PatchTriageWhat to patch first
← Back to the August 2026 brief
Full vulnerability index

Microsoft Patch Tuesday — August 2026 · all CVEs

Every CVE in this month's Microsoft Security Update document, ranked by composite priority. Search by CVE, product, or owner; filter by status or source; click a column to sort. 426 Microsoft-authored, 0 Edge/Chromium and 364 Linux/other that patch via their own vendor.

62 rated Critical (Microsoft) and 46 rated Critical (everything else). The status filter below spans the whole document, so its Critical count is the combined 108.

showing 790 of 790
CVE Status CVSS Severity Impact Owner Source Title
CVE-2026-68820Exploited7.0ImportantElevation of PrivilegeEndpoints / Windows clientMicrosoftWindows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
CVE-2026-62832Zero-day7.8ImportantElevation of PrivilegeOther / general WindowsMicrosoftWindows User Profile Service Elevation of Privilege Vulnerability
CVE-2026-72971Zero-day5.5ImportantTamperingEndpoints / Windows clientMicrosoftWindows Container Isolation FS Filter Driver (unionfs.sys) Tampering Vulnerability
CVE-2026-62893Critical worm9.8CriticalRemote Code ExecutionOther / general WindowsMicrosoftWindows Deployment Services TFTP Server Remote Code Execution Vulnerability
CVE-2026-63508Critical worm10.0CriticalElevation of PrivilegeOther / general WindowsMicrosoftMicrosoft Planetary Computer Pro Elevation of Privilege Vulnerability
CVE-2026-56162Critical worm10.0CriticalElevation of PrivilegeCloud / M365 appsMicrosoftAzure SQL Database Elevation of Privilege Vulnerability
CVE-2026-65667Critical worm10.0CriticalElevation of PrivilegeOther / general WindowsMicrosoftMicrosoft Teams Elevation of Privilege Vulnerability
CVE-2026-62873Critical worm9.8CriticalElevation of PrivilegeOther / general WindowsMicrosoftMicrosoft 365 Admin Center Elevation of Privilege Vulnerability
CVE-2026-62815Critical worm9.8CriticalRemote Code ExecutionOther / general WindowsMicrosoftMicrosoft QUIC Remote Code Execution Vulnerability
CVE-2026-62878Critical worm9.8CriticalRemote Code ExecutionNetwork / infra serversMicrosoftWindows DNS Server Remote Code Execution Vulnerability
CVE-2026-65791Critical worm9.8CriticalRemote Code ExecutionOther / general WindowsMicrosoftWindows iSCSI Target Service Remote Code Execution Vulnerability
CVE-2026-50516Critical worm9.4CriticalElevation of PrivilegeCloud / M365 appsMicrosoftMicrosoft Azure Kubernetes Service Elevation of Privilege Vulnerability
CVE-2026-65665Critical8.8CriticalRemote Code ExecutionSharePoint ownersMicrosoftMicrosoft SharePoint Server Remote Code Execution Vulnerability
CVE-2026-62836Critical worm8.7CriticalElevation of PrivilegeCloud / M365 appsMicrosoftAzure SQL Managed Instance Elevation of Privilege Vulnerability
CVE-2026-62819Critical worm8.1CriticalRemote Code ExecutionNetwork / infra serversMicrosoftWindows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
CVE-2026-62820Critical worm8.1CriticalRemote Code ExecutionNetwork / infra serversMicrosoftWindows DNS Server Remote Code Execution Vulnerability
CVE-2026-62889Critical worm8.1CriticalRemote Code ExecutionOther / general WindowsMicrosoftWindows Secure Socket Tunneling Protocol (SSTP) Remote Code Execution Vulnerability
CVE-2026-65789Critical worm8.1CriticalRemote Code ExecutionNetwork / infra serversMicrosoftWindows DNS Server Remote Code Execution Vulnerability
CVE-2026-66802Critical worm8.1CriticalRemote Code ExecutionOther / general WindowsMicrosoftWindows Device Health Attestation (DHA) Remote Code Execution Vulnerability
CVE-2026-71331Critical worm8.1CriticalRemote Code ExecutionOther / general WindowsMicrosoftWindows Device Health Attestation (DHA) Remote Code Execution Vulnerability
CVE-2026-50515Critical9.9CriticalRemote Code ExecutionCloud / M365 appsMicrosoftAzure Service Bus Remote Code Execution Vulnerability
CVE-2026-59115Critical9.9CriticalElevation of PrivilegeOther / general WindowsMicrosoftMicrosoft Entra Provisioning Service Elevation of Privilege Vulnerability
CVE-2026-50481Critical9.9CriticalElevation of PrivilegeIdentity / ADMicrosoftAzure Active Directory Elevation of Privilege Vulnerability
CVE-2026-62830Critical9.9CriticalElevation of PrivilegeCloud / M365 appsMicrosoftAzure SRE Agent Elevation of Privilege Vulnerability
CVE-2026-62823Critical8.8CriticalRemote Code ExecutionNetwork / infra serversMicrosoftWindows DHCP Server Remote Code Execution Vulnerability
CVE-2026-62918Critical worm7.5CriticalSpoofingOther / general WindowsMicrosoftMicrosoft Teams Spoofing Vulnerability
CVE-2026-62896Critical9.6CriticalElevation of PrivilegeOther / general WindowsMicrosoftMicrosoft Teams Elevation of Privilege Vulnerability
CVE-2026-70332Critical9.6CriticalSpoofingSharePoint ownersMicrosoftMicrosoft Office SharePoint Spoofing Vulnerability
CVE-2026-56161Critical9.6CriticalInformation DisclosureCloud / M365 appsMicrosoftAzure Logic Apps Information Disclosure Vulnerability
CVE-2026-59118Critical9.3CriticalElevation of PrivilegeCloud / M365 appsMicrosoftCopilot Cowork Elevation of Privilege Vulnerability
CVE-2026-68823Critical9.1CriticalRemote Code ExecutionCloud / M365 appsMicrosoftAzure Confidential Ledger Remote Code Execution Vulnerability
CVE-2026-62827Critical8.8CriticalElevation of PrivilegeSharePoint ownersMicrosoftMicrosoft SharePoint Server Elevation of Privilege Vulnerability
CVE-2026-65668Critical8.8CriticalElevation of PrivilegeOther / general WindowsMicrosoftMicrosoft Purview eDiscovery Elevation of Privilege Vulnerability
CVE-2026-62818Critical8.8CriticalRemote Code ExecutionIdentity / ADMicrosoftWindows Active Directory Certificate Services (AD CS) Remote Code Execution Vulnerability
CVE-2026-62824Critical8.8CriticalRemote Code ExecutionRemote access / RDPMicrosoftRemote Desktop Client Remote Code Execution Vulnerability
CVE-2026-62822Critical8.8CriticalRemote Code ExecutionOther / general WindowsMicrosoftWindows GDI+ Remote Code Execution Vulnerability
CVE-2026-64921Critical8.8CriticalElevation of PrivilegeSharePoint ownersMicrosoftMicrosoft SharePoint Server Elevation of Privilege Vulnerability
CVE-2026-49163Critical8.8CriticalElevation of PrivilegeOther / general WindowsMicrosoftApplication Insights Profiler Elevation of Privilege Vulnerability
CVE-2026-62869Critical8.8CriticalSpoofingCloud / M365 appsMicrosoftAzure Entra ID Spoofing Vulnerability
CVE-2026-62911Critical8.0CriticalElevation of PrivilegeExchange / mailMicrosoftMicrosoft Exchange Server Elevation of Privilege Vulnerability
CVE-2026-62816Critical8.8CriticalRemote Code ExecutionEndpoints / Windows clientMicrosoftWindows Reliable Multicast Transport Driver (RMCAST) Remote Code Execution Vulnerability
CVE-2026-62817Critical8.8CriticalRemote Code ExecutionNetwork / infra serversMicrosoftWindows DNS Server Remote Code Execution Vulnerability
CVE-2026-70130Critical8.4CriticalRemote Code ExecutionOffice / productivityMicrosoftMicrosoft Office Remote Code Execution Vulnerability
CVE-2026-62890Critical7.8CriticalRemote Code ExecutionOther / general WindowsMicrosoftWindows GDI+ Elevation of Privilege Vulnerability
CVE-2026-63513Critical7.8CriticalRemote Code ExecutionOffice / productivityMicrosoftMicrosoft Office Graphics Component Remote Code Execution Vulnerability
CVE-2026-63515Critical7.8CriticalRemote Code ExecutionOffice / productivityMicrosoftMicrosoft Office Remote Code Execution Vulnerability
CVE-2026-63518Critical7.8CriticalRemote Code ExecutionOffice / productivityMicrosoftMicrosoft Office Word Remote Code Execution Vulnerability
CVE-2026-63519Critical7.8CriticalRemote Code ExecutionOffice / productivityMicrosoftMicrosoft Office Graphics Component Remote Code Execution Vulnerability
CVE-2026-65657Critical7.8CriticalRemote Code ExecutionOffice / productivityMicrosoftMicrosoft Office Remote Code Execution Vulnerability
CVE-2026-65664Critical7.8CriticalRemote Code ExecutionOffice / productivityMicrosoftMicrosoft Office Graphics Component Remote Code Execution Vulnerability
CVE-2026-66799Critical7.8CriticalElevation of PrivilegeOther / general WindowsMicrosoftWindows Key Guard Elevation of Privilege Vulnerability
CVE-2026-68794Critical7.8CriticalRemote Code ExecutionOffice / productivityMicrosoftMicrosoft Excel Remote Code Execution Vulnerability
CVE-2026-68816Critical7.8CriticalRemote Code ExecutionOffice / productivityMicrosoftMicrosoft Excel Remote Code Execution Vulnerability
CVE-2026-63525Critical7.8CriticalRemote Code ExecutionOffice / productivityMicrosoftMicrosoft Office Word Remote Code Execution Vulnerability
CVE-2026-63526Critical7.8CriticalRemote Code ExecutionOffice / productivityMicrosoftMicrosoft Office Graphics Component Remote Code Execution Vulnerability
CVE-2026-63532Critical7.8CriticalRemote Code ExecutionOffice / productivityMicrosoftMicrosoft Office Remote Code Execution Vulnerability
CVE-2026-64898Critical7.8CriticalRemote Code ExecutionOffice / productivityMicrosoftMicrosoft Office Remote Code Execution Vulnerability
CVE-2026-64903Critical7.8CriticalRemote Code ExecutionOffice / productivityMicrosoftMicrosoft Office Remote Code Execution Vulnerability
CVE-2026-64907Critical7.8CriticalRemote Code ExecutionOffice / productivityMicrosoftMicrosoft Office Word Remote Code Execution Vulnerability
CVE-2026-64909Critical7.8CriticalRemote Code ExecutionOffice / productivityMicrosoftMicrosoft Office Remote Code Execution Vulnerability
CVE-2026-64910Critical7.8CriticalRemote Code ExecutionOffice / productivityMicrosoftMicrosoft Office Remote Code Execution Vulnerability
CVE-2026-64911Critical7.8CriticalRemote Code ExecutionOffice / productivityMicrosoftMicrosoft Office Remote Code Execution Vulnerability
CVE-2026-66807Critical7.8CriticalRemote Code ExecutionOffice / productivityMicrosoftMicrosoft Office Graphics Component Remote Code Execution Vulnerability
CVE-2026-68804Critical7.8CriticalRemote Code ExecutionOffice / productivityMicrosoftMicrosoft Excel Remote Code Execution Vulnerability
CVE-2026-63522Critical7.8CriticalElevation of PrivilegeCloud / M365 appsMicrosoftAzure SQL Database Elevation of Privilege Vulnerability
CVE-2026-64564Critical worm9.8CriticalOther / general WindowsLinux / othersctp: don't free the ASCONF's own transport in DEL-IP processing
CVE-2026-64562Critical worm9.8CriticalOther / general WindowsLinux / otherKVM: nVMX: Hide shadow VMCS right after VMCLEAR
CVE-2026-68407Critical worm9.8CriticalOther / general WindowsLinux / otherwifi: nl80211: free RNR data on MBSSID mismatch
CVE-2026-68395Critical worm9.8CriticalOther / general WindowsLinux / otherata: sata_dwc_460ex: enable SATA interrupts only after IRQ handler is registered
CVE-2026-68143Critical worm9.8CriticalOther / general WindowsLinux / othernet: slip: serialize receive against buffer reallocation
CVE-2026-68176Critical worm9.8CriticalOther / general WindowsLinux / othertracing: Fix mmiotrace possible NULL dereferencing of hiter->dev
CVE-2026-68131Critical worm9.8CriticalOther / general WindowsLinux / otherrbd: Reset positive result codes to zero in object map update path
CVE-2026-68218Critical worm9.8CriticalOther / general WindowsLinux / othermedia: pci: dm1105: Free allocated workqueue
CVE-2026-68406Critical worm9.8CriticalOther / general WindowsLinux / otherwifi: cfg80211: validate PMSR FTM preamble range
CVE-2026-68364Critical worm9.8CriticalOther / general WindowsLinux / otherdrm/amd/display: Fix ISM dc_lock deadlock during suspend
CVE-2026-68354Critical worm9.8CriticalOther / general WindowsLinux / otherfirewire: net: Fix fragmented datagram reassembly
CVE-2026-68180Critical worm9.8CriticalOther / general WindowsLinux / otherintel_th: fix MSC output device reference leak
CVE-2026-68357Critical worm9.8CriticalOther / general WindowsLinux / otherwatchdog: pretimeout: Fix UAF in watchdog_unregister_governor()
CVE-2026-68402Critical worm9.8CriticalOther / general WindowsLinux / otherwifi: cfg80211: bound element ID read when checking non-inheritance
CVE-2026-68310Critical worm9.8CriticalOther / general WindowsLinux / otherwifi: mt76: mt7915: guard HE capability lookups
CVE-2026-68140Critical worm9.8CriticalOther / general WindowsLinux / othernet/iucv: fix use-after-free of a severed iucv_path
CVE-2026-68349Critical worm9.8CriticalOther / general WindowsLinux / otherwifi: carl9170: fix buffer overflow in rx_stream failover path
CVE-2026-68212Critical worm9.8CriticalOther / general WindowsLinux / othermedia: saa7134: Fix a possible memory leak in saa7134_video_init1
CVE-2026-68377Critical worm9.8CriticalOther / general WindowsLinux / othernet/sched: act_tunnel_key: Defer dst_release to RCU callback
CVE-2026-68146Critical worm9.8CriticalOther / general WindowsLinux / otherftrace: Add global mutex to serialize trace_parser access
CVE-2026-68214Critical worm9.8CriticalOther / general WindowsLinux / othermedia: rtl2832: fix use-after-free in rtl2832_remove()
CVE-2026-68360Critical worm9.8CriticalOther / general WindowsLinux / otherhwmon: (corsair-cpro) Stop device IO before calling hid_hw_stop
CVE-2026-68359Critical worm9.8CriticalOther / general WindowsLinux / otherhwmon: (nzxt-smart2) Stop device IO before calling hid_hw_stop
CVE-2026-68324Critical worm9.8CriticalOther / general WindowsLinux / otheriommu/intel: Fix out-of-bounds memset in dmar_latency_disable()
CVE-2026-68121Critical worm9.8CriticalOther / general WindowsLinux / otherpppoe: reload header pointer after dev_hard_header()
CVE-2026-68132Critical worm9.8CriticalOther / general WindowsLinux / othersuper: fix emergency thaw deadlock on frozen block devices
CVE-2026-68325Critical worm9.8CriticalOther / general WindowsLinux / otheriommu/amd: Bound the early ACPI HID map
CVE-2026-64565Critical worm9.8CriticalOther / general WindowsLinux / otherInput: ims-pcu - fix heap-buffer-overflow in ims_pcu_process_data()
CVE-2026-68210Critical worm9.8CriticalOther / general WindowsLinux / othermedia: stm32: dcmi: unregister notifier on probe failure
CVE-2026-68399Critical worm9.8CriticalOther / general WindowsLinux / otherbpf: Fix UAF in sock clone early bailouts
CVE-2026-68127Critical worm9.8CriticalOther / general WindowsLinux / otherila: reload IPv6 header after pskb_may_pull in checksum adjust
CVE-2026-68391Critical worm9.8CriticalOther / general WindowsLinux / otherBluetooth: mgmt: hold reference for hci_conn in mgmt_pending_cmds
CVE-2026-68185Critical worm9.8CriticalOther / general WindowsLinux / otherLoongArch: Move jump_label_init() before parse_early_param()
CVE-2026-68287Critical worm9.8CriticalOther / general WindowsLinux / otherdrop_monitor: fix size calculations for 64-bit attributes
CVE-2026-68166Critical worm9.8CriticalOther / general WindowsLinux / otheruserfaultfd: prevent registration of special VMAs
CVE-2026-68198Critical worm9.8CriticalOther / general WindowsLinux / otherwifi: ath6kl: fix use-after-free in aggr_reset_state()
CVE-2026-68207Critical worm9.8CriticalOther / general WindowsLinux / othermedia: ti: vpe: unwind v4l2 device registration on probe error
CVE-2026-68142Critical worm9.8CriticalOther / general WindowsLinux / othergeneve: require CAP_NET_ADMIN in the device netns for changelink
CVE-2026-68144Critical worm9.8CriticalOther / general WindowsLinux / otherphonet: pep: fix use-after-free in pep_get_sb()
CVE-2026-68236Critical worm9.8CriticalOther / general WindowsLinux / otherdrm/amd/display: set new_stream to NULL after release
CVE-2026-68340Critical worm9.8CriticalOther / general WindowsLinux / otherhwmon: occ: validate poll response sensor blocks
CVE-2026-68153Critical worm9.8CriticalOther / general WindowsLinux / otherlibceph: remove debugfs files before client teardown
CVE-2026-34191Critical worm9.1CriticalOther / general WindowsLinux / otherApache Portable Runtime Utility: SQL Injection in apr_dbd_oracle
CVE-2026-68160Critical worm9.1CriticalOther / general WindowsLinux / otherceph: fix pre-auth out-of-bounds read on snaptrace in ceph_handle_caps()
CVE-2026-50540Critical9.6CriticalOther / general WindowsLinux / otherKata Containers: Config Path Annotation Arbitrary File Loading
CVE-2026-47243CriticalCriticalOther / general WindowsLinux / otherKata guest escape: runtime-rs guest-root to host-root escape via virtiofs
CVE-2026-59124Normal worm9.8ImportantRemote Code ExecutionOther / general WindowsMicrosoftMicrosoft High Performance Computing (HPC) Pack Remote Code Execution Vulnerability
CVE-2026-63520Normal worm8.1ImportantRemote Code ExecutionSharePoint ownersMicrosoftMicrosoft SharePoint Server Remote Code Execution Vulnerability
CVE-2026-59132Normal worm7.5ImportantDenial of ServiceNetwork / infra serversMicrosoftWindows TCP/IP Denial of Service Vulnerability
CVE-2026-59133Normal8.8ImportantElevation of PrivilegeOther / general WindowsMicrosoftMicrosoft High Performance Computing (HPC) Pack Elevation of Privilege Vulnerability
CVE-2026-62792Normal worm8.1ImportantRemote Code ExecutionNetwork / infra serversMicrosoftWindows TCP/IP Remote Code Execution Vulnerability
CVE-2026-62778Normal worm8.1ImportantElevation of PrivilegeNetwork / infra serversMicrosoftWindows DNS Elevation of Privilege Vulnerability
CVE-2026-62781Normal worm8.1ImportantRemote Code ExecutionOther / general WindowsMicrosoftRPC Runtime Library Remote Code Execution Vulnerability
CVE-2026-65679Normal worm8.1ImportantRemote Code ExecutionOther / general WindowsMicrosoftWindows iSCSI Target Service Remote Code Execution Vulnerability
CVE-2026-70355Normal7.3ImportantElevation of PrivilegeSharePoint ownersMicrosoftMicrosoft SharePoint Server Elevation of Privilege Vulnerability
CVE-2026-54113Normal worm7.5ImportantDenial of ServiceOther / general WindowsMicrosoftRemote Procedure Call Denial of Service Vulnerability
CVE-2026-62901Normal worm7.5ImportantDenial of ServiceOther / general WindowsMicrosoft.NET Denial of Service Vulnerability
CVE-2026-65681Normal worm7.5ImportantDenial of ServiceOther / general WindowsMicrosoftWindows iSCSI Target Service Denial of Service Vulnerability
CVE-2026-62898Normal worm7.5ImportantInformation DisclosureOther / general WindowsMicrosoftMicrosoft QUIC Information Disclosure Vulnerability
CVE-2026-70306Normal9.3ImportantSpoofingSharePoint ownersMicrosoftMicrosoft Office SharePoint Spoofing Vulnerability
CVE-2026-62702Normal worm6.8ImportantDenial of ServiceOther / general WindowsMicrosoftWindows Graphics Kernel Denial of Service Vulnerability
CVE-2026-65768Normal8.8ImportantRemote Code ExecutionOther / general WindowsMicrosoftMicrosoft Teams Remote Code Execution Vulnerability
CVE-2026-63514Normal8.8ImportantRemote Code ExecutionSharePoint ownersMicrosoftMicrosoft SharePoint Server Remote Code Execution Vulnerability
CVE-2026-49179Normal8.8ImportantRemote Code ExecutionIdentity / ADMicrosoftWindows Active Directory Domain Services Remote Code Execution Vulnerability
CVE-2026-59113Normal8.8ImportantRemote Code ExecutionOther / general WindowsMicrosoftVisual Studio Code Remote Code Execution Vulnerability
CVE-2026-62785Normal8.8ImportantRemote Code ExecutionIdentity / ADMicrosoftWindows LDAP - Lightweight Directory Access Protocol Remote Code Execution Vulnerability
CVE-2026-62784Normal8.8ImportantRemote Code ExecutionOther / general WindowsMicrosoftMicrosoft Local Security Authority Server (lsasrv) Remote Code Execution Vulnerability
CVE-2026-62795Normal8.8ImportantRemote Code ExecutionIdentity / ADMicrosoftWindows LDAP - Lightweight Directory Access Protocol Remote Code Execution Vulnerability
CVE-2026-62913Normal8.8ImportantRemote Code ExecutionExchange / mailMicrosoftMicrosoft Exchange Server Remote Code Execution Vulnerability
CVE-2026-65658Normal8.8ImportantRemote Code ExecutionSharePoint ownersMicrosoftMicrosoft SharePoint Server Remote Code Execution Vulnerability
CVE-2026-65663Normal8.8ImportantRemote Code ExecutionSharePoint ownersMicrosoftMicrosoft SharePoint Server Remote Code Execution Vulnerability
CVE-2026-65807Normal8.8ImportantRemote Code ExecutionOffice / productivityMicrosoftMicrosoft Excel Remote Code Execution Vulnerability
CVE-2026-65811Normal8.8ImportantRemote Code ExecutionOther / general WindowsMicrosoftPower BI Remote Code Execution Vulnerability
CVE-2026-65815Normal8.8ImportantRemote Code ExecutionCloud / M365 appsMicrosoftMicrosoft Dynamics 365 On-Premises Remote Code Execution Vulnerability
CVE-2026-69320Normal8.8ImportantRemote Code ExecutionOther / general WindowsMicrosoftVisual Studio Code Remote Code Execution Vulnerability
CVE-2026-70321Normal8.8ImportantRemote Code ExecutionSharePoint ownersMicrosoftMicrosoft SharePoint Remote Code Execution Vulnerability
CVE-2026-70324Normal8.8ImportantElevation of PrivilegeSharePoint ownersMicrosoftMicrosoft SharePoint Elevation of Privilege Vulnerability
CVE-2026-70329Normal8.8ImportantRemote Code ExecutionOffice / productivityMicrosoftMicrosoft Outlook Remote Code Execution Vulnerability
CVE-2026-70336Normal8.8ImportantRemote Code ExecutionOther / general WindowsMicrosoftVisual Studio Code Remote Code Execution Vulnerability
CVE-2026-57104Normal8.8ImportantElevation of PrivilegeEndpoints / Windows clientMicrosoftAzure Storage Explorer Elevation of Privilege Vulnerability
CVE-2026-62800Normal8.8ImportantRemote Code ExecutionOther / general WindowsMicrosoftWindows SMBv3 Server Remote Code Execution Vulnerability
CVE-2026-62790Normal8.8ImportantRemote Code ExecutionOther / general WindowsMicrosoftWindows SMBv3 Server Remote Code Execution Vulnerability
CVE-2026-62872Normal8.8ImportantElevation of PrivilegeOther / general WindowsMicrosoft.NET Framework Elevation of Privilege Vulnerability
CVE-2026-64901Normal8.8ImportantRemote Code ExecutionSharePoint ownersMicrosoftMicrosoft SharePoint Server Remote Code Execution Vulnerability
CVE-2026-66805Normal8.8ImportantRemote Code ExecutionSharePoint ownersMicrosoftMicrosoft SharePoint Server Remote Code Execution Vulnerability
CVE-2026-66808Normal8.8ImportantRemote Code ExecutionSharePoint ownersMicrosoftMicrosoft SharePoint Server Remote Code Execution Vulnerability
CVE-2026-70326Normal8.8ImportantElevation of PrivilegeSharePoint ownersMicrosoftMicrosoft SharePoint Server Elevation of Privilege Vulnerability
CVE-2026-70337Normal8.8ImportantRemote Code ExecutionOther / general WindowsMicrosoftMicrosoft PowerShell Remote Code Execution Vulnerability
CVE-2026-65767Normal8.8ImportantSpoofingOther / general WindowsMicrosoftMicrosoft Teams for Android and iOS Spoofing Vulnerability
CVE-2026-58650Normal7.8ImportantSecurity Feature BypassOther / general WindowsMicrosoftVisual Studio Code Security Feature Bypass Vulnerability
CVE-2026-61925Normal7.8ImportantElevation of PrivilegeOther / general WindowsMicrosoftWindows Installer Elevation of Privilege Vulnerability
CVE-2026-61930Normal7.8ImportantElevation of PrivilegeEndpoints / Windows clientMicrosoftWindows Kernel Elevation of Privilege Vulnerability
CVE-2026-62688Normal7.8ImportantElevation of PrivilegeOther / general WindowsMicrosoftWindows MIDI Service Module Elevation of Privileges Vulnerability
CVE-2026-62696Normal7.8ImportantElevation of PrivilegeOther / general WindowsMicrosoftWindows Program Compatibility Assistant Service Elevation of Privilege Vulnerability
CVE-2026-62713Normal7.8ImportantElevation of PrivilegeEndpoints / Windows clientMicrosoftWindows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability
CVE-2026-62712Normal7.8ImportantElevation of PrivilegeEndpoints / Windows clientMicrosoftWindows Win32k Elevation of Privilege Vulnerability
CVE-2026-62735Normal7.8ImportantElevation of PrivilegeNetwork / infra serversMicrosoftWindows HTTP.sys Elevation of Privilege Vulnerability
CVE-2026-62737Normal7.8ImportantElevation of PrivilegeEndpoints / Windows clientMicrosoftWindows Kernel Elevation of Privilege Vulnerability
CVE-2026-62783Normal7.8ImportantElevation of PrivilegeOther / general WindowsMicrosoftWindows Remote Access Connection Manager Elevation of Privilege Vulnerability
CVE-2026-69278Normal7.8ImportantSecurity Feature BypassOther / general WindowsMicrosoftVisual Studio Code Security Feature Bypass Vulnerability
CVE-2026-70335Normal7.8ImportantElevation of PrivilegeCloud / M365 appsMicrosoftGitHub Copilot and Visual Studio Code Elevation of Privilege Vulnerability
CVE-2026-66804Normal7.8ImportantElevation of PrivilegeOther / general WindowsMicrosoftMicrosoft Windows Cross Device Service Elevation of Privilege Vulnerability
CVE-2026-61358Normal7.8ImportantElevation of PrivilegeOther / general WindowsMicrosoftWindows Accessibility Infrastructure (ATBroker.exe) Elevation of Privilege Vulnerability
CVE-2026-62698Normal7.8ImportantElevation of PrivilegeOther / general WindowsMicrosoftMicrosoft Digest Authentication Elevation of Privilege Vulnerability
CVE-2026-62721Normal7.8ImportantElevation of PrivilegeOther / general WindowsMicrosoftWindows User-Mode Power Service (UMPS) Elevation of Privilege Vulnerability
CVE-2026-62741Normal7.8ImportantElevation of PrivilegeNetwork / infra serversMicrosoftWindows HTTP.sys Elevation of Privilege Vulnerability
CVE-2026-62888Normal7.8ImportantElevation of PrivilegeOther / general WindowsMicrosoftWindows DWM Core Library Elevation of Privilege Vulnerability
CVE-2026-65775Normal7.8ImportantElevation of PrivilegeEndpoints / Windows clientMicrosoftWindows Win32k Elevation of Privilege Vulnerability
CVE-2026-69306Normal8.2ImportantSecurity Feature BypassOther / general WindowsMicrosoftVisual Studio Code Security Feature Bypass Vulnerability
CVE-2026-62899Normal worm5.9ImportantSecurity Feature BypassOther / general WindowsMicrosoft.NET Security Feature Bypass Vulnerability
CVE-2026-62900Normal worm5.9ImportantInformation DisclosureOther / general WindowsMicrosoft.NET Information Disclosure Vulnerability
CVE-2026-68819Normal worm5.9ImportantDenial of ServiceNetwork / infra serversMicrosoftWindows Network File System Denial of Service Vulnerability
CVE-2026-65796Normal worm5.9ImportantDenial of ServiceOther / general WindowsMicrosoftWindows iSCSI Target Service Denial of Service Vulnerability
CVE-2026-70340Normal8.1ImportantElevation of PrivilegeCloud / M365 appsMicrosoftAzure CycleCloud Elevation of Privilege Vulnerability
CVE-2026-57105Normal8.0ImportantSpoofingSharePoint ownersMicrosoftMicrosoft Office SharePoint Spoofing Vulnerability
CVE-2026-61348Normal7.0ImportantElevation of PrivilegeEndpoints / Windows clientMicrosoftWindows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
CVE-2026-62766Normal7.0ImportantElevation of PrivilegeIdentity / ADMicrosoftWindows Kerberos Elevation of Privilege Vulnerability
CVE-2026-65788Normal7.0ImportantElevation of PrivilegeOther / general WindowsMicrosoftDesktop Window Manager Elevation of Privilege Vulnerability
CVE-2026-70307Normal7.0ImportantElevation of PrivilegeEndpoints / Windows clientMicrosoftWindows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
CVE-2026-61929Normal7.0ImportantElevation of PrivilegeEndpoints / Windows clientMicrosoftWindows Kernel Elevation of Privilege Vulnerability
CVE-2026-62788Normal7.0ImportantElevation of PrivilegeEndpoints / Windows clientMicrosoftWindows Kernel Elevation of Privilege Vulnerability
CVE-2026-59134Normal7.5ImportantRemote Code ExecutionRemote access / RDPMicrosoftRemote Desktop Client Remote Code Execution Vulnerability
CVE-2026-62787Normal7.5ImportantRemote Code ExecutionNetwork / infra serversMicrosoftWindows DNS Server Remote Code Execution Vulnerability
CVE-2026-61352Normal7.5ImportantRemote Code ExecutionRemote access / RDPMicrosoftRemote Desktop Client Remote Code Execution Vulnerability
CVE-2026-61363Normal7.5ImportantRemote Code ExecutionRemote access / RDPMicrosoftRemote Desktop Client Remote Code Execution Vulnerability
CVE-2026-20348Normal worm7.5ImportantOther / general WindowsMicrosoftClamAV XAR File Format Processing Memory Corruption Vulnerability
CVE-2026-20339Normal worm7.5ImportantOther / general WindowsMicrosoftClamAV PESpin File Format Processing Integer Overflow Vulnerability
CVE-2026-20338Normal worm7.5ImportantOther / general WindowsMicrosoftClamAV ZIP File Format Processing Memory Corruption Vulnerability
CVE-2026-20347Normal worm7.5ImportantOther / general WindowsMicrosoftClamAV Mach-O File Format Processing Memory Corruption Vulnerability
CVE-2026-20337Normal worm7.5ImportantOther / general WindowsMicrosoftClamAV ZIP File Format Processing Memory Corruption Vulnerability
CVE-2026-20346Normal worm7.5ImportantOther / general WindowsMicrosoftClamAV PDF File Format Processing Memory Corruption Vulnerability
CVE-2026-20345Normal worm7.5ImportantOther / general WindowsMicrosoftClamAV GPT File Format Processing Memory Corruption Vulnerability
CVE-2026-58612Normal7.4ImportantInformation DisclosureOther / general WindowsMicrosoftPowerShell Information Disclosure Vulnerability
CVE-2026-62914Normal7.3ImportantSpoofingExchange / mailMicrosoftMicrosoft Exchange Server Spoofing Vulnerability
CVE-2026-64900Normal7.3ImportantSpoofingSharePoint ownersMicrosoftMicrosoft SharePoint Server Spoofing Vulnerability
CVE-2026-47299Normal7.2ImportantElevation of PrivilegeCloud / M365 appsMicrosoftAzure Monitor Agent Elevation of Privilege Vulnerability
CVE-2026-62910Normal7.2ImportantElevation of PrivilegeExchange / mailMicrosoftMicrosoft Exchange Server Elevation of Privilege Vulnerability
CVE-2026-65675Normal7.1ImportantSecurity Feature BypassCloud / M365 appsMicrosoftCoPilot Chat Security Feature Bypass Vulnerability
CVE-2026-56179Normal8.3ModerateSpoofingNetwork / infra serversMicrosoftWindows Network Address Translation (NAT) Spoofing Vulnerability
CVE-2026-61920Normal6.6ImportantRemote Code ExecutionNetwork / infra serversMicrosoftWindows DNS Server Remote Code Execution Vulnerability
CVE-2026-62837Normal6.5ImportantInformation DisclosureSharePoint ownersMicrosoftMicrosoft SharePoint Server Information Disclosure Vulnerability
CVE-2026-63512Normal6.5ImportantTamperingSharePoint ownersMicrosoftMicrosoft SharePoint Server Tampering Vulnerability
CVE-2026-63516Normal6.5ImportantSpoofingSharePoint ownersMicrosoftMicrosoft SharePoint Server Spoofing Vulnerability
CVE-2026-40375Normal6.5ImportantInformation DisclosureCloud / M365 appsMicrosoftMicrosoft Dynamics Business Central Information Disclosure Vulnerability
CVE-2026-47285Normal6.5ImportantInformation DisclosureOther / general WindowsMicrosoftVisual Studio Code Information Disclosure Vulnerability
CVE-2026-59138Normal6.5ImportantDenial of ServiceOther / general WindowsMicrosoftMicrosoft Remote Registry Service Denial of Service Vulnerability
CVE-2026-61345Normal6.5ImportantDenial of ServiceOther / general WindowsMicrosoftMicrosoft Remote Registry Service Denial of Service Vulnerability
CVE-2026-61924Normal6.5ImportantInformation DisclosureRemote access / RDPMicrosoftWindows Remote Desktop Client Information Disclosure Vulnerability
CVE-2026-62902Normal6.5ImportantInformation DisclosureOther / general WindowsMicrosoft.NET Information Disclosure Vulnerability
CVE-2026-62912Normal6.5ImportantDenial of ServiceExchange / mailMicrosoftMicrosoft Exchange Server Denial of Service Vulnerability
CVE-2026-62915Normal6.5ImportantSecurity Feature BypassExchange / mailMicrosoftMicrosoft Exchange Server Security Feature Bypass Vulnerability
CVE-2026-65660Normal6.5ImportantSpoofingSharePoint ownersMicrosoftMicrosoft SharePoint Server Spoofing Vulnerability
CVE-2026-65813Normal6.5ImportantElevation of PrivilegeExchange / mailMicrosoftMicrosoft Exchange Server Elevation of Privilege Vulnerability
CVE-2026-65769Normal6.5ImportantInformation DisclosureOther / general WindowsMicrosoftMicrosoft Teams iOS Information Disclosure Vulnerability
CVE-2026-66301Normal6.5ImportantInformation DisclosureCloud / M365 appsMicrosoftMicrosoft Dynamics 365 (On-Premises) Information Disclosure Vulnerability
CVE-2026-70327Normal6.5ImportantInformation DisclosureOffice / productivityMicrosoftMicrosoft Excel Information Disclosure Vulnerability
CVE-2026-70328Normal6.5ImportantInformation DisclosureOffice / productivityMicrosoftMicrosoft Excel Information Disclosure Vulnerability
CVE-2026-65806Normal6.5ImportantInformation DisclosureCloud / M365 appsMicrosoftAzure CycleCloud Information Disclosure Vulnerability
CVE-2026-61918Normal6.5ImportantInformation DisclosureRemote access / RDPMicrosoftWindows Remote Desktop Client Information Disclosure Vulnerability
CVE-2026-61921Normal6.5ImportantInformation DisclosureRemote access / RDPMicrosoftWindows Remote Desktop Client Information Disclosure Vulnerability
CVE-2026-62782Normal6.5ImportantInformation DisclosureNetwork / infra serversMicrosoftWindows SMB Client Information Disclosure Vulnerability
CVE-2026-65794Normal6.5ImportantInformation DisclosureNetwork / infra serversMicrosoftWindows SMB Client Information Disclosure Vulnerability
CVE-2026-58639Normal6.5ImportantSpoofingSharePoint ownersMicrosoftMicrosoft SharePoint Server Spoofing Vulnerability
CVE-2026-62839Normal6.5ImportantSpoofingSharePoint ownersMicrosoftMicrosoft SharePoint Server Spoofing Vulnerability
CVE-2026-56174Normal7.8ImportantElevation of PrivilegeOther / general WindowsMicrosoftWindows Narrator Braille Elevation of Privilege Vulnerability
CVE-2026-54984Normal7.8ImportantRemote Code ExecutionOther / general WindowsMicrosoftWindows Imaging Component Remote Code Execution Vulnerability
CVE-2026-59127Normal7.8ImportantElevation of PrivilegeOther / general WindowsMicrosoftWindows Installer Elevation of Privilege Vulnerability
CVE-2026-61353Normal7.8ImportantElevation of PrivilegeOther / general WindowsMicrosoftWindows Telephony Service Elevation of Privilege Vulnerability
CVE-2026-61356Normal7.8ImportantElevation of PrivilegeRemote access / RDPMicrosoftWindows Remote Desktop Services Elevation of Privilege Vulnerability
CVE-2026-61367Normal7.8ImportantElevation of PrivilegeRemote access / RDPMicrosoftWindows Remote Desktop Services Elevation of Privilege Vulnerability
CVE-2026-61923Normal7.8ImportantElevation of PrivilegeOther / general WindowsMicrosoftWindows Display Enhancement Service Elevation of Privilege Vulnerability
CVE-2026-61937Normal7.8ImportantElevation of PrivilegeNetwork / infra serversMicrosoftWindows HTTP.sys Elevation of Privilege Vulnerability
CVE-2026-62692Normal7.8ImportantElevation of PrivilegeRemote access / RDPMicrosoftWindows Remote Desktop Services Elevation of Privilege Vulnerability
CVE-2026-61932Normal7.8ImportantElevation of PrivilegeOther / general WindowsMicrosoftWindows DWM Core Library Elevation of Privilege Vulnerability
CVE-2026-61934Normal7.8ImportantElevation of PrivilegeEndpoints / Windows clientMicrosoftWindows Bind Filter Driver Elevation of Privilege Vulnerability
CVE-2026-62695Normal7.8ImportantElevation of PrivilegeEndpoints / Windows clientMicrosoftWindows Storage Elevation of Privilege Vulnerability
CVE-2026-62707Normal7.8ImportantElevation of PrivilegeOther / general WindowsMicrosoftWindows Modern Device Management (MDM) Elevation of Privilege Vulnerability
CVE-2026-62719Normal7.8ImportantElevation of PrivilegeOther / general WindowsMicrosoftWindows Message Queuing Elevation of Privilege Vulnerability
CVE-2026-62722Normal7.8ImportantElevation of PrivilegeEndpoints / Windows clientMicrosoftWindows Bind Filter Driver Elevation of Privilege Vulnerability
CVE-2026-62739Normal7.8ImportantElevation of PrivilegeNetwork / infra serversMicrosoftWindows HTTP.sys Elevation of Privilege Vulnerability
CVE-2026-62747Normal7.8ImportantElevation of PrivilegeOther / general WindowsMicrosoftWindows Device Association Service Elevation of Privilege Vulnerability
CVE-2026-62754Normal7.8ImportantElevation of PrivilegeIdentity / ADMicrosoftWindows Kerberos Elevation of Privilege Vulnerability
CVE-2026-62755Normal7.8ImportantElevation of PrivilegeNetwork / infra serversMicrosoftWindows DHCP Client Elevation of Privilege Vulnerability
CVE-2026-62758Normal7.8ImportantElevation of PrivilegeOther / general WindowsMicrosoftWindows Remote Access Connection Manager Elevation of Privilege Vulnerability
CVE-2026-62772Normal7.8ImportantElevation of PrivilegeEndpoints / Windows clientMicrosoftWindows Container Isolation FS Filter Driver (unionfs.sys) Elevation of Privilege Vulnerability
CVE-2026-62777Normal7.8ImportantElevation of PrivilegeOther / general WindowsMicrosoftWindows License Manager Elevation of Privilege Vulnerability
CVE-2026-62779Normal7.8ImportantElevation of PrivilegeOther / general WindowsMicrosoftWindows Schannel Elevation of Privilege Vulnerability
CVE-2026-62797Normal7.8ImportantElevation of PrivilegeEndpoints / Windows clientMicrosoftWindows NTFS Elevation of Privilege Vulnerability
CVE-2026-62812Normal7.8ImportantElevation of PrivilegeNetwork / infra serversMicrosoftWindows DHCP Server Elevation of Privilege Vulnerability
CVE-2026-62876Normal7.8ImportantElevation of PrivilegeEndpoints / Windows clientMicrosoftWindows Win32k Elevation of Privilege Vulnerability
CVE-2026-62877Normal7.8ImportantElevation of PrivilegeEndpoints / Windows clientMicrosoftWindows Win32k Elevation of Privilege Vulnerability
CVE-2026-62894Normal7.8ImportantElevation of PrivilegeOther / general WindowsMicrosoftWindows DWM Core Library Elevation of Privilege Vulnerability
CVE-2026-62909Normal7.8ImportantElevation of PrivilegeOther / general WindowsMicrosoft.NET Elevation of Privilege Vulnerability
CVE-2026-65656Normal7.8ImportantRemote Code ExecutionOffice / productivityMicrosoftMicrosoft Office Remote Code Execution Vulnerability
CVE-2026-65661Normal7.8ImportantRemote Code ExecutionOffice / productivityMicrosoftMicrosoft Office Remote Code Execution Vulnerability
CVE-2026-65671Normal7.8ImportantElevation of PrivilegeOther / general WindowsMicrosoftRemote Access API Elevation of Privilege Vulnerability
CVE-2026-65672Normal7.8ImportantElevation of PrivilegeOther / general WindowsMicrosoftRemote Access API Elevation of Privilege Vulnerability
CVE-2026-65786Normal7.8ImportantElevation of PrivilegeOther / general WindowsMicrosoftDesktop Window Manager Elevation of Privilege Vulnerability
CVE-2026-65787Normal7.8ImportantElevation of PrivilegeOther / general WindowsMicrosoftDesktop Window Manager Elevation of Privilege Vulnerability
CVE-2026-65814Normal7.8ImportantElevation of PrivilegeEndpoints / Windows clientMicrosoftMicrosoft Windows Storage Port Driver Elevation of Privilege Vulnerability
CVE-2026-68792Normal7.8ImportantElevation of PrivilegeOffice / productivityMicrosoftMicrosoft Office Elevation of Privilege Vulnerability
CVE-2026-68793Normal7.8ImportantRemote Code ExecutionOffice / productivityMicrosoftMicrosoft Excel Remote Code Execution Vulnerability
CVE-2026-68795Normal7.8ImportantRemote Code ExecutionOffice / productivityMicrosoftMicrosoft Excel Remote Code Execution Vulnerability
CVE-2026-68796Normal7.8ImportantRemote Code ExecutionOffice / productivityMicrosoftMicrosoft Excel Remote Code Execution Vulnerability
CVE-2026-68800Normal7.8ImportantRemote Code ExecutionOffice / productivityMicrosoftMicrosoft Excel Remote Code Execution Vulnerability
CVE-2026-68807Normal7.8ImportantRemote Code ExecutionOffice / productivityMicrosoftMicrosoft Excel Remote Code Execution Vulnerability
CVE-2026-68806Normal7.8ImportantRemote Code ExecutionOffice / productivityMicrosoftMicrosoft Excel Remote Code Execution Vulnerability
CVE-2026-68810Normal7.8ImportantRemote Code ExecutionOffice / productivityMicrosoftMicrosoft Excel Remote Code Execution Vulnerability
CVE-2026-68811Normal7.8ImportantRemote Code ExecutionOffice / productivityMicrosoftMicrosoft Excel Remote Code Execution Vulnerability
CVE-2026-68815Normal7.8ImportantRemote Code ExecutionOffice / productivityMicrosoftMicrosoft Excel Remote Code Execution Vulnerability
CVE-2026-70311Normal7.8ImportantRemote Code ExecutionOffice / productivityMicrosoftMicrosoft Office Word Remote Code Execution Vulnerability
CVE-2026-70313Normal7.8ImportantInformation DisclosureOffice / productivityMicrosoftMicrosoft PowerPoint Remote Code Execution Vulnerability
CVE-2026-70344Normal7.8ImportantElevation of PrivilegeOther / general WindowsMicrosoftWindows Installer Elevation of Privilege Vulnerability
CVE-2026-70345Normal7.8ImportantElevation of PrivilegeOther / general WindowsMicrosoftWindows Installer Elevation of Privilege Vulnerability
CVE-2026-70346Normal7.8ImportantElevation of PrivilegeOther / general WindowsMicrosoftWindows Installer Elevation of Privilege Vulnerability
CVE-2026-70347Normal7.8ImportantElevation of PrivilegeOther / general WindowsMicrosoftWindows Installer Elevation of Privilege Vulnerability
CVE-2026-42976Normal7.8ImportantElevation of PrivilegeOther / general WindowsMicrosoftRemote Access Management service/API (RPC server) Elevation of Privilege Vulnerability
CVE-2026-54981Normal7.8ImportantSecurity Feature BypassOther / general WindowsMicrosoftVisual Studio Code Python Extension Security Feature Bypass Vulnerability
CVE-2026-58641Normal7.8ImportantElevation of PrivilegeOther / general WindowsMicrosoft.NET Elevation of Privilege Vulnerability
CVE-2026-58651Normal7.8ImportantRemote Code ExecutionOffice / productivityMicrosoftMicrosoft Word Remote Code Execution Vulnerability
CVE-2026-61349Normal7.8ImportantElevation of PrivilegeOther / general WindowsMicrosoftWindows Work Folder Service Elevation of Privilege Vulnerability
CVE-2026-61359Normal7.8ImportantElevation of PrivilegeEndpoints / Windows clientMicrosoftWindows Storage Elevation of Privilege Vulnerability
CVE-2026-61355Normal7.8ImportantElevation of PrivilegeOther / general WindowsMicrosoftWindows Sensor Data Service Elevation of Privilege Vulnerability
CVE-2026-61364Normal7.8ImportantElevation of PrivilegeRemote access / RDPMicrosoftWindows Remote Desktop Services Elevation of Privilege Vulnerability
CVE-2026-61365Normal7.8ImportantElevation of PrivilegeRemote access / RDPMicrosoftWindows Remote Desktop Services Elevation of Privilege Vulnerability
CVE-2026-61357Normal7.8ImportantElevation of PrivilegeOther / general WindowsMicrosoftApplication Information Services Elevation of Privilege Vulnerability
CVE-2026-61926Normal7.8ImportantElevation of PrivilegeEndpoints / Windows clientMicrosoftWindows USB Driver Elevation of Privilege Vulnerability
CVE-2026-62700Normal7.8ImportantElevation of PrivilegeEndpoints / Windows clientMicrosoftWindows NTFS Elevation of Privilege Vulnerability
CVE-2026-62701Normal7.8ImportantElevation of PrivilegeOther / general WindowsMicrosoftWindows Telephony Service Elevation of Privilege Vulnerability
CVE-2026-62710Normal7.8ImportantElevation of PrivilegeOther / general WindowsMicrosoftWindows Device Association Service Elevation of Privilege Vulnerability
CVE-2026-62711Normal7.8ImportantElevation of PrivilegeEndpoints / Windows clientMicrosoftWindows Win32k Elevation of Privilege Vulnerability
CVE-2026-62717Normal7.8ImportantElevation of PrivilegeOther / general WindowsMicrosoftWindows Message Queuing Elevation of Privilege Vulnerability
CVE-2026-62733Normal7.8ImportantElevation of PrivilegeEndpoints / Windows clientMicrosoftWindows Win32k Elevation of Privilege Vulnerability
CVE-2026-62732Normal7.8ImportantElevation of PrivilegeOther / general WindowsMicrosoftWindows Telephony Service Elevation of Privilege Vulnerability
CVE-2026-62736Normal7.8ImportantElevation of PrivilegeNetwork / infra serversMicrosoftWindows DHCP Client Elevation of Privilege Vulnerability
CVE-2026-62751Normal7.8ImportantElevation of PrivilegeOther / general WindowsMicrosoftWindows Projected File System Elevation of Privilege Vulnerability
CVE-2026-62752Normal7.8ImportantElevation of PrivilegeIdentity / ADMicrosoftWindows Kerberos Elevation of Privilege Vulnerability
CVE-2026-62771Normal7.8ImportantElevation of PrivilegeEndpoints / Windows clientMicrosoftWindows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability
CVE-2026-62761Normal7.8ImportantElevation of PrivilegeNetwork / infra serversMicrosoftWindows DHCP Server Elevation of Privilege Vulnerability
CVE-2026-62768Normal7.8ImportantElevation of PrivilegeOther / general WindowsMicrosoftWindows Installer Elevation of Privilege Vulnerability
CVE-2026-62770Normal7.8ImportantElevation of PrivilegeOther / general WindowsMicrosoftWindows Shell Elevation of Privilege Vulnerability
CVE-2026-62799Normal7.8ImportantElevation of PrivilegeNetwork / infra serversMicrosoftWindows SMB Client Elevation of Privilege Vulnerability
CVE-2026-62776Normal7.8ImportantElevation of PrivilegeNetwork / infra serversMicrosoftWindows DHCP Server Elevation of Privilege Vulnerability
CVE-2026-62803Normal7.8ImportantElevation of PrivilegeNetwork / infra serversMicrosoftWindows DHCP Server Elevation of Privilege Vulnerability
CVE-2026-62807Normal7.8ImportantElevation of PrivilegeNetwork / infra serversMicrosoftWindows DHCP Server Elevation of Privilege Vulnerability
CVE-2026-62811Normal7.8ImportantElevation of PrivilegeNetwork / infra serversMicrosoftWindows HTTP.sys Elevation of Privilege Vulnerability
CVE-2026-62871Normal7.8ImportantRemote Code ExecutionOther / general WindowsMicrosoft.NET Elevation of Privilege Vulnerability
CVE-2026-62880Normal7.8ImportantElevation of PrivilegeEndpoints / Windows clientMicrosoftWindows NTFS Elevation of Privilege Vulnerability
CVE-2026-62885Normal7.8ImportantElevation of PrivilegeEndpoints / Windows clientMicrosoftWindows Win32k Elevation of Privilege Vulnerability
CVE-2026-62886Normal7.8ImportantElevation of PrivilegeOther / general WindowsMicrosoft.NET Elevation of Privilege Vulnerability
CVE-2026-63527Normal7.8ImportantRemote Code ExecutionOffice / productivityMicrosoftMicrosoft Office Word Remote Code Execution Vulnerability
CVE-2026-63533Normal7.8ImportantRemote Code ExecutionOffice / productivityMicrosoftMicrosoft Office Remote Code Execution Vulnerability
CVE-2026-64904Normal7.8ImportantRemote Code ExecutionOffice / productivityMicrosoftMicrosoft Office Remote Code Execution Vulnerability
CVE-2026-64905Normal7.8ImportantRemote Code ExecutionOffice / productivityMicrosoftMicrosoft Office Word Remote Code Execution Vulnerability
CVE-2026-64906Normal7.8ImportantRemote Code ExecutionOther / general WindowsMicrosoftMicrosoft Access Remote Code Execution Vulnerability
CVE-2026-64912Normal7.8ImportantRemote Code ExecutionOther / general WindowsMicrosoftMicrosoft Access Remote Code Execution Vulnerability
CVE-2026-64908Normal7.8ImportantRemote Code ExecutionOther / general WindowsMicrosoftMicrosoft Access Remote Code Execution Vulnerability
CVE-2026-64914Normal7.8ImportantRemote Code ExecutionOther / general WindowsMicrosoftMicrosoft Access Remote Code Execution Vulnerability
CVE-2026-64915Normal7.8ImportantRemote Code ExecutionOffice / productivityMicrosoftMicrosoft Office Word Remote Code Execution Vulnerability
CVE-2026-64920Normal7.8ImportantRemote Code ExecutionOther / general WindowsMicrosoftMicrosoft Access Remote Code Execution Vulnerability
CVE-2026-64919Normal7.8ImportantRemote Code ExecutionOther / general WindowsMicrosoftMicrosoft Access Remote Code Execution Vulnerability
CVE-2026-65673Normal7.8ImportantElevation of PrivilegeOther / general WindowsMicrosoftMicrosoft Entra Connect Elevation of Privilege Vulnerability
CVE-2026-65773Normal7.8ImportantElevation of PrivilegeEndpoints / Windows clientMicrosoftWindows Kernel Elevation of Privilege Vulnerability
CVE-2026-65774Normal7.8ImportantElevation of PrivilegeOther / general WindowsMicrosoftWindows Installer Elevation of Privilege Vulnerability
CVE-2026-65790Normal7.8ImportantElevation of PrivilegeOther / general WindowsMicrosoftWindows Message Queuing Elevation of Privilege Vulnerability
CVE-2026-65810Normal7.8ImportantElevation of PrivilegeOther / general WindowsMicrosoft.NET Framework Elevation of Privilege Vulnerability
CVE-2026-68798Normal7.8ImportantRemote Code ExecutionOffice / productivityMicrosoftMicrosoft Excel Remote Code Execution Vulnerability
CVE-2026-68801Normal7.8ImportantRemote Code ExecutionOffice / productivityMicrosoftMicrosoft Excel Remote Code Execution Vulnerability
CVE-2026-68803Normal7.8ImportantRemote Code ExecutionOffice / productivityMicrosoftMicrosoft Excel Remote Code Execution Vulnerability
CVE-2026-68805Normal7.8ImportantRemote Code ExecutionOffice / productivityMicrosoftMicrosoft Excel Remote Code Execution Vulnerability
CVE-2026-68812Normal7.8ImportantRemote Code ExecutionOffice / productivityMicrosoftMicrosoft Excel Remote Code Execution Vulnerability
CVE-2026-68814Normal7.8ImportantRemote Code ExecutionOffice / productivityMicrosoftMicrosoft Excel Remote Code Execution Vulnerability
CVE-2026-68817Normal7.8ImportantRemote Code ExecutionOffice / productivityMicrosoftMicrosoft Excel Remote Code Execution Vulnerability
CVE-2026-70338Normal7.8ImportantSecurity Feature BypassOther / general WindowsMicrosoftMicrosoft PowerShell Security Feature Bypass Vulnerability
CVE-2026-70354Normal7.8ImportantRemote Code ExecutionOther / general WindowsMicrosoft.NET Core Remote Code Execution Vulnerability
CVE-2026-68821Normal7.3ImportantElevation of PrivilegeOther / general WindowsMicrosoftWindows Package Manager Elevation of Privilege Vulnerability
CVE-2026-59119Normal7.3ImportantElevation of PrivilegeOther / general WindowsMicrosoftPowerShell Elevation of Privilege Vulnerability
CVE-2026-50472Normal7.0ImportantElevation of PrivilegeVirtualization / Hyper-VMicrosoftWindows LUA File Virtualization Filter Driver Elevation of Privilege Vulnerability
CVE-2026-61346Normal7.0ImportantElevation of PrivilegeOther / general WindowsMicrosoftWindows Graphics Kernel Elevation of Privilege Vulnerability
CVE-2026-61361Normal7.0ImportantRemote Code ExecutionNetwork / infra serversMicrosoftWindows DHCP Client Remote Code Execution Vulnerability
CVE-2026-61366Normal7.0ImportantElevation of PrivilegeNetwork / infra serversMicrosoftWindows Network Connection Broker Elevation of Privilege Vulnerability
CVE-2026-61927Normal7.0ImportantElevation of PrivilegeEndpoints / Windows clientMicrosoftWindows Bind Filter Driver Elevation of Privilege Vulnerability
CVE-2026-61939Normal7.0ImportantElevation of PrivilegeOther / general WindowsMicrosoftWinlogon Elevation of Privilege Vulnerability
CVE-2026-62690Normal7.0ImportantElevation of PrivilegeOther / general WindowsMicrosoftWindows Push Notifications Elevation of Privilege Vulnerability
CVE-2026-62693Normal7.0ImportantElevation of PrivilegeOther / general WindowsMicrosoftWindows MIDI Service Module Elevation of Privileges Vulnerability
CVE-2026-62705Normal7.0ImportantElevation of PrivilegeEndpoints / Windows clientMicrosoftWindows Bind Filter Driver Elevation of Privilege Vulnerability
CVE-2026-62723Normal7.0ImportantElevation of PrivilegeOther / general WindowsMicrosoftWindows Telephony Service Elevation of Privilege Vulnerability
CVE-2026-62724Normal7.0ImportantElevation of PrivilegeOther / general WindowsMicrosoftWindows Telephony Service Elevation of Privilege Vulnerability
CVE-2026-62748Normal7.0ImportantElevation of PrivilegeOther / general WindowsMicrosoftWindows Telephony Service Elevation of Privilege Vulnerability
CVE-2026-62729Normal7.0ImportantElevation of PrivilegeOther / general WindowsMicrosoftWindows Telephony Service Elevation of Privilege Vulnerability
CVE-2026-62753Normal7.0ImportantElevation of PrivilegeNetwork / infra serversMicrosoftWindows HTTP.sys Elevation of Privilege Vulnerability
CVE-2026-62773Normal7.0ImportantElevation of PrivilegeIdentity / ADMicrosoftWindows Kerberos Elevation of Privilege Vulnerability
CVE-2026-62774Normal7.0ImportantElevation of PrivilegeOther / general WindowsMicrosoftWindows Graphics Kernel Elevation of Privilege Vulnerability
CVE-2026-62892Normal7.0ImportantElevation of PrivilegeOther / general WindowsMicrosoftCapability Access Management Service (camsvc) Elevation of Privilege Vulnerability
CVE-2026-62897Normal7.0ImportantRemote Code ExecutionOther / general WindowsMicrosoft.NET Framework Remote Code Execution Vulnerability
CVE-2026-62908Normal7.0ImportantElevation of PrivilegeOther / general WindowsMicrosoftWindows Backup Engine Elevation of Privilege Vulnerability
CVE-2026-65678Normal7.0ImportantElevation of PrivilegeEndpoints / Windows clientMicrosoftWindows Win32k Elevation of Privilege Vulnerability
CVE-2026-65783Normal7.0ImportantElevation of PrivilegeOther / general WindowsMicrosoftWindows Autopilot Elevation of Privilege Vulnerability
CVE-2026-59122Normal7.0ImportantElevation of PrivilegeOther / general WindowsMicrosoftWindows Telephony Service Elevation of Privilege Vulnerability
CVE-2026-59126Normal7.0ImportantElevation of PrivilegeOther / general WindowsMicrosoftWindows Event Logging Service Elevation of Privilege Vulnerability
CVE-2026-61938Normal7.0ImportantElevation of PrivilegeOther / general WindowsMicrosoftWindows Installer Elevation of Privilege Vulnerability
CVE-2026-62725Normal7.0ImportantElevation of PrivilegeOther / general WindowsMicrosoftWindows Telephony Service Elevation of Privilege Vulnerability
CVE-2026-62726Normal7.0ImportantElevation of PrivilegeOther / general WindowsMicrosoftWindows Telephony Service Elevation of Privilege Vulnerability
CVE-2026-62728Normal7.0ImportantElevation of PrivilegeEndpoints / Windows clientMicrosoftWindows Common Log File System Driver Elevation of Privilege Vulnerability
CVE-2026-62734Normal7.0ImportantElevation of PrivilegeOther / general WindowsMicrosoftWindows Telephony Service Elevation of Privilege Vulnerability
CVE-2026-62749Normal7.0ImportantElevation of PrivilegeEndpoints / Windows clientMicrosoftWindows Kernel Elevation of Privilege Vulnerability
CVE-2026-62780Normal7.0ImportantElevation of PrivilegeEndpoints / Windows clientMicrosoftWindows Kernel Elevation of Privilege Vulnerability
CVE-2026-65776Normal7.0ImportantElevation of PrivilegeEndpoints / Windows clientMicrosoftWindows Win32k Elevation of Privilege Vulnerability
CVE-2026-65779Normal7.0ImportantElevation of PrivilegeOther / general WindowsMicrosoftWindows Autopilot Elevation of Privilege Vulnerability
CVE-2026-65780Normal7.0ImportantElevation of PrivilegeOther / general WindowsMicrosoftWindows Autopilot Elevation of Privilege Vulnerability
CVE-2026-65778Normal7.0ImportantElevation of PrivilegeOther / general WindowsMicrosoftWindows Autopilot Elevation of Privilege Vulnerability
CVE-2026-65782Normal7.0ImportantElevation of PrivilegeOther / general WindowsMicrosoftWindows Autopilot Elevation of Privilege Vulnerability
CVE-2026-65781Normal7.0ImportantElevation of PrivilegeOther / general WindowsMicrosoftWindows Autopilot Elevation of Privilege Vulnerability
CVE-2026-62699Normal6.8ImportantRemote Code ExecutionEndpoints / Windows clientMicrosoftWindows Universal Disk Format File System Driver (UDFS) Remote Code Execution Vulnerability
CVE-2026-62757Normal5.3ImportantSecurity Feature BypassOther / general WindowsMicrosoftWindows Schannel Security Feature Bypass Vulnerability
CVE-2026-65777Normal5.3ImportantSecurity Feature BypassIdentity / ADMicrosoftActive Directory Security Feature Bypass Vulnerability
CVE-2026-70304Normal6.7ImportantElevation of PrivilegeNetwork / infra serversMicrosoftWindows DNS Elevation of Privilege Vulnerability
CVE-2026-70330Normal6.7ImportantElevation of PrivilegeNetwork / infra serversMicrosoftWindows DNS Elevation of Privilege Vulnerability
CVE-2026-62769Normal6.7ImportantElevation of PrivilegeNetwork / infra serversMicrosoftWindows DNS Elevation of Privilege Vulnerability
CVE-2026-62881Normal6.7ImportantElevation of PrivilegeNetwork / infra serversMicrosoftWindows DNS Elevation of Privilege Vulnerability
CVE-2026-62883Normal6.7ImportantElevation of PrivilegeNetwork / infra serversMicrosoftWindows DNS Elevation of Privilege Vulnerability
CVE-2026-65680Normal6.7ImportantElevation of PrivilegeOther / general WindowsMicrosoftMicrosoft OneDrive for MacOS Elevation of Privilege Vulnerability
CVE-2026-65795Normal6.7ImportantElevation of PrivilegeNetwork / infra serversMicrosoftWindows DNS Elevation of Privilege Vulnerability
CVE-2026-65797Normal6.7ImportantElevation of PrivilegeNetwork / infra serversMicrosoftWindows DNS Elevation of Privilege Vulnerability
CVE-2026-65799Normal6.7ImportantElevation of PrivilegeNetwork / infra serversMicrosoftWindows DNS Elevation of Privilege Vulnerability
CVE-2026-65798Normal6.7ImportantElevation of PrivilegeNetwork / infra serversMicrosoftWindows DNS Elevation of Privilege Vulnerability
CVE-2026-62718Normal6.5ImportantInformation DisclosureNetwork / infra serversMicrosoftWindows DHCP Server Information Disclosure Vulnerability
CVE-2026-62715Normal6.5ImportantInformation DisclosureNetwork / infra serversMicrosoftWindows DHCP Server Information Disclosure Vulnerability
CVE-2026-62716Normal6.5ImportantInformation DisclosureNetwork / infra serversMicrosoftWindows DHCP Server Information Disclosure Vulnerability
CVE-2026-62742Normal6.5ImportantInformation DisclosureNetwork / infra serversMicrosoftWindows DHCP Server Information Disclosure Vulnerability
CVE-2026-62745Normal6.5ImportantInformation DisclosureNetwork / infra serversMicrosoftWindows DHCP Server Information Disclosure Vulnerability
CVE-2026-62750Normal6.5ImportantTamperingOther / general WindowsMicrosoftWindows HTTP Protocol Stack Tampering Vulnerability
CVE-2026-65785Normal6.5ImportantDenial of ServiceNetwork / infra serversMicrosoftWindows DHCP Client Denial of Service Vulnerability
CVE-2026-62720Normal6.5ImportantInformation DisclosureNetwork / infra serversMicrosoftWindows DHCP Server Information Disclosure Vulnerability
CVE-2026-62714Normal6.5ImportantInformation DisclosureNetwork / infra serversMicrosoftWindows DHCP Server Information Disclosure Vulnerability
CVE-2026-62814Normal6.5ImportantInformation DisclosureNetwork / infra serversMicrosoftWindows DHCP Server Information Disclosure Vulnerability
CVE-2026-62708Normal6.4ImportantElevation of PrivilegeEndpoints / Windows clientMicrosoftWindows Kernel Elevation of Privilege Vulnerability
CVE-2026-62829Normal4.6ImportantSpoofingSharePoint ownersMicrosoftMicrosoft SharePoint Server Spoofing Vulnerability
CVE-2026-64922Normal4.6ImportantSpoofingSharePoint ownersMicrosoftMicrosoft SharePoint Server Spoofing Vulnerability
CVE-2026-64897Normal4.6ImportantSpoofingSharePoint ownersMicrosoftMicrosoft SharePoint Server Spoofing Vulnerability
CVE-2026-64902Normal4.6ImportantSpoofingSharePoint ownersMicrosoftMicrosoft SharePoint Server Spoofing Vulnerability
CVE-2026-64916Normal4.6ImportantSpoofingSharePoint ownersMicrosoftMicrosoft SharePoint Server Spoofing Vulnerability
CVE-2026-62917Normal4.6ImportantSpoofingSharePoint ownersMicrosoftMicrosoft SharePoint Server Spoofing Vulnerability
CVE-2026-62882Normal4.3ImportantSpoofingOffice / productivityMicrosoftMicrosoft Outlook Spoofing Vulnerability
CVE-2026-59130Normal5.6ImportantInformation DisclosureOther / general WindowsMicrosoftAMD Zen Information Disclosure Vulnerability
CVE-2026-59131Normal5.6ImportantInformation DisclosureOther / general WindowsMicrosoftAMD Zen Information Disclosure Vulnerability
CVE-2026-59128Normal5.5ImportantInformation DisclosureOther / general WindowsMicrosoftWindows Encrypting File System (EFS) Information Disclosure Vulnerability
CVE-2026-59135Normal5.5ImportantInformation DisclosureOther / general WindowsMicrosoftMicrosoft Windows Search Component Information Disclosure Vulnerability
CVE-2026-59136Normal5.5ImportantInformation DisclosureOther / general WindowsMicrosoftMicrosoft COM for Windows Information Disclosure Vulnerability
CVE-2026-59137Normal5.5ImportantInformation DisclosureOther / general WindowsMicrosoftWindows Event Logging Service Information Disclosure Vulnerability
CVE-2026-61347Normal5.5ImportantInformation DisclosureOther / general WindowsMicrosoftWindows Event Logging Service Information Disclosure Vulnerability
CVE-2026-61928Normal5.5ImportantTamperingOther / general WindowsMicrosoftWindows Hello Tampering Vulnerability
CVE-2026-61933Normal5.5ImportantInformation DisclosureOther / general WindowsMicrosoftWindows DWM Core Library Information Disclosure Vulnerability
CVE-2026-61936Normal5.5ImportantSecurity Feature BypassCloud / M365 appsMicrosoftWindows Defender Firewall Service Security Feature Bypass Vulnerability
CVE-2026-62703Normal5.5ImportantInformation DisclosureOther / general WindowsMicrosoftWindows DWM Core Library Information Disclosure Vulnerability
CVE-2026-62746Normal5.5ImportantInformation DisclosureEndpoints / Windows clientMicrosoftWin32k Information Disclosure Vulnerability
CVE-2026-62740Normal5.5ImportantInformation DisclosureOther / general WindowsMicrosoftWindows Imaging Component Information Disclosure Vulnerability
CVE-2026-62798Normal5.5ImportantInformation DisclosureEndpoints / Windows clientMicrosoftWin32k Information Disclosure Vulnerability
CVE-2026-62796Normal5.5ImportantInformation DisclosureEndpoints / Windows clientMicrosoftWindows NTFS Information Disclosure Vulnerability
CVE-2026-54123Normal5.5ImportantInformation DisclosureCloud / M365 appsMicrosoftMicrosoft Defender for Endpoint for Mac Information Disclosure Vulnerability
CVE-2026-63517Normal5.5ImportantInformation DisclosureOffice / productivityMicrosoftMicrosoft Office Graphics Component Information Disclosure Vulnerability
CVE-2026-63521Normal5.5ImportantInformation DisclosureOffice / productivityMicrosoftMicrosoft Office Word Information Disclosure Vulnerability
CVE-2026-65662Normal5.5ImportantInformation DisclosureOther / general WindowsMicrosoftWindows GDI Information Disclosure Vulnerability
CVE-2026-65784Normal5.5ImportantInformation DisclosureEndpoints / Windows clientMicrosoftWindows NTFS Information Disclosure Vulnerability
CVE-2026-68802Normal5.5ImportantInformation DisclosureOffice / productivityMicrosoftMicrosoft Excel Information Disclosure Vulnerability
CVE-2026-68808Normal5.5ImportantInformation DisclosureOffice / productivityMicrosoftMicrosoft Excel Information Disclosure Vulnerability
CVE-2026-68809Normal5.5ImportantInformation DisclosureOffice / productivityMicrosoftPowerpoint Information Disclosure Vulnerability
CVE-2026-68813Normal5.5ImportantInformation DisclosureOffice / productivityMicrosoftMicrosoft Excel Information Disclosure Vulnerability
CVE-2026-70312Normal5.5ImportantInformation DisclosureOffice / productivityMicrosoftPowerpoint Information Disclosure Vulnerability
CVE-2026-70310Normal5.5ImportantInformation DisclosureOffice / productivityMicrosoftMicrosoft Word Information Disclosure Vulnerability
CVE-2026-70316Normal5.5ImportantInformation DisclosureOffice / productivityMicrosoftPowerpoint Information Disclosure Vulnerability
CVE-2026-70315Normal5.5ImportantInformation DisclosureOffice / productivityMicrosoftMicrosoft Office Information Disclosure Vulnerability
CVE-2026-70318Normal5.5ImportantInformation DisclosureOffice / productivityMicrosoftMicrosoft Excel Information Disclosure Vulnerability
CVE-2026-70314Normal5.5ImportantInformation DisclosureOffice / productivityMicrosoftMicrosoft Office Information Disclosure Vulnerability
CVE-2026-70317Normal5.5ImportantInformation DisclosureOffice / productivityMicrosoftMicrosoft Office Information Disclosure Vulnerability
CVE-2026-70325Normal5.5ImportantInformation DisclosureOffice / productivityMicrosoftPowerpoint Information Disclosure Vulnerability
CVE-2026-70319Normal5.5ImportantInformation DisclosureOffice / productivityMicrosoftMicrosoft Office Word Information Disclosure Vulnerability
CVE-2026-70320Normal5.5ImportantInformation DisclosureOffice / productivityMicrosoftPowerpoint Information Disclosure Vulnerability
CVE-2026-70323Normal5.5ImportantInformation DisclosureOffice / productivityMicrosoftMicrosoft Office Information Disclosure Vulnerability
CVE-2026-70322Normal5.5ImportantInformation DisclosureOffice / productivityMicrosoftPowerpoint Information Disclosure Vulnerability
CVE-2026-70348Normal5.5ImportantDenial of ServiceOther / general WindowsMicrosoftWindows Management Services Denial of Service Vulnerability
CVE-2026-61360Normal5.5ImportantInformation DisclosureOther / general WindowsMicrosoftWindows GDI Information Disclosure Vulnerability
CVE-2026-62709Normal5.5ImportantInformation DisclosureOther / general WindowsMicrosoftWindows GDI+ Information Disclosure Vulnerability
CVE-2026-62743Normal5.5ImportantInformation DisclosureEndpoints / Windows clientMicrosoftWin32k Information Disclosure Vulnerability
CVE-2026-62730Normal5.5ImportantInformation DisclosureOther / general WindowsMicrosoftWindows Wired AutoConfig Service Information Disclosure Vulnerability
CVE-2026-62775Normal5.5ImportantInformation DisclosureEndpoints / Windows clientMicrosoftWindows Container Isolation FS Filter Driver (unionfs.sys) Information Disclosure Vulnerability
CVE-2026-62786Normal5.5ImportantInformation DisclosureEndpoints / Windows clientMicrosoftWin32k Information Disclosure Vulnerability
CVE-2026-62793Normal5.5ImportantInformation DisclosureEndpoints / Windows clientMicrosoftWindows NTFS Information Disclosure Vulnerability
CVE-2026-62887Normal5.5ImportantInformation DisclosureEndpoints / Windows clientMicrosoftWindows NTFS Information Disclosure Vulnerability
CVE-2026-62842Normal5.5ImportantInformation DisclosureOffice / productivityMicrosoftMicrosoft Office Graphics Component Information Disclosure Vulnerability
CVE-2026-63524Normal5.5ImportantInformation DisclosureOffice / productivityMicrosoftMicrosoft Office Information Disclosure Vulnerability
CVE-2026-63528Normal5.5ImportantInformation DisclosureOffice / productivityMicrosoftMicrosoft Office Word Information Disclosure Vulnerability
CVE-2026-63529Normal5.5ImportantInformation DisclosureOffice / productivityMicrosoftMicrosoft Office Information Disclosure Vulnerability
CVE-2026-63530Normal5.5ImportantInformation DisclosureOffice / productivityMicrosoftMicrosoft Office Word Information Disclosure Vulnerability
CVE-2026-63531Normal5.5ImportantInformation DisclosureOffice / productivityMicrosoftMicrosoft Office Word Information Disclosure Vulnerability
CVE-2026-64899Normal5.5ImportantInformation DisclosureOffice / productivityMicrosoftMicrosoft Office Information Disclosure Vulnerability
CVE-2026-64917Normal5.5ImportantInformation DisclosureOffice / productivityMicrosoftMicrosoft Office Word Information Disclosure Vulnerability
CVE-2026-66806Normal5.5ImportantInformation DisclosureOffice / productivityMicrosoftMicrosoft Office Word Information Disclosure Vulnerability
CVE-2026-66810Normal5.5ImportantInformation DisclosureOffice / productivityMicrosoftMicrosoft Office Word Information Disclosure Vulnerability
CVE-2026-66809Normal5.5ImportantInformation DisclosureOffice / productivityMicrosoftMicrosoft Office Graphics Component Information Disclosure Vulnerability
CVE-2026-68797Normal5.5ImportantInformation DisclosureOffice / productivityMicrosoftMicrosoft Excel Information Disclosure Vulnerability
CVE-2026-68799Normal5.5ImportantInformation DisclosureOffice / productivityMicrosoftMicrosoft Excel Information Disclosure Vulnerability
CVE-2026-62738Normal5.5ImportantInformation DisclosureOther / general WindowsMicrosoftWindows Management Instrumentation Information Disclosure Vulnerability
CVE-2026-6727Normal5.9ImportantInformation DisclosureOther / general WindowsMicrosoftMITRE: CVE-2026-6727 TPM 2.0 RSA OAEP Timing Side-Channel Vulnerability
CVE-2026-61368Normal5.0ImportantInformation DisclosureVirtualization / Hyper-VMicrosoftWindows Hyper-V Information Disclosure Vulnerability
CVE-2026-70339Normal5.4ImportantRemote Code ExecutionBrowser (Edge auto-update)MicrosoftMicrosoft Edge (Chromium-based) Remote Code Execution Vulnerability
CVE-2026-61350Normal4.6ImportantInformation DisclosureEndpoints / Windows clientMicrosoftWindows NTFS Information Disclosure Vulnerability
CVE-2026-64584Normal worm9.8ImportantOther / general WindowsLinux / otherusb: gadget: f_midi: cancel pending IN work before freeing the midi object
CVE-2026-64594Normal worm9.8ImportantOther / general WindowsLinux / otherusb: gadget: f_fs: initialize reset_work at allocation time
CVE-2026-64593Normal worm9.8ImportantOther / general WindowsLinux / otherbtrfs: do not trim a device which is not writeable
CVE-2026-64597Normal worm8.6ImportantNetwork / infra serversLinux / othersmb: client: fix double-free in SMB2_close() replay
CVE-2026-68082Normal worm8.2ImportantOther / general WindowsLinux / otherlibceph: fix two unsafe bare decodes in decode_lockers()
CVE-2026-64577Normal worm7.5ImportantOther / general WindowsLinux / othergtp: check skb_pull_data() return in gtp1u_send_echo_resp()
CVE-2026-69152Normal worm7.5ImportantOther / general WindowsLinux / otherbrace-expansion: DoS via unbounded intermediate arrays, bypassing the CVE-2026-14257 mitigation
CVE-2025-49506Normal worm7.5ImportantOffice / productivityLinux / otherApache Portable Runtime Utility: apr_password_validate() vulnerable to timing attack
CVE-2026-34501Normal worm7.5ImportantOther / general WindowsLinux / otherApache Portable Runtime Utility: Heap buffer overflow in APR redis client
CVE-2026-34502Normal worm7.5ImportantOther / general WindowsLinux / otherApache Portable Runtime Utility: Heap buffer overflow in APR memcached client
CVE-2026-54876Normal worm7.5ImportantOther / general WindowsLinux / otherClient-Side Memory Leak in OCSP Response Checking
CVE-2026-65819Normal worm7.5ImportantOther / general WindowsLinux / othergopacket: Multiple layer decoders panic on crafted packets (out-of-bounds/underflow) enabling unauthenticated remote DoS via DecodingLayerParser
CVE-2026-68155Normal worm7.5ImportantOther / general WindowsLinux / otherlibceph: Reject monmaps advertising zero monitors
CVE-2026-68320Normal worm7.5ImportantOther / general WindowsLinux / othersctp: fix auth_chunk_list capacity check in sctp_auth_ep_add_chunkid
CVE-2026-68373Normal worm7.5ModerateOther / general WindowsLinux / otherwifi: at76c50x-usb: avoid length underflow in at76_guess_freq()
CVE-2026-68299Normal worm7.5ModerateOther / general WindowsLinux / othervmxnet3: fix BUG_ON in vmxnet3_get_hdr_len() for Geneve packets
CVE-2026-71225Normal worm6.5ModerateOther / general WindowsLinux / otherLibkcapi: iv reuse in libkcapi one-shot symmetric cipher chunking causes cipher state reset across chunk boundaries
CVE-2026-68158Normal worm6.5ModerateOther / general WindowsLinux / otherlibceph: Fix multiplication overflow in decode_new_up_state_weight()
CVE-2026-64578Normal worm6.5ModerateOther / general WindowsLinux / otherksmbd: validate compound request size before reading StructureSize2
CVE-2026-70368Normal worm6.5ModerateOther / general WindowsLinux / otherStunnel: stack-based out-of-bounds read/write in stunnel s_vlog via oversized log message
CVE-2026-68381Normal worm5.9ModerateOther / general WindowsLinux / otherksmbd: pin conn during async oplock break notification
CVE-2026-68366Normal8.1ImportantOther / general WindowsLinux / otherusb: gadget: uvc: clamp SEND_RESPONSE length to the response buffer
CVE-2026-6726Normal7.9ImportantSpoofingOther / general WindowsLinux / otherMITRE: CVE-2026-6726 TPM 2.0 Improper Object Slot Reuse
CVE-2026-59125Normal7.0ImportantElevation of PrivilegeEndpoints / Windows clientLinux / otherVirtual Hard Disk (VHD) Miniport Driver Elevation of Privilege Vulernability
CVE-2026-32327Normal worm5.3ModerateOther / general WindowsLinux / otherApache Portable Runtime Utility: apr-util XML stack recursion crash
CVE-2026-69153Normal worm5.3ModerateOther / general WindowsLinux / otherPostCSS: incomplete fix of CVE-2026-45623 — attacker-controlled sourceMappingURL reads arbitrary .map files when `from` is unset
CVE-2026-68118Normal worm5.3ModerateOther / general WindowsLinux / othertcp: challenge ACK for non-exact RST in SYN-RECEIVED
CVE-2026-68343Normal worm5.3ModerateNetwork / infra serversLinux / othersmb: client: validate DFS referral PathConsumed
CVE-2026-68480Normal8.8ImportantOther / general WindowsLinux / otherx86/bugs: Make Safe-RET robust against interrupt injection
CVE-2026-71556Normal7.1ImportantOther / general WindowsLinux / othergo-git: Worktree operations may follow symlinks
CVE-2026-68130Normal7.1ImportantOther / general WindowsLinux / otherksmbd: defer destroy_previous_session() until after NTLM authentication
CVE-2026-64604Normal8.4ImportantOther / general WindowsLinux / otherKVM: VMX: Grab vmcs12 on CR8 interception update iff vCPU is in guest mode
CVE-2026-68129Normal6.5ModerateOther / general WindowsLinux / othergve: fix Rx queue stall on alloc failure
CVE-2026-68116Normal6.5ModerateOther / general WindowsLinux / othervxlan: mdb: Fix source list corruption on a failed replace
CVE-2026-68098Normal6.5ModerateOther / general WindowsLinux / otherksmbd: bound DACL dedup walk to copied ACEs
CVE-2026-68186Normal7.8ImportantOther / general WindowsLinux / otherbinfmt_misc: set have_execfd only once the interpreter is opened
CVE-2026-68152Normal7.8ImportantOther / general WindowsLinux / otheramt: fix use-after-free in AMT delayed works
CVE-2026-68318Normal7.8ImportantOther / general WindowsLinux / otherpds_core: fix use-after-free on workqueue during remove
CVE-2026-68335Normal7.8ImportantNetwork / infra serversLinux / otherrds: drop incoming messages that cross network namespace boundaries
CVE-2026-68416Normal7.8ImportantOther / general WindowsLinux / othermtd: fix double free and WARN_ON in add_mtd_device() error paths
CVE-2026-68188Normal7.8ImportantOther / general WindowsLinux / otherBluetooth: RFCOMM: Fix session UAF in set_termios
CVE-2026-68181Normal7.8ImportantOther / general WindowsLinux / othermei: bus: access mei_device under device_lock on cleanup
CVE-2026-68108Normal7.8ImportantOther / general WindowsLinux / otherdrm/amdgpu/vce: fix integer overflow in image size
CVE-2026-68097Normal6.3ModerateOther / general WindowsLinux / otherksmbd: validate ACE size against SID sub-authorities
CVE-2026-71557Normal6.3ModerateEndpoints / Windows clientLinux / othergo-git: Malicious reference names may modify files outside the reference storage
CVE-2026-68124Normal7.7ImportantOther / general WindowsLinux / othermctp: serial: handle zero-length frames to prevent rx buffer overflow
CVE-2026-68376Normal worm3.7LowOther / general WindowsLinux / othersctp: fix auth_hmacs array size in struct sctp_cookie
CVE-2026-71226Normal7.3ImportantOther / general WindowsLinux / otherLibkcapi: memory corruption via uncanceled aio requests on error in libkcapi's one-shot aio path
CVE-2026-68337Normal7.3ModerateOther / general WindowsLinux / otherbpf: Reject redirect helpers without a bpf_net_context
CVE-2026-64590Normal7.1ImportantOther / general WindowsLinux / otherdma-buf/udmabuf: skip redundant cpu sync to fix cacheline EEXIST warning
CVE-2026-64583Normal7.1ModerateOther / general WindowsLinux / otherusb: gadget: udc: bdc: free IRQ and drain func_wake_notify before teardown
CVE-2026-68353Normal7.1ModerateOther / general WindowsLinux / otherwifi: ath6kl: fix OOB read from firmware num_msg in TX complete handler
CVE-2026-68351Normal7.1ModerateOther / general WindowsLinux / otherwifi: carl9170: bound memcpy length in cmd callback to prevent OOB read
CVE-2026-68083Normal7.1ModerateOther / general WindowsLinux / otherksmbd: fix path resolution in ksmbd_vfs_kern_path_create
CVE-2026-68352Normal7.1ModerateOther / general WindowsLinux / otherwifi: ath6kl: fix OOB read from firmware IE lengths in connect event
CVE-2026-68397Normal7.1ModerateOther / general WindowsLinux / othernet/iucv: take a reference on the socket found in afiucv_hs_rcv()
CVE-2026-68350Normal7.1ModerateOther / general WindowsLinux / otherwifi: carl9170: fix OOB read from off-by-two in TX status handler
CVE-2026-68371Normal7.1ModerateOther / general WindowsLinux / otherusb: musb: omap2430: Do not put borrowed of_node in probe
CVE-2026-68414Normal7.1ModerateOther / general WindowsLinux / otherwifi: cfg80211: cancel sched scan results work on unregister
CVE-2026-68182Normal7.1ModerateOther / general WindowsLinux / othercomedi: comedi_parport: deal with premature interrupt
CVE-2026-68284Normal7.1ModerateOther / general WindowsLinux / otherbpf, sockmap: Fix cork use-after-free in tcp_bpf_sendmsg()
CVE-2026-68165Normal7.1ModerateOther / general WindowsLinux / othermm/damon/core: validate ranges in damon_set_regions()
CVE-2026-68199Normal7.1ModerateOther / general WindowsLinux / otherwifi: ath6kl: fix OOB access from firmware ADDBA window size
CVE-2026-68368Normal7.1ModerateOther / general WindowsLinux / otherusb: gadget: f_ncm: validate datagram bounds in ncm_unwrap_ntb()
CVE-2026-68135Normal7.1ModerateOther / general WindowsLinux / othernet: hip04: fix RX buffer leak on build_skb failure
CVE-2026-68294Normal7.1ModerateNetwork / infra serversLinux / othernet: qrtr: restrict socket creation to the initial network namespace
CVE-2026-68162Normal7.1ModerateOther / general WindowsLinux / othersctp: avoid auth_enable sysctl UAF during netns teardown
CVE-2026-68085Normal7.1ModerateOther / general WindowsLinux / otherBluetooth: hci_uart: clear HCI_UART_SENDING when write_work is canceled
CVE-2026-68104Normal7.1ModerateOther / general WindowsLinux / otherdrm/amdgpu: invoke pm_genpd_remove() before freeing genpd
CVE-2026-68348Normal7.1ModerateOther / general WindowsLinux / otherASoC: tas2781: bound firmware description string parsing
CVE-2026-68365Normal7.1ModerateBrowser (Edge auto-update)Linux / otherUSB: serial: io_edgeport: cap received transmit credits
CVE-2026-68286Normal7.1ModerateOther / general WindowsLinux / otherdrop_monitor: perform u64_stats updates under IRQ-disabled section
CVE-2026-68306Normal7.1ModerateOther / general WindowsLinux / otherwifi: mt76: mt7996: fix possible NULL-pointer deref in mt7996_mcu_sta_bfer_eht()
CVE-2026-68138Normal7.1ModerateOther / general WindowsLinux / othernet/sched: serialize qdisc_rtab_list against concurrent get/put
CVE-2026-68088Normal7.1ModerateOther / general WindowsLinux / otherusb: gadget: function: rndis: add length check to response query
CVE-2026-68204Normal7.1ModerateOther / general WindowsLinux / othermedia: vivid: check for vb2_is_busy() when toggling caps
CVE-2026-68084Normal7.1ModerateOther / general WindowsLinux / otherstaging: vme_user: fix location monitor leak in tsi148 bridge
CVE-2026-72568Normal7.1ModerateOther / general WindowsLinux / otherRedis - Heap Out-of-Bounds Read in Cluster Bus PING Message Handler
CVE-2026-68329Normal7.0ModerateOther / general WindowsLinux / otheriommu/amd: Wait for completion instead of returning early in iommu_completion_wait()
CVE-2026-70367Normal5.4ModerateOther / general WindowsLinux / otherStunnel: ssrf bypass in stunnel socks proxy via ipv4-mapped ipv6 loopback and unspecified addresses allows access to loopback-only services
CVE-2026-68156Normal5.3ModerateOther / general WindowsLinux / otherlibceph: refresh auth->authorizer_buf{,_len} after authorizer update
CVE-2026-68093Normal6.7ModerateOther / general WindowsLinux / otherKVM: SVM: Bump asid_generation on CPU online to avoid ASID collision after hotplug
CVE-2026-68086Normal6.6ModerateOther / general WindowsLinux / othermm/khugepaged: write all dirty file folios when collapsing
CVE-2026-68411Normal6.5ModerateOther / general WindowsLinux / otherwifi: mac80211_hwsim: clamp virtio RX length before skb_put
CVE-2026-68136Normal6.5ModerateOther / general WindowsLinux / othernet: gro: fix double aggregation of flush-marked skbs
CVE-2026-68125Normal6.5ModerateOther / general WindowsLinux / othermac802154: llsec: reject frames shorter than the authentication tag
CVE-2026-68159Normal6.5ModerateOther / general WindowsLinux / otherlibceph: bound pg_{temp,upmap,upmap_items} length to CEPH_PG_MAX_SIZE
CVE-2026-68323Normal6.3ModerateOther / general WindowsLinux / othertipc: serialize udp bearer replicast list updates
CVE-2026-68361Normal6.3ModerateOther / general WindowsLinux / otherhwmon: (corsair-psu) Stop device IO before calling hid_hw_stop
CVE-2026-68196Normal6.3ModerateOther / general WindowsLinux / otherwifi: wilc1000: validate assoc response length before subtracting header
CVE-2026-64573Normal6.3ModerateOther / general WindowsLinux / otherBluetooth: qca: fix NVM tag length underflow in TLV parser
CVE-2026-72522Normal6.2ModerateOther / general WindowsLinux / otherlibexpat before 2.8.3 has an out-of-bounds read and resultant infinite loop because low surrogates are treated the same as high surrogates during Unicode processing in the *_toUtf16 functions.
CVE-2026-71497Normal4.7ModerateOther / general WindowsLinux / otherjsoup: Cleaner may expose markup with custom raw-text elements
CVE-2026-68273Normal6.1ModerateOther / general WindowsLinux / otherdrm/amdgpu: Fix context pstate override handling
CVE-2026-68187Normal6.1ModerateOther / general WindowsLinux / otherexec: fix unsigned loop counter wrap in transfer_args_to_stack()
CVE-2026-68326Normal6.1ModerateOther / general WindowsLinux / otherwifi: mwifiex: bound uAP association event IEs to the event buffer
CVE-2026-68081Normal6.0ModerateOther / general WindowsLinux / otherKVM: nVMX: Put vmcs12 pages if nested VM-Enter fails due to invalid guest state
CVE-2026-68100Normal4.3ModerateOther / general WindowsLinux / otherksmbd: validate num_subauth when copying ACE in set_ntacl_dacl
CVE-2026-68099Normal4.3ModerateOther / general WindowsLinux / otherksmbd: restore DACL size on check_add_overflow() to avoid malformed ACL
CVE-2026-64676Normal5.7ModerateOther / general WindowsLinux / otherKata Containers: Unauthorized mem-agent ttRPC methods let an untrusted host tamper with confidential-guest memory
CVE-2026-15534Normal5.7ModerateOther / general WindowsLinux / otherPerl versions through 5.45.1 have out-of-bounds heap reads and writes during regular expression matching via an undersized superlinear cache in S_regmatch
CVE-2026-68123Normal5.7ModerateOther / general WindowsLinux / otheropenvswitch: fix GSO userspace truncation underflow
CVE-2026-64569Normal5.5ModerateOther / general WindowsLinux / othermpls: fix NULL deref in mpls_valid_fib_dump_req() on CONFIG_INET=n
CVE-2026-64561Normal5.5ModerateOther / general WindowsLinux / otherKVM: x86: Check for invalid/obsolete root *after* making MMU pages available
CVE-2026-64585Normal5.5ModerateOther / general WindowsLinux / othercan: esd_usb: kill anchored URBs before freeing netdevs
CVE-2026-64586Normal5.5ModerateOther / general WindowsLinux / otherwifi: brcmfmac: drain bus_reset work on device removal
CVE-2026-64599Normal5.5ModerateOther / general WindowsLinux / othercrypto: amlogic - avoid double cleanup in meson_crypto_probe()
CVE-2026-64598Normal5.5ModerateNetwork / infra serversLinux / othersmb/client: Fix error code in smb2_aead_req_alloc()
CVE-2026-44605Normal5.5ModerateOther / general WindowsLinux / otherRpm: heap buffer overflow in ndb slot table parsing
CVE-2026-68258Normal5.5ModerateOther / general WindowsLinux / otherdrm/amdkfd: Check bounds on CRIU restore queue type and mqd size
CVE-2026-68203Normal5.5ModerateOther / general WindowsLinux / othermedia: vivid: fix cleanup bugs in vivid_init()
CVE-2026-68114Normal5.5ModerateOther / general WindowsLinux / otherdrm/amdgpu/gfx12.1: replace BUG_ON() with WARN_ON()
CVE-2026-68183Normal5.5ModerateOther / general WindowsLinux / otherfirmware: stratix10-svc: fix memory leaks and list corruption bugs
CVE-2026-68412Normal5.5ModerateOther / general WindowsLinux / otherwifi: cfg80211: Fix an error handling path in cfg80211_wext_siwscan()
CVE-2026-68242Normal5.5ModerateOther / general WindowsLinux / otherdrm/i915/gt: Fix NULL deref on sched_engine alloc failure
CVE-2026-68252Normal5.5ModerateOther / general WindowsLinux / otherdrm/amdgpu/sdma7.0: replace BUG_ON() with WARN_ON()
CVE-2026-68374Normal5.5ModerateOther / general WindowsLinux / otherusb: core: sysfs: add lock to bos_descriptors_read()
CVE-2026-68254Normal5.5ModerateOther / general WindowsLinux / otherdrm/i915/vrr: require valid min/max vfreq for VRR
CVE-2026-68272Normal5.5ModerateOther / general WindowsLinux / otherdrm/amdgpu: validate CP_GFX_SHADOW chunk size in CS pass1
CVE-2026-68197Normal5.5ModerateOther / general WindowsLinux / otherwifi: mwifiex: fix NULL dereference when the AP has HT-cap but no HT-oper
CVE-2026-68249Normal5.5ModerateOther / general WindowsLinux / otherdrm/amdgpu/sdma5.0: replace BUG_ON() with WARN_ON()
CVE-2026-68297Normal5.5ModerateOther / general WindowsLinux / othertipc: fix u16 MTU truncation in media and bearer MTU validation
CVE-2026-68141Normal5.5ModerateOther / general WindowsLinux / othernet/af_iucv: fix NULL deref in afiucv_hs_callback_syn()
CVE-2026-68110Normal5.5ModerateOther / general WindowsLinux / otherdrm/amdgpu/sdma4.4.2: replace BUG_ON() with WARN_ON()
CVE-2026-68206Normal5.5ModerateOther / general WindowsLinux / othermedia: v4l2-ctrls: validate HEVC active reference counts
CVE-2026-68195Normal5.5ModerateOther / general WindowsLinux / otherwifi: mt76: mt7615: drop TXRX_NOTIFY on non-mmio buses
CVE-2026-68111Normal5.5ModerateOther / general WindowsLinux / otherdrm/amdgpu/gfx9: replace BUG_ON() with WARN_ON()
CVE-2026-68145Normal5.5ModerateOther / general WindowsLinux / otheriomap: fix out-of-bounds bitmap_set() with zero-length range
CVE-2026-68255Normal5.5ModerateOther / general WindowsLinux / otherdrm/virtio: bound EDID block reads to the response buffer
CVE-2026-68115Normal5.5ModerateOther / general WindowsLinux / otherdrm/amdgpu/gfx10: replace BUG_ON() with WARN_ON()
CVE-2026-68222Normal5.5ModerateOther / general WindowsLinux / othermedia: msi2500: Return queued buffers on start_streaming() failure
CVE-2026-68331Normal5.5ModerateOther / general WindowsLinux / otherdpaa2-eth: put MAC endpoint device on disconnect
CVE-2026-68231Normal5.5ModerateOther / general WindowsLinux / othermedia: airspy: Return queued buffers on start_streaming() failure
CVE-2026-68112Normal5.5ModerateOther / general WindowsLinux / otherdrm/amdgpu/gfx9.4.3: replace BUG_ON() with WARN_ON()
CVE-2026-68175Normal5.5ModerateOther / general WindowsLinux / othertracing: Fix resource leak on mmiotrace trace_pipe close
CVE-2026-68328Normal5.5ModerateOther / general WindowsLinux / othernfp: Check resource mutex allocation
CVE-2026-68217Normal5.5ModerateOther / general WindowsLinux / othermedia: pwc: Drain fill_buf on start_streaming() failure
CVE-2026-68250Normal5.5ModerateOther / general WindowsLinux / otherdrm/amdgpu/sdma5.2: replace BUG_ON() with WARN_ON()
CVE-2026-68408Normal5.5ModerateOther / general WindowsLinux / otherwifi: cfg80211: convert pmsr_free_wk to wiphy_work to fix deadlock
CVE-2026-68369Normal5.5ModerateOther / general WindowsLinux / otherusb: gadget: printer: fix infinite loop in printer_read()
CVE-2026-68137Normal5.5ModerateOther / general WindowsLinux / othernet/x25: fix use-after-free in x25_kill_by_neigh()
CVE-2026-68202Normal5.5ModerateOther / general WindowsLinux / otherALSA: seq: close a re-opened queue timer in the destructor
CVE-2026-68154Normal5.5ModerateOther / general WindowsLinux / otherlibceph: reject zero bucket types in crush_decode
CVE-2026-68223Normal5.5ModerateOther / general WindowsLinux / othermedia: meson: vdec: Fix memory leak in error path of vdec_open
CVE-2026-68303Normal5.5ModerateOther / general WindowsLinux / otherdrm/vc4: hvs/v3d: Fix null dereference in unbind
CVE-2026-68109Normal5.5ModerateOther / general WindowsLinux / otherdrm/amdgpu/sdma7.1: replace BUG_ON() with WARN_ON()
CVE-2026-68336Normal5.5ModerateOther / general WindowsLinux / otherbonding: fix devconf_all NULL dereference when IPv6 is disabled
CVE-2026-68300Normal5.5ModerateOther / general WindowsLinux / othersctp: auth: verify auth requirement when auth_chunk is NULL
CVE-2026-68257Normal5.5ModerateOther / general WindowsLinux / otherdrm/amdkfd: fix 32-bit overflow in CWSR total size calculation
CVE-2026-68157Normal5.5ModerateOther / general WindowsLinux / otherlibceph: guard missing CRUSH type name lookup
CVE-2026-68392Normal5.5ModerateOther / general WindowsLinux / otherBluetooth: mgmt: fix locking in unpair_device/disconnect_sync
CVE-2026-68113Normal5.5ModerateOther / general WindowsLinux / otherdrm/amdgpu/gfx12: replace BUG_ON() with WARN_ON()
CVE-2026-68367Normal5.5ModerateOther / general WindowsLinux / otherusb: gadget: f_tcm: synchronize delayed set_alt with teardown
CVE-2026-68386Normal5.5ModerateOther / general WindowsLinux / otherbpf, sockmap: Reject unhashed UDP sockets on sockmap update
CVE-2026-68219Normal5.5ModerateOther / general WindowsLinux / othermedia: nxp: imx8-isi: Fix potential out-of-bounds issues
CVE-2026-68396Normal5.5ModerateOther / general WindowsLinux / otherscsi: core: wake eh reliably when using scsi_schedule_eh
CVE-2026-68246Normal5.5ModerateOther / general WindowsLinux / otherdrm/amdgpu/gfx11: replace BUG_ON() with WARN_ON()
CVE-2026-68106Normal5.5ModerateOther / general WindowsLinux / otherdrm/amdgpu: fix division by zero with invalid uvd dimensions
CVE-2026-68293Normal5.5ModerateOffice / productivityLinux / othernet/mlx5: Fix MCIA register buffer overflow on 32 dword reads
CVE-2026-68149Normal5.5ModerateOther / general WindowsLinux / otherfs: preserve ACL_DONT_CACHE state in forget_cached_acl()
CVE-2026-68410Normal5.5ModerateOther / general WindowsLinux / otherwifi: libertas: fix memory leak in helper_firmware_cb()
CVE-2026-68418Normal5.5ModerateOther / general WindowsLinux / otherRDMA/irdma: Prevent user-triggered null deref on QP create
CVE-2026-68090Normal5.5ModerateOther / general WindowsLinux / otherdebugobjects: Plug race against a concurrent OOM disable
CVE-2026-68247Normal5.5ModerateOther / general WindowsLinux / otherdrm/i915/bios: range check LFP Data Block panel_type2
CVE-2026-68147Normal5.5ModerateOther / general WindowsLinux / otherfscrypt: Avoid dynamic allocation in fscrypt_get_devices()
CVE-2026-68184Normal5.5ModerateOther / general WindowsLinux / othercdrom: fix stack out-of-bounds read in CDROMVOLCTRL
CVE-2026-68401Normal5.5ModerateOther / general WindowsLinux / otherfirmware: arm_ffa: Fix out-of-bound writes in ffa_setup_and_transmit()
CVE-2026-68322Normal5.5ModerateOther / general WindowsLinux / otherrds: Fix inet6_addr_lst NULL dereference when IPv6 is disabled
CVE-2026-68327Normal5.5ModerateOther / general WindowsLinux / otherwan: wanxl: Only reset hardware after BAR mapping
CVE-2026-68271Normal5.5ModerateOther / general WindowsLinux / otherdrm/nouveau: fix reversed error cleanup order in ucopy functions
CVE-2026-68313Normal5.5ModerateOther / general WindowsLinux / othertipc: fix infinite loop in __tipc_nl_compat_dumpit
CVE-2026-68102Normal5.5ModerateOther / general WindowsLinux / otherdrm/amdgpu: fix aperture mapping leak
CVE-2026-68370Normal5.5ModerateOther / general WindowsLinux / otherusb: gadget: dummy_hcd: prevent fifo_req reuse during giveback
CVE-2026-68243Normal5.5ModerateOther / general WindowsLinux / otherdrm/i915/gem: Fix NULL deref in I915_CONTEXT_PARAM_SSEU
CVE-2026-64563Normal5.5ModerateOther / general WindowsLinux / otherrhashtable: clear stale iter->p on table restart
CVE-2026-64602Normal5.5ModerateOther / general WindowsLinux / otheriio: adc: spear: Initialize completion before requesting IRQ
CVE-2026-68289Normal5.5ModerateOther / general WindowsLinux / othertipc: fix integer overflow in tipc_recvmsg() and tipc_recvstream()
CVE-2026-68308Normal5.5ModerateOther / general WindowsLinux / otherwifi: mt76: mt7996: check pointer returned by mt76_connac_get_he_phy_cap()
CVE-2026-68333Normal5.5ModerateOther / general WindowsLinux / otherdpaa2-switch: put MAC endpoint device on disconnect
CVE-2026-68427Normal5.5ModerateOther / general WindowsLinux / othergpu: host1x: Fix use-after-free in host1x_bo_clear_cached_mappings
CVE-2026-68161Normal5.5ModerateOther / general WindowsLinux / othersctp: close UDP tunnel sockets during netns teardown
CVE-2026-68338Normal5.5ModerateOther / general WindowsLinux / othernet/packet: avoid fanout hook re-registration after unregister
CVE-2026-68096Normal5.5ModerateOther / general WindowsLinux / otheraudit: fix recursive locking deadlock in audit_dupe_exe()
CVE-2026-68389Normal5.5ModerateOther / general WindowsLinux / otherBluetooth: hci_qca: Clear memdump state on invalid dump size
CVE-2026-68194Normal5.5ModerateOther / general WindowsLinux / otherwifi: mt76: mt7921: drop TXRX_NOTIFY on non-mmio buses
CVE-2026-68215Normal5.5ModerateOther / general WindowsLinux / othermedia: radio-si476x: Unregister v4l2_device on probe failure
CVE-2026-68091Normal5.5ModerateOther / general WindowsLinux / otherHID: wacom: stop hardware after post-start probe failures
CVE-2026-68205Normal5.5ModerateOther / general WindowsLinux / othermedia: v4l2-fwnode: Fix subdev owner overwritten in v4l2_async_register_subdev_sensor()
CVE-2026-68259Normal5.5ModerateOther / general WindowsLinux / otherdrm/amdkfd: Check bounds in allocate_event_notification_slot
CVE-2026-68164Normal5.5ModerateOther / general WindowsLinux / othermm/damon/core: disallow overlapping input ranges for damon_set_regions()
CVE-2026-68253Normal5.5ModerateOther / general WindowsLinux / otherdrm/i915/hdcp: check streams[] bounds before overflow
CVE-2026-68339Normal5.5ModerateOther / general WindowsLinux / otherBluetooth: btusb: validate Realtek vendor event length
CVE-2026-68216Normal5.5ModerateOther / general WindowsLinux / othermedia: pwc: Return queued buffers on start_streaming() failure
CVE-2026-68251Normal5.5ModerateOther / general WindowsLinux / otherdrm/amdgpu/sdma6.0: replace BUG_ON() with WARN_ON()
CVE-2026-68315Normal5.3ModerateOther / general WindowsLinux / othersctp: validate stream count in sctp_process_strreset_inreq()
CVE-2026-64581Normal5.1ModerateOther / general WindowsLinux / otherxfrm: fix sk_dst_cache double-free in xfrm_user_policy()
CVE-2026-71227Normal5.1ModerateDenial of ServiceOther / general WindowsLinux / otherLibkcapi: infinite loop denial of service in libkcapi _kcapi_aio_read_all() due to unhandled io_getevents() timeout return
CVE-2026-68151Normal5.0ModerateOther / general WindowsLinux / otherbinfmt_elf_fdpic: only honour the first PT_INTERP
CVE-2026-68409Normal4.8ModerateOther / general WindowsLinux / otherwifi: mac80211: defer link RX stats percpu free to RCU
CVE-2026-64572Normal4.7ModerateOther / general WindowsLinux / otheripv4: fib: free fib_alias with kfree_rcu() on insert error path
CVE-2026-68189Normal4.7ModerateOther / general WindowsLinux / otherBluetooth: hci_sync: Protect UUID list traversal
CVE-2026-68362Normal4.7ModerateOther / general WindowsLinux / otherwifi: ath11k: fix NULL pointer dereference in ath11k_hal_srng_access_begin
CVE-2026-68148Normal4.7ModerateOther / general WindowsLinux / otherfscrypt: Add missing superblock check in find_or_insert_direct_key()
CVE-2026-68405Normal4.7ModerateOther / general WindowsLinux / otherwifi: mac80211: free AP_VLAN bc_buf SKBs outside IRQ lock
CVE-2026-68404Normal4.7ModerateOther / general WindowsLinux / otherwifi: cfg80211: use wiphy work for socket owner autodisconnect
CVE-2026-68426Normal4.7ModerateOther / general WindowsLinux / otherxfrm: fix stale skb->prev after async crypto steals a GSO segment
CVE-2026-68245Normal4.7ModerateOther / general WindowsLinux / otherdrm/amdgpu: fix lifetime issue of amdgpu_vm_get_task_info_pasid()
CVE-2026-68233Normal4.7ModerateOther / general WindowsLinux / otherdrm/vc4: Shut down BO cache timer before teardown
CVE-2026-68169Normal4.7ModerateOther / general WindowsLinux / othermptcp: pm: userspace: fix use-after-free in get_local_id
CVE-2026-68241Normal4.6ModerateOther / general WindowsLinux / otherdrm/i915/mst: limit DP MST ESI service loop
CVE-2026-68278Normal4.6ModerateOther / general WindowsLinux / otherdrm/dp/mst: fix buffer overflows in sideband chunk accumulation
CVE-2026-64567Normal4.4ModerateOther / general WindowsLinux / otherbtrfs: reject free space cache with more entries than pages
CVE-2026-68388Normal4.4ModerateNetwork / infra serversLinux / othersmb/client: handle overlapping allocated ranges in fallocate
CVE-2026-68419Normal4.4ModerateOther / general WindowsLinux / otherRDMA/irdma: Prevent rereg_mr for non-mem regions
CVE-2026-68103Normal4.4ModerateOther / general WindowsLinux / otherdrm/amdgpu: reject mapping a reserved doorbell to a new queue
CVE-2026-18508Normal4.4ModerateOther / general WindowsLinux / otherTar: tar: --one-top-level hardlink targets not confined to top-level directory enabling arbitrary file overwrite
CVE-2026-18477Normal4.4ModerateOther / general WindowsLinux / otherTar: tar: toctou in incremental dumpdir 'x' rename handling allows restore path escape
CVE-2026-68190Normal4.3ModerateOther / general WindowsLinux / otherstaging: rtl8723bs: fix OOB reads in rtw_get_wps_ie()
CVE-2026-68235Normal4.3ModerateOther / general WindowsLinux / otherdrm/amd/display: dce100: skip non-DP stream encoders for DP MST
CVE-2026-68425Normal4.3ModerateOther / general WindowsLinux / otherIB/mad: Drop unmatched RMPP responses before reassembly
CVE-2026-64576Normal4.1ModerateOther / general WindowsLinux / othernexthop: initialize extack in nh_res_bucket_migrate()
CVE-2026-68317Normal4.1ModerateOther / general WindowsLinux / otherpds_core: fix auxiliary device add/del races
CVE-2026-68192Normal4.1ModerateOther / general WindowsLinux / otherwifi: brcmfmac: make release_scratchbuffers idempotent
CVE-2026-68126Normal4.1ModerateOther / general WindowsLinux / othermac802154: hold an interface reference across the scan worker
CVE-2026-64574Normal4.1ModerateOther / general WindowsLinux / otherwifi: mac80211: tear down new links on vif update error path
CVE-2026-64579Normal4.1ModerateOther / general WindowsLinux / otherxfrm: policy: preallocate inexact bins before xfrm_hash_rebuild reinsert
CVE-2026-64580Normal4.1ModerateOther / general WindowsLinux / otherxfrm6: clear dst.dev on error to avoid double netdev_put in xfrm6_fill_dst()
CVE-2026-68105Normal4.1ModerateEndpoints / Windows clientLinux / otherdrm/amdgpu: Fix kernel panic during driver load failure
CVE-2026-68117Normal3.6LowOther / general WindowsLinux / othertipc: clear sock->sk on the failed-insert path in tipc_sk_create()
CVE-2026-64652Normal3.3Other / general WindowsLinux / otherGitHub CLI: Partial token disclosure in `gh auth status` output
CVE-2026-68288Normal3.3LowOther / general WindowsLinux / othernet: drop_monitor: fix info leak in NET_DM_ATTR_PAYLOAD
CVE-2026-68256Normal3.3LowOther / general WindowsLinux / otherdrm/amd/display: detect_link_and_local_sink: DP alt mode timeout path leaks prev_sink reference
CVE-2026-68238Normal3.3LowOther / general WindowsLinux / otherdrm/amdgpu: Release VFCT ACPI table reference
CVE-2026-68312Normal3.3LowOther / general WindowsLinux / othercifs: fix cifsFileInfo leak on kmalloc failure in deferred close drain paths
CVE-2026-68234Normal3.3LowOther / general WindowsLinux / otherdrm/amdgpu: fix bo->pin leaking in amdgpu_bo_create_reserved
CVE-2026-68277Normal3.3LowOther / general WindowsLinux / otherdrm/dp/mst: fix OOB reads on 2-byte fields in sideband reply parsers
CVE-2026-68280Normal3.3LowOther / general WindowsLinux / otherdrm/bridge: cdns-dsi: Replace deprecated UNIVERSAL_DEV_PM_OPS()
CVE-2026-68422Normal3.3LowOther / general WindowsLinux / otherbtrfs: fix root leak if its reloc root is unexpected in merge_reloc_roots()
CVE-2026-68301Normal3.3LowOther / general WindowsLinux / othernet: hsr: fix memory leak on slave unregistration by removing synced VLANs
CVE-2026-68229Normal3.3LowOther / general WindowsLinux / othermedia: cedrus: skip invalid H.264 reference list entries
CVE-2026-68209Normal3.3LowOther / general WindowsLinux / othermedia: sun4i-csi: Return queued buffers on start_streaming() failure
CVE-2026-68304Normal3.3LowOther / general WindowsLinux / otherwifi: brcmfmac: fix 802.1X-SHA256 call trace warning
CVE-2026-68244Normal3.3LowOther / general WindowsLinux / otherdrm/i915/gem: Do not leak siblings[] on proto context error
CVE-2026-68302Normal3.3LowOther / general WindowsLinux / otheramt: re-read skb header pointers after every pull
CVE-2026-68220Normal3.3LowOther / general WindowsLinux / othermedia: nxp: imx8-isi: Add missing v4l2_subdev_cleanup() in crossbar and pipe
CVE-2026-64571Normal3.2LowOther / general WindowsLinux / otherwifi: p54: validate RX frame length in p54_rx_eeprom_readback()
CVE-2026-18739Normal2.5LowOther / general WindowsLinux / otherPopt-devel: popt-static: off-by-one in poptstuffargs
CVE-2026-68355Normal2.5LowOther / general WindowsLinux / otherwifi: ath11k: fix potential buffer underflow in ath11k_hal_rx_msdu_list_get()
CVE-2026-68417Normal2.5LowOther / general WindowsLinux / otherRDMA/siw: publish QP after initialization
CVE-2026-68309Normal2.5LowOther / general WindowsLinux / otherwifi: mt76: connac: fix possible NULL-pointer deref in mt76_connac_mcu_uni_bss_he_tlv()
CVE-2026-68248Normal2.5LowOther / general WindowsLinux / otherdrm/i915: Return NULL on error in active_instance
CVE-2026-68269Normal2.5LowOther / general WindowsLinux / otherdrm/i915/gem: Add missing nospec on parallel submit slot
CVE-2026-68403Normal2.5LowOther / general WindowsLinux / otherwifi: brcmfmac: initialize SDIO data work before cleanup
CVE-2026-68226Normal2.5LowOther / general WindowsLinux / othermedia: cx23885: add ioremap return check and cleanup
CVE-2026-68107Normal2.5LowOther / general WindowsLinux / otherdrm/amdgpu/vcn4: avoid rereading IB param length
CVE-2026-68279Normal2.4LowOther / general WindowsLinux / otherdrm/dp/mst: fix OOB reads in remote DPCD/I2C sideband reply parsers
CVE-2026-61477Normal2.3Network / infra serversLinux / otherLibvirt: libvirt: newline injection in network xml dns txt/srv fields allows dnsmasq config directive injection
CVE-2026-18839Normal2.2LowOther / general WindowsLinux / otherPopt-devel: popt-static: size_t underflow in singleoptionhelp
CVE-2026-68363Normal2.0LowOther / general WindowsLinux / otherwifi: ath9k: hif_usb: don't dereference hif_dev after re-arming firmware request
CVE-2026-68171Normal1.9LowOther / general WindowsLinux / otherarm64: syscall: Ensure saved x0 is kept in-sync with tracer updates
CVE-2026-19137NormalOther / general WindowsLinux / otherCVE-2026-19137 Use after free in WebGL
CVE-2026-19140NormalOther / general WindowsLinux / otherCVE-2026-19140 Use after free in GPU
CVE-2026-19138NormalOther / general WindowsLinux / otherCVE-2026-19138 Heap buffer overflow in CrashReporting
CVE-2026-19139NormalOther / general WindowsLinux / otherCVE-2026-19139 Race in CredentialProvider
CVE-2026-19145NormalOther / general WindowsLinux / otherCVE-2026-19145 Use after free in Translate
CVE-2026-19142NormalOther / general WindowsLinux / otherCVE-2026-19142 Use after free in Views
CVE-2026-19144NormalOther / general WindowsLinux / otherCVE-2026-19144 Use after free in HTML
CVE-2026-19146NormalOther / general WindowsLinux / otherCVE-2026-19146 Uninitialized Use in GPU
CVE-2026-19147NormalOther / general WindowsLinux / otherCVE-2026-19147 Use after free in Aura
CVE-2026-19149NormalOther / general WindowsLinux / otherCVE-2026-19149 Use after free in Aura
CVE-2026-19148NormalOther / general WindowsLinux / otherCVE-2026-19148 Out of bounds write in GPU
CVE-2026-19151NormalOther / general WindowsLinux / otherCVE-2026-19151 Use after free in V8
CVE-2026-19153NormalOther / general WindowsLinux / otherCVE-2026-19153 Insufficient validation of untrusted input in Workers
CVE-2026-19152NormalOther / general WindowsLinux / otherCVE-2026-19152 Inappropriate implementation in Navigation
CVE-2026-19155NormalOther / general WindowsLinux / otherCVE-2026-19155 Use after free in Payments
CVE-2026-19158NormalOther / general WindowsLinux / otherCVE-2026-19158 Use after free in Views
CVE-2026-19157NormalOther / general WindowsLinux / otherCVE-2026-19157 Out of bounds write in ANGLE
CVE-2026-19156NormalOther / general WindowsLinux / otherCVE-2026-19156 Heap buffer overflow in Base
CVE-2026-19150NormalOther / general WindowsLinux / otherCVE-2026-19150 Inappropriate implementation in V8
CVE-2026-19161NormalOther / general WindowsLinux / otherCVE-2026-19161 Uninitialized Use in Skia
CVE-2026-19162NormalOther / general WindowsLinux / otherCVE-2026-19162 Out of bounds write in V8
CVE-2026-19160NormalOther / general WindowsLinux / otherCVE-2026-19160 Uninitialized Use in Skia
CVE-2026-19163NormalOther / general WindowsLinux / otherCVE-2026-19163 Use after free in Media
CVE-2026-19159NormalOther / general WindowsLinux / otherCVE-2026-19159 Use after free in Views
CVE-2026-19164NormalOther / general WindowsLinux / otherCVE-2026-19164 Insufficient validation of untrusted input in Codecs
CVE-2026-19165NormalOther / general WindowsLinux / otherCVE-2026-19165 Use after free in Extensions
CVE-2026-19167NormalOther / general WindowsLinux / otherCVE-2026-19167 Integer overflow in GPU
CVE-2026-19166NormalOther / general WindowsLinux / otherCVE-2026-19166 Use after free in Web Authentication
CVE-2026-19170NormalOther / general WindowsLinux / otherCVE-2026-19170 Use after free in WebGL
CVE-2026-19169NormalOther / general WindowsLinux / otherCVE-2026-19169 Insufficient validation of untrusted input in Contextual Tasks
CVE-2026-19173NormalOther / general WindowsLinux / otherCVE-2026-19173 Out of bounds write in Skia
CVE-2026-19172NormalOther / general WindowsLinux / otherCVE-2026-19172 Use after free in Views
CVE-2026-19168NormalOther / general WindowsLinux / otherCVE-2026-19168 Inappropriate implementation in V8
CVE-2026-19174NormalOther / general WindowsLinux / otherCVE-2026-19174 Integer overflow in V8
CVE-2026-19176NormalOther / general WindowsLinux / otherCVE-2026-19176 Use after free in Skia
CVE-2026-19171NormalOther / general WindowsLinux / otherCVE-2026-19171 Use after free in Media
CVE-2026-19175NormalOther / general WindowsLinux / otherCVE-2026-19175 Use after free in Payments
CVE-2026-19177NormalOther / general WindowsLinux / otherCVE-2026-19177 Insufficient validation of untrusted input in UI
CVE-2024-26464NormalOther / general WindowsLinux / other
CVE-2024-31745NormalOther / general WindowsLinux / other
CVE-2026-19025NormalModerateOther / general WindowsLinux / otherHDF5 divide-by-zero (SIGFPE) via mismatched chunk-layout dimensionality and dataspace rank on dataset open
CVE-2026-19027NormalModerateOther / general WindowsLinux / otherHDF5 out-of-bounds heap read in N-Bit filter decompression
CVE-2026-19026NormalModerateOther / general WindowsLinux / otherNbit filter NULL/short parameter-array dereference
CVE-2026-19024NormalImportantOther / general WindowsLinux / otherHDF5 H5Pget_fill_value NULL Pointer Dereference via Malformed Fill Value Message
CVE-2026-67319NormalModerateOther / general WindowsLinux / otheraxios before 0.33.0 Prototype Pollution via nested option objects
CVE-2026-69248NormalModerateNetwork / infra serversLinux / otherpython-cryptography verifier accepts wildcard DNS names allowing escape from permittedSubtrees
CVE-2026-64653NormalModerateOther / general WindowsLinux / otherGitHub CLI: Unescaped variable components in request URLs could allow path traversal
CVE-2026-66486NormalModerateOther / general WindowsLinux / otherImproper Output Encoding in GNU cpio
CVE-2026-66484NormalModerateOther / general WindowsLinux / otherPath Traversal in GNU cpio
CVE-2026-68413NormalOther / general WindowsLinux / otherwifi: ipw2100: fix potential memory leak in ipw2100_pci_init_one()
CVE-2026-68428NormalOther / general WindowsLinux / otherKVM: x86/mmu: Fix use-after-free on vendor module reload
CVE-2026-64654NormalModerateOther / general WindowsLinux / otherGitHub CLI: Terminal escape sequence injection in multiple `gh` commands
CVE-2026-19023NormalLowOther / general WindowsLinux / otherHDF5 h5dump Untrusted Pointer Dereference in Binary Output of Variable-Length String Datasets
CVE-2026-19028NormalModerateOther / general WindowsLinux / otherHDF5 integer underflow in Fletcher32 filter leads to massive out-of-bounds read
CVE-2026-69249NormalImportantOther / general WindowsLinux / otherpython-cryptography: Duplicate self-signed intermediates can cause exponential path-building
CVE-2026-64655NormalOther / general WindowsLinux / otherGitHub CLI: Attestation Verification Bypass via Unescaped Regex Metacharacters in SAN Matching
CVE-2026-66485NormalModerateOther / general WindowsLinux / otherUncontrolled Memory Allocation in GNU cpio
CVE-2026-68398NormalOther / general WindowsLinux / otherppp: defer channel free to an RCU grace period to fix pppol2tp RX UAF