authorized attacker to execute code locally.

HIGH 7.8
CVE-2026-49783

Improperly implemented security check for standard in Windows Secure Boot allows an authorized attacker to bypass a sec…

HIGH 7.8
CVE-2026-49175

Heap-based buffer overflow in Windows DNS allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-49176

Improper privilege management in Windows WalletService allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-49166

Use after free in Microsoft Printer Drivers allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-49170

Insufficient granularity of access control in Windows StateRepository API allows an authorized attacker to elevate priv…

HIGH 7.8
CVE-2026-42982

Improper validation of consistency within input in Windows Secure Kernel Mode allows an authorized attacker to elevate …

HIGH 7.8
CVE-2026-44800

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Push Notificatio…

HIGH 7.8
CVE-2026-8863

Multiple Microsoft-sigend UEFI SHIM bootloaders are vulnerable to SecureBoot bypass. An attacker with administrative pr…

HIGH 7.8
CVE-2026-48574

Heap-based buffer overflow in Windows Media allows an unauthorized attacker to execute code locally.

HIGH 7.8
CVE-2026-48583

Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-45658

Improper access control in Windows BitLocker allows an authorized attacker to bypass a security feature locally.

HIGH 7.8
CVE-2026-45656

Protection mechanism failure in Windows UEFI allows an authorized attacker to bypass a security feature locally.

HIGH 7.8
CVE-2026-45636

Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to execute code locally.

HIGH 7.8
CVE-2026-45637

Use after free in Windows DWM Core Library allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-45638

Heap-based buffer overflow in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate pr…

HIGH 7.8
CVE-2026-45605

Use after free in Windows Bluetooth Service allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-45600

Access of resource using incompatible type ('type confusion') in Windows Kernel-Mode Drivers allows an authorized attac…

HIGH 7.8
CVE-2026-45592

Integer overflow or wraparound in Windows Internet (wininet.dll) allows an authorized attacker to elevate privileges lo…

HIGH 7.8
CVE-2026-45593

Use after free in Windows SDK allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-45586

Improper link resolution before file access ('link following') in Windows Collaborative Translation Framework allows an…

HIGH 7.8
CVE-2026-45487

Time-of-check time-of-use (TOCTOU) race condition in Program Compatibility Assistant Service allows an authorized attac…

HIGH 7.8
CVE-2026-44812

Integer overflow or wraparound in Windows Win32K - GRFX allows an unauthorized attacker to execute code locally.

HIGH 7.8
CVE-2026-44802

Use after free in Windows DWM Core Library allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-44803

Integer overflow or wraparound in Windows Win32K - GRFX allows an unauthorized attacker to execute code locally.

HIGH 7.8
CVE-2026-44809

Use after free in Windows Common Log File System Driver allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-42989

Improper link resolution before file access ('link following') in Winlogon allows an authorized attacker to elevate pri…

HIGH 7.8
CVE-2026-42991

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Push Notificatio…

HIGH 7.8
CVE-2026-42983

Use after free in Windows DWM Core Library allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-42986

Use after free in Microsoft Graphics Component allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-42977

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Push Notificatio…

HIGH 7.8
CVE-2026-42978

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Push Notificatio…

HIGH 7.8
CVE-2026-42979

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Push Notificatio…

HIGH 7.8
CVE-2026-42980

Integer underflow (wrap or wraparound) in Windows NT OS Kernel allows an authorized attacker to elevate privileges loca…

HIGH 7.8
CVE-2026-42916

Integer overflow or wraparound in Windows NT OS Kernel allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-42905

Use after free in Windows DWM Core Library allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-42910

Out-of-bounds write in Windows Hotpatch Monitoring Service allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-42829

Improper access control in Windows Administrator Protection allows an authorized attacker to bypass a security feature …

HIGH 7.8
CVE-2026-42837

Out-of-bounds read in Windows Projected File System Filter Driver allows an authorized attacker to elevate privileges l…

HIGH 7.8
CVE-2026-42828

Buffer over-read in Windows Projected File System Filter Driver allows an authorized attacker to elevate privileges loc…

HIGH 7.8
CVE-2026-40404

Windows Universal Disk Format File System Driver (UDFS) Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2026-40409

Windows Universal Disk Format File System Driver (UDFS) Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2026-41092

Improper access control in Microsoft Kinect allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-33828

Trust boundary violation in Windows Attestation allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-41088

Access of resource using incompatible type ('type confusion') in Windows Ancillary Function Driver for WinSock allows a…

HIGH 7.8
CVE-2026-40397

Heap-based buffer overflow in Windows Common Log File System Driver allows an authorized attacker to elevate privileges…

HIGH 7.8
CVE-2026-40399

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows TCP/IP allows an…

HIGH 7.8
CVE-2026-40369

Heap-based buffer overflow in Windows Kernel allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-35417

Use after free in Windows Win32K - GRFX allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-34336

Integer overflow or wraparound in Windows DWM Core Library allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-33840

Use after free in Windows Win32K - ICOMP allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-33841

Heap-based buffer overflow in Windows Kernel allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-34330

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Win32K - GRFX al…

HIGH 7.8
CVE-2026-33834

Windows Event Logging Service Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2026-33835

Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2026-33837

Windows TCP/IP Local Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2026-33838

Windows Message Queuing (MSMQ) Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2026-34333

Windows Win32k Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2026-34334

Windows TCP/IP Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2026-34337

Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2026-34338

Windows Telephony Service Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2026-34343

Windows Application Identity (AppID) Subsystem Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2026-34344

Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2026-34351

Windows TCP/IP Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2026-35415

Windows Storage Spaces Controller Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2026-35418

Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2026-35421

Windows GDI Remote Code Execution Vulnerability

CRITICAL 7.8
CVE-2026-40377

Microsoft Cryptographic Services Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2026-40382

Windows Telephony Service Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2026-40398

Windows Remote Desktop Services Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2026-40407

Windows Common Log File System Driver Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2026-40408

Windows WAN ARP Driver Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2026-42896

Windows DWM Core Library Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2026-33101

Use after free in Windows Print Spooler Components allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-33098

Use after free in Windows Container Isolation FS Filter Driver allows an authorized attacker to elevate privileges loca…

HIGH 7.8
CVE-2026-32222

Untrusted pointer dereference in Windows Win32K - ICOMP allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-32154

Use after free in Desktop Window Manager allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-32152

Use after free in Desktop Window Manager allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-20930

Windows Management Services Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2026-26153

Windows Encrypted File System (EFS) Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2026-26156

Windows Hyper-V Remote Code Execution Vulnerability

HIGH 7.8
CVE-2026-26159

Remote Desktop Licensing Service Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2026-26160

Remote Desktop Licensing Service Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2026-26161

Windows Sensor Data Service Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2026-26162

Windows OLE Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2026-26163

Windows Kernel Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2026-26168

Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2026-26170

PowerShell Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2026-26172

Windows Push Notifications Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2026-26176

Windows Client Side Caching driver (csc.sys) Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2026-26179

Windows Kernel Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2026-26180

Windows Kernel Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2026-26181

Microsoft Brokering File System Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2026-26184

Windows Projected File System Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2026-27907

Windows Storage Spaces Controller Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2026-27909

Windows Search Service Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2026-27910

Windows Installer Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2026-27911

Windows User Interface Core Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2026-27914

Microsoft Management Console Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2026-27915

Windows UPnP Device Host Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2026-27916

Windows UPnP Device Host Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2026-27918

Windows Shell Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2026-27919

Windows UPnP Device Host Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2026-27920

Windows UPnP Device Host Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2026-27923

Desktop Window Manager Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2026-27927

Windows Projected File System Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2026-32069

Windows Projected File System Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2026-32074

Windows Projected File System Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2026-32076

Windows Storage Spaces Controller Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2026-32077

Windows UPnP Device Host Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2026-32078

Windows Projected File System Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2026-32089

Windows Speech Brokered Api Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2026-32090

Windows Speech Brokered Api Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2026-32153

Windows Speech Runtime Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2026-32155

Desktop Window Manager Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2026-32158

Windows Push Notifications Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2026-32159

Windows Push Notifications Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2026-32160

Windows Push Notifications Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2026-32163

Windows User Interface Core Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2026-32164

Windows User Interface Core Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2026-32165

Windows User Interface Core Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2026-32183

Windows Snipping Tool Remote Code Execution Vulnerability

HIGH 7.8
CVE-2026-24293

Null pointer dereference in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate priv…

HIGH 7.8
CVE-2026-24294

Improper authentication in Windows SMB Server allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-24289

Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-23672

Windows Universal Disk Format File System Driver (UDFS) Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2026-23673

Windows Resilient File System (ReFS) Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2026-24287

Windows Kernel Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2026-24290

Windows Projected File System Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2026-24291

Windows Accessibility Infrastructure (ATBroker.exe) Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2026-24292

Windows Connected Devices Platform Service Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2026-25165

Performance Counters for Windows Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2026-25174

Windows Extensible File Allocation Table Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2026-25176

Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2026-25187

Winlogon Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2026-25190

Windows GDI Remote Code Execution Vulnerability

HIGH 7.8
CVE-2026-26128

Windows SMB Server Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2026-26132

Windows Kernel Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2026-21231

Windows Kernel Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2026-21232

Windows HTTP.sys Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2026-21236

Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2026-21238

Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2026-21239

Windows Kernel Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2026-21240

Windows HTTP.sys Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2026-21245

Windows Kernel Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2026-21246

Windows Graphics Component Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2026-21250

Windows HTTP.sys Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2026-20941

Improper link resolution before file access ('link following') in Host Process for Windows Tasks allows an authorized a…

HIGH 7.8
CVE-2026-20938

Untrusted pointer dereference in Windows Virtualization-Based Security (VBS) Enclave allows an authorized attacker to e…

HIGH 7.8
CVE-2026-20924

Use after free in Windows Management Services allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-20922

Heap-based buffer overflow in Windows NTFS allows an authorized attacker to execute code locally.

HIGH 7.8
CVE-2026-20923

Use after free in Windows Management Services allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-20873

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Management Servi…

HIGH 7.8
CVE-2026-20874

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Management Servi…

HIGH 7.8
CVE-2026-20877

Use after free in Windows Management Services allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-20918

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Management Servi…

HIGH 7.8
CVE-2026-20867

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Management Servi…

HIGH 7.8
CVE-2026-20870

Use after free in Windows Win32K - ICOMP allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-20871

Use after free in Desktop Windows Manager allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-20861

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Management Servi…

HIGH 7.8
CVE-2026-20864

Heap-based buffer overflow in Connected Devices Platform Service (Cdpsvc) allows an authorized attacker to elevate priv…

HIGH 7.8
CVE-2026-20865

Use after free in Windows Management Services allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-20866

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Management Servi…

HIGH 7.8
CVE-2026-20857

Untrusted pointer dereference in Windows Cloud Files Mini Filter Driver allows an authorized attacker to elevate privil…

HIGH 7.8
CVE-2026-20858

Use after free in Windows Management Services allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-20859

Use after free in Windows Kernel-Mode Drivers allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-20860

Access of resource using incompatible type ('type confusion') in Windows Ancillary Function Driver for WinSock allows a…

HIGH 7.8
CVE-2026-20840

Heap-based buffer overflow in Windows NTFS allows an authorized attacker to execute code locally.

HIGH 7.8
CVE-2026-20843

Improper access control in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to elevate pr…

HIGH 7.8
CVE-2026-20832

Windows Remote Procedure Call Interface Definition Language (IDL) Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2026-20837

Heap-based buffer overflow in Windows Media allows an unauthorized attacker to execute code locally.

HIGH 7.8
CVE-2026-20826

Concurrent execution using shared resource with improper synchronization ('race condition') in Tablet Windows User Inte…

HIGH 7.8
CVE-2026-20831

Time-of-check time-of-use (toctou) race condition in Windows Ancillary Function Driver for WinSock allows an authorized…

HIGH 7.8
CVE-2026-20820

Heap-based buffer overflow in Windows Common Log File System Driver allows an authorized attacker to elevate privileges…

HIGH 7.8
CVE-2026-20822

Use after free in Microsoft Graphics Component allows an authorized attacker to elevate privileges locally.

HIGH 7.8
CVE-2026-20816

Time-of-check time-of-use (toctou) race condition in Windows Installer allows an authorized attacker to elevate privile…

HIGH 7.8
CVE-2026-20817

Improper handling of insufficient permissions or privileges in Windows Error Reporting allows an authorized attacker to…

HIGH 7.8
CVE-2026-20809

Time-of-check time-of-use (toctou) race condition in Windows Kernel Memory allows an authorized attacker to elevate pri…

HIGH 7.8
CVE-2026-20811

Access of resource using incompatible type ('type confusion') in Windows Win32K - ICOMP allows an authorized attacker t…

HIGH 7.8
CVE-2023-31096

MITRE: CVE-2023-31096 Windows Agere Soft Modem Driver Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2024-55414

Windows Motorola Soft Modem Driver Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2025-54100

PowerShell Remote Code Execution Vulnerability

HIGH 7.8
CVE-2025-55233

Windows Projected File System Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2025-59516

Windows Storage VSP Driver Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2025-59517

Windows Storage VSP Driver Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2025-62454

Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2025-62457

Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2025-62461

Windows Projected File System Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2025-62462

Windows Projected File System Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2025-62464

Windows Projected File System Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2025-62466

Windows Client-Side Caching Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2025-62467

Windows Projected File System Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2025-62470

Windows Common Log File System Driver Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2025-62472

Windows Remote Access Connection Manager Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2025-62474

Windows Remote Access Connection Manager Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2025-62571

Windows Installer Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2025-62572

Application Information Service Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2025-64661

Windows Shell Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2025-64673

Windows Storage VSP Driver Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2025-64679

Windows DWM Core Library Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2025-64680

Windows DWM Core Library Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2025-59505

Windows Smart Card Reader Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2025-59511

Windows WLAN Service Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2025-59512

Customer Experience Improvement Program (CEIP) Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2025-59514

Microsoft Streaming Service Proxy Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2025-60703

Windows Remote Desktop Services Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2025-60705

Windows Client-Side Caching Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2025-60707

Multimedia Class Scheduler Service (MMCSS) Driver Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2025-60709

Windows Common Log File System Driver Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2025-60718

Windows Administrator Protection Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2025-60720

Windows Transport Driver Interface (TDI) Translation Driver Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2025-60721

Windows Administrator Protection Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2025-24052

Windows Agere Modem Driver Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2025-50152

Windows Kernel Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2025-50175

Windows Digital Media Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2025-53150

Windows Digital Media Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2025-53768

Xbox IStorageService Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2025-55328

Windows Hyper-V Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2025-55339

Windows Network Driver Interface Specification (NDIS) Driver Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2025-55677

Windows Device Association Broker Service Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2025-55680

Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2025-55692

Windows Error Reporting Service Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2025-55694

Windows Error Reporting Service Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2025-55696

NtQueryInformation Token function (ntifs.h) Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2025-55701

Windows Authentication Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2025-58714

Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2025-58720

Windows Cryptographic Services Information Disclosure Vulnerability

HIGH 7.8
CVE-2025-58722

Microsoft DWM Core Library Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2025-58728

Windows Bluetooth Service Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2025-59187

Windows Kernel Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2025-59191

Windows Connected Devices Platform Service Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2025-59192

Storport.sys Driver Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2025-59199

Software Protection Platform (SPP) Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2025-59201

Network Connection Status Indicator (NCSI) Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2025-59207

Windows Kernel Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2025-59241

Windows Health and Optimized Experiences Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2025-59242

Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2025-59254

Microsoft DWM Core Library Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2025-59255

Windows DWM Core Library Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2026-20852

Incorrect privilege assignment in Windows Hello allows an unauthorized attacker to perform tampering locally.

HIGH 7.7
CVE-2026-20804

Incorrect privilege assignment in Windows Hello allows an unauthorized attacker to perform tampering locally.

HIGH 7.7
CVE-2025-53139

Windows Hello Security Feature Bypass Vulnerability

HIGH 7.7
CVE-2025-55698

DirectX Graphics Kernel Denial of Service Vulnerability

HIGH 7.7
CVE-2025-59200

Data Sharing Service Spoofing Vulnerability

HIGH 7.7
CVE-2025-6965

There exists a vulnerability in SQLite versions before 3.50.2 where the number of aggregate terms could exceed the numb…

HIGH 7.7
CVE-2026-58531

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows SMB allows an au…

HIGH 7.5
CVE-2026-57089

Use after free in Windows SMB Server Network Transport Driver (srvnet.sys) allows an unauthorized attacker to execute c…

HIGH 7.5
CVE-2026-56648

Time-of-check time-of-use (toctou) race condition in Windows Network File System allows an authorized attacker to eleva…

HIGH 7.5
CVE-2026-50647

Loop with unreachable exit condition ('infinite loop') in Active Directory Federation Services (AD FS) allows an unauth…

HIGH 7.5
CVE-2026-50505

Use after free in Windows Message Queuing allows an authorized attacker to execute code over a network.

HIGH 7.5
CVE-2026-50496

Out-of-bounds read in Windows Network Policy Server SNMP allows an unauthorized attacker to disclose information over a…

HIGH 7.5
CVE-2026-50500

Use after free in Windows Netlogon allows an authorized attacker to elevate privileges over a network.

HIGH 7.5
CVE-2026-50470

Out-of-bounds read in Windows Network Policy Server SNMP allows an unauthorized attacker to disclose information over a…

HIGH 7.5
CVE-2026-50463

Out-of-bounds read in Windows Kernel allows an unauthorized attacker to disclose information over a network.

HIGH 7.5
CVE-2026-50424

Untrusted pointer dereference in Windows Domain Controller allows an unauthorized attacker to deny service over a netwo…

HIGH 7.5
CVE-2026-50414

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Media allows an …

HIGH 7.5
CVE-2026-50411

Stack-based buffer overflow in Active Directory Federation Services (AD FS) allows an unauthorized attacker to deny ser…

HIGH 7.5
CVE-2026-50379

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Media allows an …

HIGH 7.5
CVE-2026-50330

Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to elevate privileges over a networ…

HIGH 7.5
CVE-2026-54983

Stack-based buffer overflow in Active Directory Federation Services (AD FS) allows an unauthorized attacker to deny ser…

HIGH 7.5
CVE-2026-54119

Loop with unreachable exit condition ('infinite loop') in Windows Active Directory allows an unauthorized attacker to d…

HIGH 7.5
CVE-2026-50695

Stack-based buffer overflow in Active Directory Federation Services allows an unauthorized attacker to deny service ove…

HIGH 7.5
CVE-2026-50696

Heap-based buffer overflow in Windows Internet Key Exchange (IKE) Protocol allows an unauthorized attacker to deny serv…

HIGH 7.5
CVE-2026-49787

Allocation of resources without limits or throttling in Windows HTTP.sys allows an unauthorized attacker to deny servic…

HIGH 7.5
CVE-2026-49788

Allocation of resources without limits or throttling in HTTP/2 allows an unauthorized attacker to deny service over a n…

HIGH 7.5
CVE-2026-49171

Use after free in Microsoft Windows Speech allows an authorized attacker to elevate privileges locally.

HIGH 7.5
CVE-2026-40378

Memory allocation with excessive size value in Windows Local Security Authority Subsystem Service (LSASS) allows an una…

HIGH 7.5
CVE-2026-49160

Uncontrolled resource consumption in HTTP/2 allows an unauthorized attacker to deny service over a network.

HIGH 7.5
CVE-2026-48563

Use after free in Remote Desktop Client allows an unauthorized attacker to execute code over a network.

HIGH 7.5
CVE-2026-45639

Out-of-bounds read in Windows RDP allows an unauthorized attacker to disclose information over a network.

HIGH 7.5
CVE-2026-42992

Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code over a network.

HIGH 7.5
CVE-2026-42993

Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code over a network.

HIGH 7.5
CVE-2026-44799

Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code over a network.

HIGH 7.5
CVE-2026-44801

Use after free in Remote Desktop Client allows an unauthorized attacker to execute code over a network.

HIGH 7.5
CVE-2026-42913

Concurrent execution using shared resource with improper synchronization ('race condition') in Remote Desktop Client al…

HIGH 7.5
CVE-2026-42908

Out-of-bounds read in Windows RDP allows an unauthorized attacker to disclose information over a network.

HIGH 7.5
CVE-2026-42909

Concurrent execution using shared resource with improper synchronization ('race condition') in Remote Desktop Client al…

HIGH 7.5
CVE-2026-32161

Windows Native WiFi Miniport Driver Remote Code Execution Vulnerability

CRITICAL 7.5
CVE-2026-35424

Internet Key Exchange (IKE) Protocol Denial of Service Vulnerability

HIGH 7.5
CVE-2026-40405

Windows TCP/IP Denial of Service Vulnerability

HIGH 7.5
CVE-2026-40406

Windows TCP/IP Information Disclosure Vulnerability

HIGH 7.5
CVE-2026-33096

Out-of-bounds read in Windows HTTP.sys allows an unauthorized attacker to deny service over a network.

HIGH 7.5
CVE-2026-32071

Windows Local Security Authority Subsystem Service (LSASS) Denial of Service Vulnerability

HIGH 7.5
CVE-2026-23674

MapUrlToZone Security Feature Bypass Vulnerability

HIGH 7.5
CVE-2026-25181

GDI+ Information Disclosure Vulnerability

HIGH 7.5
CVE-2026-20846

GDI+ Denial of Service Vulnerability

HIGH 7.5
CVE-2026-20934

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows SMB Server allow…

HIGH 7.5
CVE-2026-20926

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows SMB Server allow…

HIGH 7.5
CVE-2026-20919

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows SMB Server allow…

HIGH 7.5
CVE-2026-20921

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows SMB Server allow…

HIGH 7.5
CVE-2026-20875

Null pointer dereference in Windows Local Security Authority Subsystem Service (LSASS) allows an unauthorized attacker …

HIGH 7.5
CVE-2026-20854

Use after free in Windows Local Security Authority Subsystem Service (LSASS) allows an authorized attacker to execute c…

HIGH 7.5
CVE-2026-20848

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows SMB Server allow…

HIGH 7.5
CVE-2026-20849

Reliance on untrusted inputs in a security decision in Windows Kerberos allows an authorized attacker to elevate privil…

HIGH 7.5
CVE-2025-64658

Windows File Explorer Elevation of Privilege Vulnerability

HIGH 7.5
CVE-2025-60704

Windows Kerberos Elevation of Privilege Vulnerability

HIGH 7.5
CVE-2025-58726

Windows SMB Server Elevation of Privilege Vulnerability

HIGH 7.5
CVE-2026-54127

Use after free in Windows Hyper-V allows an unauthorized attacker to elevate privileges locally.

HIGH 7.4
CVE-2026-40413

Windows TCP/IP Denial of Service Vulnerability

HIGH 7.4
CVE-2026-40414

Windows TCP/IP Denial of Service Vulnerability

HIGH 7.4
CVE-2026-32156

Windows UPnP Device Host Remote Code Execution Vulnerability

HIGH 7.4
CVE-2026-25167

Microsoft Brokering File System Elevation of Privilege Vulnerability

HIGH 7.4
CVE-2026-20853

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows WalletService al…

HIGH 7.4
CVE-2026-20844

Use after free in Windows Clipboard Server allows an unauthorized attacker to elevate privileges locally.

HIGH 7.4
CVE-2025-48004

Microsoft Brokering File System Elevation of Privilege Vulnerability

HIGH 7.4
CVE-2025-55335

Windows NTFS Elevation of Privilege Vulnerability

HIGH 7.4
CVE-2025-55687

Windows Resilient File System (ReFS) Elevation of Privilege Vulnerability

HIGH 7.4
CVE-2025-55693

Windows Kernel Elevation of Privilege Vulnerability

HIGH 7.4
CVE-2025-59189

Microsoft Brokering File System Elevation of Privilege Vulnerability

HIGH 7.4
CVE-2025-59206

Windows Resilient File System (ReFS) Deduplication Service Elevation of Privilege Vulnerability

HIGH 7.4
CVE-2025-59210

Windows Resilient File System (ReFS) Deduplication Service Elevation of Privilege Vulnerability

HIGH 7.4
CVE-2026-50482

Heap-based buffer overflow in Windows NTFS allows an authorized attacker to execute code locally.

HIGH 7.3
CVE-2026-58640

Heap-based buffer overflow in Windows NTFS allows an authorized attacker to execute code locally.

HIGH 7.3
CVE-2026-50364

Improper link resolution before file access ('link following') in Windows Server Backup allows an authorized attacker t…

HIGH 7.3
CVE-2026-49789

Stack-based buffer overflow in Windows NTFS allows an authorized attacker to elevate privileges locally.

HIGH 7.3
CVE-2026-49790

Windows Universal Disk Format File System Driver (UDFS) Elevation of Privilege Vulnerability

HIGH 7.3
CVE-2026-32149

Windows Hyper-V Remote Code Execution Vulnerability

HIGH 7.3
CVE-2026-21244

Windows Hyper-V Remote Code Execution Vulnerability

HIGH 7.3
CVE-2026-21247

Windows Hyper-V Remote Code Execution Vulnerability

HIGH 7.3
CVE-2026-21248

Windows Hyper-V Remote Code Execution Vulnerability

HIGH 7.3
CVE-2025-62565

Windows File Explorer Elevation of Privilege Vulnerability

HIGH 7.3
CVE-2025-25004

PowerShell Elevation of Privilege Vulnerability

HIGH 7.3
CVE-2026-50682

Out-of-bounds read in Windows Active Directory allows an authorized attacker to deny service over a network.

HIGH 7.1
CVE-2026-50465

Improper access control in Microsoft Windows DNS allows an authorized attacker to perform tampering locally.

HIGH 7.1
CVE-2026-50451

Missing authentication for critical function in Windows Routing and Remote Access Service (RRAS) allows an authorized a…

HIGH 7.1
CVE-2026-55144

Missing cryptographic step in Windows CryptoAPI allows an authorized attacker to perform tampering locally.

HIGH 7.1
CVE-2026-50354

Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally.

HIGH 7.1
CVE-2026-49791

Improper link resolution before file access ('link following') in Windows Routing and Remote Access Service (RRAS) allo…

HIGH 7.1
CVE-2026-49165

Use of uninitialized resource in Microsoft Windows App Store allows an authorized attacker to disclose information loca…

HIGH 7.1
CVE-2026-40401

Windows TCP/IP Denial of Service Vulnerability

HIGH 7.1
CVE-2026-26151

Remote Desktop Spoofing Vulnerability

HIGH 7.1
CVE-2025-62570

Windows Camera Frame Server Monitor Information Disclosure Vulnerability

HIGH 7.1
CVE-2025-64720

LIBPNG is vulnerable to a buffer overflow in `png_image_read_composite` via incorrect palette premultiplication

HIGH 7.1
CVE-2025-65018

LIBPNG is vulnerable to a heap buffer overflow in `png_combine_row` triggered via `png_image_finish_read`

HIGH 7.1
CVE-2025-59208

Windows MapUrlToZone Information Disclosure Vulnerability

HIGH 7.1
CVE-2026-58598

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Backup Engine al…

HIGH 7.0
CVE-2026-58629

Use after free in Windows DirectX allows an authorized attacker to elevate privileges locally.

HIGH 7.0
CVE-2026-58637

Use after free in Windows Client-Side Caching (CSC) Service allows an authorized attacker to elevate privileges locally.

HIGH 7.0
CVE-2026-58619

Use after free in Windows Sensor Data Service allows an authorized attacker to elevate privileges locally.

HIGH 7.0
CVE-2026-58544

Use after free in Windows Management Services allows an authorized attacker to elevate privileges locally.

HIGH 7.0
CVE-2026-57093

Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges loc…

HIGH 7.0
CVE-2026-56183

Use after free in Windows MIDI Service Module allows an authorized attacker to elevate privileges locally.

HIGH 7.0
CVE-2026-56187

Use after free in Windows MIDI Service Module allows an authorized attacker to elevate privileges locally.

HIGH 7.0
CVE-2026-56173

Use after free in Windows WebView allows an authorized attacker to elevate privileges locally.

HIGH 7.0
CVE-2026-50672

Use after free in Windows NTFS allows an authorized attacker to elevate privileges locally.

HIGH 7.0
CVE-2026-50674

Use after free in Windows USB Print Driver allows an authorized attacker to elevate privileges locally.

HIGH 7.0
CVE-2026-50669

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Telephony Servic…

HIGH 7.0
CVE-2026-50503

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Runtime allows a…

HIGH 7.0
CVE-2026-50490

Use after free in Windows Installer allows an authorized attacker to elevate privileges locally.

HIGH 7.0
CVE-2026-50491

Out-of-bounds read in Code Integrity DLL (ci.dll) allows an authorized attacker to elevate privileges locally.

HIGH 7.0
CVE-2026-50459

Use after free in Windows Kernel allows an unauthorized attacker to elevate privileges locally.

HIGH 7.0
CVE-2026-50449

Use after free in Windows Runtime allows an authorized attacker to elevate privileges locally.

HIGH 7.0
CVE-2026-50452

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Runtime allows a…

HIGH 7.0
CVE-2026-50406

Use after free in Windows Backup Engine allows an authorized attacker to elevate privileges locally.

HIGH 7.0
CVE-2026-50410

Use after free in Windows Runtime allows an authorized attacker to elevate privileges locally.

HIGH 7.0
CVE-2026-50403

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Runtime allows a…

HIGH 7.0
CVE-2026-50404

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Media allows an …

HIGH 7.0
CVE-2026-50392

Use after free in Windows Secure Kernel Mode allows an authorized attacker to elevate privileges locally.

HIGH 7.0
CVE-2026-50393

Use after free in Windows Kernel-Mode Drivers allows an authorized attacker to elevate privileges locally.

HIGH 7.0
CVE-2026-50396

Use after free in Windows Kernel-Mode Drivers allows an authorized attacker to elevate privileges locally.

HIGH 7.0
CVE-2026-50397

Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally.

HIGH 7.0
CVE-2026-50390

Access of resource using incompatible type ('type confusion') in Windows Kernel allows an authorized attacker to elevat…

HIGH 7.0
CVE-2026-50371

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows LUAFV allows an …

HIGH 7.0
CVE-2026-50372

Buffer over-read in Windows Redirected Drive Buffering allows an authorized attacker to elevate privileges locally.

HIGH 7.0
CVE-2026-50359

Use after free in Microsoft XML Core Services allows an authorized attacker to elevate privileges locally.

HIGH 7.0
CVE-2026-50358

Use after free in Windows Media allows an authorized attacker to elevate privileges locally.

HIGH 7.0
CVE-2026-50345

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Runtime allows a…

HIGH 7.0
CVE-2026-50348

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Runtime allows a…

HIGH 7.0
CVE-2026-50322

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Runtime allows a…

HIGH 7.0
CVE-2026-50307

Use after free in Windows TCP/IP allows an authorized attacker to elevate privileges locally.

HIGH 7.0
CVE-2026-58526

Use after free in Windows Storage allows an authorized attacker to elevate privileges locally.

HIGH 7.0
CVE-2026-54996

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows USB Print Driver…

HIGH 7.0
CVE-2026-54989

Use after free in Quality Windows Audio/Video Experience (QWAVE) service allows an authorized attacker to elevate privi…

HIGH 7.0
CVE-2026-54129

Use after free in Windows Hyper-V allows an authorized attacker to elevate privileges locally.

HIGH 7.0
CVE-2026-54111

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows USB Print Driver…

HIGH 7.0
CVE-2026-50384

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Clip Service all…

HIGH 7.0
CVE-2026-50356

Concurrent execution using shared resource with improper synchronization ('race condition') in Microsoft Windows App St…

HIGH 7.0
CVE-2026-50323

Use after free in Windows Runtime allows an authorized attacker to elevate privileges locally.

HIGH 7.0
CVE-2026-50325

Improper access control in Windows Win32K allows an authorized attacker to elevate privileges locally.

HIGH 7.0
CVE-2026-50297

Improper access control in Windows Win32K allows an authorized attacker to elevate privileges locally.

HIGH 7.0
CVE-2026-49806

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows USB Print Driver…

HIGH 7.0
CVE-2026-50296

Use after free in Graphics Kernel allows an authorized attacker to elevate privileges locally.

HIGH 7.0
CVE-2026-49802

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows USB Print Driver…

HIGH 7.0
CVE-2026-49803

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows AppX Deployment …

HIGH 7.0
CVE-2026-49805

Improper access control in Windows Win32K allows an authorized attacker to elevate privileges locally.

HIGH 7.0
CVE-2026-49183

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Clipboard Server…

HIGH 7.0
CVE-2026-49784

Concurrent execution using shared resource with improper synchronization ('race condition') in Microsoft Windows App St…

HIGH 7.0
CVE-2026-48571

Use after free in Windows App Installer allows an authorized attacker to elevate privileges locally.

HIGH 7.0
CVE-2026-48572

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows App Installer al…

HIGH 7.0
CVE-2026-49162

Use after free in Microsoft Brokering File System allows an authorized attacker to elevate privileges locally.

HIGH 7.0
CVE-2026-47648

Untrusted search path in Windows Storage allows an authorized attacker to elevate privileges locally.

HIGH 7.0
CVE-2026-45653

Heap-based buffer overflow in Windows Kernel allows an authorized attacker to elevate privileges locally.

HIGH 7.0
CVE-2026-45640

Use after free in Windows Bluetooth Port Driver allows an authorized attacker to elevate privileges locally.

HIGH 7.0
CVE-2026-45598

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Ancillary Functi…

HIGH 7.0
CVE-2026-45601

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Ancillary Functi…

HIGH 7.0
CVE-2026-45603

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Ancillary Functi…

HIGH 7.0
CVE-2026-45596

Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges loc…

HIGH 7.0
CVE-2026-45597

Concurrent execution using shared resource with improper synchronization ('race condition') in UI Automation Manager (u…

HIGH 7.0
CVE-2026-42984

Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally.

HIGH 7.0
CVE-2026-42911

Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges loc…

HIGH 7.0
CVE-2026-42912

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Telephony Servic…

HIGH 7.0
CVE-2026-42836

Concurrent execution using shared resource with improper synchronization ('race condition') in Function Discovery Servi…

HIGH 7.0
CVE-2026-41108

Heap-based buffer overflow in Microsoft Windows DNS allows an authorized attacker to elevate privileges locally.

HIGH 7.0
CVE-2026-34335

Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges loc…

HIGH 7.0
CVE-2025-54518

Improper isolation of shared resources within the CPU operation cache on Zen 2-based products could allow an attacker t…

HIGH 7.0
CVE-2026-35416

Access of resource using incompatible type ('type confusion') in Windows Ancillary Function Driver for WinSock allows a…

HIGH 7.0
CVE-2026-34345

Access of resource using incompatible type ('type confusion') in Windows Ancillary Function Driver for WinSock allows a…

HIGH 7.0
CVE-2026-33839

Win32k Elevation of Privilege Vulnerability

HIGH 7.0
CVE-2026-34331

Win32k Elevation of Privilege Vulnerability

HIGH 7.0
CVE-2026-34340

Windows Projected File System Elevation of Privilege Vulnerability

HIGH 7.0
CVE-2026-34341

Windows Link-Layer Discovery Protocol (LLDP) Elevation of Privilege Vulnerability

HIGH 7.0
CVE-2026-34342

Windows Print Spooler Elevation of Privilege Vulnerability

HIGH 7.0
CVE-2026-34347

Windows Win32k Elevation of Privilege Vulnerability

HIGH 7.0
CVE-2026-40410

Windows SMB Client Elevation of Privilege Vulnerability

HIGH 7.0
CVE-2026-42825

Windows Telephony Service Elevation of Privilege Vulnerability

HIGH 7.0
CVE-2026-33104

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Win32K - GRFX al…

HIGH 7.0
CVE-2026-33099

Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges loc…

HIGH 7.0
CVE-2026-33100

Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges loc…

HIGH 7.0
CVE-2026-25184

Applocker Filter Driver (applockerfltr.sys) Elevation of Privilege Vulnerability

HIGH 7.0
CVE-2026-26152

Microsoft Cryptographic Services Elevation of Privilege Vulnerability

HIGH 7.0
CVE-2026-26165

Windows Shell Elevation of Privilege Vulnerability

HIGH 7.0
CVE-2026-26166

Windows Shell Elevation of Privilege Vulnerability

HIGH 7.0
CVE-2026-26173

Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability

HIGH 7.0
CVE-2026-26174

Windows Server Update Service (WSUS) Elevation of Privilege Vulnerability

HIGH 7.0
CVE-2026-26177

Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability

HIGH 7.0
CVE-2026-26182

Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability

HIGH 7.0
CVE-2026-27908

Windows TDI Translation Driver (tdx.sys) Elevation of Privilege Vulnerability

HIGH 7.0
CVE-2026-27917

Windows WFP NDIS Lightweight Filter Driver (wfplwfs.sys) Elevation of Privilege Vulnerability

HIGH 7.0
CVE-2026-27921

Windows TDI Translation Driver (tdx.sys) Elevation of Privilege Vulnerability

HIGH 7.0
CVE-2026-27922

Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability

HIGH 7.0
CVE-2026-27926

Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability

HIGH 7.0
CVE-2026-27929

Windows LUA File Virtualization Filter Driver Elevation of Privilege Vulnerability

HIGH 7.0
CVE-2026-32068

Windows Simple Search and Discovery Protocol (SSDP) Service Elevation of Privilege Vulnerability

HIGH 7.0
CVE-2026-32070

Windows Common Log File System Driver Elevation of Privilege Vulnerability

HIGH 7.0
CVE-2026-32073

Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability

HIGH 7.0
CVE-2026-32075

Windows UPnP Device Host Elevation of Privilege Vulnerability

HIGH 7.0
CVE-2026-32082

Windows Simple Search and Discovery Protocol (SSDP) Service Elevation of Privilege Vulnerability

HIGH 7.0
CVE-2026-32083

Windows Simple Search and Discovery Protocol (SSDP) Service Elevation of Privilege Vulnerability

HIGH 7.0
CVE-2026-32086

Windows Function Discovery Service (fdwsd.dll) Elevation of Privilege Vulnerability

HIGH 7.0
CVE-2026-32087

Windows Function Discovery Service (fdwsd.dll) Elevation of Privilege Vulnerability

HIGH 7.0
CVE-2026-32093

Windows Function Discovery Service (fdwsd.dll) Elevation of Privilege Vulnerability

HIGH 7.0
CVE-2026-32150

Windows Function Discovery Service (fdwsd.dll) Elevation of Privilege Vulnerability

HIGH 7.0
CVE-2026-32219

Microsoft Brokering File System Elevation of Privilege Vulnerability

HIGH 7.0
CVE-2026-24285

Use after free in Windows Win32K allows an authorized attacker to elevate privileges locally.

HIGH 7.0
CVE-2026-23667

Broadcast DVR Elevation of Privilege Vulnerability

HIGH 7.0
CVE-2026-23671

Windows Bluetooth RFCOM Protocol Driver Elevation of Privilege Vulnerability

HIGH 7.0
CVE-2026-24295

Windows Device Association Service Elevation of Privilege Vulnerability

HIGH 7.0
CVE-2026-24296

Windows Device Association Service Elevation of Privilege Vulnerability

HIGH 7.0
CVE-2026-25170

Windows Hyper-V Elevation of Privilege Vulnerability

HIGH 7.0
CVE-2026-25171

Windows Authentication Elevation of Privilege Vulnerability

HIGH 7.0
CVE-2026-25178

Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability

HIGH 7.0
CVE-2026-25179

Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability

HIGH 7.0
CVE-2026-21234

Windows Connected Devices Platform Service Elevation of Privilege Vulnerability

HIGH 7.0
CVE-2026-21237

Windows Subsystem for Linux Elevation of Privilege Vulnerability

HIGH 7.0
CVE-2026-21241

Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability

HIGH 7.0
CVE-2026-21242

Windows Subsystem for Linux Elevation of Privilege Vulnerability

HIGH 7.0
CVE-2026-21253

Mailslot File System Elevation of Privilege Vulnerability

HIGH 7.0
CVE-2026-21508

Windows Storage Elevation of Privilege Vulnerability

HIGH 7.0
CVE-2026-21221

Concurrent execution using shared resource with improper synchronization ('race condition') in Capability Access Manage…

HIGH 7.0
CVE-2026-20869

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Local Session Ma…

HIGH 7.0
CVE-2026-20863

Double free in Windows Win32K - ICOMP allows an authorized attacker to elevate privileges locally.

HIGH 7.0
CVE-2026-20842

Use after free in Windows DWM allows an authorized attacker to elevate privileges locally.

HIGH 7.0
CVE-2026-20836

Concurrent execution using shared resource with improper synchronization ('race condition') in Graphics Kernel allows a…

HIGH 7.0
CVE-2026-20814

Concurrent execution using shared resource with improper synchronization ('race condition') in Graphics Kernel allows a…

HIGH 7.0
CVE-2026-20815

Concurrent execution using shared resource with improper synchronization ('race condition') in Capability Access Manage…

HIGH 7.0
CVE-2026-20808

Concurrent execution using shared resource with improper synchronization ('race condition') in Printer Association Obje…

HIGH 7.0
CVE-2025-54957

Indexed via Android Security Bulletin; full NVD metadata pending.

HIGH 7.0
CVE-2025-62469

Microsoft Brokering File System Elevation of Privilege Vulnerability

HIGH 7.0
CVE-2025-62569

Microsoft Brokering File System Elevation of Privilege Vulnerability

HIGH 7.0
CVE-2025-62573

DirectX Graphics Kernel Elevation of Privilege Vulnerability

HIGH 7.0
CVE-2025-59506

DirectX Graphics Kernel Elevation of Privilege Vulnerability

HIGH 7.0
CVE-2025-59507

Windows Speech Runtime Elevation of Privilege Vulnerability

HIGH 7.0
CVE-2025-59508

Windows Speech Recognition Elevation of Privilege Vulnerability

HIGH 7.0
CVE-2025-59515

Windows Broadcast DVR User Service Elevation of Privilege Vulnerability

HIGH 7.0
CVE-2025-60716

DirectX Graphics Kernel Elevation of Privilege Vulnerability

CRITICAL 7.0
CVE-2025-60717

Windows Broadcast DVR User Service Elevation of Privilege Vulnerability

HIGH 7.0
CVE-2025-60719

Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability

HIGH 7.0
CVE-2025-62213

Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability

HIGH 7.0
CVE-2025-62217

Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability

HIGH 7.0
CVE-2025-62218

Microsoft Wireless Provisioning System Elevation of Privilege Vulnerability

HIGH 7.0
CVE-2025-62219

Microsoft Wireless Provisioning System Elevation of Privilege Vulnerability

HIGH 7.0
CVE-2025-50174

Windows Device Association Broker Service Elevation of Privilege Vulnerability

HIGH 7.0
CVE-2025-53717

Windows Virtualization-Based Security (VBS) Enclave Elevation of Privilege Vulnerability

HIGH 7.0
CVE-2025-55331

Windows PrintWorkflowUserSvc Elevation of Privilege Vulnerability

HIGH 7.0
CVE-2025-55340

Windows Remote Desktop Protocol Security Feature Bypass

HIGH 7.0
CVE-2025-55678

DirectX Graphics Kernel Elevation of Privilege Vulnerability

HIGH 7.0
CVE-2025-55681

Desktop Window Manager Elevation of Privilege Vulnerability

HIGH 7.0
CVE-2025-55684

Windows PrintWorkflowUserSvc Elevation of Privilege Vulnerability

HIGH 7.0
CVE-2025-55685

Windows PrintWorkflowUserSvc Elevation of Privilege Vulnerability

HIGH 7.0
CVE-2025-55686

Windows PrintWorkflowUserSvc Elevation of Privilege Vulnerability

HIGH 7.0
CVE-2025-55688

Windows PrintWorkflowUserSvc Elevation of Privilege Vulnerability

HIGH 7.0
CVE-2025-55689

Windows PrintWorkflowUserSvc Elevation of Privilege Vulnerability

HIGH 7.0
CVE-2025-55690

Windows PrintWorkflowUserSvc Elevation of Privilege Vulnerability

HIGH 7.0
CVE-2025-55691

Windows PrintWorkflowUserSvc Elevation of Privilege Vulnerability

HIGH 7.0
CVE-2025-58725

Windows COM+ Event System Service Elevation of Privilege Vulnerability

HIGH 7.0
CVE-2025-58727

Windows Connected Devices Platform Service Elevation of Privilege Vulnerability

HIGH 7.0
CVE-2025-58730

Inbox COM Objects (Global Memory) Remote Code Execution Vulnerability

HIGH 7.0
CVE-2025-58731

Inbox COM Objects (Global Memory) Remote Code Execution Vulnerability

HIGH 7.0
CVE-2025-58732

Inbox COM Objects (Global Memory) Remote Code Execution Vulnerability

HIGH 7.0
CVE-2025-58733

Inbox COM Objects (Global Memory) Remote Code Execution Vulnerability

HIGH 7.0
CVE-2025-58734

Inbox COM Objects (Global Memory) Remote Code Execution Vulnerability

HIGH 7.0
CVE-2025-58735

Inbox COM Objects (Global Memory) Remote Code Execution Vulnerability

HIGH 7.0
CVE-2025-58736

Inbox COM Objects (Global Memory) Remote Code Execution Vulnerability

HIGH 7.0
CVE-2025-58738

Inbox COM Objects (Global Memory) Remote Code Execution Vulnerability

HIGH 7.0
CVE-2025-59193

Windows Management Services Elevation of Privilege Vulnerability

HIGH 7.0
CVE-2025-59194

Windows Kernel Elevation of Privilege Vulnerability

HIGH 7.0
CVE-2025-59195

Windows Graphics Component Denial of Service Vulnerability

HIGH 7.0
CVE-2025-59196

Windows Simple Search and Discovery Protocol (SSDP) Service Elevation of Privilege Vulnerability

HIGH 7.0
CVE-2025-59202

Windows Remote Desktop Services Elevation of Privilege Vulnerability

HIGH 7.0
CVE-2025-59205

Windows Graphics Component Elevation of Privilege Vulnerability

HIGH 7.0
CVE-2025-59261

Windows Graphics Component Elevation of Privilege Vulnerability

HIGH 7.0
CVE-2025-59282

Internet Information Services (IIS) Inbox COM Objects (Global Memory) Remote Code Execution Vulnerability

HIGH 7.0
CVE-2020-17103

Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability

HIGH 7.0
CVE-2026-58528

Out-of-bounds read in Windows USB Audio Class driver (usbaudio.sys) allows an unauthorized attacker to disclose informa…

MEDIUM 6.8
CVE-2026-50668

Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to elevate privileges with a physical attack.

MEDIUM 6.8
CVE-2026-50492

Heap-based buffer overflow in Windows Resilient File System (ReFS) allows an unauthorized attacker to execute code with…

MEDIUM 6.8
CVE-2026-54132

Heap-based buffer overflow in Windows Kernel allows an unauthorized attacker to elevate privileges with a physical atta…

MEDIUM 6.8
CVE-2026-50298

Integer overflow or wraparound in Windows Spaceport.sys allows an unauthorized attacker to elevate privileges with a ph…

MEDIUM 6.8
CVE-2026-50299

Integer overflow or wraparound in Windows Storage Spaces Direct allows an unauthorized attacker to execute code with a …

MEDIUM 6.8
CVE-2026-49168

Integer overflow or wraparound in Windows Storage Spaces Direct allows an unauthorized attacker to elevate privileges w…

MEDIUM 6.8
CVE-2026-50507

Missing authentication for critical function in Windows BitLocker allows an unauthorized attacker to bypass a security …

MEDIUM 6.8
CVE-2026-45608

Out-of-bounds read in Windows DHCP Client allows an unauthorized attacker to disclose information locally.

MEDIUM 6.8
CVE-2026-45585

Microsoft is aware of a security feature bypass vulnerability in Windows publicly referred to as "YellowKey".…

MEDIUM 6.8
CVE-2026-32223

Heap-based buffer overflow in Windows USB Print Driver allows an unauthorized attacker to elevate privileges with a phy…

MEDIUM 6.8
CVE-2026-32170

Double free in Windows Rich Text Edit allows an authorized attacker to elevate privileges locally.

MEDIUM 6.7
CVE-2026-21530

Windows Rich Text Edit Elevation of Privilege Vulnerability

HIGH 6.7
CVE-2026-41097

Secure Boot Security Feature Bypass Vulnerability

HIGH 6.7
CVE-2026-20876

Heap-based buffer overflow in Windows Virtualization-Based Security (VBS) Enclave allows an authorized attacker to elev…

MEDIUM 6.7
CVE-2026-49804

Heap-based buffer overflow in Windows USB Video Driver allows an unauthorized attacker to elevate privileges with a phy…

MEDIUM 6.6
CVE-2025-2884

TCG TPM2.0 Reference implementation's CryptHmacSign helper function is vulnerable to Out-of-Bounds read due to the lack…

MEDIUM 6.6
CVE-2026-58546

Use of uninitialized resource in Windows RDP allows an unauthorized attacker to disclose information over a network.

MEDIUM 6.5
CVE-2026-58539

Out-of-bounds read in Windows RDP allows an unauthorized attacker to disclose information over a network.

MEDIUM 6.5
CVE-2026-58533

Use of uninitialized resource in Windows RDP allows an unauthorized attacker to disclose information over a network.

MEDIUM 6.5
CVE-2026-58535

Use of uninitialized resource in Windows RDP allows an unauthorized attacker to disclose information over a network.

MEDIUM 6.5
CVE-2026-57982

Use of uninitialized resource in Windows RDP allows an authorized attacker to disclose information over a network.

MEDIUM 6.5
CVE-2026-56168

Null pointer dereference in Windows SMB Server allows an authorized attacker to deny service over a network.

MEDIUM 6.5
CVE-2026-54126

Out-of-bounds read in Windows RDP allows an unauthorized attacker to disclose information over a network.

MEDIUM 6.5
CVE-2026-50504

Buffer over-read in Remote Desktop Client allows an unauthorized attacker to disclose information over a network.

MEDIUM 6.5
CVE-2026-50497

Off-by-one error in Windows Remote Desktop Protocol allows an unauthorized attacker to disclose information over a netw…

MEDIUM 6.5
CVE-2026-50445

Buffer over-read in Windows RDP allows an unauthorized attacker to disclose information over a network.

MEDIUM 6.5
CVE-2026-50376

Use of uninitialized resource in Windows RDP allows an unauthorized attacker to disclose information over a network.

MEDIUM 6.5
CVE-2026-50366

Null pointer dereference in Active Directory Domain Services allows an authorized attacker to deny service over a netwo…

MEDIUM 6.5
CVE-2026-57976

Null pointer dereference in Active Directory Domain Services allows an authorized attacker to deny service over a netwo…

MEDIUM 6.5
CVE-2026-57979

Out-of-bounds read in Windows RDP allows an unauthorized attacker to disclose information over a network.

MEDIUM 6.5
CVE-2026-55003

Use of uninitialized resource in Windows RDP allows an unauthorized attacker to disclose information over a network.

MEDIUM 6.5
CVE-2026-49799

Uncontrolled resource consumption in Windows Local Security Authority Subsystem Service (LSASS) allows an authorized at…

MEDIUM 6.5
CVE-2026-34348

Protection mechanism failure in Windows Event Logging Service allows an authorized attacker to disclose information ove…

MEDIUM 6.5
CVE-2026-42907

Exposure of sensitive information to an unauthorized actor in Windows Shell allows an authorized attacker to disclose i…

MEDIUM 6.5
CVE-2026-42903

Null pointer dereference in Windows Kerberos allows an authorized attacker to deny service over a network.

MEDIUM 6.5
CVE-2026-35422

Windows TCP/IP Driver Security Feature Bypass Vulnerability

HIGH 6.5
CVE-2026-26155

Microsoft Local Security Authority Subsystem Service Information Disclosure Vulnerability

HIGH 6.5
CVE-2026-27925

Windows UPnP Device Host Information Disclosure Vulnerability

HIGH 6.5
CVE-2026-32151

Windows Shell Information Disclosure Vulnerability

HIGH 6.5
CVE-2026-20925

External control of file name or path in Windows NTLM allows an unauthorized attacker to perform spoofing over a networ…

MEDIUM 6.5
CVE-2026-20872

External control of file name or path in Windows NTLM allows an unauthorized attacker to perform spoofing over a networ…

MEDIUM 6.5
CVE-2026-20847

Exposure of sensitive information to an unauthorized actor in Windows Shell allows an authorized attacker to perform sp…

MEDIUM 6.5
CVE-2026-20812

Improper input validation in Windows LDAP - Lightweight Directory Access Protocol allows an authorized attacker to perf…

MEDIUM 6.5
CVE-2025-62463

DirectX Graphics Kernel Denial of Service Vulnerability

HIGH 6.5
CVE-2025-62465

DirectX Graphics Kernel Denial of Service Vulnerability

HIGH 6.5
CVE-2025-62473

Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability

HIGH 6.5
CVE-2025-64670

Windows DirectX Information Disclosure Vulnerability

HIGH 6.5
CVE-2025-60708

Storvsp.sys Driver Denial of Service Vulnerability

HIGH 6.5
CVE-2025-55700

Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability

HIGH 6.5
CVE-2025-58717

Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability

HIGH 6.5
CVE-2025-58729

Windows Local Session Manager (LSM) Denial of Service Vulnerability

HIGH 6.5
CVE-2025-58739

Microsoft Windows File Explorer Spoofing Vulnerability

HIGH 6.5
CVE-2025-59185

NTLM Hash Disclosure Spoofing Vulnerability

HIGH 6.5
CVE-2025-59214

Microsoft Windows File Explorer Spoofing Vulnerability

HIGH 6.5
CVE-2025-59244

NTLM Hash Disclosure Spoofing Vulnerability

HIGH 6.5
CVE-2025-59257

Windows Local Session Manager (LSM) Denial of Service Vulnerability

HIGH 6.5
CVE-2025-59259

Windows Local Session Manager (LSM) Denial of Service Vulnerability

HIGH 6.5
CVE-2026-57097

Untrusted search path in Microsoft XML allows an unauthorized attacker to bypass a security feature with a physical att…

MEDIUM 6.4
CVE-2026-55000

Use after free in Windows USB Print Driver allows an unauthorized attacker to elevate privileges with a physical attack.

MEDIUM 6.4
CVE-2026-21265

Windows Secure Boot stores Microsoft certificates in the UEFI KEK and DB. These original certificates are approaching e…

MEDIUM 6.4
CVE-2026-58543

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows USB Print Driver…

MEDIUM 6.3
CVE-2026-50374

Use after free in Windows Cloud Files Mini Filter Driver allows an authorized attacker to elevate privileges with a phy…

MEDIUM 6.3
CVE-2026-50375

Heap-based buffer overflow in Windows DirectX allows an authorized attacker to elevate privileges locally.

MEDIUM 6.3
CVE-2025-60723

DirectX Graphics Kernel Denial of Service Vulnerability

HIGH 6.3
CVE-2025-48813

Virtual Secure Mode Spoofing Vulnerability

HIGH 6.3
CVE-2026-57095

Exposure of sensitive information to an unauthorized actor in Windows Win32K allows an unauthorized attacker to elevate…

MEDIUM 6.2
CVE-2026-50420

Out-of-bounds read in Windows HTTP.sys allows an unauthorized attacker to disclose information locally.

MEDIUM 6.2
CVE-2026-49807

Exposure of sensitive information to an unauthorized actor in Windows DirectX allows an unauthorized attacker to disclo…

MEDIUM 6.2
CVE-2026-50294

Exposure of sensitive system information to an unauthorized control sphere in Windows Kernel allows an unauthorized att…

MEDIUM 6.2
CVE-2026-40380

Windows Volume Manager Extension Driver Remote Code Execution Vulnerability

HIGH 6.2
CVE-2026-32072

Active Directory Spoofing Vulnerability

HIGH 6.2
CVE-2026-25168

Windows Graphics Component Denial of Service Vulnerability

HIGH 6.2
CVE-2026-25169

Windows Graphics Component Denial of Service Vulnerability

HIGH 6.2
CVE-2026-20935

Untrusted pointer dereference in Windows Virtualization-Based Security (VBS) Enclave allows an unauthorized attacker to…

MEDIUM 6.2
CVE-2026-20851

Out-of-bounds read in Capability Access Management Service (camsvc) allows an unauthorized attacker to disclose informa…

MEDIUM 6.2
CVE-2026-20821

Exposure of sensitive information to an unauthorized actor in Windows Remote Procedure Call allows an unauthorized atta…

MEDIUM 6.2
CVE-2025-55334

Windows Kernel Security Feature Bypass Vulnerability

HIGH 6.2
CVE-2026-50661

Protection mechanism failure in Windows BitLocker allows an unauthorized attacker to bypass a security feature with a p…

MEDIUM 6.1
CVE-2026-50495

Improper access control in Microsoft Windows DNS allows an authorized attacker to perform tampering locally.

MEDIUM 6.1
CVE-2026-50453

Out-of-bounds read in Windows USB Audio Class driver (usbaudio.sys) allows an unauthorized attacker to disclose informa…

MEDIUM 6.1
CVE-2026-50383

Buffer over-read in Windows Print Spooler Components allows an authorized attacker to disclose information locally.

MEDIUM 6.1
CVE-2026-49174

Missing authentication for critical function in Microsoft Windows DNS allows an authorized attacker to perform tamperin…

MEDIUM 6.1
CVE-2026-26169

Windows Kernel Memory Information Disclosure Vulnerability

HIGH 6.1
CVE-2026-32088

Windows Biometric Service Security Feature Bypass Vulnerability

HIGH 6.1
CVE-2025-55330

Windows BitLocker Security Feature Bypass Vulnerability

HIGH 6.1
CVE-2025-55332

Windows BitLocker Security Feature Bypass Vulnerability

HIGH 6.1
CVE-2025-55333

Windows BitLocker Security Feature Bypass Vulnerability

HIGH 6.1
CVE-2025-55337

Windows BitLocker Security Feature Bypass Vulnerability

HIGH 6.1
CVE-2025-55338

Windows BitLocker Security Feature Bypass Vulnerability

HIGH 6.1
CVE-2025-55682

Windows BitLocker Security Feature Bypass Vulnerability

HIGH 6.1
CVE-2026-58638

Missing cryptographic step in Windows Boot Loader allows an authorized attacker to bypass a security feature locally.

MEDIUM 6.0
CVE-2026-25250

MITRE: CVE-2026-25250 Secure Boot disable Eazy Fix

HIGH 6.0
CVE-2026-56649

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Network File Sys…

MEDIUM 5.9
CVE-2026-23670

Windows Virtualization-Based Security (VBS) Security Feature Bypass Vulnerability

HIGH 5.7
CVE-2026-58545

Improper access control in Windows Kernel allows an authorized attacker to bypass a security feature locally.

MEDIUM 5.5
CVE-2026-58547

Heap-based buffer overflow in Universal Plug and Play (upnp.dll) allows an authorized attacker to elevate privileges lo…

MEDIUM 5.5
CVE-2026-57083

Use of uninitialized resource in Microsoft Windows Codecs Library allows an unauthorized attacker to disclose informati…

MEDIUM 5.5
CVE-2026-57084

Use of uninitialized resource in Windows File Explorer allows an unauthorized attacker to disclose information locally.

MEDIUM 5.5
CVE-2026-57085

Out-of-bounds read in Windows Print Spooler Components allows an authorized attacker to disclose information locally.

MEDIUM 5.5
CVE-2026-56184

Exposure of sensitive information to an unauthorized actor in Windows Win32K allows an authorized attacker to disclose …

MEDIUM 5.5
CVE-2026-50690

Use of uninitialized resource in Windows SMB allows an authorized attacker to disclose information locally.

MEDIUM 5.5
CVE-2026-50681

Exposure of sensitive information to an unauthorized actor in Windows Cryptographic Services allows an authorized attac…

MEDIUM 5.5
CVE-2026-50483

Exposure of sensitive information to an unauthorized actor in Microsoft Graphics Component allows an authorized attacke…

MEDIUM 5.5
CVE-2026-50475

Buffer over-read in Windows Kernel allows an authorized attacker to disclose information locally.

MEDIUM 5.5
CVE-2026-50473

Exposure of sensitive information to an unauthorized actor in Windows File Explorer allows an authorized attacker to di…

MEDIUM 5.5
CVE-2026-50455

Use of uninitialized resource in Universal Plug and Play (upnp.dll) allows an authorized attacker to disclose informati…

MEDIUM 5.5
CVE-2026-50456

Exposure of sensitive information to an unauthorized actor in Windows File Explorer allows an authorized attacker to di…

MEDIUM 5.5
CVE-2026-50442

Exposure of sensitive information to an unauthorized actor in Windows File Explorer allows an authorized attacker to di…

MEDIUM 5.5
CVE-2026-50434

Exposure of sensitive information to an unauthorized actor in Windows Push Notifications allows an authorized attacker …

MEDIUM 5.5
CVE-2026-50437

Out-of-bounds read in Windows DWM Core Library allows an authorized attacker to disclose information locally.

MEDIUM 5.5
CVE-2026-50430

Exposure of sensitive information to an unauthorized actor in Windows Push Notifications allows an authorized attacker …

MEDIUM 5.5
CVE-2026-50431

Windows Quality of Service (QoS) Packet Scheduler Information Disclosure Vulnerability

MEDIUM 5.5
CVE-2026-50409

Exposure of sensitive information to an unauthorized actor in Windows Overlay Filter allows an authorized attacker to d…

MEDIUM 5.5
CVE-2026-50401

Out-of-bounds read in Windows Cloud Files Mini Filter Driver allows an authorized attacker to disclose information loca…

MEDIUM 5.5
CVE-2026-50394

Exposure of sensitive information to an unauthorized actor in Windows Media allows an authorized attacker to disclose i…

MEDIUM 5.5
CVE-2026-50389

Exposure of sensitive information to an unauthorized actor in Windows File Explorer allows an authorized attacker to di…

MEDIUM 5.5
CVE-2026-50377

Out-of-bounds read in Windows Kernel allows an authorized attacker to elevate privileges locally.

MEDIUM 5.5
CVE-2026-50352

Exposure of sensitive information to an unauthorized actor in Windows Cryptographic Services allows an authorized attac…

MEDIUM 5.5
CVE-2026-50339

Exposure of sensitive information to an unauthorized actor in Windows Push Notifications allows an authorized attacker …

MEDIUM 5.5
CVE-2026-50341

Buffer over-read in Windows NTFS allows an authorized attacker to disclose information locally.

MEDIUM 5.5
CVE-2026-50334

Exposure of sensitive information to an unauthorized actor in Windows Notification allows an authorized attacker to dis…

MEDIUM 5.5
CVE-2026-49177

Out-of-bounds read in Windows TCP/IP allows an authorized attacker to disclose information locally.

MEDIUM 5.5
CVE-2026-58614

Out-of-bounds read in Windows Kernel allows an authorized attacker to bypass a security feature locally.

MEDIUM 5.5
CVE-2026-54997

Use of uninitialized resource in Windows SMB allows an authorized attacker to disclose information locally.

MEDIUM 5.5
CVE-2026-50381

Access of resource using incompatible type ('type confusion') in Composite Image File System Driver allows an authorize…

MEDIUM 5.5
CVE-2026-50350

Exposure of sensitive information to an unauthorized actor in Windows Trusted Runtime Interface Driver allows an author…

MEDIUM 5.5
CVE-2026-50316

Insertion of sensitive information into log file in Windows Kernel allows an authorized attacker to disclose informatio…

MEDIUM 5.5
CVE-2026-50300

Integer underflow (wrap or wraparound) in Windows Kernel allows an authorized attacker to disclose information locally.

MEDIUM 5.5
CVE-2026-50303

Use of a cryptographic primitive with a risky implementation in Windows Key Guard allows an authorized attacker to bypa…

MEDIUM 5.5
CVE-2026-50295

Improper privilege management in Microsoft Windows DNS allows an authorized attacker to bypass a security feature local…

MEDIUM 5.5
CVE-2026-49801

Use of uninitialized resource in Windows SMB allows an authorized attacker to disclose information locally.

MEDIUM 5.5
CVE-2026-49180

Improper link resolution before file access ('link following') in Universal Plug and Play (upnp.dll) allows an authoriz…

MEDIUM 5.5
CVE-2026-40422

Use of uninitialized resource in Windows File Explorer allows an authorized attacker to disclose information locally.

MEDIUM 5.5
CVE-2026-41087

Exposure of sensitive information to an unauthorized actor in Windows File Explorer allows an authorized attacker to di…

MEDIUM 5.5
CVE-2026-33842

Exposure of sensitive information to an unauthorized actor in Windows File Explorer allows an authorized attacker to di…

MEDIUM 5.5
CVE-2026-34328

Exposure of sensitive information to an unauthorized actor in Windows Audio Service allows an authorized attacker to di…

MEDIUM 5.5
CVE-2026-34346

Cleartext transmission of sensitive information in Windows Ancillary Function Driver for WinSock allows an authorized a…

MEDIUM 5.5
CVE-2026-34349

Exposure of sensitive information to an unauthorized actor in Windows Media allows an authorized attacker to disclose i…

MEDIUM 5.5
CVE-2026-48566

Out-of-bounds read in Windows DWM Core Library allows an authorized attacker to disclose information locally.

MEDIUM 5.5
CVE-2026-45604

Out-of-bounds read in Windows Application Identity (AppID) Subsystem allows an authorized attacker to disclose informat…

MEDIUM 5.5
CVE-2026-45606

Out-of-bounds read in Microsoft UxTheme Library (uxtheme.dll) allows an authorized attacker to deny service locally.

MEDIUM 5.5
CVE-2026-45634

Out-of-bounds read in Windows DHCP Server allows an authorized attacker to disclose information locally.

MEDIUM 5.5
CVE-2026-45594

Exposure of sensitive information to an unauthorized actor in Windows Application Identity (AppID) Subsystem allows an …

MEDIUM 5.5
CVE-2026-42973

Exposure of sensitive information to an unauthorized actor in Windows Push Notifications allows an authorized attacker …

MEDIUM 5.5
CVE-2026-42968

Out-of-bounds read in Windows Telephony Service allows an authorized attacker to disclose information locally.

MEDIUM 5.5
CVE-2026-42969

Use of uninitialized resource in Windows Push Notifications allows an authorized attacker to disclose information local…

MEDIUM 5.5
CVE-2026-42970

Exposure of sensitive information to an unauthorized actor in Windows Push Notifications allows an authorized attacker …

MEDIUM 5.5
CVE-2026-42971

Exposure of sensitive information to an unauthorized actor in Windows Push Notifications allows an authorized attacker …

MEDIUM 5.5
CVE-2026-42972

Exposure of sensitive information to an unauthorized actor in Windows Hyper-V allows an authorized attacker to disclose…

MEDIUM 5.5
CVE-2026-42915

Incorrect calculation of buffer size in Windows VMSwitch allows an authorized attacker to deny service locally.

MEDIUM 5.5
CVE-2026-42906

Exposure of sensitive information to an unauthorized actor in Windows Shell allows an authorized attacker to disclose i…

MEDIUM 5.5
CVE-2026-34339

Windows Lightweight Directory Access Protocol (LDAP) Denial of Service Vulnerability

HIGH 5.5
CVE-2026-35419

Windows DWM Core Library Information Disclosure Vulnerability

HIGH 5.5
CVE-2026-20806

Windows COM Server Information Disclosure Vulnerability

HIGH 5.5
CVE-2026-27930

Windows GDI Information Disclosure Vulnerability

HIGH 5.5
CVE-2026-27931

Windows GDI Information Disclosure Vulnerability

HIGH 5.5
CVE-2026-32079

Web Account Manager Information Disclosure Vulnerability

HIGH 5.5
CVE-2026-32081

Package Catalog Information Disclosure Vulnerability

HIGH 5.5
CVE-2026-32084

Windows Print Spooler Information Disclosure Vulnerability

HIGH 5.5
CVE-2026-32085

Remote Procedure Call Information Disclosure Vulnerability

HIGH 5.5
CVE-2026-32181

Connected User Experiences and Telemetry Service Denial of Service Vulnerability

HIGH 5.5
CVE-2026-32212

Universal Plug and Play (upnp.dll) Information Disclosure Vulnerability

HIGH 5.5
CVE-2026-32214

Universal Plug and Play (upnp.dll) Information Disclosure Vulnerability

HIGH 5.5
CVE-2026-32215

Windows Kernel Information Disclosure Vulnerability

HIGH 5.5
CVE-2026-32217

Windows Kernel Information Disclosure Vulnerability

HIGH 5.5
CVE-2026-32218

Windows Kernel Information Disclosure Vulnerability

HIGH 5.5
CVE-2026-25180

Out-of-bounds read in Microsoft Graphics Component allows an unauthorized attacker to disclose information locally.

HIGH 5.5
CVE-2026-24282

Push message Routing Service Elevation of Privilege Vulnerability

HIGH 5.5
CVE-2026-25186

Windows Accessibility Infrastructure (ATBroker.exe) Information Disclosure Vulnerability

HIGH 5.5
CVE-2026-20939

Exposure of sensitive information to an unauthorized actor in Windows File Explorer allows an authorized attacker to di…

MEDIUM 5.5
CVE-2026-20932

Exposure of sensitive information to an unauthorized actor in Windows File Explorer allows an authorized attacker to di…

MEDIUM 5.5
CVE-2026-20937

Exposure of sensitive information to an unauthorized actor in Windows File Explorer allows an authorized attacker to di…

MEDIUM 5.5
CVE-2026-20862

Exposure of sensitive information to an unauthorized actor in Windows Management Services allows an authorized attacker…

MEDIUM 5.5
CVE-2026-20838

Generation of error message containing sensitive information in Windows Kernel allows an authorized attacker to disclos…

MEDIUM 5.5
CVE-2026-20839

Improper access control in Windows Client-Side Caching (CSC) Service allows an authorized attacker to disclose informat…

MEDIUM 5.5
CVE-2026-20835

Out-of-bounds read in Capability Access Management Service (camsvc) allows an authorized attacker to disclose informati…

MEDIUM 5.5
CVE-2026-20827

Exposure of sensitive information to an unauthorized actor in Tablet Windows User Interface (TWINUI) Subsystem allows a…

MEDIUM 5.5
CVE-2026-20829

Out-of-bounds read in Windows TPM allows an authorized attacker to disclose information locally.

MEDIUM 5.5
CVE-2026-20823

Exposure of sensitive information to an unauthorized actor in Windows File Explorer allows an authorized attacker to di…

MEDIUM 5.5
CVE-2026-20824

Protection mechanism failure in Windows Remote Assistance allows an unauthorized attacker to bypass a security feature …

MEDIUM 5.5
CVE-2026-20819

Untrusted pointer dereference in Windows Virtualization-Based Security (VBS) Enclave allows an authorized attacker to d…

MEDIUM 5.5
CVE-2025-62468

Windows Defender Firewall Service Information Disclosure Vulnerability

HIGH 5.5
CVE-2025-59509

Windows Speech Recognition Information Disclosure Vulnerability

HIGH 5.5
CVE-2025-59510

Windows Routing and Remote Access Service (RRAS) Denial of Service Vulnerability

HIGH 5.5
CVE-2025-59513

Windows Bluetooth RFCOM Protocol Driver Information Disclosure Vulnerability

HIGH 5.5
CVE-2025-60706

Windows Hyper-V Information Disclosure Vulnerability

HIGH 5.5
CVE-2025-62208

Windows License Manager Information Disclosure Vulnerability

HIGH 5.5
CVE-2025-62209

Windows License Manager Information Disclosure Vulnerability

HIGH 5.5
CVE-2025-55325

Windows Storage Management Provider Information Disclosure Vulnerability

HIGH 5.5
CVE-2025-55336

Windows Cloud Files Mini Filter Driver Information Disclosure Vulnerability

HIGH 5.5
CVE-2025-55676

Windows USB Video Class System Driver Information Disclosure Vulnerability

HIGH 5.5
CVE-2025-55695

Windows WLAN AutoConfig Service Information Disclosure Vulnerability

HIGH 5.5
CVE-2025-55699

Windows Kernel Information Disclosure Vulnerability

HIGH 5.5
CVE-2025-59190

Windows Search Service Denial of Service Vulnerability

HIGH 5.5
CVE-2025-59197

Windows ETL Channel Information Disclosure Vulnerability

HIGH 5.5
CVE-2025-59203

Windows State Repository API Server File Information Disclosure Vulnerability

HIGH 5.5
CVE-2025-59204

Windows Management Services Information Disclosure Vulnerability

HIGH 5.5
CVE-2025-59209

Windows Push Notification Information Disclosure Vulnerability

HIGH 5.5
CVE-2025-59211

Windows Push Notification Information Disclosure Vulnerability

HIGH 5.5
CVE-2025-59253

Windows Search Service Denial of Service Vulnerability

HIGH 5.5
CVE-2020-35538

Microsoft Security Update Guide entry — NVD enrichira.

HIGH 5.5
CVE-2026-45595

Protection mechanism failure in Windows Mark of the Web (MOTW) allows an unauthorized attacker to bypass a security fea…

MEDIUM 5.4
CVE-2026-35423

Windows 11 Telnet Client Information Disclosure Vulnerability

HIGH 5.4
CVE-2026-50432

Use after free in Windows Virtual Filtering Platform (VFP) allows an authorized attacker to deny service over a network.

MEDIUM 5.3
CVE-2026-50415

Exposure of sensitive information to an unauthorized actor in Windows Media allows an unauthorized attacker to disclose…

MEDIUM 5.3
CVE-2026-44806

Missing release of memory after effective lifetime in Windows Cryptographic Services allows an unauthorized attacker to…

MEDIUM 5.3
CVE-2026-45655

Protection mechanism failure in Windows BitLocker allows an unauthorized attacker to bypass a security feature with a p…

MEDIUM 5.3
CVE-2026-42914

Out-of-bounds read in Windows Kerberos allows an authorized attacker to deny service over a network.

MEDIUM 5.3
CVE-2023-20585

AMD: CVE-2023-20585 IOMMU Write Buffer Vulnerability

HIGH 5.3
CVE-2026-25185

Windows Shell Link Processing Spoofing Vulnerability

HIGH 5.3
CVE-2026-20927

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows SMB Server allow…

MEDIUM 5.3
CVE-2025-62567

Windows Hyper-V Denial of Service Vulnerability

HIGH 5.3
CVE-2026-50418

Improper access control in Windows System allows an unauthorized attacker to bypass a security feature locally.

MEDIUM 5.1
CVE-2025-55679

Windows Kernel Information Disclosure Vulnerability

HIGH 5.1
CVE-2025-59198

Windows Search Service Denial of Service Vulnerability

HIGH 5.0
CVE-2026-50310

Integer overflow or wraparound in Windows Devices Human Interface allows an authorized attacker to disclose information…

MEDIUM 4.7
CVE-2026-50312

Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges loc…

MEDIUM 4.7
CVE-2026-49167

Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally.

MEDIUM 4.7
CVE-2025-58719

Windows Connected Devices Platform Service Elevation of Privilege Vulnerability

HIGH 4.7
CVE-2026-49794

Out-of-bounds read in Windows USB Audio Class driver (usbaudio.sys) allows an unauthorized attacker to disclose informa…

MEDIUM 4.6
CVE-2026-20928

Windows Recovery Environment Security Feature Bypass Vulnerability

HIGH 4.6
CVE-2026-26175

Windows Boot Manager Security Feature Bypass Vulnerability

HIGH 4.6
CVE-2026-20834

Absolute path traversal in Windows Shell allows an unauthorized attacker to perform spoofing with a physical attack.

MEDIUM 4.6
CVE-2026-20828

Out-of-bounds read in Windows Internet Connection Sharing (ICS) allows an unauthorized attacker to disclose information…

MEDIUM 4.6
CVE-2026-50485

Buffer over-read in Windows Hyper-V allows an authorized attacker to deny service over an adjacent network.

MEDIUM 4.5
CVE-2026-32209

Windows Filtering Platform (WFP) Security Feature Bypass Vulnerability

HIGH 4.4
CVE-2026-32220

Improper access control in Windows Virtualization-Based Security (VBS) Enclave allows an authorized attacker to bypass …

MEDIUM 4.4
CVE-2026-27906

Windows Hello Security Feature Bypass Vulnerability

HIGH 4.4
CVE-2026-20962

Use of uninitialized resource in Dynamic Root of Trust for Measurement (DRTM) allows an authorized attacker to disclose…

MEDIUM 4.4
CVE-2026-20825

Improper access control in Windows Hyper-V allows an authorized attacker to disclose information locally.

MEDIUM 4.4
CVE-2026-33829

Exposure of sensitive information to an unauthorized actor in Windows Snipping Tool allows an unauthorized attacker to …

MEDIUM 4.3
CVE-2026-20936

Out-of-bounds read in Windows NDIS allows an authorized attacker to disclose information with a physical attack.

MEDIUM 4.3
CVE-2026-50302

Improper certificate validation in Windows Cryptographic Services allows an unauthorized attacker to bypass a security …

MEDIUM 4.2
CVE-2026-45642

Improper input validation in Microsoft Azure Attestation service and Device Health Attestation Service allows an author…

LOW 3.9
CVE-2026-50419

Exposure of sensitive information to an unauthorized actor in Windows Kernel allows an authorized attacker to disclose …

LOW 3.3
CVE-2026-50416

Exposure of sensitive information to an unauthorized actor in Windows Win32K allows an authorized attacker to disclose …

LOW 3.3
CVE-2026-21249

Windows NTLM Spoofing Vulnerability

HIGH 3.3
CVE-2025-59284

Windows NTLM Spoofing Vulnerability

HIGH 3.3
CVE-2025-59294

Windows Taskbar Live Preview Information Disclosure Vulnerability

HIGH 2.1