Every CVE in this month's Microsoft Security Update document, ranked by composite priority. Search by CVE, product, or owner; filter by status or source; click a column to sort. 970 Microsoft-authored, 24 Edge/Chromium and 192 Linux/other that patch via their own vendor.
113 rated Critical (Microsoft) and 6 rated Critical (everything else). The status filter below spans the whole document, so its Critical count is the combined 119.
| CVE | Status | CVSS | Severity | Impact | Owner | Source | Title |
|---|---|---|---|---|---|---|---|
| CVE-2026-81963 | Exploited | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Update Stack Elevation of Privilege Vulnerability |
| CVE-2026-85880 | Exploited | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Advanced Local Procedure Call (ALPC) Elevation of Privilege Vulnerability |
| CVE-2026-85046 | Exploited | — | — | — | Browser (Edge auto-update) | Edge / Chromium | Chromium: CVE-2026-85046 Type confusion in V8 |
| CVE-2026-69730 | Critical worm | 9.8 | Critical | Remote Code Execution | Network / infra servers | Microsoft | Windows DNS Server Remote Code Execution Vulnerability |
| CVE-2026-69854 | Critical worm | 9.0 | Critical | Elevation of Privilege | Cloud / M365 apps | Microsoft | Spring Cloud Azure Elevation of Privilege Vulnerability |
| CVE-2026-69769 | Critical worm | 9.8 | Critical | Remote Code Execution | Other / general Windows | Microsoft | Windows HTTP Print Provider Remote Code Execution Vulnerability |
| CVE-2026-69829 | Critical worm | 9.8 | Critical | Remote Code Execution | Other / general Windows | Microsoft | Windows Shell Remote Code Execution Vulnerability |
| CVE-2026-72982 | Critical worm | 9.8 | Critical | Remote Code Execution | Identity / AD | Microsoft | Windows Netlogon Remote Code Execution Vulnerability |
| CVE-2026-72983 | Critical worm | 9.8 | Critical | Remote Code Execution | Other / general Windows | Microsoft | Internet Connection Sharing (ICS) Remote Code Execution Vulnerability |
| CVE-2026-73009 | Critical worm | 9.8 | Critical | Remote Code Execution | Other / general Windows | Microsoft | Windows Secure Socket Tunneling Protocol (SSTP) Remote Code Execution Vulnerability |
| CVE-2026-73010 | Critical worm | 9.8 | Critical | Remote Code Execution | Other / general Windows | Microsoft | Microsoft Failover Cluster Remote Code Execution Vulnerability |
| CVE-2026-77493 | Critical worm | 9.8 | Critical | Remote Code Execution | Other / general Windows | Microsoft | Windows Graphics Component Remote Code Execution Vulnerability |
| CVE-2026-70352 | Critical worm | 10.0 | Critical | Elevation of Privilege | Cloud / M365 apps | Microsoft | Azure AI Language Elevation of Privilege Vulnerability |
| CVE-2026-83711 | Critical worm | 10.0 | Critical | Elevation of Privilege | Identity / AD | Microsoft | Microsoft Azure Active Directory B2C Elevation of Privilege Vulnerability |
| CVE-2026-66302 | Critical worm | 9.8 | Critical | Remote Code Execution | Other / general Windows | Microsoft | Skype for Business Remote Code Execution Vulnerability |
| CVE-2026-69579 | Critical worm | 9.8 | Critical | Remote Code Execution | Other / general Windows | Microsoft | Windows Message Queuing Remote Code Execution Vulnerability |
| CVE-2026-69590 | Critical worm | 9.8 | Critical | Remote Code Execution | Network / infra servers | Microsoft | Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability |
| CVE-2026-69595 | Critical worm | 9.8 | Critical | Remote Code Execution | Endpoints / Windows client | Microsoft | Windows Services for NFS ONCRPC XDR Driver Remote Code Execution Vulnerability |
| CVE-2026-69845 | Critical worm | 9.8 | Critical | Remote Code Execution | Network / infra servers | Microsoft | Windows DHCP Server Remote Code Execution Vulnerability |
| CVE-2026-70296 | Critical worm | 9.8 | Critical | Remote Code Execution | Other / general Windows | Microsoft | Windows Imaging Component Remote Code Execution Vulnerability |
| CVE-2026-72979 | Critical worm | 9.8 | Critical | Remote Code Execution | Network / infra servers | Microsoft | Windows DHCP Server Remote Code Execution Vulnerability |
| CVE-2026-78445 | Critical worm | 9.8 | Critical | Remote Code Execution | Endpoints / Windows client | Microsoft | Windows Services for NFS ONCRPC XDR Driver Remote Code Execution Vulnerability |
| CVE-2026-78509 | Critical worm | 9.8 | Critical | Remote Code Execution | Office / productivity | Microsoft | Microsoft Office Outlook Remote Code Execution Vulnerability |
| CVE-2026-78510 | Critical worm | 9.8 | Critical | Remote Code Execution | Office / productivity | Microsoft | Microsoft Word Remote Code Execution Vulnerability |
| CVE-2026-80098 | Critical worm | 9.3 | Critical | Elevation of Privilege | Cloud / M365 apps | Microsoft | Copilot Studio Elevation of Privilege Vulnerability |
| CVE-2026-62916 | Critical worm | 9.1 | Critical | Elevation of Privilege | Other / general Windows | Microsoft | Microsoft Entra ID Elevation of Privilege Vulnerability |
| CVE-2026-69676 | Critical | 8.8 | Critical | Remote Code Execution | Identity / AD | Microsoft | Windows Kerberos Remote Code Execution Vulnerability |
| CVE-2026-72987 | Critical worm | 8.1 | Critical | Remote Code Execution | Network / infra servers | Microsoft | Windows DNS Remote Code Execution Vulnerability |
| CVE-2026-69857 | Critical | 8.5 | Critical | Spoofing | Cloud / M365 apps | Microsoft | Azure Cosmos DB Spoofing Vulnerability |
| CVE-2026-69530 | Critical worm | 8.1 | Critical | Remote Code Execution | Endpoints / Windows client | Microsoft | Windows Reliable Multicast Transport Driver (RMCAST) Remote Code Execution Vulnerability |
| CVE-2026-69813 | Critical worm | 8.1 | Critical | Remote Code Execution | Network / infra servers | Microsoft | Windows DNS Server Remote Code Execution Vulnerability |
| CVE-2026-69827 | Critical worm | 8.1 | Critical | Remote Code Execution | Network / infra servers | Microsoft | Windows DNS Server Remote Code Execution Vulnerability |
| CVE-2026-69858 | Critical worm | 8.1 | Critical | Remote Code Execution | Network / infra servers | Microsoft | Windows DNS Server Remote Code Execution Vulnerability |
| CVE-2026-72981 | Critical worm | 8.1 | Critical | Remote Code Execution | Other / general Windows | Microsoft | IP Helper Remote Code Execution Vulnerability |
| CVE-2026-77505 | Critical worm | 8.1 | Critical | Remote Code Execution | Network / infra servers | Microsoft | Windows DNS Server Remote Code Execution Vulnerability |
| CVE-2026-78444 | Critical worm | 8.1 | Critical | Remote Code Execution | Other / general Windows | Microsoft | Microsoft Failover Cluster Remote Code Execution Vulnerability |
| CVE-2026-78449 | Critical worm | 8.1 | Critical | Remote Code Execution | Endpoints / Windows client | Microsoft | Windows Reliable Multicast Transport Driver (RMCAST) Remote Code Execution Vulnerability |
| CVE-2026-78450 | Critical worm | 8.1 | Critical | Remote Code Execution | Endpoints / Windows client | Microsoft | Windows Reliable Multicast Transport Driver (RMCAST) Remote Code Execution Vulnerability |
| CVE-2026-69852 | Critical | 7.5 | Critical | Remote Code Execution | Network / infra servers | Microsoft | Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability |
| CVE-2026-83941 | Critical | 9.9 | Critical | Elevation of Privilege | Other / general Windows | Microsoft | Entra ID Elevation of Privilege Vulnerability |
| CVE-2026-65669 | Critical | 9.6 | Critical | Elevation of Privilege | Database / SQL | Microsoft | Microsoft SQL Server Elevation of Privilege Vulnerability |
| CVE-2026-69712 | Critical | 8.8 | Critical | Remote Code Execution | Other / general Windows | Microsoft | Windows Key Distribution Center Remote Code Execution Vulnerability |
| CVE-2026-65772 | Critical | 8.8 | Critical | Remote Code Execution | Cloud / M365 apps | Microsoft | Microsoft Dynamics 365 On-Premises Remote Code Execution Vulnerability |
| CVE-2026-67631 | Critical | 8.8 | Critical | Remote Code Execution | Database / SQL | Microsoft | Microsoft SQL Server Remote Code Execution Vulnerability |
| CVE-2026-67643 | Critical | 8.8 | Critical | Remote Code Execution | Database / SQL | Microsoft | Microsoft SQL Server Remote Code Execution Vulnerability |
| CVE-2026-69285 | Critical | 8.8 | Critical | Remote Code Execution | Office / productivity | Microsoft | Microsoft Office Remote Code Execution Vulnerability |
| CVE-2026-69499 | Critical | 8.8 | Critical | Remote Code Execution | Other / general Windows | Microsoft | Windows Imaging Component Remote Code Execution Vulnerability |
| CVE-2026-69518 | Critical | 8.8 | Critical | Remote Code Execution | Remote access / RDP | Microsoft | Windows Remote Desktop Remote Code Execution Vulnerability |
| CVE-2026-69601 | Critical | 8.8 | Critical | Remote Code Execution | Other / general Windows | Microsoft | Microsoft Windows Media Foundation Remote Code Execution Vulnerability |
| CVE-2026-69632 | Critical | 8.8 | Critical | Remote Code Execution | Office / productivity | Microsoft | Microsoft Office Remote Code Execution Vulnerability |
| CVE-2026-69649 | Critical | 8.8 | Critical | Remote Code Execution | Other / general Windows | Microsoft | Raw Image Extension Remote Code Execution Vulnerability |
| CVE-2026-69678 | Critical | 8.8 | Critical | Remote Code Execution | Office / productivity | Microsoft | Microsoft Office PowerPoint Remote Code Execution Vulnerability |
| CVE-2026-69767 | Critical | 8.8 | Critical | Remote Code Execution | Office / productivity | Microsoft | Microsoft Office PowerPoint Remote Code Execution Vulnerability |
| CVE-2026-69797 | Critical | 8.8 | Critical | Remote Code Execution | Office / productivity | Microsoft | Microsoft Office PowerPoint Remote Code Execution Vulnerability |
| CVE-2026-69860 | Critical | 8.8 | Critical | Remote Code Execution | Other / general Windows | Microsoft | Windows Imaging Component Remote Code Execution Vulnerability |
| CVE-2026-70203 | Critical | 8.8 | Critical | Remote Code Execution | Other / general Windows | Microsoft | Windows Media Player Remote Code Execution Vulnerability |
| CVE-2026-70351 | Critical | 8.8 | Critical | Remote Code Execution | Other / general Windows | Microsoft | Microsoft WebP Image Extension Remote Code Execution Vulnerability |
| CVE-2026-70586 | Critical | 8.8 | Critical | Remote Code Execution | Other / general Windows | Microsoft | Windows Paint Remote Code Execution Vulnerability |
| CVE-2026-72950 | Critical | 8.8 | Critical | Remote Code Execution | Network / infra servers | Microsoft | Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability |
| CVE-2026-72959 | Critical | 8.8 | Critical | Remote Code Execution | Network / infra servers | Microsoft | Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability |
| CVE-2026-72960 | Critical | 8.8 | Critical | Remote Code Execution | Other / general Windows | Microsoft | Windows Media Player Remote Code Execution Vulnerability |
| CVE-2026-72986 | Critical | 8.8 | Critical | Remote Code Execution | Other / general Windows | Microsoft | Graphic Fonts Remote Code Execution Vulnerability |
| CVE-2026-73006 | Critical | 8.8 | Critical | Remote Code Execution | Other / general Windows | Microsoft | DirectWrite Remote Code Execution Vulnerability |
| CVE-2026-73013 | Critical | 8.8 | Critical | Remote Code Execution | Other / general Windows | Microsoft | Windows Imaging Component Remote Code Execution Vulnerability |
| CVE-2026-73018 | Critical | 8.8 | Critical | Remote Code Execution | Other / general Windows | Microsoft | Graphic Fonts Remote Code Execution Vulnerability |
| CVE-2026-73023 | Critical | 8.8 | Critical | Remote Code Execution | Other / general Windows | Microsoft | Windows Imaging Component Remote Code Execution Vulnerability |
| CVE-2026-77495 | Critical | 8.8 | Critical | Remote Code Execution | Other / general Windows | Microsoft | Windows Imaging Component Remote Code Execution Vulnerability |
| CVE-2026-77504 | Critical | 8.8 | Critical | Remote Code Execution | Office / productivity | Microsoft | Microsoft Office Word Remote Code Execution Vulnerability |
| CVE-2026-78439 | Critical | 8.8 | Critical | Remote Code Execution | Office / productivity | Microsoft | Microsoft Office Graphics Component Remote Code Execution Vulnerability |
| CVE-2026-78505 | Critical | 8.8 | Critical | Remote Code Execution | Office / productivity | Microsoft | Microsoft Office Remote Code Execution Vulnerability |
| CVE-2026-78525 | Critical | 8.8 | Critical | Remote Code Execution | Office / productivity | Microsoft | Microsoft Office Outlook Remote Code Execution Vulnerability |
| CVE-2026-81352 | Critical | 8.8 | Critical | Remote Code Execution | Other / general Windows | Microsoft | Web Media Extensions Remote Code Execution Vulnerability |
| CVE-2026-81952 | Critical | 8.8 | Critical | Remote Code Execution | Office / productivity | Microsoft | Microsoft Word Remote Code Execution Vulnerability |
| CVE-2026-81955 | Critical | 8.8 | Critical | Remote Code Execution | Other / general Windows | Microsoft | Windows Graphics Component Remote Code Execution Vulnerability |
| CVE-2026-72957 | Critical | 7.8 | Critical | Remote Code Execution | Other / general Windows | Microsoft | Windows Deployment Services Remote Code Execution Vulnerability |
| CVE-2026-65818 | Critical | 8.5 | Critical | Elevation of Privilege | Other / general Windows | Microsoft | Power Automate Elevation of Privilege Vulnerability |
| CVE-2026-67378 | Critical | 8.5 | Critical | Remote Code Execution | Database / SQL | Microsoft | Microsoft SQL Server Remote Code Execution Vulnerability |
| CVE-2026-67636 | Critical | 8.5 | Critical | Remote Code Execution | Database / SQL | Microsoft | Microsoft SQL Server Remote Code Execution Vulnerability |
| CVE-2026-70178 | Critical | 8.5 | Critical | Elevation of Privilege | Other / general Windows | Microsoft | Microsoft Fabric Elevation of Privilege Vulnerability |
| CVE-2026-70585 | Critical | 7.0 | Critical | Remote Code Execution | Endpoints / Windows client | Microsoft | Windows Services for NFS ONCRPC XDR Driver Remote Code Execution Vulnerability |
| CVE-2026-72954 | Critical | 7.5 | Critical | Remote Code Execution | Other / general Windows | Microsoft | Windows Deployment Services Remote Code Execution Vulnerability |
| CVE-2026-77898 | Critical | 7.5 | Critical | Remote Code Execution | Office / productivity | Microsoft | Microsoft Office Remote Code Execution Vulnerability |
| CVE-2026-62906 | Critical | 7.4 | Critical | Information Disclosure | Other / general Windows | Microsoft | Microsoft Discovery Studio Information Disclosure Vulnerability |
| CVE-2026-69603 | Critical | 8.8 | Critical | Remote Code Execution | Virtualization / Hyper-V | Microsoft | Windows Hyper-V Remote Code Execution Vulnerability |
| CVE-2026-69740 | Critical | 8.8 | Critical | Elevation of Privilege | Other / general Windows | Microsoft | Windows Hello Elevation of Privilege Vulnerability |
| CVE-2026-69784 | Critical | 8.8 | Critical | Elevation of Privilege | Other / general Windows | Microsoft | Windows Hello Elevation of Privilege Vulnerability |
| CVE-2026-80083 | Critical | 8.8 | Critical | Remote Code Execution | Virtualization / Hyper-V | Microsoft | Windows Hyper-V Remote Code Execution Vulnerability |
| CVE-2026-69820 | Critical | 8.2 | Critical | Elevation of Privilege | Other / general Windows | Microsoft | Windows Hello Elevation of Privilege Vulnerability |
| CVE-2026-69846 | Critical | 8.2 | Critical | Elevation of Privilege | Other / general Windows | Microsoft | Windows Secure Kernel Mode Elevation of Privilege Vulnerability |
| CVE-2026-69874 | Critical | 8.2 | Critical | Elevation of Privilege | Other / general Windows | Microsoft | Windows ALPC Elevation of Privilege Vulnerability |
| CVE-2026-69906 | Critical | 8.2 | Critical | Elevation of Privilege | Other / general Windows | Microsoft | Windows Secure Kernel Mode Elevation of Privilege Vulnerability |
| CVE-2026-72958 | Critical | 8.2 | Critical | Elevation of Privilege | Other / general Windows | Microsoft | Windows Credential Guard Elevation of Privilege Vulnerability |
| CVE-2026-72961 | Critical | 8.2 | Critical | Elevation of Privilege | Virtualization / Hyper-V | Microsoft | Windows Hyper-V Elevation of Privilege Vulnerability |
| CVE-2026-72962 | Critical | 8.2 | Critical | Elevation of Privilege | Endpoints / Windows client | Microsoft | Windows USB Video Driver Elevation of Privilege Vulnerability |
| CVE-2026-81354 | Critical | 8.2 | Critical | Elevation of Privilege | Other / general Windows | Microsoft | Windows Hello Elevation of Privilege Vulnerability |
| CVE-2026-83939 | Critical | 8.2 | Critical | Elevation of Privilege | Other / general Windows | Microsoft | Windows Secure Kernel Mode Elevation of Privilege Vulnerability |
| CVE-2026-78520 | Critical | 6.5 | Critical | Remote Code Execution | Office / productivity | Microsoft | Microsoft Office Outlook Information Disclosure Vulnerability |
| CVE-2026-83501 | Critical | 5.5 | Critical | Information Disclosure | Virtualization / Hyper-V | Microsoft | Windows Virtualization-Based Security (VBS) Information Disclosure Vulnerability |
| CVE-2026-58599 | Critical | 7.8 | Critical | Remote Code Execution | Other / general Windows | Microsoft | HEVC Video Extensions Remote Code Execution Vulnerability |
| CVE-2026-69725 | Critical | 7.8 | Critical | Elevation of Privilege | Other / general Windows | Microsoft | Windows Hello Elevation of Privilege Vulnerability |
| CVE-2026-69799 | Critical | 7.8 | Critical | Elevation of Privilege | Other / general Windows | Microsoft | Windows Hello Elevation of Privilege Vulnerability |
| CVE-2026-69864 | Critical | 7.8 | Critical | Elevation of Privilege | Other / general Windows | Microsoft | Windows Hello Elevation of Privilege Vulnerability |
| CVE-2026-81948 | Critical | 7.8 | Critical | Remote Code Execution | Office / productivity | Microsoft | Microsoft Excel Remote Code Execution Vulnerability |
| CVE-2026-81949 | Critical | 7.8 | Critical | Remote Code Execution | Office / productivity | Microsoft | Microsoft Excel Remote Code Execution Vulnerability |
| CVE-2026-81950 | Critical | 7.8 | Critical | Remote Code Execution | Office / productivity | Microsoft | Microsoft Excel Remote Code Execution Vulnerability |
| CVE-2026-81951 | Critical | 7.8 | Critical | Remote Code Execution | Office / productivity | Microsoft | Microsoft Excel Remote Code Execution Vulnerability |
| CVE-2026-81953 | Critical | 7.8 | Critical | Remote Code Execution | Office / productivity | Microsoft | Microsoft Excel Remote Code Execution Vulnerability |
| CVE-2026-81959 | Critical | 7.8 | Critical | Remote Code Execution | Office / productivity | Microsoft | Microsoft Excel Remote Code Execution Vulnerability |
| CVE-2026-83498 | Critical | 7.8 | Critical | Elevation of Privilege | Virtualization / Hyper-V | Microsoft | Windows Virtualization-Based Security (VBS) Enclave Elevation of Privilege Vulnerability |
| CVE-2026-69710 | Critical | 7.5 | Critical | Elevation of Privilege | Other / general Windows | Microsoft | Windows Hello Elevation of Privilege Vulnerability |
| CVE-2026-69890 | Critical | 7.5 | Critical | Elevation of Privilege | Other / general Windows | Microsoft | Windows Virtual Trusted Platform Module Elevation of Privilege Vulnerability |
| CVE-2026-73017 | Critical | 7.5 | Critical | Remote Code Execution | Other / general Windows | Microsoft | Graphics Kernel Remote Code Execution Vulnerability |
| CVE-2026-81355 | Critical | 7.5 | Critical | Remote Code Execution | Endpoints / Windows client | Microsoft | Virtual Hard Disk (VHD) Miniport Driver Remote Code Execution Vulnerability |
| CVE-2026-69501 | Critical | 7.0 | Critical | Elevation of Privilege | Other / general Windows | Microsoft | Windows Secure Kernel Mode Elevation of Privilege Vulnerability |
| CVE-2026-85504 | Critical worm | 9.8 | Critical | — | Other / general Windows | Linux / other | FreeIPMI before 1.6.19 has a stack-based buffer overflow in _ipmi_sel_oem_fujitsu_get_sel_entry_long_text in libfreeipmi/sel/ipmi-sel-string-fujitsu-irmc-common.c via malformed Fujitsu SEL long-text responses. |
| CVE-2026-85506 | Critical worm | 9.8 | Critical | — | Other / general Windows | Linux / other | ipmi-oem in FreeIPMI before 1.6.19 has a stack-based buffer overflow in _get_dell_system_info_idrac_info in ipmi-oem/ipmi-oem-dell.c (idrac-info subcommand to dell get-system-info). |
| CVE-2026-85507 | Critical worm | 9.8 | Critical | — | Other / general Windows | Linux / other | ipmi-oem in FreeIPMI before 1.6.19 has a stack-based buffer overflow in _output_dell_system_info_cmc_info in ipmi-oem/ipmi-oem-dell.c (cmc-info subcommand to dell get-system-info). |
| CVE-2026-85508 | Critical worm | 9.8 | Critical | — | Other / general Windows | Linux / other | ipmi-oem in FreeIPMI before 1.6.19 has a stack-based buffer overflow in _output_dell_system_info_cmc_ipv6_info in ipmi-oem/ipmi-oem-dell.c (cmc-ipv6-info subcommand to dell get-system-info). |
| CVE-2026-85509 | Critical worm | 9.8 | Critical | — | Other / general Windows | Linux / other | FreeIPMI before 1.6.19 has a stack-based buffer overflow in _read_fru_data in libfreeipmi/fru/ipmi-fru.c when a BMC returns more bytes than requested. |
| CVE-2026-34182 | Critical worm | 9.1 | Critical | — | Other / general Windows | Linux / other | CMS AuthEnvelopedData Processing May Accept Forged Messages |
| CVE-2026-72980 | Critical | 4.4 | Critical | Security Feature Bypass | Other / general Windows | Microsoft | Windows Hello Security Feature Bypass Vulnerability |
| CVE-2026-78519 | Critical | — | Critical | Remote Code Execution | Office / productivity | Microsoft | Microsoft Office Outlook Remote Code Execution Vulnerability |
| CVE-2026-69525 | Normal worm | 9.8 | Important | Remote Code Execution | Remote access / RDP | Microsoft | Remote Desktop Services Remote Code Execution Vulnerability |
| CVE-2026-70342 | Normal worm | 8.1 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability |
| CVE-2026-72936 | Normal worm | 8.1 | Important | Remote Code Execution | Network / infra servers | Microsoft | Windows SMB Client Remote Code Execution Vulnerability |
| CVE-2026-69408 | Normal worm | 9.8 | Important | Remote Code Execution | Other / general Windows | Microsoft | Microsoft Windows Media Foundation Remote Code Execution Vulnerability |
| CVE-2026-69431 | Normal worm | 9.8 | Important | Remote Code Execution | Other / general Windows | Microsoft | Telnet Client Remote Code Execution Vulnerability |
| CVE-2026-69463 | Normal worm | 9.8 | Important | Remote Code Execution | Endpoints / Windows client | Microsoft | Windows NTFS Remote Code Execution Vulnerability |
| CVE-2026-69715 | Normal worm | 9.8 | Important | Remote Code Execution | Other / general Windows | Microsoft | Windows Direct Show Remote Code Execution Vulnerability |
| CVE-2026-73025 | Normal worm | 9.8 | Important | Security Feature Bypass | Other / general Windows | Microsoft | Windows iSCSI Security Feature Bypass Vulnerability |
| CVE-2026-68839 | Normal worm | 9.8 | Important | Remote Code Execution | Endpoints / Windows client | Microsoft | Windows USB Mass Storage Class Driver Remote Code Execution Vulnerability |
| CVE-2026-69276 | Normal worm | 9.8 | Important | Remote Code Execution | Other / general Windows | Microsoft | Microsoft UxTheme Library (uxtheme.dll) Remote Code Execution Vulnerability |
| CVE-2026-69491 | Normal worm | 9.8 | Important | Remote Code Execution | Other / general Windows | Microsoft | Microsoft DirectMusic Remote Code Execution Vulnerability |
| CVE-2026-69493 | Normal worm | 9.8 | Important | Remote Code Execution | Other / general Windows | Microsoft | Windows Event Logging Service Remote Code Execution Vulnerability |
| CVE-2026-69496 | Normal worm | 9.8 | Important | Remote Code Execution | Other / general Windows | Microsoft | Windows Compressed Folder Remote Code Execution Vulnerability |
| CVE-2026-69586 | Normal worm | 9.8 | Important | Remote Code Execution | Other / general Windows | Microsoft | Microsoft Windows PDF Remote Code Execution Vulnerability |
| CVE-2026-69768 | Normal worm | 9.8 | Important | Remote Code Execution | Other / general Windows | Microsoft | Windows RNDIS Remote Code Execution Vulnerability |
| CVE-2026-69819 | Normal worm | 9.8 | Important | Remote Code Execution | Other / general Windows | Microsoft | RPC Runtime Library Remote Code Execution Vulnerability |
| CVE-2026-69824 | Normal worm | 9.8 | Important | Remote Code Execution | Other / general Windows | Microsoft | Microsoft Standard XPS Remote Code Execution Vulnerability |
| CVE-2026-69910 | Normal worm | 9.8 | Important | Remote Code Execution | Virtualization / Hyper-V | Microsoft | Windows Hyper-V Remote Code Execution Vulnerability |
| CVE-2026-72940 | Normal | 8.8 | Important | Remote Code Execution | Other / general Windows | Microsoft | Windows Schannel Remote Code Execution Vulnerability |
| CVE-2026-68876 | Normal | 8.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Program Compatibility Assistant Service Elevation of Privilege Vulnerability |
| CVE-2026-68880 | Normal | 8.0 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | Windows Win32k Elevation of Privilege Vulnerability |
| CVE-2026-69301 | Normal | 8.0 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | Windows Win32k Elevation of Privilege Vulnerability |
| CVE-2026-69623 | Normal | 8.0 | Important | Remote Code Execution | Other / general Windows | Microsoft | Windows HTTP Print Provider Remote Code Execution Vulnerability |
| CVE-2026-69714 | Normal | 8.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Device Association Service Elevation of Privilege Vulnerability |
| CVE-2026-47297 | Normal worm | 8.1 | Important | Remote Code Execution | Database / SQL | Microsoft | Microsoft SQL Server Remote Code Execution Vulnerability |
| CVE-2026-55007 | Normal worm | 8.1 | Important | Remote Code Execution | Exchange / mail | Microsoft | Microsoft Exchange Server Remote Code Execution Vulnerability |
| CVE-2026-69325 | Normal worm | 8.1 | Important | Remote Code Execution | Other / general Windows | Microsoft | Microsoft JScript Remote Code Execution Vulnerability |
| CVE-2026-69438 | Normal worm | 8.1 | Important | Remote Code Execution | Other / general Windows | Microsoft | Microsoft JScript Remote Code Execution Vulnerability |
| CVE-2026-69510 | Normal worm | 8.1 | Important | Remote Code Execution | Network / infra servers | Microsoft | Windows DHCP Server Remote Code Execution Vulnerability |
| CVE-2026-69524 | Normal worm | 8.1 | Important | Remote Code Execution | Identity / AD | Microsoft | Windows Active Directory Domain Services Remote Code Execution Vulnerability |
| CVE-2026-69546 | Normal worm | 8.1 | Important | Remote Code Execution | Identity / AD | Microsoft | Windows Active Directory Domain Services Remote Code Execution Vulnerability |
| CVE-2026-69620 | Normal worm | 8.1 | Important | Remote Code Execution | Network / infra servers | Microsoft | Windows DHCP Server Remote Code Execution Vulnerability |
| CVE-2026-69680 | Normal worm | 8.1 | Important | Spoofing | Network / infra servers | Microsoft | Windows DNS Spoofing Vulnerability |
| CVE-2026-69732 | Normal worm | 8.1 | Important | Remote Code Execution | Other / general Windows | Microsoft | Windows Link Layer Topology Discovery Protocol Remote Code Execution Vulnerability |
| CVE-2026-69782 | Normal worm | 8.1 | Important | Remote Code Execution | Network / infra servers | Microsoft | Windows DNS Server Remote Code Execution Vulnerability |
| CVE-2026-69786 | Normal worm | 8.1 | Important | Remote Code Execution | Other / general Windows | Microsoft | Windows Text Shaping Remote Code Execution Vulnerability |
| CVE-2026-69989 | Normal worm | 8.1 | Important | Remote Code Execution | Network / infra servers | Microsoft | Windows DNS Server Remote Code Execution Vulnerability |
| CVE-2026-83997 | Normal worm | 8.1 | Important | Remote Code Execution | Other / general Windows | Microsoft | Windows Message Queuing Remote Code Execution Vulnerability |
| CVE-2026-57098 | Normal worm | 7.5 | Important | Information Disclosure | Remote access / RDP | Microsoft | Microsoft Remote Desktop App for Windows Information Disclosure Vulnerability |
| CVE-2026-57099 | Normal worm | 7.5 | Important | Denial of Service | Other / general Windows | Microsoft | ASP.NET Core Denial of Service Vulnerability |
| CVE-2026-66304 | Normal worm | 7.5 | Important | Information Disclosure | Other / general Windows | Microsoft | Skype for Business Information Disclosure Vulnerability |
| CVE-2026-66307 | Normal worm | 7.5 | Important | Denial of Service | Other / general Windows | Microsoft | Skype for Business and Lync Denial of Service Vulnerability |
| CVE-2026-67376 | Normal worm | 7.5 | Important | Denial of Service | Database / SQL | Microsoft | Microsoft SQL Server Denial of Service Vulnerability |
| CVE-2026-68887 | Normal worm | 7.5 | Important | Denial of Service | Other / general Windows | Microsoft | Windows Message Queuing Queue Manager Denial of Service Vulnerability |
| CVE-2026-69329 | Normal worm | 7.5 | Important | Denial of Service | Other / general Windows | Microsoft | BranchCache Denial of Service Vulnerability |
| CVE-2026-69342 | Normal worm | 7.5 | Important | Denial of Service | Network / infra servers | Microsoft | Windows DHCP Server Denial of Service Vulnerability |
| CVE-2026-69378 | Normal worm | 7.5 | Important | Denial of Service | Exchange / mail | Microsoft | Microsoft Exchange Server Denial of Service Vulnerability |
| CVE-2026-69428 | Normal worm | 7.5 | Important | Denial of Service | Identity / AD | Microsoft | Windows LDAP - Lightweight Directory Access Protocol Denial of Service Vulnerability |
| CVE-2026-69443 | Normal worm | 7.5 | Important | Information Disclosure | Other / general Windows | Microsoft | Windows Device Health Attestation (DHA) Information Disclosure Vulnerability |
| CVE-2026-69587 | Normal worm | 7.5 | Important | Denial of Service | Exchange / mail | Microsoft | Windows Internet Key Exchange (IKE) Extension Denial of Service Vulnerability |
| CVE-2026-69588 | Normal worm | 7.5 | Important | Denial of Service | Network / infra servers | Microsoft | Windows TCP/IP Denial of Service Vulnerability |
| CVE-2026-69631 | Normal worm | 7.5 | Important | Denial of Service | Network / infra servers | Microsoft | Windows DNS Denial of Service Vulnerability |
| CVE-2026-69744 | Normal worm | 7.5 | Important | Denial of Service | Identity / AD | Microsoft | Windows Kerberos Denial of Service Vulnerability |
| CVE-2026-69760 | Normal worm | 7.5 | Important | Denial of Service | Identity / AD | Microsoft | Windows Kerberos Denial of Service Vulnerability |
| CVE-2026-69793 | Normal worm | 7.5 | Important | Security Feature Bypass | Network / infra servers | Microsoft | Windows TCP/IP Security Feature Bypass Vulnerability |
| CVE-2026-69809 | Normal worm | 7.5 | Important | Denial of Service | Identity / AD | Microsoft | Windows Active Directory Domain Services Denial of Service Vulnerability |
| CVE-2026-69881 | Normal worm | 7.5 | Important | Denial of Service | Exchange / mail | Microsoft | Windows Internet Key Exchange (IKE) Extension Denial of Service Vulnerability |
| CVE-2026-70065 | Normal worm | 7.5 | Important | Denial of Service | Network / infra servers | Microsoft | Windows DHCP Server Denial of Service Vulnerability |
| CVE-2026-70579 | Normal worm | 7.5 | Important | Information Disclosure | Other / general Windows | Microsoft | Windows Mobile Broadband Information Disclosure Vulnerability |
| CVE-2026-70587 | Normal worm | 7.5 | Important | Information Disclosure | Remote access / RDP | Microsoft | Windows Remote Desktop Protocol Information Disclosure Vulnerability |
| CVE-2026-71330 | Normal worm | 7.5 | Important | Information Disclosure | Endpoints / Windows client | Microsoft | Windows Services for NFS ONCRPC XDR Driver Information Disclosure Vulnerability |
| CVE-2026-72932 | Normal worm | 7.5 | Important | Information Disclosure | Other / general Windows | Microsoft | Windows Message Queuing Queue Manager Information Disclosure Vulnerability |
| CVE-2026-72949 | Normal worm | 7.5 | Important | Denial of Service | Network / infra servers | Microsoft | Windows SMB Server Network Transport Driver (srvnet.sys) Denial of Service Vulnerability |
| CVE-2026-72989 | Normal worm | 7.5 | Important | Information Disclosure | Other / general Windows | Microsoft | Windows Failover Cluster Information Disclosure Vulnerability |
| CVE-2026-77494 | Normal worm | 7.5 | Important | Denial of Service | Network / infra servers | Microsoft | Windows DHCP Server Denial of Service Vulnerability |
| CVE-2026-77498 | Normal worm | 7.5 | Important | Denial of Service | Network / infra servers | Microsoft | Windows DHCP Server Denial of Service Vulnerability |
| CVE-2026-77499 | Normal worm | 7.5 | Important | Denial of Service | Network / infra servers | Microsoft | Windows DHCP Server Denial of Service Vulnerability |
| CVE-2026-77501 | Normal worm | 7.5 | Important | Denial of Service | Network / infra servers | Microsoft | Windows DHCP Server Denial of Service Vulnerability |
| CVE-2026-77502 | Normal worm | 7.5 | Important | Denial of Service | Network / infra servers | Microsoft | Windows DHCP Server Denial of Service Vulnerability |
| CVE-2026-77886 | Normal worm | 7.5 | Important | Denial of Service | Network / infra servers | Microsoft | Windows DHCP Server Denial of Service Vulnerability |
| CVE-2026-77888 | Normal worm | 7.5 | Important | Denial of Service | Network / infra servers | Microsoft | Windows DHCP Server Denial of Service Vulnerability |
| CVE-2026-77889 | Normal worm | 7.5 | Important | Denial of Service | Network / infra servers | Microsoft | Windows DHCP Server Denial of Service Vulnerability |
| CVE-2026-77890 | Normal worm | 7.5 | Important | Denial of Service | Network / infra servers | Microsoft | Windows DHCP Server Denial of Service Vulnerability |
| CVE-2026-77893 | Normal worm | 7.5 | Important | Denial of Service | Network / infra servers | Microsoft | Windows DHCP Server Denial of Service Vulnerability |
| CVE-2026-77895 | Normal worm | 7.5 | Important | Denial of Service | Network / infra servers | Microsoft | Windows DHCP Server Denial of Service Vulnerability |
| CVE-2026-83989 | Normal worm | 7.5 | Important | Denial of Service | Endpoints / Windows client | Microsoft | Windows Services for NFS ONCRPC XDR Driver Denial of Service Vulnerability |
| CVE-2026-84001 | Normal worm | 7.5 | Important | Denial of Service | Other / general Windows | Microsoft | Windows Key Distribution Center Denial of Service Vulnerability |
| CVE-2026-18329 | Normal worm | 8.2 | Moderate | — | Other / general Windows | Microsoft | NGINX ngx_http_js_module vulnerability |
| CVE-2026-84003 | Normal worm | 7.4 | Important | Spoofing | Other / general Windows | Microsoft | Microsoft Authentication Library (MSAL) for Node.js Spoofing Vulnerability |
| CVE-2026-81376 | Normal | 9.6 | Important | Security Feature Bypass | Other / general Windows | Microsoft | Visual Studio Code Security Feature Bypass Vulnerability |
| CVE-2026-68846 | Normal | 7.1 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | Windows Kernel Elevation of Privilege Vulnerability |
| CVE-2026-69274 | Normal | 7.1 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | Windows Win32k Elevation of Privilege Vulnerability |
| CVE-2026-69305 | Normal | 7.1 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Microsoft Windows Search Component Elevation of Privilege Vulnerability |
| CVE-2026-69337 | Normal | 7.1 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Registry Elevation of Privilege Vulnerability |
| CVE-2026-69364 | Normal | 7.1 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Print Spooler Components Elevation of Privilege Vulnerability |
| CVE-2026-69366 | Normal | 7.1 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | Windows Kernel Elevation of Privilege Vulnerability |
| CVE-2026-69451 | Normal | 7.1 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Management Instrumentation Elevation of Privilege Vulnerability |
| CVE-2026-69460 | Normal | 7.1 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Modern Device Management (MDM) Elevation of Privilege Vulnerability |
| CVE-2026-69757 | Normal | 7.1 | Important | Elevation of Privilege | Network / infra servers | Microsoft | Windows TCP/IP Elevation of Privilege Vulnerability |
| CVE-2026-69356 | Normal | 9.3 | Important | Spoofing | Exchange / mail | Microsoft | Microsoft Exchange Server Spoofing Vulnerability |
| CVE-2026-69641 | Normal | 9.1 | Important | Elevation of Privilege | Exchange / mail | Microsoft | Microsoft Exchange Server Elevation of Privilege Vulnerability |
| CVE-2026-69777 | Normal | 8.0 | Important | Elevation of Privilege | Network / infra servers | Microsoft | Windows DHCP Client Elevation of Privilege Vulnerability |
| CVE-2026-78222 | Normal worm | 7.5 | Moderate | — | Other / general Windows | Microsoft | NGINX ngx_http_js_module vulnerability |
| CVE-2026-62706 | Normal | 8.8 | Important | Remote Code Execution | Other / general Windows | Microsoft | Microsoft Windows Media Foundation Remote Code Execution Vulnerability |
| CVE-2026-62744 | Normal | 8.8 | Important | Remote Code Execution | Other / general Windows | Microsoft | Microsoft Windows Media Foundation Remote Code Execution Vulnerability |
| CVE-2026-62895 | Normal | 8.8 | Important | Elevation of Privilege | Database / SQL | Microsoft | Azure Arc SQL Server Extension Elevation of Privilege Vulnerability |
| CVE-2026-66814 | Normal | 8.8 | Important | Elevation of Privilege | Database / SQL | Microsoft | Microsoft SQL Server Elevation of Privilege Vulnerability |
| CVE-2026-66818 | Normal | 8.8 | Important | Elevation of Privilege | Database / SQL | Microsoft | Microsoft SQL Server Elevation of Privilege Vulnerability |
| CVE-2026-66819 | Normal | 8.8 | Important | Elevation of Privilege | Database / SQL | Microsoft | Microsoft SQL Server Elevation of Privilege Vulnerability |
| CVE-2026-66820 | Normal | 8.8 | Important | Elevation of Privilege | Database / SQL | Microsoft | SQL Server Elevation of Privilege Vulnerability |
| CVE-2026-67368 | Normal | 8.8 | Important | Elevation of Privilege | Database / SQL | Microsoft | Microsoft SQL Server Elevation of Privilege Vulnerability |
| CVE-2026-67370 | Normal | 8.8 | Important | Elevation of Privilege | Database / SQL | Microsoft | Microsoft SQL Server Elevation of Privilege Vulnerability |
| CVE-2026-67373 | Normal | 8.8 | Important | Remote Code Execution | Database / SQL | Microsoft | Microsoft SQL Server Remote Code Execution Vulnerability |
| CVE-2026-67380 | Normal | 8.8 | Important | Remote Code Execution | Database / SQL | Microsoft | Microsoft SQL Server Remote Code Execution Vulnerability |
| CVE-2026-67381 | Normal | 8.8 | Important | Elevation of Privilege | Database / SQL | Microsoft | Microsoft SQL Server Elevation of Privilege Vulnerability |
| CVE-2026-67384 | Normal | 8.8 | Important | Remote Code Execution | Database / SQL | Microsoft | Microsoft SQL Server Remote Code Execution Vulnerability |
| CVE-2026-67385 | Normal | 8.8 | Important | Remote Code Execution | Database / SQL | Microsoft | Microsoft SQL Server Remote Code Execution Vulnerability |
| CVE-2026-67388 | Normal | 8.8 | Important | Remote Code Execution | Database / SQL | Microsoft | Microsoft SQL Server Remote Code Execution Vulnerability |
| CVE-2026-67638 | Normal | 8.8 | Important | Remote Code Execution | Database / SQL | Microsoft | Microsoft SQL Server Remote Code Execution Vulnerability |
| CVE-2026-67639 | Normal | 8.8 | Important | Remote Code Execution | Database / SQL | Microsoft | Microsoft SQL Server Remote Code Execution Vulnerability |
| CVE-2026-67642 | Normal | 8.8 | Important | Remote Code Execution | Database / SQL | Microsoft | Microsoft SQL Server Remote Code Execution Vulnerability |
| CVE-2026-68775 | Normal | 8.8 | Important | Remote Code Execution | Database / SQL | Microsoft | Microsoft SQL Server Remote Code Execution Vulnerability |
| CVE-2026-68786 | Normal | 8.8 | Important | Remote Code Execution | Database / SQL | Microsoft | Microsoft SQL Server Remote Code Execution Vulnerability |
| CVE-2026-68828 | Normal | 8.8 | Important | Remote Code Execution | Remote access / RDP | Microsoft | Remote Desktop Client Remote Code Execution Vulnerability |
| CVE-2026-69266 | Normal | 8.8 | Important | Remote Code Execution | Network / infra servers | Microsoft | Windows DHCP Server Remote Code Execution Vulnerability |
| CVE-2026-69268 | Normal | 8.8 | Important | Remote Code Execution | SharePoint owners | Microsoft | Microsoft Office SharePoint Remote Code Execution Vulnerability |
| CVE-2026-69273 | Normal | 8.8 | Important | Remote Code Execution | SharePoint owners | Microsoft | Microsoft Office SharePoint Remote Code Execution Vulnerability |
| CVE-2026-69282 | Normal | 8.8 | Important | Remote Code Execution | SharePoint owners | Microsoft | Microsoft Office SharePoint Remote Code Execution Vulnerability |
| CVE-2026-69291 | Normal | 8.8 | Important | Remote Code Execution | Endpoints / Windows client | Microsoft | Windows Volume Manager Extension Driver Remote Code Execution Vulnerability |
| CVE-2026-69334 | Normal | 8.8 | Important | Remote Code Execution | Endpoints / Windows client | Microsoft | Windows Volume Manager Extension Driver Remote Code Execution Vulnerability |
| CVE-2026-69355 | Normal | 8.8 | Important | Remote Code Execution | Exchange / mail | Microsoft | Microsoft Exchange Server Remote Code Execution Vulnerability |
| CVE-2026-69360 | Normal | 8.8 | Important | Remote Code Execution | Office / productivity | Microsoft | Microsoft Office Word Remote Code Execution Vulnerability |
| CVE-2026-69386 | Normal | 8.8 | Important | Remote Code Execution | Other / general Windows | Microsoft | Microsoft Windows Media Foundation Remote Code Execution Vulnerability |
| CVE-2026-69434 | Normal | 8.8 | Important | Remote Code Execution | Other / general Windows | Microsoft | Windows URL Moniker Remote Code Execution Vulnerability |
| CVE-2026-69439 | Normal | 8.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | .NET and Visual Studio Elevation of Privilege Vulnerability |
| CVE-2026-69442 | Normal | 8.8 | Important | Remote Code Execution | Office / productivity | Microsoft | Microsoft Office Remote Code Execution Vulnerability |
| CVE-2026-69461 | Normal | 8.8 | Important | Remote Code Execution | Endpoints / Windows client | Microsoft | Windows NTFS Remote Code Execution Vulnerability |
| CVE-2026-69464 | Normal | 8.8 | Important | Elevation of Privilege | SharePoint owners | Microsoft | Microsoft Office SharePoint Elevation of Privilege Vulnerability |
| CVE-2026-69465 | Normal | 8.8 | Important | Remote Code Execution | SharePoint owners | Microsoft | Microsoft Office SharePoint Remote Code Execution Vulnerability |
| CVE-2026-69485 | Normal | 8.8 | Important | Remote Code Execution | Remote access / RDP | Microsoft | Remote Desktop Client Remote Code Execution Vulnerability |
| CVE-2026-69494 | Normal | 8.8 | Important | Remote Code Execution | Other / general Windows | Microsoft | Windows Event Logging Service Remote Code Execution Vulnerability |
| CVE-2026-69495 | Normal | 8.8 | Important | Remote Code Execution | Other / general Windows | Microsoft | Windows Event Logging Service Remote Code Execution Vulnerability |
| CVE-2026-69511 | Normal | 8.8 | Important | Remote Code Execution | Other / general Windows | Microsoft | Microsoft Windows Media Foundation Remote Code Execution Vulnerability |
| CVE-2026-69522 | Normal | 8.8 | Important | Remote Code Execution | Other / general Windows | Microsoft | .NET and Visual Studio Remote Code Execution Vulnerability |
| CVE-2026-69529 | Normal | 8.8 | Important | Remote Code Execution | Office / productivity | Microsoft | Microsoft Office Access Remote Code Execution Vulnerability |
| CVE-2026-69547 | Normal | 8.8 | Important | Remote Code Execution | Network / infra servers | Microsoft | Windows DHCP Server Remote Code Execution Vulnerability |
| CVE-2026-69551 | Normal | 8.8 | Important | Remote Code Execution | Network / infra servers | Microsoft | Windows DNS Server Remote Code Execution Vulnerability |
| CVE-2026-69556 | Normal | 8.8 | Important | Remote Code Execution | Office / productivity | Microsoft | Microsoft Office Word Remote Code Execution Vulnerability |
| CVE-2026-69598 | Normal | 8.8 | Important | Remote Code Execution | Other / general Windows | Microsoft | Windows iSCSI Remote Code Execution Vulnerability |
| CVE-2026-69614 | Normal | 8.8 | Important | Remote Code Execution | Office / productivity | Microsoft | Microsoft Office Access Remote Code Execution Vulnerability |
| CVE-2026-69628 | Normal | 8.8 | Important | Remote Code Execution | Other / general Windows | Microsoft | Windows iSCSI Remote Code Execution Vulnerability |
| CVE-2026-69629 | Normal | 8.8 | Important | Remote Code Execution | Office / productivity | Microsoft | Microsoft Office Outlook Remote Code Execution Vulnerability |
| CVE-2026-69669 | Normal | 8.8 | Important | Remote Code Execution | Endpoints / Windows client | Microsoft | Windows Kernel Remote Code Execution Vulnerability |
| CVE-2026-69671 | Normal | 8.8 | Important | Remote Code Execution | Office / productivity | Microsoft | Microsoft Office Word Remote Code Execution Vulnerability |
| CVE-2026-69686 | Normal | 8.8 | Important | Remote Code Execution | Office / productivity | Microsoft | Microsoft Office Word Remote Code Execution Vulnerability |
| CVE-2026-69716 | Normal | 8.8 | Important | Elevation of Privilege | SharePoint owners | Microsoft | Microsoft Office SharePoint Elevation of Privilege Vulnerability |
| CVE-2026-69722 | Normal | 8.8 | Important | Remote Code Execution | Office / productivity | Microsoft | Microsoft Office Word Remote Code Execution Vulnerability |
| CVE-2026-69724 | Normal | 8.8 | Important | Remote Code Execution | SharePoint owners | Microsoft | Microsoft Office SharePoint Remote Code Execution Vulnerability |
| CVE-2026-69729 | Normal | 8.8 | Important | Remote Code Execution | Other / general Windows | Microsoft | Windows Credential Providers Remote Code Execution Vulnerability |
| CVE-2026-69742 | Normal | 8.8 | Important | Remote Code Execution | Office / productivity | Microsoft | Microsoft Office Publisher Remote Code Execution Vulnerability |
| CVE-2026-69759 | Normal | 8.8 | Important | Remote Code Execution | Office / productivity | Microsoft | Microsoft Office Word Remote Code Execution Vulnerability |
| CVE-2026-69764 | Normal | 8.8 | Important | Remote Code Execution | Office / productivity | Microsoft | Microsoft Office Word Remote Code Execution Vulnerability |
| CVE-2026-69772 | Normal | 8.8 | Important | Remote Code Execution | Network / infra servers | Microsoft | Windows Network File System Remote Code Execution Vulnerability |
| CVE-2026-69778 | Normal | 8.8 | Important | Remote Code Execution | Office / productivity | Microsoft | Microsoft Office Access Remote Code Execution Vulnerability |
| CVE-2026-71328 | Normal | 8.8 | Important | Remote Code Execution | Other / general Windows | Microsoft | .NET and Visual Studio Remote Code Execution Vulnerability |
| CVE-2026-71336 | Normal | 8.8 | Important | Remote Code Execution | Other / general Windows | Microsoft | Windows Work Folder Service Remote Code Execution Vulnerability |
| CVE-2026-71352 | Normal | 8.8 | Important | Remote Code Execution | Other / general Windows | Microsoft | Windows Remote Access Connection Manager Remote Code Execution Vulnerability |
| CVE-2026-72933 | Normal | 8.8 | Important | Remote Code Execution | Other / general Windows | Microsoft | Microsoft WDAC OLE DB provider for SQL Remote Code Execution Vulnerability |
| CVE-2026-72972 | Normal | 8.8 | Important | Remote Code Execution | Office / productivity | Microsoft | Microsoft Office Word Remote Code Execution Vulnerability |
| CVE-2026-72973 | Normal | 8.8 | Important | Remote Code Execution | Office / productivity | Microsoft | Microsoft Office Word Remote Code Execution Vulnerability |
| CVE-2026-73012 | Normal | 8.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Management Services Elevation of Privilege Vulnerability |
| CVE-2026-73016 | Normal | 8.8 | Important | Remote Code Execution | Other / general Windows | Microsoft | DirectWrite Remote Code Execution Vulnerability |
| CVE-2026-73028 | Normal | 8.8 | Important | Elevation of Privilege | Database / SQL | Microsoft | SQL Server Elevation of Privilege Vulnerability |
| CVE-2026-77480 | Normal | 8.8 | Important | Elevation of Privilege | Database / SQL | Microsoft | SQL Server Elevation of Privilege Vulnerability |
| CVE-2026-77481 | Normal | 8.8 | Important | Remote Code Execution | Database / SQL | Microsoft | Microsoft SQL Server Remote Code Execution Vulnerability |
| CVE-2026-77482 | Normal | 8.8 | Important | Remote Code Execution | Database / SQL | Microsoft | Microsoft SQL Server Remote Code Execution Vulnerability |
| CVE-2026-77483 | Normal | 8.8 | Important | Elevation of Privilege | Database / SQL | Microsoft | SQL Server Elevation of Privilege Vulnerability |
| CVE-2026-77484 | Normal | 8.8 | Important | Remote Code Execution | Database / SQL | Microsoft | Microsoft SQL Server Remote Code Execution Vulnerability |
| CVE-2026-77486 | Normal | 8.8 | Important | Remote Code Execution | Database / SQL | Microsoft | Microsoft SQL Server Remote Code Execution Vulnerability |
| CVE-2026-77487 | Normal | 8.8 | Important | Elevation of Privilege | Database / SQL | Microsoft | SQL Server Elevation of Privilege Vulnerability |
| CVE-2026-77901 | Normal | 8.8 | Important | Remote Code Execution | Office / productivity | Microsoft | Microsoft Office Word Remote Code Execution Vulnerability |
| CVE-2026-77906 | Normal | 8.8 | Important | Remote Code Execution | Other / general Windows | Microsoft | Visual Studio Remote Code Execution Vulnerability |
| CVE-2026-77907 | Normal | 8.8 | Important | Remote Code Execution | Other / general Windows | Microsoft | Visual Studio Remote Code Execution Vulnerability |
| CVE-2026-77908 | Normal | 8.8 | Important | Remote Code Execution | Cloud / M365 apps | Microsoft | Microsoft Dynamics 365 On-Premises Remote Code Execution Vulnerability |
| CVE-2026-78442 | Normal | 8.8 | Important | Remote Code Execution | Other / general Windows | Microsoft | Windows OLE DB Remote Code Execution Vulnerability |
| CVE-2026-78456 | Normal | 8.8 | Important | Remote Code Execution | Database / SQL | Microsoft | SQL Server Remote Code Execution Vulnerability |
| CVE-2026-78462 | Normal | 8.8 | Important | Security Feature Bypass | Other / general Windows | Microsoft | Visual Studio Code Security Feature Bypass Vulnerability |
| CVE-2026-78463 | Normal | 8.8 | Important | Remote Code Execution | Remote access / RDP | Microsoft | Remote Desktop Client Remote Code Execution Vulnerability |
| CVE-2026-78504 | Normal | 8.8 | Important | Remote Code Execution | Office / productivity | Microsoft | Microsoft Office Word Remote Code Execution Vulnerability |
| CVE-2026-78507 | Normal | 8.8 | Important | Remote Code Execution | Office / productivity | Microsoft | Microsoft Office Word Remote Code Execution Vulnerability |
| CVE-2026-78511 | Normal | 8.8 | Important | Remote Code Execution | Office / productivity | Microsoft | Microsoft Office Word Remote Code Execution Vulnerability |
| CVE-2026-78512 | Normal | 8.8 | Important | Remote Code Execution | Office / productivity | Microsoft | Microsoft Office Word Remote Code Execution Vulnerability |
| CVE-2026-78514 | Normal | 8.8 | Important | Remote Code Execution | Office / productivity | Microsoft | Microsoft Office Word Remote Code Execution Vulnerability |
| CVE-2026-78517 | Normal | 8.8 | Important | Remote Code Execution | Office / productivity | Microsoft | Microsoft Office Word Remote Code Execution Vulnerability |
| CVE-2026-78518 | Normal | 8.8 | Important | Remote Code Execution | Office / productivity | Microsoft | Microsoft Office Excel Remote Code Execution Vulnerability |
| CVE-2026-78521 | Normal | 8.8 | Important | Remote Code Execution | Office / productivity | Microsoft | Microsoft Office Word Remote Code Execution Vulnerability |
| CVE-2026-78524 | Normal | 8.8 | Important | Remote Code Execution | Office / productivity | Microsoft | Microsoft Office Remote Code Execution Vulnerability |
| CVE-2026-78526 | Normal | 8.8 | Important | Remote Code Execution | Office / productivity | Microsoft | Microsoft Office Word Remote Code Execution Vulnerability |
| CVE-2026-80074 | Normal | 8.8 | Important | Remote Code Execution | Remote access / RDP | Microsoft | Remote Desktop Client Remote Code Execution Vulnerability |
| CVE-2026-80077 | Normal | 8.8 | Important | Remote Code Execution | Remote access / RDP | Microsoft | Remote Desktop Client Remote Code Execution Vulnerability |
| CVE-2026-80080 | Normal | 8.8 | Important | Remote Code Execution | Office / productivity | Microsoft | Microsoft Office Word Remote Code Execution Vulnerability |
| CVE-2026-80085 | Normal | 8.8 | Important | Remote Code Execution | Office / productivity | Microsoft | Microsoft Office Word Remote Code Execution Vulnerability |
| CVE-2026-80096 | Normal | 8.8 | Important | Elevation of Privilege | Remote access / RDP | Microsoft | Windows Remote Desktop Services Elevation of Privilege Vulnerability |
| CVE-2026-81385 | Normal | 8.8 | Important | Remote Code Execution | Office / productivity | Microsoft | Microsoft Office Publisher Remote Code Execution Vulnerability |
| CVE-2026-83992 | Normal | 8.8 | Important | Remote Code Execution | Other / general Windows | Microsoft | Windows Imaging Component Remote Code Execution Vulnerability |
| CVE-2026-83998 | Normal | 8.8 | Important | Remote Code Execution | Remote access / RDP | Microsoft | Remote Desktop Client Remote Code Execution Vulnerability |
| CVE-2026-85877 | Normal | 8.8 | Important | Remote Code Execution | Other / general Windows | Microsoft | Windows Print Spooler Remote Code Execution Vulnerability |
| CVE-2026-69277 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Microsoft Local Security Authority (LSA) Server Elevation of Privilege Vulnerability |
| CVE-2026-69391 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Broker Infrastructure Service Elevation of Privilege Vulnerability |
| CVE-2026-69436 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Error Reporting Elevation of Privilege Vulnerability |
| CVE-2026-69450 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Error Reporting Elevation of Privilege Vulnerability |
| CVE-2026-69459 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Power Dependency Coordinator Elevation of Privilege Vulnerability |
| CVE-2026-69467 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Microsoft Graphics Component Elevation of Privilege Vulnerability |
| CVE-2026-69478 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Device Association Service Elevation of Privilege Vulnerability |
| CVE-2026-69585 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Microsoft Windows Search Component Elevation of Privilege Vulnerability |
| CVE-2026-69921 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Print Spooler Components Elevation of Privilege Vulnerability |
| CVE-2026-70289 | Normal | 7.8 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | Windows Win32k Elevation of Privilege Vulnerability |
| CVE-2026-70583 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Core Messaging Elevation of Privilege Vulnerability |
| CVE-2026-71343 | Normal | 7.8 | Important | Remote Code Execution | Other / general Windows | Microsoft | Windows Remote Access Connection Manager Remote Code Execution Vulnerability |
| CVE-2026-77500 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Device Association Service Elevation of Privilege Vulnerability |
| CVE-2026-69642 | Normal worm | 6.5 | Important | Spoofing | Other / general Windows | Microsoft | Skype for Business Spoofing Vulnerability |
| CVE-2026-67379 | Normal | 8.5 | Important | Remote Code Execution | Database / SQL | Microsoft | Microsoft SQL Server Remote Code Execution Vulnerability |
| CVE-2026-81356 | Normal | 8.2 | Important | Security Feature Bypass | Other / general Windows | Microsoft | Visual Studio Code Security Feature Bypass Vulnerability |
| CVE-2026-81357 | Normal | 8.2 | Important | Security Feature Bypass | Other / general Windows | Microsoft | Visual Studio Code Security Feature Bypass Vulnerability |
| CVE-2026-81378 | Normal | 8.2 | Important | Security Feature Bypass | Other / general Windows | Microsoft | Visual Studio Code Security Feature Bypass Vulnerability |
| CVE-2026-81379 | Normal | 8.2 | Important | Security Feature Bypass | Other / general Windows | Microsoft | Visual Studio Code Security Feature Bypass Vulnerability |
| CVE-2026-69723 | Normal | 5.7 | Important | Information Disclosure | Endpoints / Windows client | Microsoft | Windows Kernel Information Disclosure Vulnerability |
| CVE-2026-69304 | Normal worm | 5.9 | Important | Denial of Service | Other / general Windows | Microsoft | ASP.NET Core Denial of Service Vulnerability |
| CVE-2026-69382 | Normal worm | 5.9 | Important | Information Disclosure | Exchange / mail | Microsoft | Microsoft Exchange Server Information Disclosure Vulnerability |
| CVE-2026-69803 | Normal worm | 5.9 | Important | Information Disclosure | Network / infra servers | Microsoft | Windows DHCP Server Information Disclosure Vulnerability |
| CVE-2026-69929 | Normal worm | 5.9 | Important | Information Disclosure | Network / infra servers | Microsoft | Windows DHCP Server Information Disclosure Vulnerability |
| CVE-2026-69930 | Normal worm | 5.9 | Important | Information Disclosure | Network / infra servers | Microsoft | Windows DHCP Server Information Disclosure Vulnerability |
| CVE-2026-70091 | Normal worm | 5.9 | Important | Denial of Service | Network / infra servers | Microsoft | Windows DNS Denial of Service Vulnerability |
| CVE-2026-70124 | Normal worm | 5.9 | Important | Information Disclosure | Network / infra servers | Microsoft | Windows DHCP Server Information Disclosure Vulnerability |
| CVE-2026-72978 | Normal worm | 5.9 | Important | Denial of Service | Identity / AD | Microsoft | Active Directory Federation Services (AD FS) Denial of Service Vulnerability |
| CVE-2026-78523 | Normal worm | 5.9 | Important | Denial of Service | Network / infra servers | Microsoft | Windows DNS Server Denial of Service Vulnerability |
| CVE-2026-69380 | Normal | 8.1 | Important | Elevation of Privilege | Exchange / mail | Microsoft | Microsoft Exchange Server Elevation of Privilege Vulnerability |
| CVE-2026-70563 | Normal | 8.1 | Important | Spoofing | Other / general Windows | Microsoft | Windows Shell Spoofing Vulnerability |
| CVE-2026-68827 | Normal | 8.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows GDI+ Elevation of Privilege Vulnerability |
| CVE-2026-68834 | Normal | 8.0 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | Windows NTFS Elevation of Privilege Vulnerability |
| CVE-2026-68838 | Normal | 8.0 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | Windows NTFS Elevation of Privilege Vulnerability |
| CVE-2026-68878 | Normal | 8.0 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | Windows Fast FAT Driver Elevation of Privilege Vulnerability |
| CVE-2026-68894 | Normal | 8.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Error Reporting Elevation of Privilege Vulnerability |
| CVE-2026-69271 | Normal | 8.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Microsoft Standard XPS Elevation of Privilege Vulnerability |
| CVE-2026-69322 | Normal | 8.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Microsoft Windows Search Component Elevation of Privilege Vulnerability |
| CVE-2026-69332 | Normal | 8.0 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | Windows NTFS Elevation of Privilege Vulnerability |
| CVE-2026-69346 | Normal | 8.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Print Spooler Components Elevation of Privilege Vulnerability |
| CVE-2026-69365 | Normal | 8.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Microsoft Local Security Authority (LSA) Server Elevation of Privilege Vulnerability |
| CVE-2026-69371 | Normal | 8.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Overlay Filter Elevation of Privilege Vulnerability |
| CVE-2026-69418 | Normal | 8.0 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | Volume Manager Driver Elevation of Privilege Vulnerability |
| CVE-2026-69423 | Normal | 8.0 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | Windows USB Video Driver Elevation of Privilege Vulnerability |
| CVE-2026-69427 | Normal | 8.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Microsoft VOLSNAP.SYS Elevation of Privilege Vulnerability |
| CVE-2026-69458 | Normal | 8.0 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | Windows BitLocker Elevation of Privilege Vulnerability |
| CVE-2026-69462 | Normal | 8.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Error Reporting Elevation of Privilege Vulnerability |
| CVE-2026-69481 | Normal | 8.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Enterprise App Management Elevation of Privilege Vulnerability |
| CVE-2026-69503 | Normal | 8.0 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | Windows USB Driver Elevation of Privilege Vulnerability |
| CVE-2026-69505 | Normal | 8.0 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | Windows NTFS Elevation of Privilege Vulnerability |
| CVE-2026-69512 | Normal | 8.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Spaceport.sys Elevation of Privilege Vulnerability |
| CVE-2026-69619 | Normal | 8.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows exFAT File System Elevation of Privilege Vulnerability |
| CVE-2026-69625 | Normal | 8.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Connected User Experiences and Telemetry Elevation of Privilege Vulnerability |
| CVE-2026-69643 | Normal | 8.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Spaceport.sys Elevation of Privilege Vulnerability |
| CVE-2026-69689 | Normal | 8.0 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | Windows Win32k Elevation of Privilege Vulnerability |
| CVE-2026-69717 | Normal | 8.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Group Policy Elevation of Privilege Vulnerability |
| CVE-2026-69727 | Normal | 8.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-69762 | Normal | 8.0 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | Windows Win32k Elevation of Privilege Vulnerability |
| CVE-2026-69773 | Normal | 8.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-69807 | Normal | 8.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | PowerShell Elevation of Privilege Vulnerability |
| CVE-2026-69826 | Normal | 8.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-69875 | Normal | 8.0 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | Windows NTFS Elevation of Privilege Vulnerability |
| CVE-2026-83948 | Normal | 8.0 | Important | Remote Code Execution | Cloud / M365 apps | Microsoft | Microsoft Azure CLI Remote Code Execution Vulnerability |
| CVE-2026-68884 | Normal | 7.0 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | Windows Kernel Elevation of Privilege Vulnerability |
| CVE-2026-69310 | Normal | 7.0 | Important | Elevation of Privilege | Network / infra servers | Microsoft | Windows DNS Elevation of Privilege Vulnerability |
| CVE-2026-69385 | Normal | 7.0 | Important | Elevation of Privilege | Network / infra servers | Microsoft | Windows TCP/IP Elevation of Privilege Vulnerability |
| CVE-2026-69466 | Normal | 7.0 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | Windows Kernel Elevation of Privilege Vulnerability |
| CVE-2026-69473 | Normal | 7.0 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | Windows Kernel Elevation of Privilege Vulnerability |
| CVE-2026-69498 | Normal | 7.0 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | Windows Win32k Elevation of Privilege Vulnerability |
| CVE-2026-69600 | Normal | 7.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Microsoft Windows Search Component Elevation of Privilege Vulnerability |
| CVE-2026-69605 | Normal | 7.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Microsoft Install Service Elevation of Privilege Vulnerability |
| CVE-2026-69779 | Normal | 7.0 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | Windows Win32k Elevation of Privilege Vulnerability |
| CVE-2026-69911 | Normal | 7.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Microsoft Windows Search Component Elevation of Privilege Vulnerability |
| CVE-2026-70562 | Normal | 7.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Audio Service Elevation of Privilege Vulnerability |
| CVE-2026-71340 | Normal | 7.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows File History Service Elevation of Privilege Vulnerability |
| CVE-2026-80093 | Normal | 7.0 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability |
| CVE-2026-77909 | Normal | 7.7 | Important | Information Disclosure | Cloud / M365 apps | Microsoft | Azure CycleCloud Information Disclosure Vulnerability |
| CVE-2026-62813 | Normal | 7.5 | Important | Remote Code Execution | Identity / AD | Microsoft | Windows Active Directory Domain Services Remote Code Execution Vulnerability |
| CVE-2026-69397 | Normal | 7.5 | Important | Remote Code Execution | Other / general Windows | Microsoft | Microsoft OpenSSH for Windows Remote Code Execution Vulnerability |
| CVE-2026-69429 | Normal | 7.5 | Important | Remote Code Execution | Exchange / mail | Microsoft | Windows Internet Key Exchange (IKE) Protocol Extensions Remote Code Execution Vulnerability |
| CVE-2026-69514 | Normal | 7.5 | Important | Remote Code Execution | Remote access / RDP | Microsoft | Remote Desktop Services Remote Code Execution Vulnerability |
| CVE-2026-69539 | Normal | 7.5 | Important | Remote Code Execution | Remote access / RDP | Microsoft | Remote Desktop Services Remote Code Execution Vulnerability |
| CVE-2026-69599 | Normal | 7.5 | Important | Remote Code Execution | Remote access / RDP | Microsoft | Remote Desktop Services Remote Code Execution Vulnerability |
| CVE-2026-69607 | Normal | 7.5 | Important | Remote Code Execution | Other / general Windows | Microsoft | Windows Deployment Services Remote Code Execution Vulnerability |
| CVE-2026-69804 | Normal | 7.5 | Important | Remote Code Execution | SharePoint owners | Microsoft | Microsoft Office SharePoint Remote Code Execution Vulnerability |
| CVE-2026-69805 | Normal | 7.5 | Important | Elevation of Privilege | Other / general Windows | Microsoft | .NET Elevation of Privilege Vulnerability |
| CVE-2026-72928 | Normal | 7.5 | Important | Remote Code Execution | Network / infra servers | Microsoft | Windows DNS Server Remote Code Execution Vulnerability |
| CVE-2026-72943 | Normal | 7.5 | Important | Remote Code Execution | Other / general Windows | Microsoft | Windows Deployment Services Remote Code Execution Vulnerability |
| CVE-2026-78461 | Normal | 7.4 | Important | Security Feature Bypass | Other / general Windows | Microsoft | Visual Studio Code Security Feature Bypass Vulnerability |
| CVE-2026-81383 | Normal | 7.4 | Important | Information Disclosure | Other / general Windows | Microsoft | Visual Studio Code Information Disclosure Vulnerability |
| CVE-2026-83996 | Normal | 8.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Error Reporting Elevation of Privilege Vulnerability |
| CVE-2026-69402 | Normal | 7.3 | Important | Spoofing | SharePoint owners | Microsoft | Microsoft Office SharePoint Spoofing Vulnerability |
| CVE-2026-69417 | Normal | 7.3 | Important | Spoofing | SharePoint owners | Microsoft | Microsoft Office SharePoint Spoofing Vulnerability |
| CVE-2026-81349 | Normal | 7.2 | Important | Elevation of Privilege | Cloud / M365 apps | Microsoft | Azure HDInsight Ambari Elevation of Privilege Vulnerability |
| CVE-2026-80097 | Normal | 8.6 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Microsoft Authenticator Elevation of Privilege Vulnerability |
| CVE-2026-66305 | Normal | 7.1 | Important | Spoofing | Other / general Windows | Microsoft | Skype for Business Spoofing Vulnerability |
| CVE-2026-68835 | Normal | 7.1 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Print Spooler Components Elevation of Privilege Vulnerability |
| CVE-2026-68889 | Normal | 7.1 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Microsoft Standard XPS Elevation of Privilege Vulnerability |
| CVE-2026-68893 | Normal | 7.1 | Important | Elevation of Privilege | Remote access / RDP | Microsoft | Remote Desktop Licensing Service Elevation of Privilege Vulnerability |
| CVE-2026-69272 | Normal | 7.1 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Microsoft Standard XPS Elevation of Privilege Vulnerability |
| CVE-2026-69296 | Normal | 7.1 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Device Association Service Elevation of Privilege Vulnerability |
| CVE-2026-69313 | Normal | 7.1 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Microsoft Standard XPS Elevation of Privilege Vulnerability |
| CVE-2026-69314 | Normal | 7.1 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Device Association Broker Service Elevation of Privilege Vulnerability |
| CVE-2026-69336 | Normal | 7.1 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Microsoft Standard XPS Elevation of Privilege Vulnerability |
| CVE-2026-69338 | Normal | 7.1 | Important | Elevation of Privilege | Remote access / RDP | Microsoft | Remote Desktop Gateway Service Elevation of Privilege Vulnerability |
| CVE-2026-69340 | Normal | 7.1 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | Windows NTFS Elevation of Privilege Vulnerability |
| CVE-2026-69357 | Normal | 7.1 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows NDIS Elevation of Privilege Vulnerability |
| CVE-2026-69358 | Normal | 7.1 | Important | Remote Code Execution | Remote access / RDP | Microsoft | Remote Desktop Client Remote Code Execution Vulnerability |
| CVE-2026-69396 | Normal | 7.1 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows NDIS Elevation of Privilege Vulnerability |
| CVE-2026-69536 | Normal | 7.1 | Important | Remote Code Execution | Remote access / RDP | Microsoft | Remote Desktop Services Remote Code Execution Vulnerability |
| CVE-2026-69553 | Normal | 7.1 | Important | Elevation of Privilege | Virtualization / Hyper-V | Microsoft | Windows Hyper-V Elevation of Privilege Vulnerability |
| CVE-2026-69597 | Normal | 7.1 | Important | Elevation of Privilege | Network / infra servers | Microsoft | Windows HTTP.sys Elevation of Privilege Vulnerability |
| CVE-2026-69602 | Normal | 7.1 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows PrintWorkflowUserSvc Elevation of Privilege Vulnerability |
| CVE-2026-69688 | Normal | 7.1 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Encrypting File System (EFS) Elevation of Privilege Vulnerability |
| CVE-2026-69706 | Normal | 7.1 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | Windows Win32k Elevation of Privilege Vulnerability |
| CVE-2026-69761 | Normal | 7.1 | Important | Elevation of Privilege | Network / infra servers | Microsoft | Windows TCP/IP Elevation of Privilege Vulnerability |
| CVE-2026-69775 | Normal | 7.1 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows DWM Core Library Elevation of Privilege Vulnerability |
| CVE-2026-69479 | Normal | 8.4 | Important | Remote Code Execution | Endpoints / Windows client | Microsoft | Windows NTFS Remote Code Execution Vulnerability |
| CVE-2026-69638 | Normal | 8.4 | Important | Remote Code Execution | Endpoints / Windows client | Microsoft | Windows NTFS Remote Code Execution Vulnerability |
| CVE-2026-77503 | Normal | 8.4 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | Windows NTFS Elevation of Privilege Vulnerability |
| CVE-2026-69646 | Normal | 8.3 | Important | Spoofing | Other / general Windows | Microsoft | Skype for Business Spoofing Vulnerability |
| CVE-2026-65812 | Normal | 6.8 | Important | Information Disclosure | Other / general Windows | Microsoft | Microsoft Teams for Android Information Disclosure Vulnerability |
| CVE-2026-69415 | Normal | 6.8 | Important | Elevation of Privilege | Network / infra servers | Microsoft | Windows DHCP Server Elevation of Privilege Vulnerability |
| CVE-2026-69832 | Normal | 5.6 | Important | Information Disclosure | Endpoints / Windows client | Microsoft | Win32k Information Disclosure Vulnerability |
| CVE-2026-69412 | Normal | 8.0 | Important | Remote Code Execution | Network / infra servers | Microsoft | Windows DHCP Server Remote Code Execution Vulnerability |
| CVE-2026-69847 | Normal | 8.0 | Important | Remote Code Execution | Network / infra servers | Microsoft | Windows DHCP Server Remote Code Execution Vulnerability |
| CVE-2026-69876 | Normal | 8.0 | Important | Remote Code Execution | Network / infra servers | Microsoft | Windows DHCP Server Remote Code Execution Vulnerability |
| CVE-2026-58649 | Normal | 6.5 | Important | Information Disclosure | Other / general Windows | Microsoft | .NET Information Disclosure Vulnerability |
| CVE-2026-62762 | Normal | 6.5 | Important | Denial of Service | Identity / AD | Microsoft | Windows Active Directory Domain Services Denial of Service Vulnerability |
| CVE-2026-62801 | Normal | 6.5 | Important | Security Feature Bypass | Other / general Windows | Microsoft | Microsoft PowerShell Security Feature Bypass Vulnerability |
| CVE-2026-63523 | Normal | 6.5 | Important | Spoofing | Other / general Windows | Microsoft | Skype for Business Spoofing Vulnerability |
| CVE-2026-64918 | Normal | 6.5 | Important | Spoofing | Office / productivity | Microsoft | Microsoft Office Spoofing Vulnerability |
| CVE-2026-66303 | Normal | 6.5 | Important | Denial of Service | Other / general Windows | Microsoft | Skype for Business and Lync Denial of Service Vulnerability |
| CVE-2026-66306 | Normal | 6.5 | Important | Information Disclosure | Other / general Windows | Microsoft | Skype for Business Information Disclosure Vulnerability |
| CVE-2026-66308 | Normal | 6.5 | Important | Denial of Service | Other / general Windows | Microsoft | Skype for Business and Lync Denial of Service Vulnerability |
| CVE-2026-66816 | Normal | 6.5 | Important | Security Feature Bypass | Database / SQL | Microsoft | Microsoft SQL Server Security Feature Bypass Vulnerability |
| CVE-2026-67369 | Normal | 6.5 | Important | Information Disclosure | Database / SQL | Microsoft | Microsoft SQL Server Information Disclosure Vulnerability |
| CVE-2026-67383 | Normal | 6.5 | Important | Information Disclosure | Database / SQL | Microsoft | Microsoft SQL Server Information Disclosure Vulnerability |
| CVE-2026-67386 | Normal | 6.5 | Important | Information Disclosure | Database / SQL | Microsoft | Microsoft SQL Server Information Disclosure Vulnerability |
| CVE-2026-67389 | Normal | 6.5 | Important | Information Disclosure | Database / SQL | Microsoft | Microsoft SQL Server Information Disclosure Vulnerability |
| CVE-2026-67390 | Normal | 6.5 | Important | Information Disclosure | Database / SQL | Microsoft | Microsoft SQL Server Information Disclosure Vulnerability |
| CVE-2026-67393 | Normal | 6.5 | Important | Information Disclosure | Database / SQL | Microsoft | Microsoft SQL Server Information Disclosure Vulnerability |
| CVE-2026-67624 | Normal | 6.5 | Important | Information Disclosure | Database / SQL | Microsoft | Microsoft SQL Server Information Disclosure Vulnerability |
| CVE-2026-67629 | Normal | 6.5 | Important | Information Disclosure | Database / SQL | Microsoft | Microsoft SQL Server Information Disclosure Vulnerability |
| CVE-2026-67630 | Normal | 6.5 | Important | Information Disclosure | Database / SQL | Microsoft | Microsoft SQL Server Information Disclosure Vulnerability |
| CVE-2026-67633 | Normal | 6.5 | Important | Denial of Service | Database / SQL | Microsoft | Microsoft SQL Server Denial of Service Vulnerability |
| CVE-2026-67641 | Normal | 6.5 | Important | Denial of Service | Database / SQL | Microsoft | Microsoft SQL Server Denial of Service Vulnerability |
| CVE-2026-67645 | Normal | 6.5 | Important | Information Disclosure | Database / SQL | Microsoft | Microsoft SQL Server Information Disclosure Vulnerability |
| CVE-2026-67648 | Normal | 6.5 | Important | Information Disclosure | Database / SQL | Microsoft | Microsoft SQL Server Information Disclosure Vulnerability |
| CVE-2026-68776 | Normal | 6.5 | Important | Information Disclosure | Database / SQL | Microsoft | Microsoft SQL Server Information Disclosure Vulnerability |
| CVE-2026-68777 | Normal | 6.5 | Important | Information Disclosure | Database / SQL | Microsoft | Microsoft SQL Server Information Disclosure Vulnerability |
| CVE-2026-68778 | Normal | 6.5 | Important | Information Disclosure | Database / SQL | Microsoft | Microsoft SQL Server Information Disclosure Vulnerability |
| CVE-2026-68779 | Normal | 6.5 | Important | Information Disclosure | Database / SQL | Microsoft | Microsoft SQL Server Information Disclosure Vulnerability |
| CVE-2026-68780 | Normal | 6.5 | Important | Information Disclosure | Database / SQL | Microsoft | Microsoft SQL Server Information Disclosure Vulnerability |
| CVE-2026-68781 | Normal | 6.5 | Important | Information Disclosure | Database / SQL | Microsoft | Microsoft SQL Server Information Disclosure Vulnerability |
| CVE-2026-68784 | Normal | 6.5 | Important | Information Disclosure | Database / SQL | Microsoft | Microsoft SQL Server Information Disclosure Vulnerability |
| CVE-2026-68898 | Normal | 6.5 | Important | Denial of Service | Other / general Windows | Microsoft | Windows iSCSI Denial of Service Vulnerability |
| CVE-2026-69297 | Normal | 6.5 | Important | Information Disclosure | Network / infra servers | Microsoft | Windows DHCP Server Information Disclosure Vulnerability |
| CVE-2026-69361 | Normal | 6.5 | Important | Spoofing | Exchange / mail | Microsoft | Microsoft Exchange Server Spoofing Vulnerability |
| CVE-2026-69374 | Normal | 6.5 | Important | Denial of Service | Network / infra servers | Microsoft | Windows SMB Server Denial of Service Vulnerability |
| CVE-2026-69375 | Normal | 6.5 | Important | Tampering | Exchange / mail | Microsoft | Microsoft Exchange Server Tampering Vulnerability |
| CVE-2026-69395 | Normal | 6.5 | Important | Information Disclosure | Identity / AD | Microsoft | Active Directory Certificate Services (AD CS) Information Disclosure Vulnerability |
| CVE-2026-69409 | Normal | 6.5 | Important | Information Disclosure | SharePoint owners | Microsoft | Microsoft Office SharePoint Information Disclosure Vulnerability |
| CVE-2026-69497 | Normal | 6.5 | Important | Denial of Service | Network / infra servers | Microsoft | Windows DHCP Server Denial of Service Vulnerability |
| CVE-2026-69562 | Normal | 6.5 | Important | Information Disclosure | Database / SQL | Microsoft | Microsoft SQL Server Information Disclosure Vulnerability |
| CVE-2026-69624 | Normal | 6.5 | Important | Tampering | Identity / AD | Microsoft | Active Directory Certificate Services (AD CS) Tampering Vulnerability |
| CVE-2026-69626 | Normal | 6.5 | Important | Information Disclosure | Office / productivity | Microsoft | Microsoft Office Information Disclosure Vulnerability |
| CVE-2026-69636 | Normal | 6.5 | Important | Information Disclosure | SharePoint owners | Microsoft | Microsoft Office SharePoint Information Disclosure Vulnerability |
| CVE-2026-69683 | Normal | 6.5 | Important | Information Disclosure | SharePoint owners | Microsoft | Microsoft Office SharePoint Information Disclosure Vulnerability |
| CVE-2026-69719 | Normal | 6.5 | Important | Information Disclosure | Office / productivity | Microsoft | Microsoft Office Word Information Disclosure Vulnerability |
| CVE-2026-69734 | Normal | 6.5 | Important | Information Disclosure | Office / productivity | Microsoft | Microsoft Office Word Information Disclosure Vulnerability |
| CVE-2026-69739 | Normal | 6.5 | Important | Information Disclosure | Office / productivity | Microsoft | Microsoft Office Information Disclosure Vulnerability |
| CVE-2026-69839 | Normal | 6.5 | Important | Denial of Service | Other / general Windows | Microsoft | Windows iSCSI Target Service Denial of Service Vulnerability |
| CVE-2026-70019 | Normal | 6.5 | Important | Information Disclosure | Other / general Windows | Microsoft | Windows Compressed Folder Information Disclosure Vulnerability |
| CVE-2026-72938 | Normal | 6.5 | Important | Information Disclosure | Office / productivity | Microsoft | Microsoft Office PowerPoint Information Disclosure Vulnerability |
| CVE-2026-72939 | Normal | 6.5 | Important | Denial of Service | Network / infra servers | Microsoft | Windows Routing and Remote Access Service (RRAS) Denial of Service Vulnerability |
| CVE-2026-72942 | Normal | 6.5 | Important | Information Disclosure | Other / general Windows | Microsoft | Windows Spaceport.sys Information Disclosure Vulnerability |
| CVE-2026-72956 | Normal | 6.5 | Important | Information Disclosure | Office / productivity | Microsoft | Microsoft Office PowerPoint Information Disclosure Vulnerability |
| CVE-2026-72974 | Normal | 6.5 | Important | Information Disclosure | Office / productivity | Microsoft | Microsoft Office Excel Information Disclosure Vulnerability |
| CVE-2026-72975 | Normal | 6.5 | Important | Information Disclosure | Office / productivity | Microsoft | Microsoft Office PowerPoint Information Disclosure Vulnerability |
| CVE-2026-72977 | Normal | 6.5 | Important | Information Disclosure | Office / productivity | Microsoft | Microsoft Office PowerPoint Information Disclosure Vulnerability |
| CVE-2026-73029 | Normal | 6.5 | Important | Information Disclosure | Database / SQL | Microsoft | Microsoft SQL Server Information Disclosure Vulnerability |
| CVE-2026-77896 | Normal | 6.5 | Important | Denial of Service | Remote access / RDP | Microsoft | Windows Remote Desktop Client Denial of Service Vulnerability |
| CVE-2026-77911 | Normal | 6.5 | Important | Information Disclosure | Office / productivity | Microsoft | Microsoft Office Word Information Disclosure Vulnerability |
| CVE-2026-78441 | Normal | 6.5 | Important | Information Disclosure | Other / general Windows | Microsoft | Windows OLE DB Information Disclosure Vulnerability |
| CVE-2026-78453 | Normal | 6.5 | Important | Information Disclosure | Other / general Windows | Microsoft | Microsoft Windows SCSI Class System File Information Disclosure Vulnerability |
| CVE-2026-78502 | Normal | 6.5 | Important | Information Disclosure | Office / productivity | Microsoft | Microsoft Office Word Information Disclosure Vulnerability |
| CVE-2026-78503 | Normal | 6.5 | Important | Information Disclosure | Office / productivity | Microsoft | Microsoft Office Word Information Disclosure Vulnerability |
| CVE-2026-78515 | Normal | 6.5 | Important | Information Disclosure | Office / productivity | Microsoft | Microsoft Office Excel Information Disclosure Vulnerability |
| CVE-2026-80076 | Normal | 6.5 | Important | Information Disclosure | Office / productivity | Microsoft | Microsoft Office Information Disclosure Vulnerability |
| CVE-2026-80078 | Normal | 6.5 | Important | Information Disclosure | Office / productivity | Microsoft | Microsoft Office Information Disclosure Vulnerability |
| CVE-2026-80082 | Normal | 6.5 | Important | Information Disclosure | Office / productivity | Microsoft | Microsoft Office Information Disclosure Vulnerability |
| CVE-2026-80084 | Normal | 6.5 | Important | Information Disclosure | Office / productivity | Microsoft | Microsoft Office Outlook Information Disclosure Vulnerability |
| CVE-2026-80086 | Normal | 6.5 | Important | Information Disclosure | Office / productivity | Microsoft | Microsoft Office PowerPoint Information Disclosure Vulnerability |
| CVE-2026-80087 | Normal | 6.5 | Important | Information Disclosure | Office / productivity | Microsoft | Microsoft Office Information Disclosure Vulnerability |
| CVE-2026-80088 | Normal | 6.5 | Important | Information Disclosure | Office / productivity | Microsoft | Microsoft Office Word Information Disclosure Vulnerability |
| CVE-2026-80089 | Normal | 6.5 | Important | Information Disclosure | Office / productivity | Microsoft | Microsoft Office Information Disclosure Vulnerability |
| CVE-2026-80090 | Normal | 6.5 | Important | Information Disclosure | Office / productivity | Microsoft | Microsoft Office Word Information Disclosure Vulnerability |
| CVE-2026-80091 | Normal | 6.5 | Important | Information Disclosure | Office / productivity | Microsoft | Microsoft Office Information Disclosure Vulnerability |
| CVE-2026-81377 | Normal | 6.5 | Important | Tampering | Other / general Windows | Microsoft | Visual Studio Code Tampering Vulnerability |
| CVE-2026-81381 | Normal | 6.5 | Important | Information Disclosure | Cloud / M365 apps | Microsoft | GitHub Copilot and Visual Studio Code Information Disclosure Vulnerability |
| CVE-2026-69406 | Normal | 5.5 | Important | Information Disclosure | Endpoints / Windows client | Microsoft | Windows Kernel Information Disclosure Vulnerability |
| CVE-2026-78454 | Normal | 5.5 | Important | Information Disclosure | Endpoints / Windows client | Microsoft | Windows CD-ROM Driver Information Disclosure Vulnerability |
| CVE-2026-56172 | Normal | 7.8 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | Windows VHD miniport driver Elevation of Privilege Vulnerability |
| CVE-2026-56177 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Server Elevation of Privilege Vulnerability |
| CVE-2026-56198 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Microsoft Trace Data Helper Elevation of Privilege Vulnerability |
| CVE-2026-58600 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | HEVC Video Extensions Elevation of Privilege Vulnerability |
| CVE-2026-58611 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Xbox Gaming Services Elevation of Privilege Vulnerability |
| CVE-2026-62697 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Push Notifications Elevation of Privilege Vulnerability |
| CVE-2026-62804 | Normal | 7.8 | Important | Remote Code Execution | Office / productivity | Microsoft | Microsoft Word Remote Code Execution Vulnerability |
| CVE-2026-62810 | Normal | 7.8 | Important | Elevation of Privilege | Identity / AD | Microsoft | Active Directory Certificate Services (AD CS) Elevation of Privilege Vulnerability |
| CVE-2026-68787 | Normal | 7.8 | Important | Remote Code Execution | Database / SQL | Microsoft | Microsoft SQL Server Remote Code Execution Vulnerability |
| CVE-2026-68832 | Normal | 7.8 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | Windows NTFS Elevation of Privilege Vulnerability |
| CVE-2026-68841 | Normal | 7.8 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | Windows NTFS Elevation of Privilege Vulnerability |
| CVE-2026-68844 | Normal | 7.8 | Important | Remote Code Execution | Endpoints / Windows client | Microsoft | Windows Storage Spaces Controller Remote Code Execution Vulnerability |
| CVE-2026-68845 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Program Compatibility Assistant Service Elevation of Privilege Vulnerability |
| CVE-2026-68848 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Print Spooler Components Elevation of Privilege Vulnerability |
| CVE-2026-68850 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Microsoft Account Elevation of Privilege Vulnerability |
| CVE-2026-68875 | Normal | 7.8 | Important | Remote Code Execution | Endpoints / Windows client | Microsoft | Windows NTFS Remote Code Execution Vulnerability |
| CVE-2026-68877 | Normal | 7.8 | Important | Remote Code Execution | Endpoints / Windows client | Microsoft | Windows Storage Spaces Controller Remote Code Execution Vulnerability |
| CVE-2026-68885 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Microsoft Standard XPS Elevation of Privilege Vulnerability |
| CVE-2026-68888 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Microsoft Standard XPS Elevation of Privilege Vulnerability |
| CVE-2026-68890 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Microsoft Standard XPS Elevation of Privilege Vulnerability |
| CVE-2026-68892 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Microsoft Standard XPS Elevation of Privilege Vulnerability |
| CVE-2026-68896 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Microsoft Windows Search Component Elevation of Privilege Vulnerability |
| CVE-2026-69265 | Normal | 7.8 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | Windows NTFS Elevation of Privilege Vulnerability |
| CVE-2026-69269 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Microsoft Standard XPS Elevation of Privilege Vulnerability |
| CVE-2026-69270 | Normal | 7.8 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | Windows USB Audio Class driver (usbaudio.sys) Elevation of Privilege Vulnerability |
| CVE-2026-69283 | Normal | 7.8 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | Windows CD-ROM Driver Elevation of Privilege Vulnerability |
| CVE-2026-69284 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows DCOM Server Elevation of Privilege Vulnerability |
| CVE-2026-69289 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Setup Files Cleanup Elevation of Privilege Vulnerability |
| CVE-2026-69290 | Normal | 7.8 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | Windows Storage Spaces Controller Elevation of Privilege Vulnerability |
| CVE-2026-69293 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-69295 | Normal | 7.8 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | Windows USB Driver Elevation of Privilege Vulnerability |
| CVE-2026-69298 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-69307 | Normal | 7.8 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | Windows USB Audio Class driver (usbaudio.sys) Elevation of Privilege Vulnerability |
| CVE-2026-69312 | Normal | 7.8 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | Windows NTFS Elevation of Privilege Vulnerability |
| CVE-2026-69323 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-69324 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Performance Monitor Elevation of Privilege Vulnerability |
| CVE-2026-69328 | Normal | 7.8 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | Windows Storage Elevation of Privilege Vulnerability |
| CVE-2026-69348 | Normal | 7.8 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | Windows Win32k Elevation of Privilege Vulnerability |
| CVE-2026-69352 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-69359 | Normal | 7.8 | Important | Elevation of Privilege | Identity / AD | Microsoft | Active Directory Domain Services Elevation of Privilege Vulnerability |
| CVE-2026-69368 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Overlay Filter Elevation of Privilege Vulnerability |
| CVE-2026-69377 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Modern Device Management (MDM) Elevation of Privilege Vulnerability |
| CVE-2026-69389 | Normal | 7.8 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | Windows Storage Management Provider Elevation of Privilege Vulnerability |
| CVE-2026-69392 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Shell Elevation of Privilege Vulnerability |
| CVE-2026-69407 | Normal | 7.8 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | Volume Manager Driver Elevation of Privilege Vulnerability |
| CVE-2026-69420 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Microsoft VOLSNAP.SYS Elevation of Privilege Vulnerability |
| CVE-2026-69421 | Normal | 7.8 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | Windows Kernel-Mode Driver Elevation of Privilege Vulnerability |
| CVE-2026-69424 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Distributed File System (DFS) Elevation of Privilege Vulnerability |
| CVE-2026-69426 | Normal | 7.8 | Important | Remote Code Execution | Other / general Windows | Microsoft | Windows VOLSNAP.SYS Remote Code Execution Vulnerability |
| CVE-2026-69432 | Normal | 7.8 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | Volume Manager Driver Elevation of Privilege Vulnerability |
| CVE-2026-69433 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Error Reporting Elevation of Privilege Vulnerability |
| CVE-2026-69444 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Microsoft Windows Speech Elevation of Privilege Vulnerability |
| CVE-2026-69445 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Compressed Folder Elevation of Privilege Vulnerability |
| CVE-2026-69447 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Audio Service Elevation of Privilege Vulnerability |
| CVE-2026-69455 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Remote Access Connection Manager Elevation of Privilege Vulnerability |
| CVE-2026-69456 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Microsoft Windows Speech Elevation of Privilege Vulnerability |
| CVE-2026-69475 | Normal | 7.8 | Important | Elevation of Privilege | Remote access / RDP | Microsoft | Windows Remote Desktop Services Elevation of Privilege Vulnerability |
| CVE-2026-69476 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-69480 | Normal | 7.8 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | Windows Partition Management Driver Elevation of Privilege Vulnerability |
| CVE-2026-69489 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-69508 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows MIDI Service Module Elevation of Privileges Vulnerability |
| CVE-2026-69509 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Role: Windows Fax Service Elevation of Privilege Vulnerability |
| CVE-2026-69513 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Error Reporting Elevation of Privilege Vulnerability |
| CVE-2026-69528 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Shell Elevation of Privilege Vulnerability |
| CVE-2026-69532 | Normal | 7.8 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | Windows NTFS Elevation of Privilege Vulnerability |
| CVE-2026-69534 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Program Compatibility Assistant Service Elevation of Privilege Vulnerability |
| CVE-2026-69535 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Spaceport.sys Elevation of Privilege Vulnerability |
| CVE-2026-69538 | Normal | 7.8 | Important | Remote Code Execution | Other / general Windows | Microsoft | Windows Spaceport.sys Remote Code Execution Vulnerability |
| CVE-2026-69542 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Camera Frame Server Monitor Elevation of Privilege Vulnerability |
| CVE-2026-69544 | Normal | 7.8 | Important | Elevation of Privilege | Network / infra servers | Microsoft | Windows SMB Client Elevation of Privilege Vulnerability |
| CVE-2026-69561 | Normal | 7.8 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | Windows CD-ROM Driver Elevation of Privilege Vulnerability |
| CVE-2026-69571 | Normal | 7.8 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | Windows USB Audio Class driver (usbaudio.sys) Elevation of Privilege Vulnerability |
| CVE-2026-69576 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Graphic Fonts Elevation of Privilege Vulnerability |
| CVE-2026-69580 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-69582 | Normal | 7.8 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | Windows Volume Manager Extension Driver Elevation of Privilege Vulnerability |
| CVE-2026-69583 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-69584 | Normal | 7.8 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | Windows USB Video Driver Elevation of Privilege Vulnerability |
| CVE-2026-69589 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-69592 | Normal | 7.8 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | Windows Universal Disk Format File System Driver (UDFS) Elevation of Privilege Vulnerability |
| CVE-2026-69593 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-69594 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Microsoft Local Security Authority (LSA) Server Elevation of Privilege Vulnerability |
| CVE-2026-69604 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Audio Service Elevation of Privilege Vulnerability |
| CVE-2026-69608 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Microsoft Windows Search Component Elevation of Privilege Vulnerability |
| CVE-2026-69612 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Error Reporting Elevation of Privilege Vulnerability |
| CVE-2026-69685 | Normal | 7.8 | Important | Elevation of Privilege | Identity / AD | Microsoft | Windows Kerberos Elevation of Privilege Vulnerability |
| CVE-2026-69687 | Normal | 7.8 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | Windows USB Audio Class driver (usbaudio.sys) Elevation of Privilege Vulnerability |
| CVE-2026-69691 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Spaceport.sys Elevation of Privilege Vulnerability |
| CVE-2026-69707 | Normal | 7.8 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | Windows USB Audio Class driver (usbaudio.sys) Elevation of Privilege Vulnerability |
| CVE-2026-69709 | Normal | 7.8 | Important | Remote Code Execution | Endpoints / Windows client | Microsoft | Windows NTFS Remote Code Execution Vulnerability |
| CVE-2026-69720 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows MIDI Service Module Elevation of Privileges Vulnerability |
| CVE-2026-69731 | Normal | 7.8 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | HID Class Driver Elevation of Privilege Vulnerability |
| CVE-2026-69738 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-69758 | Normal | 7.8 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | Windows Universal Disk Format File System Driver (UDFS) Elevation of Privilege Vulnerability |
| CVE-2026-69785 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Smart Card Elevation of Privilege Vulnerability |
| CVE-2026-69787 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-69790 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Credential Providers Elevation of Privilege Vulnerability |
| CVE-2026-69801 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Audio Service Elevation of Privilege Vulnerability |
| CVE-2026-69821 | Normal | 7.8 | Important | Elevation of Privilege | Identity / AD | Microsoft | Active Directory Certificate Services (AD CS) Elevation of Privilege Vulnerability |
| CVE-2026-69822 | Normal | 7.8 | Important | Elevation of Privilege | Identity / AD | Microsoft | Windows Kerberos Elevation of Privilege Vulnerability |
| CVE-2026-69841 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Encrypting File System (EFS) Elevation of Privilege Vulnerability |
| CVE-2026-69844 | Normal | 7.8 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | Windows Win32k Elevation of Privilege Vulnerability |
| CVE-2026-69900 | Normal | 7.8 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | Kernel Streaming WOW Thunk Service Driver Elevation of Privilege Vulnerability |
| CVE-2026-69907 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Enterprise App Management Elevation of Privilege Vulnerability |
| CVE-2026-70334 | Normal | 7.8 | Important | Security Feature Bypass | Other / general Windows | Microsoft | Visual Studio Code Security Feature Bypass Vulnerability |
| CVE-2026-70564 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Print Spooler Components Elevation of Privilege Vulnerability |
| CVE-2026-70569 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Spaceport.sys Elevation of Privilege Vulnerability |
| CVE-2026-70572 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-70581 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-70584 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Core Messaging Elevation of Privilege Vulnerability |
| CVE-2026-71334 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows NFS Portmapper Elevation of Privilege Vulnerability |
| CVE-2026-71337 | Normal | 7.8 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | Windows Storage Management Provider Elevation of Privilege Vulnerability |
| CVE-2026-71345 | Normal | 7.8 | Important | Remote Code Execution | Other / general Windows | Microsoft | Windows Spaceport.sys Remote Code Execution Vulnerability |
| CVE-2026-72929 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Installer Elevation of Privilege Vulnerability |
| CVE-2026-72941 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-72944 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Role: Windows Fax Service Elevation of Privilege Vulnerability |
| CVE-2026-72946 | Normal | 7.8 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | Microsoft Storage Port Driver Elevation of Privilege Vulnerability |
| CVE-2026-72953 | Normal | 7.8 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | Windows USB Driver Elevation of Privilege Vulnerability |
| CVE-2026-72965 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows WebClient Service Elevation of Privilege Vulnerability |
| CVE-2026-72967 | Normal | 7.8 | Important | Elevation of Privilege | Network / infra servers | Microsoft | Windows Network Connection Broker Elevation of Privilege Vulnerability |
| CVE-2026-72988 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-72990 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-72991 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-72992 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-72993 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-72994 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-72995 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-72996 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-72997 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-73000 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-73001 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-73002 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-73007 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-73011 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-73014 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Data Sharing Service Client Elevation of Privilege Vulnerability |
| CVE-2026-73015 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-73020 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-73021 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-73024 | Normal | 7.8 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | Windows Services for NFS ONCRPC XDR Driver Elevation of Privilege Vulnerability |
| CVE-2026-73026 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-77489 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-77904 | Normal | 7.8 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | Windows Volume Manager Extension Driver Elevation of Privilege Vulnerability |
| CVE-2026-78447 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-78448 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-80075 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Work Folders Elevation of Privilege Vulnerability |
| CVE-2026-81353 | Normal | 7.8 | Important | Remote Code Execution | Other / general Windows | Microsoft | HEIF Image Extensions Remote Code Execution Vulnerability |
| CVE-2026-81386 | Normal | 7.8 | Important | Remote Code Execution | Office / productivity | Microsoft | Microsoft Excel Remote Code Execution Vulnerability |
| CVE-2026-81388 | Normal | 7.8 | Important | Remote Code Execution | Office / productivity | Microsoft | Microsoft Excel Remote Code Execution Vulnerability |
| CVE-2026-81396 | Normal | 7.8 | Important | Remote Code Execution | Office / productivity | Microsoft | Microsoft Excel Remote Code Execution Vulnerability |
| CVE-2026-81397 | Normal | 7.8 | Important | Remote Code Execution | Office / productivity | Microsoft | Microsoft Excel Remote Code Execution Vulnerability |
| CVE-2026-81398 | Normal | 7.8 | Important | Remote Code Execution | Office / productivity | Microsoft | Microsoft Excel Remote Code Execution Vulnerability |
| CVE-2026-81947 | Normal | 7.8 | Important | Remote Code Execution | Office / productivity | Microsoft | Microsoft Excel Remote Code Execution Vulnerability |
| CVE-2026-81954 | Normal | 7.8 | Important | Remote Code Execution | Office / productivity | Microsoft | Microsoft Excel Remote Code Execution Vulnerability |
| CVE-2026-81956 | Normal | 7.8 | Important | Remote Code Execution | Office / productivity | Microsoft | Microsoft Excel Remote Code Execution Vulnerability |
| CVE-2026-81957 | Normal | 7.8 | Important | Remote Code Execution | Office / productivity | Microsoft | Microsoft Excel Remote Code Execution Vulnerability |
| CVE-2026-81960 | Normal | 7.8 | Important | Remote Code Execution | Office / productivity | Microsoft | Microsoft Excel Remote Code Execution Vulnerability |
| CVE-2026-83942 | Normal | 7.8 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | Windows Kernel Elevation of Privilege Vulnerability |
| CVE-2026-83952 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Resilient File System (ReFS) Elevation of Privilege Vulnerability |
| CVE-2026-83954 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-83955 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-83967 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-83968 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-83969 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-83970 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-83971 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-83972 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-83973 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-83974 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-83975 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-83976 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-83977 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-83978 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-83979 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-83980 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-83981 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-83982 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-83983 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-83985 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-83986 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-83987 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-83988 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-83990 | Normal | 7.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Microsoft Graphics Component Elevation of Privilege Vulnerability |
| CVE-2026-83995 | Normal | 7.8 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | Windows NTFS Elevation of Privilege Vulnerability |
| CVE-2026-84000 | Normal | 7.8 | Important | Remote Code Execution | Other / general Windows | Microsoft | Microsoft Graphics Component Remote Code Execution Vulnerability |
| CVE-2026-62759 | Normal | 7.5 | Important | Spoofing | Identity / AD | Microsoft | Windows Netlogon Spoofing Vulnerability |
| CVE-2026-70570 | Normal | 7.5 | Important | Remote Code Execution | Network / infra servers | Microsoft | Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability |
| CVE-2026-69347 | Normal | 7.4 | Important | Remote Code Execution | Endpoints / Windows client | Microsoft | Windows Fast FAT Driver Remote Code Execution Vulnerability |
| CVE-2026-69477 | Normal | 7.3 | Important | Remote Code Execution | Office / productivity | Microsoft | Microsoft Office Access Remote Code Execution Vulnerability |
| CVE-2026-69559 | Normal | 5.8 | Important | Information Disclosure | Other / general Windows | Microsoft | Microsoft Teams for Android Information Disclosure Vulnerability |
| CVE-2026-68874 | Normal | 5.7 | Important | Information Disclosure | Other / general Windows | Microsoft | Windows Program Compatibility Assistant Service Information Disclosure Vulnerability |
| CVE-2026-69317 | Normal | 5.7 | Important | Information Disclosure | Remote access / RDP | Microsoft | Windows Remote Desktop Client Information Disclosure Vulnerability |
| CVE-2026-69349 | Normal | 5.7 | Important | Information Disclosure | Other / general Windows | Microsoft | Windows Management Instrumentation Information Disclosure Vulnerability |
| CVE-2026-69372 | Normal | 5.7 | Important | Denial of Service | Network / infra servers | Microsoft | Windows Network File System Denial of Service Vulnerability |
| CVE-2026-69393 | Normal | 5.7 | Important | Information Disclosure | Other / general Windows | Microsoft | Windows Spaceport.sys Information Disclosure Vulnerability |
| CVE-2026-69507 | Normal | 5.7 | Important | Information Disclosure | Other / general Windows | Microsoft | Microsoft Windows Search Component Information Disclosure Vulnerability |
| CVE-2026-69552 | Normal | 5.7 | Important | Information Disclosure | Other / general Windows | Microsoft | Windows Print Spooler Components Information Disclosure Vulnerability |
| CVE-2026-69569 | Normal | 5.7 | Important | Denial of Service | Other / general Windows | Microsoft | Windows Print Spooler Components Denial of Service Vulnerability |
| CVE-2026-69572 | Normal | 5.7 | Important | Information Disclosure | Network / infra servers | Microsoft | Windows SMB Client Information Disclosure Vulnerability |
| CVE-2026-69591 | Normal | 5.7 | Important | Information Disclosure | Endpoints / Windows client | Microsoft | Windows NTFS Information Disclosure Vulnerability |
| CVE-2026-69384 | Normal | 7.1 | Important | Denial of Service | Endpoints / Windows client | Microsoft | Virtual Hard Disk (VHD) Miniport Driver Denial of Service Vulnerability |
| CVE-2026-69482 | Normal | 7.1 | Important | Tampering | Other / general Windows | Microsoft | Windows Error Reporting Tampering Vulnerability |
| CVE-2026-50349 | Normal | 7.0 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability |
| CVE-2026-62694 | Normal | 7.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Installer Elevation of Privilege Vulnerability |
| CVE-2026-68824 | Normal | 7.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Connected User Experiences and Telemetry Elevation of Privilege Vulnerability |
| CVE-2026-68825 | Normal | 7.0 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | Windows Bind Filter Driver Elevation of Privilege Vulnerability |
| CVE-2026-68837 | Normal | 7.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows File History Service Elevation of Privilege Vulnerability |
| CVE-2026-68840 | Normal | 7.0 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | Windows USB Driver Elevation of Privilege Vulnerability |
| CVE-2026-68847 | Normal | 7.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Connected User Experiences and Telemetry Elevation of Privilege Vulnerability |
| CVE-2026-68897 | Normal | 7.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Microsoft Standard XPS Elevation of Privilege Vulnerability |
| CVE-2026-69275 | Normal | 7.0 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | Kernel Streaming WOW Thunk Service Driver Elevation of Privilege Vulnerability |
| CVE-2026-69279 | Normal | 7.0 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability |
| CVE-2026-69280 | Normal | 7.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Push Notifications Elevation of Privilege Vulnerability |
| CVE-2026-69281 | Normal | 7.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows License Manager Elevation of Privilege Vulnerability |
| CVE-2026-69287 | Normal | 7.0 | Important | Elevation of Privilege | Remote access / RDP | Microsoft | Windows Remote Desktop Services Elevation of Privilege Vulnerability |
| CVE-2026-69292 | Normal | 7.0 | Important | Elevation of Privilege | Remote access / RDP | Microsoft | Remote Desktop Gateway Service Elevation of Privilege Vulnerability |
| CVE-2026-69299 | Normal | 7.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Microsoft COM for Windows Elevation of Privilege Vulnerability |
| CVE-2026-69300 | Normal | 7.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Push Notifications Elevation of Privilege Vulnerability |
| CVE-2026-69309 | Normal | 7.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Print Spooler Components Elevation of Privilege Vulnerability |
| CVE-2026-69311 | Normal | 7.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Audio Service Elevation of Privilege Vulnerability |
| CVE-2026-69319 | Normal | 7.0 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | Windows USB Video Driver Elevation of Privilege Vulnerability |
| CVE-2026-69331 | Normal | 7.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Remote Access Connection Manager Elevation of Privilege Vulnerability |
| CVE-2026-69333 | Normal | 7.0 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | Windows Win32k Elevation of Privilege Vulnerability |
| CVE-2026-69335 | Normal | 7.0 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | Windows Win32k Elevation of Privilege Vulnerability |
| CVE-2026-69341 | Normal | 7.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Image Acquisition Elevation of Privilege Vulnerability |
| CVE-2026-69362 | Normal | 7.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Error Reporting Elevation of Privilege Vulnerability |
| CVE-2026-69379 | Normal | 7.0 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | Windows NTFS Elevation of Privilege Vulnerability |
| CVE-2026-69383 | Normal | 7.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Shell Elevation of Privilege Vulnerability |
| CVE-2026-69388 | Normal | 7.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Bluetooth Service Elevation of Privilege Vulnerability |
| CVE-2026-69394 | Normal | 7.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Audio Service Elevation of Privilege Vulnerability |
| CVE-2026-69398 | Normal | 7.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Bluetooth Service Elevation of Privilege Vulnerability |
| CVE-2026-69401 | Normal | 7.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Audio Video Control Transport Protocol Elevation of Privilege Vulnerability |
| CVE-2026-69404 | Normal | 7.0 | Important | Elevation of Privilege | Network / infra servers | Microsoft | Windows TCP/IP Elevation of Privilege Vulnerability |
| CVE-2026-69410 | Normal | 7.0 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | Windows Win32k Elevation of Privilege Vulnerability |
| CVE-2026-69413 | Normal | 7.0 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | Windows USB Audio Class driver (usbaudio.sys) Elevation of Privilege Vulnerability |
| CVE-2026-69422 | Normal | 7.0 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | Windows USB Video Driver Elevation of Privilege Vulnerability |
| CVE-2026-69430 | Normal | 7.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Embedded Mode Service Elevation of Privilege Vulnerability |
| CVE-2026-69440 | Normal | 7.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows MIDI Service Module Elevation of Privileges Vulnerability |
| CVE-2026-69441 | Normal | 7.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Installer Elevation of Privilege Vulnerability |
| CVE-2026-69448 | Normal | 7.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Bluetooth Service Elevation of Privilege Vulnerability |
| CVE-2026-69468 | Normal | 7.0 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | Windows Volume Manager Extension Driver Elevation of Privilege Vulnerability |
| CVE-2026-69470 | Normal | 7.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Connected User Experiences and Telemetry Elevation of Privilege Vulnerability |
| CVE-2026-69472 | Normal | 7.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Devices Human Interface Elevation of Privilege Vulnerability |
| CVE-2026-69488 | Normal | 7.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Device Association Service Elevation of Privilege Vulnerability |
| CVE-2026-69492 | Normal | 7.0 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | Windows Partition Management Driver Elevation of Privilege Vulnerability |
| CVE-2026-69500 | Normal | 7.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Image Acquisition Elevation of Privilege Vulnerability |
| CVE-2026-69516 | Normal | 7.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Connected Devices Platform Service (Cdpsvc) Elevation of Privilege Vulnerability |
| CVE-2026-69517 | Normal | 7.0 | Important | Elevation of Privilege | Network / infra servers | Microsoft | Windows Wireless Networking Elevation of Privilege Vulnerability |
| CVE-2026-69540 | Normal | 7.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Audio Service Elevation of Privilege Vulnerability |
| CVE-2026-69560 | Normal | 7.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Work Folder Service Elevation of Privilege Vulnerability |
| CVE-2026-69563 | Normal | 7.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Program Compatibility Assistant Service Elevation of Privilege Vulnerability |
| CVE-2026-69564 | Normal | 7.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Online Certificate Status Protocol (OCSP) Elevation of Privilege Vulnerability |
| CVE-2026-69567 | Normal | 7.0 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | Windows NTFS Elevation of Privilege Vulnerability |
| CVE-2026-69573 | Normal | 7.0 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | Windows Universal Disk Format File System Driver (UDFS) Elevation of Privilege Vulnerability |
| CVE-2026-69574 | Normal | 7.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Device Association Service Elevation of Privilege Vulnerability |
| CVE-2026-69575 | Normal | 7.0 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | Windows Storage Spaces Controller Elevation of Privilege Vulnerability |
| CVE-2026-69578 | Normal | 7.0 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | Windows Kernel Elevation of Privilege Vulnerability |
| CVE-2026-69581 | Normal | 7.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Device Association Service Elevation of Privilege Vulnerability |
| CVE-2026-69606 | Normal | 7.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Shell Elevation of Privilege Vulnerability |
| CVE-2026-69610 | Normal | 7.0 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | Windows Win32k Elevation of Privilege Vulnerability |
| CVE-2026-69613 | Normal | 7.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Image Acquisition Elevation of Privilege Vulnerability |
| CVE-2026-69617 | Normal | 7.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Resilient File System (ReFS) Elevation of Privilege Vulnerability |
| CVE-2026-69621 | Normal | 7.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Role: Windows Fax Service Elevation of Privilege Vulnerability |
| CVE-2026-69630 | Normal | 7.0 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | Windows Win32k Elevation of Privilege Vulnerability |
| CVE-2026-69645 | Normal | 7.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Message Queuing Elevation of Privilege Vulnerability |
| CVE-2026-69648 | Normal | 7.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Notification Elevation of Privilege Vulnerability |
| CVE-2026-69652 | Normal | 7.0 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | Windows Win32k Elevation of Privilege Vulnerability |
| CVE-2026-69654 | Normal | 7.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Accounts Control Elevation of Privilege Vulnerability |
| CVE-2026-69682 | Normal | 7.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Host Guardian Service Elevation of Privilege Vulnerability |
| CVE-2026-69692 | Normal | 7.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Audio Service Elevation of Privilege Vulnerability |
| CVE-2026-69693 | Normal | 7.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Device Association Broker Service Elevation of Privilege Vulnerability |
| CVE-2026-69694 | Normal | 7.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows IP Address Management (IPAM) Service Elevation of Privilege Vulnerability |
| CVE-2026-69708 | Normal | 7.0 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | Windows Web Platform Storage Elevation of Privilege Vulnerability |
| CVE-2026-69711 | Normal | 7.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Device Association Service Elevation of Privilege Vulnerability |
| CVE-2026-69735 | Normal | 7.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Broadcast DVR User Service Elevation of Privilege Vulnerability |
| CVE-2026-69791 | Normal | 7.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Device Association Service Elevation of Privilege Vulnerability |
| CVE-2026-69806 | Normal | 7.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | .NET Elevation of Privilege Vulnerability |
| CVE-2026-69814 | Normal | 7.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Credential Providers Elevation of Privilege Vulnerability |
| CVE-2026-69816 | Normal | 7.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Accounts Control Elevation of Privilege Vulnerability |
| CVE-2026-69817 | Normal | 7.0 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | Windows Bluetooth Port Driver Elevation of Privilege Vulnerability |
| CVE-2026-69818 | Normal | 7.0 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | Windows Win32k Elevation of Privilege Vulnerability |
| CVE-2026-69834 | Normal | 7.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows ALPC Elevation of Privilege Vulnerability |
| CVE-2026-69838 | Normal | 7.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Print Spooler Components Elevation of Privilege Vulnerability |
| CVE-2026-69859 | Normal | 7.0 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | Windows USB Audio Class driver (usbaudio.sys) Elevation of Privilege Vulnerability |
| CVE-2026-69866 | Normal | 7.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Device Association Service Elevation of Privilege Vulnerability |
| CVE-2026-69889 | Normal | 7.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Bluetooth Service Elevation of Privilege Vulnerability |
| CVE-2026-69891 | Normal | 7.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Media Elevation of Privilege Vulnerability |
| CVE-2026-69896 | Normal | 7.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Error Reporting Elevation of Privilege Vulnerability |
| CVE-2026-70283 | Normal | 7.0 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | Windows Win32k Elevation of Privilege Vulnerability |
| CVE-2026-70565 | Normal | 7.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows AF_UNIX Socket Provider Elevation of Privilege Vulnerability |
| CVE-2026-70567 | Normal | 7.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Display Enhancement Service Elevation of Privilege Vulnerability |
| CVE-2026-70568 | Normal | 7.0 | Important | Elevation of Privilege | Cloud / M365 apps | Microsoft | Windows Defender Firewall Service Elevation of Privilege Vulnerability |
| CVE-2026-70573 | Normal | 7.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-70577 | Normal | 7.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Modern Device Management (MDM) Elevation of Privilege Vulnerability |
| CVE-2026-70578 | Normal | 7.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Credential Guard Elevation of Privilege Vulnerability |
| CVE-2026-71332 | Normal | 7.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Secure Socket Tunneling Protocol (SSTP) Elevation of Privilege Vulnerability |
| CVE-2026-71333 | Normal | 7.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Remote Access Connection Manager Elevation of Privilege Vulnerability |
| CVE-2026-71342 | Normal | 7.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Remote Access Connection Manager Elevation of Privilege Vulnerability |
| CVE-2026-71351 | Normal | 7.0 | Important | Elevation of Privilege | Network / infra servers | Microsoft | Windows Routing and Remote Access Service (RRAS) Elevation of Privilege Vulnerability |
| CVE-2026-71353 | Normal | 7.0 | Important | Elevation of Privilege | Network / infra servers | Microsoft | Windows Routing and Remote Access Service (RRAS) Elevation of Privilege Vulnerability |
| CVE-2026-72926 | Normal | 7.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Internet Connection Sharing (ICS) Elevation of Privilege Vulnerability |
| CVE-2026-72930 | Normal | 7.0 | Important | Remote Code Execution | Other / general Windows | Microsoft | Windows Secure Socket Tunneling Protocol (SSTP) Remote Code Execution Vulnerability |
| CVE-2026-72952 | Normal | 7.0 | Important | Remote Code Execution | Other / general Windows | Microsoft | Windows Spaceport.sys Remote Code Execution Vulnerability |
| CVE-2026-72963 | Normal | 7.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Modern Execution Server Elevation of Privilege Vulnerability |
| CVE-2026-73003 | Normal | 7.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Modern Device Management (MDM) Elevation of Privilege Vulnerability |
| CVE-2026-73005 | Normal | 7.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Authentication Methods Elevation of Privilege Vulnerability |
| CVE-2026-73022 | Normal | 7.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Modern Device Management (MDM) Elevation of Privilege Vulnerability |
| CVE-2026-77485 | Normal | 7.0 | Important | Elevation of Privilege | Database / SQL | Microsoft | SQL Server Elevation of Privilege Vulnerability |
| CVE-2026-77894 | Normal | 7.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Installer Elevation of Privilege Vulnerability |
| CVE-2026-77897 | Normal | 7.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Microsoft Power Automate Desktop Elevation of Privilege Vulnerability |
| CVE-2026-77899 | Normal | 7.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Security Center Elevation of Privilege Vulnerability |
| CVE-2026-77905 | Normal | 7.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Management Instrumentation Elevation of Privilege Vulnerability |
| CVE-2026-78457 | Normal | 7.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Security Health Service Elevation of Privilege Vulnerability |
| CVE-2026-78464 | Normal | 7.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows MIDI Service Module Elevation of Privileges Vulnerability |
| CVE-2026-81389 | Normal | 7.0 | Important | Remote Code Execution | Office / productivity | Microsoft | Microsoft Excel Remote Code Execution Vulnerability |
| CVE-2026-83940 | Normal | 7.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Device Association Service Elevation of Privilege Vulnerability |
| CVE-2026-83999 | Normal | 7.0 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Resilient File System (ReFS) Deduplication Service Elevation of Privilege Vulnerability |
| CVE-2026-85360 | Normal | 7.0 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | Windows Kernel Elevation of Privilege Vulnerability |
| CVE-2026-68833 | Normal | 6.8 | Important | Remote Code Execution | Endpoints / Windows client | Microsoft | Windows NTFS Remote Code Execution Vulnerability |
| CVE-2026-69490 | Normal | 6.8 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | Windows USB Mass Storage Class Driver Elevation of Privilege Vulnerability |
| CVE-2026-69566 | Normal | 6.8 | Important | Remote Code Execution | Endpoints / Windows client | Microsoft | Windows NTFS Remote Code Execution Vulnerability |
| CVE-2026-71329 | Normal | 6.8 | Important | Remote Code Execution | Endpoints / Windows client | Microsoft | Windows NTFS Remote Code Execution Vulnerability |
| CVE-2026-71348 | Normal | 6.8 | Important | Remote Code Execution | Other / general Windows | Microsoft | Windows Spaceport.sys Remote Code Execution Vulnerability |
| CVE-2026-71349 | Normal | 6.8 | Important | Remote Code Execution | Other / general Windows | Microsoft | Windows Spaceport.sys Remote Code Execution Vulnerability |
| CVE-2026-71350 | Normal | 6.8 | Important | Remote Code Execution | Other / general Windows | Microsoft | Windows Spaceport.sys Remote Code Execution Vulnerability |
| CVE-2026-72985 | Normal | 6.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Volume Shadow Copy Elevation of Privilege Vulnerability |
| CVE-2026-72999 | Normal | 6.8 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | Windows USB Hub Driver Elevation of Privilege Vulnerability |
| CVE-2026-77892 | Normal | 6.8 | Important | Security Feature Bypass | Endpoints / Windows client | Microsoft | Windows Boot Manager Elevation of Privilege Vulnerability |
| CVE-2026-78451 | Normal | 6.8 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Microsoft Windows SCSI Class System File Elevation of Privilege Vulnerability |
| CVE-2026-70575 | Normal | 5.3 | Important | Denial of Service | Other / general Windows | Microsoft | Windows Schannel Denial of Service Vulnerability |
| CVE-2026-78446 | Normal | 5.3 | Important | Denial of Service | Other / general Windows | Microsoft | Windows Distributed File System (DFS) Denial of Service Vulnerability |
| CVE-2026-81380 | Normal | 5.3 | Important | Information Disclosure | Cloud / M365 apps | Microsoft | GitHub Copilot and Visual Studio Code Information Disclosure Vulnerability |
| CVE-2026-69350 | Normal | 6.7 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Overlay Filter Elevation of Privilege Vulnerability |
| CVE-2026-69373 | Normal | 6.7 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Overlay Filter Elevation of Privilege Vulnerability |
| CVE-2026-69449 | Normal | 6.7 | Important | Remote Code Execution | Endpoints / Windows client | Microsoft | Windows BitLocker Remote Code Execution Vulnerability |
| CVE-2026-71339 | Normal | 6.7 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Installer Elevation of Privilege Vulnerability |
| CVE-2026-72927 | Normal | 6.7 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Winsock Elevation of Privilege Vulnerability |
| CVE-2026-72935 | Normal | 6.7 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | Windows NTFS Elevation of Privilege Vulnerability |
| CVE-2026-72948 | Normal | 6.7 | Important | Elevation of Privilege | Network / infra servers | Microsoft | Windows DNS Elevation of Privilege Vulnerability |
| CVE-2026-69469 | Normal | 6.6 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | Windows USB Audio Class driver (usbaudio.sys) Elevation of Privilege Vulnerability |
| CVE-2026-69267 | Normal | 6.5 | Important | Information Disclosure | Other / general Windows | Microsoft | Windows Connected User Experiences and Telemetry Information Disclosure Vulnerability |
| CVE-2026-69781 | Normal | 6.5 | Important | Denial of Service | Network / infra servers | Microsoft | Windows DHCP Client Denial of Service Vulnerability |
| CVE-2026-69878 | Normal | 6.4 | Important | Remote Code Execution | Network / infra servers | Microsoft | Windows DHCP Server Remote Code Execution Vulnerability |
| CVE-2026-70582 | Normal | 6.4 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Management Instrumentation Elevation of Privilege Vulnerability |
| CVE-2026-71338 | Normal | 6.4 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows Failover Cluster Elevation of Privilege Vulnerability |
| CVE-2026-72947 | Normal | 6.4 | Important | Elevation of Privilege | Other / general Windows | Microsoft | Windows File History Service Elevation of Privilege Vulnerability |
| CVE-2026-77887 | Normal | 6.4 | Important | Remote Code Execution | Network / infra servers | Microsoft | Windows DHCP Server Remote Code Execution Vulnerability |
| CVE-2026-77891 | Normal | 6.4 | Important | Remote Code Execution | Network / infra servers | Microsoft | Windows DHCP Server Remote Code Execution Vulnerability |
| CVE-2026-68785 | Normal | 4.9 | Important | Remote Code Execution | Database / SQL | Microsoft | Microsoft SQL Server Remote Code Execution Vulnerability |
| CVE-2026-69474 | Normal | 4.8 | Important | Information Disclosure | Other / general Windows | Microsoft | Windows Overlay Filter Information Disclosure Vulnerability |
| CVE-2026-69690 | Normal | 4.6 | Important | Spoofing | SharePoint owners | Microsoft | Microsoft Office SharePoint Spoofing Vulnerability |
| CVE-2026-73019 | Normal | 4.3 | Important | Security Feature Bypass | Other / general Windows | Microsoft | Windows URL Moniker Security Feature Bypass Vulnerability |
| CVE-2026-69405 | Normal | 5.7 | Important | Denial of Service | Network / infra servers | Microsoft | Windows DHCP Server Denial of Service Vulnerability |
| CVE-2026-69416 | Normal | 5.7 | Important | Denial of Service | Network / infra servers | Microsoft | Windows DHCP Server Denial of Service Vulnerability |
| CVE-2026-69637 | Normal | 5.7 | Important | Denial of Service | Network / infra servers | Microsoft | Windows DHCP Server Denial of Service Vulnerability |
| CVE-2026-69679 | Normal | 5.7 | Important | Denial of Service | Network / infra servers | Microsoft | Windows DHCP Server Denial of Service Vulnerability |
| CVE-2026-68830 | Normal | 5.5 | Important | Information Disclosure | Other / general Windows | Microsoft | Windows Universal Plug and Play (UPnP) Device Host Information Disclosure Vulnerability |
| CVE-2026-68831 | Normal | 5.5 | Important | Information Disclosure | Cloud / M365 apps | Microsoft | Windows Defender Firewall Service Information Disclosure Vulnerability |
| CVE-2026-68842 | Normal | 5.5 | Important | Information Disclosure | Other / general Windows | Microsoft | Windows MIDI Service Module Information Disclosure Vulnerability |
| CVE-2026-68843 | Normal | 5.5 | Important | Information Disclosure | Office / productivity | Microsoft | Microsoft Office Word Information Disclosure Vulnerability |
| CVE-2026-68851 | Normal | 5.5 | Important | Information Disclosure | Endpoints / Windows client | Microsoft | Windows NTFS Information Disclosure Vulnerability |
| CVE-2026-68852 | Normal | 5.5 | Important | Information Disclosure | Other / general Windows | Microsoft | Microsoft Account Information Disclosure Vulnerability |
| CVE-2026-68873 | Normal | 5.5 | Important | Information Disclosure | Other / general Windows | Microsoft | Windows Program Compatibility Assistant Service Information Disclosure Vulnerability |
| CVE-2026-68881 | Normal | 5.5 | Important | Information Disclosure | Other / general Windows | Microsoft | Microsoft Standard XPS Information Disclosure Vulnerability |
| CVE-2026-68886 | Normal | 5.5 | Important | Information Disclosure | Network / infra servers | Microsoft | Windows Network Connection Broker Information Disclosure Vulnerability |
| CVE-2026-68895 | Normal | 5.5 | Important | Information Disclosure | Endpoints / Windows client | Microsoft | Internet Storage Name Service Information Disclosure Vulnerability |
| CVE-2026-69286 | Normal | 5.5 | Important | Information Disclosure | Endpoints / Windows client | Microsoft | Windows USB Audio Class Driver Information Disclosure Vulnerability |
| CVE-2026-69288 | Normal | 5.5 | Important | Information Disclosure | Other / general Windows | Microsoft | Windows GDI+ Information Disclosure Vulnerability |
| CVE-2026-69294 | Normal | 5.5 | Important | Information Disclosure | Other / general Windows | Microsoft | Microsoft COM for Windows Information Disclosure Vulnerability |
| CVE-2026-69303 | Normal | 5.5 | Important | Information Disclosure | Network / infra servers | Microsoft | Push Message Routing Service Information Disclosure Vulnerability |
| CVE-2026-69308 | Normal | 5.5 | Important | Information Disclosure | Other / general Windows | Microsoft | Microsoft Standard XPS Information Disclosure Vulnerability |
| CVE-2026-69315 | Normal | 5.5 | Important | Information Disclosure | Other / general Windows | Microsoft | Windows License Manager Information Disclosure Vulnerability |
| CVE-2026-69318 | Normal | 5.5 | Important | Information Disclosure | Other / general Windows | Microsoft | Windows Imaging Component Information Disclosure Vulnerability |
| CVE-2026-69321 | Normal | 5.5 | Important | Tampering | Other / general Windows | Microsoft | Windows Power Dependency Coordinator Tampering Vulnerability |
| CVE-2026-69339 | Normal | 5.5 | Important | Information Disclosure | Other / general Windows | Microsoft | Windows MIDI Service Module Information Disclosure Vulnerability |
| CVE-2026-69343 | Normal | 5.5 | Important | Information Disclosure | Other / general Windows | Microsoft | Windows Overlay Filter Information Disclosure Vulnerability |
| CVE-2026-69344 | Normal | 5.5 | Important | Information Disclosure | Other / general Windows | Microsoft | Windows Print Spooler Components Information Disclosure Vulnerability |
| CVE-2026-69345 | Normal | 5.5 | Important | Information Disclosure | Other / general Windows | Microsoft | Microsoft Standard XPS Information Disclosure Vulnerability |
| CVE-2026-69351 | Normal | 5.5 | Important | Information Disclosure | Other / general Windows | Microsoft | Windows Universal Plug and Play (UPnP) Device Host Information Disclosure Vulnerability |
| CVE-2026-69353 | Normal | 5.5 | Important | Information Disclosure | Other / general Windows | Microsoft | Windows Text Shaping Information Disclosure Vulnerability |
| CVE-2026-69367 | Normal | 5.5 | Important | Information Disclosure | Other / general Windows | Microsoft | Microsoft Standard XPS Information Disclosure Vulnerability |
| CVE-2026-69369 | Normal | 5.5 | Important | Information Disclosure | Network / infra servers | Microsoft | Windows DNS Information Disclosure Vulnerability |
| CVE-2026-69376 | Normal | 5.5 | Important | Information Disclosure | Other / general Windows | Microsoft | Microsoft Standard XPS Information Disclosure Vulnerability |
| CVE-2026-69390 | Normal | 5.5 | Important | Information Disclosure | Other / general Windows | Microsoft | Windows Spaceport.sys Information Disclosure Vulnerability |
| CVE-2026-69403 | Normal | 5.5 | Important | Information Disclosure | Network / infra servers | Microsoft | Windows SMB Server Information Disclosure Vulnerability |
| CVE-2026-69453 | Normal | 5.5 | Important | Tampering | Other / general Windows | Microsoft | Microsoft Windows Search Component Tampering Vulnerability |
| CVE-2026-69457 | Normal | 5.5 | Important | Information Disclosure | Endpoints / Windows client | Microsoft | Windows USB Driver Information Disclosure Vulnerability |
| CVE-2026-69504 | Normal | 5.5 | Important | Information Disclosure | Endpoints / Windows client | Microsoft | Windows NTFS Information Disclosure Vulnerability |
| CVE-2026-69527 | Normal | 5.5 | Important | Information Disclosure | Endpoints / Windows client | Microsoft | Windows USB Mass Storage Class Driver Information Disclosure Vulnerability |
| CVE-2026-69531 | Normal | 5.5 | Important | Tampering | Other / general Windows | Microsoft | Microsoft Windows Speech Tampering Vulnerability |
| CVE-2026-69554 | Normal | 5.5 | Important | Tampering | Other / general Windows | Microsoft | Microsoft Windows Search Component Tampering Vulnerability |
| CVE-2026-69568 | Normal | 5.5 | Important | Information Disclosure | Endpoints / Windows client | Microsoft | Storage Spaces Controller Information Disclosure Vulnerability |
| CVE-2026-69609 | Normal | 5.5 | Important | Information Disclosure | Endpoints / Windows client | Microsoft | Win32k Information Disclosure Vulnerability |
| CVE-2026-69616 | Normal | 5.5 | Important | Information Disclosure | Remote access / RDP | Microsoft | Windows Remote Desktop Services Information Disclosure Vulnerability |
| CVE-2026-69618 | Normal | 5.5 | Important | Information Disclosure | Network / infra servers | Microsoft | Windows SMB Client Information Disclosure Vulnerability |
| CVE-2026-69627 | Normal | 5.5 | Important | Information Disclosure | Remote access / RDP | Microsoft | Windows Remote Desktop Licensing Service Information Disclosure Vulnerability |
| CVE-2026-69672 | Normal | 5.5 | Important | Information Disclosure | Network / infra servers | Microsoft | Windows DNS Information Disclosure Vulnerability |
| CVE-2026-69674 | Normal | 5.5 | Important | Security Feature Bypass | Other / general Windows | Microsoft | Windows Modern Device Management (MDM) Security Feature Bypass Vulnerability |
| CVE-2026-69684 | Normal | 5.5 | Important | Information Disclosure | Other / general Windows | Microsoft | Windows Error Reporting Information Disclosure Vulnerability |
| CVE-2026-69741 | Normal | 5.5 | Important | Information Disclosure | Other / general Windows | Microsoft | Windows Spaceport.sys Information Disclosure Vulnerability |
| CVE-2026-69770 | Normal | 5.5 | Important | Information Disclosure | Other / general Windows | Microsoft | Windows Spaceport.sys Information Disclosure Vulnerability |
| CVE-2026-69794 | Normal | 5.5 | Important | Information Disclosure | Other / general Windows | Microsoft | Windows Encrypting File System (EFS) Information Disclosure Vulnerability |
| CVE-2026-69808 | Normal | 5.5 | Important | Information Disclosure | Endpoints / Windows client | Microsoft | Win32k Information Disclosure Vulnerability |
| CVE-2026-69862 | Normal | 5.5 | Important | Information Disclosure | Network / infra servers | Microsoft | Windows Wireless Wide Area Network Service Information Disclosure Vulnerability |
| CVE-2026-70145 | Normal | 5.5 | Important | Information Disclosure | Other / general Windows | Microsoft | Microsoft Windows Search Component Information Disclosure Vulnerability |
| CVE-2026-70290 | Normal | 5.5 | Important | Information Disclosure | Endpoints / Windows client | Microsoft | Win32k Information Disclosure Vulnerability |
| CVE-2026-71341 | Normal | 5.5 | Important | Information Disclosure | Endpoints / Windows client | Microsoft | Windows Partition Management Driver Information Disclosure Vulnerability |
| CVE-2026-72937 | Normal | 5.5 | Important | Information Disclosure | Endpoints / Windows client | Microsoft | Windows Storage Port Driver Information Disclosure Vulnerability |
| CVE-2026-72945 | Normal | 5.5 | Important | Information Disclosure | Other / general Windows | Microsoft | Windows Task Scheduler Information Disclosure Vulnerability |
| CVE-2026-72964 | Normal | 5.5 | Important | Tampering | Other / general Windows | Microsoft | Windows Internet Connection Sharing (ICS) Tampering Vulnerability |
| CVE-2026-72966 | Normal | 5.5 | Important | Tampering | Other / general Windows | Microsoft | Windows Remote Access Connection Manager Tampering Vulnerability |
| CVE-2026-73004 | Normal | 5.5 | Important | Tampering | Other / general Windows | Microsoft | Windows Autopilot Tampering Vulnerability |
| CVE-2026-73008 | Normal | 5.5 | Important | Information Disclosure | Other / general Windows | Microsoft | Windows Biometric Service Information Disclosure Vulnerability |
| CVE-2026-77488 | Normal | 5.5 | Important | Information Disclosure | Database / SQL | Microsoft | Microsoft SQL Server Information Disclosure Vulnerability |
| CVE-2026-77491 | Normal | 5.5 | Important | Information Disclosure | Other / general Windows | Microsoft | Windows GDI Information Disclosure Vulnerability |
| CVE-2026-77492 | Normal | 5.5 | Important | Elevation of Privilege | Endpoints / Windows client | Microsoft | Windows Storage Port Driver Information Disclosure Vulnerability |
| CVE-2026-78506 | Normal | 5.5 | Important | Information Disclosure | Office / productivity | Microsoft | Microsoft Office Word Information Disclosure Vulnerability |
| CVE-2026-78513 | Normal | 5.5 | Important | Information Disclosure | Office / productivity | Microsoft | Microsoft Office PowerPoint Information Disclosure Vulnerability |
| CVE-2026-81387 | Normal | 5.5 | Important | Information Disclosure | Office / productivity | Microsoft | Microsoft Excel Information Disclosure Vulnerability |
| CVE-2026-81390 | Normal | 5.5 | Important | Information Disclosure | Office / productivity | Microsoft | Microsoft Excel Information Disclosure Vulnerability |
| CVE-2026-81391 | Normal | 5.5 | Important | Information Disclosure | Office / productivity | Microsoft | Microsoft Excel Information Disclosure Vulnerability |
| CVE-2026-81392 | Normal | 5.5 | Important | Information Disclosure | Office / productivity | Microsoft | Microsoft Excel Information Disclosure Vulnerability |
| CVE-2026-81393 | Normal | 5.5 | Important | Information Disclosure | Office / productivity | Microsoft | Microsoft Excel Information Disclosure Vulnerability |
| CVE-2026-81394 | Normal | 5.5 | Important | Information Disclosure | Office / productivity | Microsoft | Microsoft Excel Information Disclosure Vulnerability |
| CVE-2026-81395 | Normal | 5.5 | Important | Information Disclosure | Office / productivity | Microsoft | Microsoft Excel Information Disclosure Vulnerability |
| CVE-2026-81399 | Normal | 5.5 | Important | Information Disclosure | Office / productivity | Microsoft | Microsoft Excel Information Disclosure Vulnerability |
| CVE-2026-81400 | Normal | 5.5 | Important | Information Disclosure | Office / productivity | Microsoft | Microsoft Excel Information Disclosure Vulnerability |
| CVE-2026-81401 | Normal | 5.5 | Important | Information Disclosure | Office / productivity | Microsoft | Microsoft Excel Information Disclosure Vulnerability |
| CVE-2026-81958 | Normal | 5.5 | Important | Information Disclosure | Office / productivity | Microsoft | Microsoft Excel Information Disclosure Vulnerability |
| CVE-2026-83949 | Normal | 5.5 | Important | Information Disclosure | Office / productivity | Microsoft | Microsoft Office Word Information Disclosure Vulnerability |
| CVE-2026-83951 | Normal | 5.5 | Important | Information Disclosure | Office / productivity | Microsoft | Microsoft Office Word Information Disclosure Vulnerability |
| CVE-2026-83991 | Normal | 5.5 | Important | Tampering | Endpoints / Windows client | Microsoft | Windows Cloud Files Mini Filter Driver Tampering Vulnerability |
| CVE-2026-85875 | Normal | 5.5 | Important | Information Disclosure | Office / productivity | Microsoft | Microsoft Office Excel Information Disclosure Vulnerability |
| CVE-2026-72976 | Normal | 5.0 | Important | Information Disclosure | Office / productivity | Microsoft | Microsoft Office Word Information Disclosure Vulnerability |
| CVE-2026-69615 | Normal | 3.5 | Important | Spoofing | SharePoint owners | Microsoft | Microsoft Office SharePoint Spoofing Vulnerability |
| CVE-2026-69904 | Normal | 3.5 | Important | Information Disclosure | SharePoint owners | Microsoft | Microsoft Office SharePoint Information Disclosure Vulnerability |
| CVE-2026-68849 | Normal | 4.7 | Important | Information Disclosure | Endpoints / Windows client | Microsoft | Windows Bluetooth Port Driver Information Disclosure Vulnerability |
| CVE-2026-68891 | Normal | 4.7 | Important | Information Disclosure | Other / general Windows | Microsoft | Microsoft Standard XPS Information Disclosure Vulnerability |
| CVE-2026-69316 | Normal | 4.7 | Important | Information Disclosure | Other / general Windows | Microsoft | Windows Overlay Filter Information Disclosure Vulnerability |
| CVE-2026-69425 | Normal | 4.7 | Important | Tampering | Endpoints / Windows client | Microsoft | Windows NTFS Tampering Vulnerability |
| CVE-2026-69483 | Normal | 4.7 | Important | Information Disclosure | Other / general Windows | Microsoft | Windows Image Acquisition Information Disclosure Vulnerability |
| CVE-2026-69771 | Normal | 4.7 | Important | Security Feature Bypass | Other / general Windows | Microsoft | Windows Container Manager Service Security Feature Bypass Vulnerability |
| CVE-2026-69792 | Normal | 4.7 | Important | Security Feature Bypass | Endpoints / Windows client | Microsoft | Windows Win32K Security Feature Bypass Vulnerability |
| CVE-2026-69853 | Normal | 4.7 | Important | Information Disclosure | Endpoints / Windows client | Microsoft | Win32k Information Disclosure Vulnerability |
| CVE-2026-69895 | Normal | 4.7 | Important | Information Disclosure | Other / general Windows | Microsoft | Windows Spaceport.sys Information Disclosure Vulnerability |
| CVE-2026-72931 | Normal | 4.7 | Important | Denial of Service | Other / general Windows | Microsoft | Windows Secure Socket Tunneling Protocol (SSTP) Denial of Service Vulnerability |
| CVE-2026-69381 | Normal | 4.6 | Important | Information Disclosure | Endpoints / Windows client | Microsoft | Windows Storage Port Driver Information Disclosure Vulnerability |
| CVE-2026-69548 | Normal | 4.6 | Important | Information Disclosure | Other / general Windows | Microsoft | Windows RNDIS Information Disclosure Vulnerability |
| CVE-2026-78452 | Normal | 4.6 | Important | Information Disclosure | Other / general Windows | Microsoft | Microsoft Windows SCSI Class System File Information Disclosure Vulnerability |
| CVE-2026-78508 | Normal | 4.6 | Important | Information Disclosure | Endpoints / Windows client | Microsoft | Windows CD-ROM Driver Information Disclosure Vulnerability |
| CVE-2026-69713 | Normal | 4.4 | Important | Security Feature Bypass | Other / general Windows | Microsoft | Windows Secure Boot Security Feature Bypass Vulnerability |
| CVE-2026-78455 | Normal | 4.3 | Important | Information Disclosure | Other / general Windows | Microsoft | Xbox Information Disclosure Vulnerability |
| CVE-2026-78516 | Normal | 4.3 | Important | Information Disclosure | Endpoints / Windows client | Microsoft | Windows Storage Information Disclosure Vulnerability |
| CVE-2026-86145 | Normal worm | 8.2 | Important | — | Other / general Windows | Linux / other | PCRE2 before 10.48 allows a pcre2_dfa_match out-of-bounds write because reuse of a cached workspace block, in a recursive DFA matching workspace, lacks a size check (even though a newly allocated block, for the same purpose, does have a size check). This outcome requires an attacker-controlled regular expression, or a recursive pattern in conjunction with a small heap limit (this can be set through the API). |
| CVE-2026-78689 | Normal worm | 8.1 | Important | — | Other / general Windows | Linux / other | NGINX ngx_http_js_module vulnerablility |
| CVE-2026-80792 | Normal worm | 8.1 | Important | — | Other / general Windows | Linux / other | ipv6: fix use-after-free in ip6_finish_output2() |
| CVE-2025-70873 | Normal worm | 7.5 | Important | Information Disclosure | Other / general Windows | Linux / other | An information disclosure issue in the zipfileInflate function in the zipfile extension in SQLite v3.51.1 and earlier allows attackers to obtain heap memory via supplying a crafted ZIP file. |
| CVE-2026-14957 | Normal worm | 7.5 | Important | — | Other / general Windows | Linux / other | FIPS mode assertion failure via malicious CERT payload |
| CVE-2026-33630 | Normal worm | 7.5 | Important | — | Other / general Windows | Linux / other | c-ares : Use-after-free / double-free in c-ares query-completion handling, remotely triggerable via ares_getaddrinfo() over TCP |
| CVE-2026-56855 | Normal worm | 7.5 | Moderate | — | Other / general Windows | Linux / other | Prevent DoS on deadlocked established channel in golang.org/x/crypto/ssh |
| CVE-2026-78662 | Normal worm | 7.5 | Moderate | — | Other / general Windows | Linux / other | Prevent DoS on deadlocked undecided channel in golang.org/x/crypto/ssh |
| CVE-2026-80788 | Normal worm | 7.5 | Important | — | Other / general Windows | Linux / other | nvmet-tcp: Do not WARN on remotely-controlled oversized SGL allocations |
| CVE-2026-80789 | Normal worm | 7.5 | Important | — | Other / general Windows | Linux / other | nvmet-tcp: bound SGL data length before allocating command buffers |
| CVE-2026-85505 | Normal worm | 7.5 | Moderate | — | Other / general Windows | Linux / other | ipmi-oem in FreeIPMI before 1.6.19 has a stack-based buffer over-read in ipmi_oem_fujitsu_get_sel_entry_long_text in ipmi-oem/ipmi-oem-fujitsu.c when a BMC provides a short response, a different vulnerability than CVE-2026-50031 (which has different affected versions). |
| CVE-2026-80791 | Normal worm | 7.5 | Important | — | Other / general Windows | Linux / other | nvmet-auth: zero the AUTH_RECEIVE response buffer |
| CVE-2026-85393 | Normal worm | 7.5 | Important | — | Other / general Windows | Linux / other | node-forge through 1.4.0 RSA PKCS#1 v1.5 Signature Forgery via Nested DigestAlgorithm Padding |
| CVE-2026-85396 | Normal worm | 7.5 | Important | — | Other / general Windows | Linux / other | rubyzip before 3.4.0 Path Traversal in Zip::Entry#extract via Sibling-Directory Prefix |
| CVE-2026-80837 | Normal worm | 7.4 | Important | — | Other / general Windows | Linux / other | netfilter: nf_tables: don't queue packet path object notifications |
| CVE-2026-80840 | Normal worm | 7.4 | Important | — | Other / general Windows | Linux / other | ipv6: seg6: clear IPv4 control block on IPIP decapsulation |
| CVE-2026-85091 | Normal worm | 7.4 | Important | — | Other / general Windows | Linux / other | zlib 1.3.1.2 through 1.3.2 Heap Buffer Overflow via gz_vacate |
| CVE-2026-82208 | Normal worm | 7.4 | Important | — | Other / general Windows | Linux / other | wolfSSL CA-cache hit overrides callback |
| CVE-2026-69541 | Normal | 7.8 | Important | Elevation of Privilege | Endpoints / Windows client | Linux / other | Virtual Hard Disk (VHD) Miniport Driver Elevation of Privilege Vulernability |
| CVE-2026-80229 | Normal worm | 7.5 | Important | — | Other / general Windows | Linux / other | OpenSSL provider use-after-free |
| CVE-2026-86098 | Normal worm | 7.4 | Important | — | Other / general Windows | Linux / other | ntop nDPI before 6.0 Heap Buffer Overflow via ndpi_json_string_escape |
| CVE-2026-72649 | Normal | 8.8 | Important | Remote Code Execution | Other / general Windows | Linux / other | Deserialization of Untrusted Data in Elasticsearch Leading to Remote Code Execution |
| CVE-2026-69681 | Normal | 8.0 | Important | Elevation of Privilege | Endpoints / Windows client | Linux / other | Virtual Hard Disk (VHD) Miniport Driver Elevation of Privilege Vulernability |
| CVE-2026-19931 | Normal worm | 6.5 | Moderate | — | Other / general Windows | Linux / other | Negotiate ambient user conn reuse |
| CVE-2026-18924 | Normal worm | 5.9 | Moderate | — | Other / general Windows | Linux / other | HTTP/2 server push UAF |
| CVE-2026-80904 | Normal worm | 5.9 | Moderate | — | Other / general Windows | Linux / other | net/tls: Fail tls_sw_splice_read() after a failed async decrypt |
| CVE-2026-80846 | Normal worm | 5.9 | Moderate | — | Other / general Windows | Linux / other | xfrm: drop ESP-in-TCP packets with no ingress device |
| CVE-2026-80848 | Normal worm | 5.9 | Moderate | — | Other / general Windows | Linux / other | xfrm: espintcp: fix UAF during close |
| CVE-2026-18149 | Normal worm | 5.9 | Moderate | Denial of Service | Other / general Windows | Linux / other | undici vulnerable to Denial of Service via orphaned RetryHandler response body |
| CVE-2026-85534 | Normal worm | 5.9 | Moderate | — | Other / general Windows | Linux / other | Libsoup: libsoup: http/2 client crash in on_data_source_read_callback when settings initial_window_size shrinks during deferred body read |
| CVE-2026-0799 | Normal | 8.7 | Important | — | Other / general Windows | Linux / other | OOBR and OOBW in libpcap before 1.10.7 |
| CVE-2026-86090 | Normal | 7.1 | Important | — | Other / general Windows | Linux / other | ntopng before 6.7.260717 Missing Authorization on the Notification Endpoint and Recipient Delete Handlers |
| CVE-2026-86091 | Normal | 7.1 | Important | — | Other / general Windows | Linux / other | ntopng before 6.7.260717 Missing Authorization on the Host Pool Bulk Delete Handler |
| CVE-2026-70574 | Normal | 7.8 | Important | Elevation of Privilege | Endpoints / Windows client | Linux / other | Virtual Hard Disk (VHD) Miniport Driver Elevation of Privilege Vulernability |
| CVE-2026-80890 | Normal worm | 4.8 | Moderate | — | Other / general Windows | Linux / other | sctp: reject stale cookies with mismatched verification tags |
| CVE-2026-85197 | Normal | 7.6 | Important | — | Other / general Windows | Linux / other | Libsoup: libsoup: heap use-after-free in libsoup http/2 client on_data_read() via goaway during body upload |
| CVE-2026-78522 | Normal | — | Important | Information Disclosure | Office / productivity | Microsoft | Microsoft Office Word Information Disclosure Vulnerability |
| CVE-2026-80073 | Normal | — | Important | Information Disclosure | Office / productivity | Microsoft | Microsoft Office Outlook Information Disclosure Vulnerability |
| CVE-2026-80079 | Normal | — | Important | Information Disclosure | Office / productivity | Microsoft | Microsoft Office Word Information Disclosure Vulnerability |
| CVE-2026-80081 | Normal | — | Important | Remote Code Execution | Office / productivity | Microsoft | Microsoft Office PowerPoint Remote Code Execution Vulnerability |
| CVE-2026-80798 | Normal | 8.1 | Important | — | Other / general Windows | Linux / other | nfc: llcp: reject PDUs shorter than the LLCP header |
| CVE-2026-80799 | Normal | 8.1 | Important | — | Other / general Windows | Linux / other | nfc: llcp: fix OOB read and u8 offset wrap in TLV parsers |
| CVE-2026-80800 | Normal | 8.1 | Important | — | Other / general Windows | Linux / other | nfc: llcp: bound the connect_sn TLV walk to the skb |
| CVE-2026-80803 | Normal | 8.1 | Important | — | Other / general Windows | Linux / other | nfc: digital: clamp SENSF_RES length to the destination buffer |
| CVE-2026-80823 | Normal | 8.1 | Important | — | Other / general Windows | Linux / other | nfc: st21nfca: validate ATR_REQ length against the received frame |
| CVE-2026-86140 | Normal | 8.0 | Important | — | Other / general Windows | Linux / other | In libxml2 before 2.15.4, xmlSnprintfElements in valid.c has a strcat stack-based buffer overflow. |
| CVE-2026-78408 | Normal | 7.9 | Important | — | Other / general Windows | Linux / other | Util-linux: util-linux: nsenter --join-cgroup leaks root cgroup migration authority |
| CVE-2026-76642 | Normal | 7.8 | Moderate | — | Other / general Windows | Linux / other | util-linux libmount Privilege Escalation via Failed Mount Helper |
| CVE-2026-78410 | Normal | 7.8 | Important | — | Other / general Windows | Linux / other | Util-linux: util-linux: restricted bind mounts do not pin the source, allowing x-mount.owner/group/mode redirection |
| CVE-2026-80909 | Normal | 7.8 | Important | — | Other / general Windows | Linux / other | drm/amdgpu: Reject UVD message with invalid number of h265 refs |
| CVE-2026-84838 | Normal | 7.8 | Important | — | Other / general Windows | Linux / other | Rpm: command injection in rpmuncompress via unescaped filenames passed to popen() |
| CVE-2026-69549 | Normal | 7.0 | Important | Elevation of Privilege | Endpoints / Windows client | Linux / other | Virtual Hard Disk (VHD) Miniport Driver Elevation of Privilege Vulernability |
| CVE-2026-69611 | Normal | 7.0 | Important | Elevation of Privilege | Endpoints / Windows client | Linux / other | Virtual Hard Disk (VHD) Miniport Driver Elevation of Privilege Vulernability |
| CVE-2026-13608 | Normal worm | 3.7 | Low | — | Identity / AD | Linux / other | OpenLDAP SASL authentication bypass |
| CVE-2026-80732 | Normal | 7.1 | Moderate | — | Other / general Windows | Linux / other | ata: pata_sl82c105: fix bridge revision use-after-free |
| CVE-2026-80737 | Normal | 7.1 | Moderate | — | Other / general Windows | Linux / other | serial: amba-pl011: synchronize DMA teardown |
| CVE-2026-84233 | Normal | 7.0 | Moderate | — | Other / general Windows | Linux / other | Rpm: command execution via macro expansion in `rpmuncompress -x` for crafted `.gem` filenames |
| CVE-2026-86138 | Normal | 6.9 | Moderate | — | Other / general Windows | Linux / other | In libxml2 before 2.15.4, xmlDictAddQString in dict.c has an integer overflow and resultant heap-based buffer overflow. |
| CVE-2026-86142 | Normal | 6.9 | Moderate | — | Other / general Windows | Linux / other | In libxml2 before 2.15.4, there is a heap-based buffer overflow in xmlXPtrEvalXPtrPart because of xmlXPtrEval xpointer length saturation. |
| CVE-2026-86143 | Normal | 6.9 | Moderate | — | Other / general Windows | Linux / other | In xmlIO in libxml2 before 2.15.4, an inconsistency in xmlOutputWriteCallback and xmlBufUse causes negative lengths to reach write callbacks, aka a lack of a check for integer overflow before calling writecallback. This has security relevance for many types of uses of that length value within a callback. |
| CVE-2026-86139 | Normal | 6.9 | Moderate | — | Other / general Windows | Linux / other | In libxml2 before 2.15.4, xmlURIEscapeStr in uri.c has an integer overflow. |
| CVE-2026-78607 | Normal | 5.4 | Moderate | Information Disclosure | Other / general Windows | Linux / other | Missing Authorization in Elasticsearch Leading to Information Disclosure |
| CVE-2026-18540 | Normal worm | 3.7 | Low | — | Other / general Windows | Linux / other | undici vulnerable to downstream response splitting via retry interceptor |
| CVE-2026-80230 | Normal worm | 3.7 | Low | — | Other / general Windows | Linux / other | OpenSSL pinning bypass |
| CVE-2026-80231 | Normal worm | 3.7 | Low | — | Other / general Windows | Linux / other | native CA store conn reuse |
| CVE-2026-80255 | Normal worm | 3.7 | Low | — | Other / general Windows | Linux / other | secure cookie attribute bypass with tab |
| CVE-2026-80819 | Normal | 6.5 | Moderate | — | Other / general Windows | Linux / other | Bluetooth: RFCOMM: take rfcomm_mutex for the deferred setup accept |
| CVE-2026-18238 | Normal | 5.0 | Moderate | — | Other / general Windows | Linux / other | OOBR in rpcap client in libpcap before 1.10.7 |
| CVE-2026-80757 | Normal | 6.4 | Moderate | — | Other / general Windows | Linux / other | selinux: reject a class permission count below its inherited common |
| CVE-2026-56143 | Normal | 4.9 | Moderate | Denial of Service | Other / general Windows | Linux / other | Allocation of Resources Without Limits or Throttling in Elasticsearch Leading to Denial of Service |
| CVE-2026-80785 | Normal | 6.3 | Moderate | — | Other / general Windows | Linux / other | fbdev: serialize mode sysfs access with lock_fb_info() |
| CVE-2026-80831 | Normal | 6.3 | Moderate | — | Other / general Windows | Linux / other | crypto: mxs-dcp - fix source scatterlist length access |
| CVE-2026-71220 | Normal | 7.0 | Important | — | Other / general Windows | Linux / other | Gfs2-utils: gfs2-utils: stack out-of-bounds write via unchecked di_height in gfs2_edit |
| CVE-2026-71221 | Normal | 7.0 | Important | — | Other / general Windows | Linux / other | Gfs2-utils: gfs2-utils: stack out-of-bounds write via unchecked height in savemeta |
| CVE-2026-80755 | Normal | 6.0 | Moderate | — | Other / general Windows | Linux / other | selinux: reject a permission value exceeding the class permission count |
| CVE-2026-80844 | Normal | 6.0 | Moderate | — | Network / infra servers | Linux / other | xfrm: ah6: validate routing header segments_left |
| CVE-2026-80852 | Normal | 6.0 | Moderate | — | Other / general Windows | Linux / other | tls: device: fix out-of-bounds write in tls_append_frag() |
| CVE-2026-80807 | Normal | 6.0 | Moderate | — | Other / general Windows | Linux / other | nilfs2: reject invalid block index in GC ioctl |
| CVE-2026-80783 | Normal | 5.9 | Moderate | — | Other / general Windows | Linux / other | HID: magicmouse: prevent unbounded recursion in magicmouse_raw_event() |
| CVE-2026-80829 | Normal | 5.9 | Moderate | — | Other / general Windows | Linux / other | ALSA: usb-audio: fix OOB write in snd_usbmidi_novation_output() |
| CVE-2026-80780 | Normal | 5.9 | Moderate | — | Other / general Windows | Linux / other | HID: pidff: fix OOB write when hid->inputs is empty |
| CVE-2026-80802 | Normal | 5.9 | Moderate | — | Other / general Windows | Linux / other | nfc: fdp: bound the device-reported read length and fix an skb leak |
| CVE-2026-80891 | Normal | 5.9 | Moderate | — | Other / general Windows | Linux / other | KVM: s390: pci: Validate AIBV and AISB before pinning guest pages |
| CVE-2026-18313 | Normal | 4.3 | Moderate | — | Other / general Windows | Linux / other | rpcapd memory leak in libpcap before 1.10.7 |
| CVE-2026-85769 | Normal | 6.5 | Moderate | — | Other / general Windows | Linux / other | Libtpms: libtpms: heap out-of-bounds read in tpm2 state unmarshalling via unchecked block_skip_read() blocksize |
| CVE-2026-80731 | Normal | 5.7 | Moderate | — | Other / general Windows | Linux / other | net: remove CAP_SYS_RAWIO zero-padding in dev_validate_header |
| CVE-2026-80841 | Normal | 5.7 | Moderate | — | Other / general Windows | Linux / other | net/packet: defer vmalloc TX_RING free until skbs finish |
| CVE-2026-80842 | Normal | 5.7 | Moderate | — | Other / general Windows | Linux / other | net: bridge: mcast: fix use-after-free of a master VLAN's multicast context |
| CVE-2026-80790 | Normal | 5.7 | Moderate | — | Other / general Windows | Linux / other | nvmet-fc: fix invalid free in LS IOD error path |
| CVE-2026-80851 | Normal | 5.7 | Moderate | — | Other / general Windows | Linux / other | gtp: serialize PDP context updates |
| CVE-2026-80854 | Normal | 5.7 | Moderate | — | Other / general Windows | Linux / other | usb: gadget: f_tcm: keep port count until LUN teardown completes |
| CVE-2026-86144 | Normal | 5.6 | Moderate | Denial of Service | Other / general Windows | Linux / other | In xinclude in libxml2 before 2.15.4, xmlXIncludeProcess and xmlXIncludeProcessTree do not propagate parseFlags. This has security relevance for, for example, the XML_PARSE_NONET flag, if (without it) a custom resource loader accesses the internet and triggers XML external entity injection, SSRF, or a denial of service (e.g., for an attacker-controlled internet resource that is intentionally slow). |
| CVE-2026-80768 | Normal | 5.6 | Moderate | — | Other / general Windows | Linux / other | HID: ft260: fix stack-use-after-return write in I2C read race |
| CVE-2026-31911 | Normal | 5.5 | Moderate | — | Other / general Windows | Linux / other | abort() in libpcap before 1.10.7 on an invalid BPF opcode |
| CVE-2026-31912 | Normal | 5.5 | Moderate | — | Other / general Windows | Linux / other | OOBR in libpcap before 1.10.7 |
| CVE-2026-6244 | Normal | 5.5 | Moderate | — | Other / general Windows | Linux / other | division by zero in libpcap before 1.10.7 |
| CVE-2026-6554 | Normal | 5.5 | Moderate | — | Other / general Windows | Linux / other | infinte loop in libpcap before 1.10.7 |
| CVE-2026-80728 | Normal | 5.5 | Moderate | — | Other / general Windows | Linux / other | Revert "drm/amdgpu: fix aperture mapping leak" |
| CVE-2026-80730 | Normal | 5.5 | Moderate | — | Other / general Windows | Linux / other | ring-buffer: Fix crash passing ERR_PTR to kthread_stop() |
| CVE-2026-80733 | Normal | 5.5 | Moderate | — | Other / general Windows | Linux / other | net: remove WARN_ON_ONCE() from sk_mc_loop() |
| CVE-2026-80738 | Normal | 5.5 | Moderate | — | Other / general Windows | Linux / other | bpf: Check sk_state before sk_protocol in bpf_tcp_*_syncookie |
| CVE-2026-80742 | Normal | 5.5 | Moderate | — | Other / general Windows | Linux / other | af_packet: Don't send zero-byte data in tpacket_snd(). |
| CVE-2026-80743 | Normal | 5.5 | Moderate | — | Other / general Windows | Linux / other | ASoC: xilinx: formatter_pcm: pass aud_drv_data to irq handlers |
| CVE-2026-80747 | Normal | 5.5 | Moderate | — | Other / general Windows | Linux / other | drm/amdkfd: Add bounds check for CRAT subtype length |
| CVE-2026-80752 | Normal | 5.5 | Moderate | — | Endpoints / Windows client | Linux / other | Input: psxpad-spi - set driver data before use |
| CVE-2026-80888 | Normal | 5.5 | Moderate | — | Other / general Windows | Linux / other | drm/vmwgfx: drop dma_buf reference on foreign-fd prime import |
| CVE-2026-80905 | Normal | 5.5 | Moderate | — | Other / general Windows | Linux / other | net: tap: fix wrong transport_header when sending VLAN-tagged frame |
| CVE-2026-80832 | Normal | 5.5 | Moderate | — | Other / general Windows | Linux / other | crypto: qce - fix CCM AAD buffer underallocation |
| CVE-2026-80726 | Normal | 4.7 | Moderate | — | Other / general Windows | Linux / other | KVM: x86/mmu: WARN and clear role.invalid when creating a child shadow page |
| CVE-2026-80767 | Normal | 4.7 | Moderate | — | Other / general Windows | Linux / other | HID: sensor: custom: Fix use-after-free in enable_sensor |
| CVE-2026-80855 | Normal | 4.7 | Moderate | — | Other / general Windows | Linux / other | fuse: fix invalidate lock leak on open O_TRUNC DAX failure |
| CVE-2026-80856 | Normal | 4.7 | Moderate | — | Other / general Windows | Linux / other | fuse: fix invalidate lock leak on setattr writeback failure |
| CVE-2026-80864 | Normal | 4.7 | Moderate | — | Other / general Windows | Linux / other | RDMA/rxe: Fix responder UAF on IB_QP_MAX_DEST_RD_ATOMIC modify_qp |
| CVE-2026-80771 | Normal | 4.7 | Moderate | — | Other / general Windows | Linux / other | HID: nintendo: register input device after capabilities are set |
| CVE-2026-80809 | Normal | 4.7 | Moderate | — | Other / general Windows | Linux / other | ocfs2: fix missing metadata reservation for large xattrs |
| CVE-2026-80833 | Normal | 4.7 | Moderate | — | Other / general Windows | Linux / other | crypto: sun8i-ss - Remove crypto_rng interface |
| CVE-2026-80834 | Normal | 4.7 | Moderate | — | Other / general Windows | Linux / other | crypto: sun8i-ce - Remove crypto_rng interface |
| CVE-2026-71222 | Normal | 5.3 | Moderate | — | Other / general Windows | Linux / other | Gfs2-utils: gfs2-utils: heap out-of-bounds read via unchecked ea_num_ptrs in extended attribute processing |
| CVE-2026-80765 | Normal | 4.5 | Moderate | — | Other / general Windows | Linux / other | HID: hyperv: validate initial device info bounds |
| CVE-2026-80756 | Normal | 4.4 | Moderate | — | Other / general Windows | Linux / other | selinux: do not cancel a policy conversion that never started |
| CVE-2026-80793 | Normal | 4.4 | Moderate | — | Other / general Windows | Linux / other | ipv4: reject undersized MTUs in ip_do_fragment() |
| CVE-2026-80805 | Normal | 4.4 | Moderate | — | Other / general Windows | Linux / other | xfs: validate attr entry pointer before field access |
| CVE-2026-80847 | Normal | 4.4 | Moderate | — | Other / general Windows | Linux / other | tcp: clamp route advmss to TCP_MIN_MSS |
| CVE-2026-80863 | Normal | 4.4 | Moderate | — | Other / general Windows | Linux / other | RDMA/rxe: Fix OOB in free_rd_atomic_resources() |
| CVE-2026-80902 | Normal | 4.4 | Moderate | — | Other / general Windows | Linux / other | dmaengine: sun6i-dma: Fix reclaim descriptors while terminating DMA |
| CVE-2026-80912 | Normal | 4.4 | Moderate | — | Other / general Windows | Linux / other | selinux: reject an unclaimed class value in security_get_classes() |
| CVE-2026-80913 | Normal | 4.4 | Moderate | — | Other / general Windows | Linux / other | selinux: require every boolean value to be defined |
| CVE-2026-80763 | Normal | 4.3 | Moderate | — | Other / general Windows | Linux / other | Bluetooth: hci_event: validate LE Set CIG Parameters response |
| CVE-2026-80828 | Normal | 4.3 | Moderate | — | Other / general Windows | Linux / other | ALSA: usb-audio: Complete cleanup after system-resume errors |
| CVE-2026-80772 | Normal | 4.3 | Moderate | — | Other / general Windows | Linux / other | HID: nintendo: fix out-of-bounds read in joycon_ctlr_read_handler() |
| CVE-2026-80794 | Normal | 4.3 | Moderate | — | Other / general Windows | Linux / other | nfc: nci: fix uninit-value in the RF discover/activated NTF handlers |
| CVE-2026-80796 | Normal | 4.3 | Moderate | — | Other / general Windows | Linux / other | nfc: nci: add data_len bound checks to activation parameter extractors |
| CVE-2026-80801 | Normal | 4.3 | Moderate | — | Other / general Windows | Linux / other | nfc: microread: validate target discovery payload lengths |
| CVE-2026-80861 | Normal | 4.2 | Moderate | — | Other / general Windows | Linux / other | usb: xhci: bail out of setup if the controller is inaccessible |
| CVE-2026-80762 | Normal | 4.1 | Moderate | — | Other / general Windows | Linux / other | Bluetooth: hci_sync: Fix accept list UAF during suspend |
| CVE-2026-80764 | Normal | 4.1 | Moderate | — | Other / general Windows | Linux / other | Bluetooth: hci_event: fix LE list UAF on reset |
| CVE-2026-80806 | Normal | 4.1 | Moderate | — | Other / general Windows | Linux / other | ext4: don't enable DAX on new encrypted files |
| CVE-2026-80808 | Normal | 4.1 | Moderate | — | Other / general Windows | Linux / other | ext4: stop retrying saturated xattr cache entries |
| CVE-2026-80824 | Normal | 4.1 | Moderate | — | Other / general Windows | Linux / other | usb: usbfs: fix use-after-free of usb_device in usbdev_release() |
| CVE-2026-80826 | Normal | 4.1 | Moderate | — | Other / general Windows | Linux / other | USB: c67x00: fix use-after-free in c67x00_add_iso_urb() |
| CVE-2026-80836 | Normal | 4.1 | Moderate | — | Other / general Windows | Linux / other | crypto: virtio - bound the akcipher result length |
| CVE-2026-80866 | Normal | 4.1 | Moderate | — | Other / general Windows | Linux / other | tipc: avoid busy looping in tipc_exit_net() |
| CVE-2026-80820 | Normal | 4.1 | Moderate | — | Other / general Windows | Linux / other | xfs: don't livelock in scrub on a circular unlinked list |
| CVE-2026-80872 | Normal | 4.1 | Moderate | — | Other / general Windows | Linux / other | ALSA: hda/tas2781: Cancel async firmware request at unbind |
| CVE-2026-80766 | Normal | 4.0 | Moderate | — | Other / general Windows | Linux / other | HID: uclogic: fix use-after-free of inrange_timer on remove |
| CVE-2026-80782 | Normal | 4.0 | Moderate | — | Other / general Windows | Linux / other | HID: magicmouse: do not keep a stale msc->input if no input is claimed |
| CVE-2026-80830 | Normal | 4.0 | Moderate | — | Other / general Windows | Linux / other | usb: core: Add lock to usb_wakeup_notification() |
| CVE-2026-80770 | Normal | 4.0 | Moderate | — | Other / general Windows | Linux / other | HID: nintendo: stop device IO before hid_hw_stop on probe failure |
| CVE-2026-71219 | Normal | 4.7 | Moderate | — | Other / general Windows | Linux / other | Gfs2-utils: gfs2-utils: stack overflow via alloca(1<<di_depth) in hash table traversal |
| CVE-2026-71224 | Normal | 4.7 | Moderate | — | Other / general Windows | Linux / other | Gfs2-utils: gfs2-utils: stack overflow via alloca(i_height) in metadata walk |
| CVE-2026-80744 | Normal | 3.3 | Low | — | Other / general Windows | Linux / other | netfilter: nf_tables_offload: suppress WARN_ON_ONCE for ENOMEM in abort path |
| CVE-2026-80761 | Normal | 3.3 | Low | — | Other / general Windows | Linux / other | Bluetooth: ISO: zero the sockaddr before returning it in getname |
| CVE-2026-80892 | Normal | 3.3 | Low | — | Other / general Windows | Linux / other | erofs: cap LZMA stream pool size |
| CVE-2026-80910 | Normal | 3.3 | Low | — | Other / general Windows | Linux / other | ASoC: codecs: lpass-wsa-macro: Fix enum kcontrol accesses |
| CVE-2026-86137 | Normal | 2.9 | Low | — | Other / general Windows | Linux / other | In libxml2 before 2.15.4, xmlFAParsePosCharGroup has an out-of-bounds read, aka an out-of-bounds read in the NXT macro in xmlregexp. |
| CVE-2026-86141 | Normal | 2.9 | Low | — | Other / general Windows | Linux / other | xmlregexp in libxml2 before 2.15.4 has a NULL pointer dereference in xmlRegNewParserCtxt after a strdup failure, i.e., it does not calculate a string length after NULL checking. |
| CVE-2026-18743 | Normal | 2.5 | Low | — | Other / general Windows | Linux / other | Popt-devel: popt-static: short realloc in poptconfigfiletostring |
| CVE-2026-80784 | Normal | 2.5 | Low | — | Other / general Windows | Linux / other | mptcp: pm: fix memory leak from alloc-during-teardown race |
| CVE-2026-80893 | Normal | 2.5 | Low | — | Other / general Windows | Linux / other | mm/hugetlb: fix swap entry corruption when clearing uffd-wp at fork() |
| CVE-2026-80889 | Normal | 2.5 | Low | — | Other / general Windows | Linux / other | can: isotp: fix timer drain order, wakeup handling and tx_gen ordering |
| CVE-2026-80843 | Normal | 2.3 | Low | — | Other / general Windows | Linux / other | xfrm: fix xfrm_state_construct() auth-trunc leak |
| CVE-2026-80797 | Normal | 1.9 | Low | — | Other / general Windows | Linux / other | nfc: pn533: purge fragmented skbs during cleanup |
| CVE-2026-80827 | Normal | 1.8 | Low | — | Other / general Windows | Linux / other | USB: serial: option: fix slab OOB read in interrupt URB callback |
| CVE-2026-84323 | Normal | — | — | — | Browser (Edge auto-update) | Edge / Chromium | Chromium: CVE-2026-84323 Missing authorization in FileSystem |
| CVE-2026-84324 | Normal | — | — | — | Browser (Edge auto-update) | Edge / Chromium | Chromium: CVE-2026-84324 Use after free in Proxy |
| CVE-2026-84325 | Normal | — | — | — | Browser (Edge auto-update) | Edge / Chromium | Chromium: CVE-2026-84325 Improper input validation in DataTransfer |
| CVE-2026-84326 | Normal | — | — | — | Browser (Edge auto-update) | Edge / Chromium | Chromium: CVE-2026-84326 Uninitialized resource in V8 |
| CVE-2026-84327 | Normal | — | — | — | Browser (Edge auto-update) | Edge / Chromium | Chromium: CVE-2026-84327 Incorrect authorization in Autofill |
| CVE-2026-84328 | Normal | — | — | — | Browser (Edge auto-update) | Edge / Chromium | Chromium: CVE-2026-84328 Missing authorization in FileSystem |
| CVE-2026-84329 | Normal | — | — | — | Browser (Edge auto-update) | Edge / Chromium | Chromium: CVE-2026-84329 Confused deputy in CredentialProvider |
| CVE-2026-84331 | Normal | — | — | — | Browser (Edge auto-update) | Edge / Chromium | Chromium: CVE-2026-84331 Incorrect authorization in Actor |
| CVE-2026-84332 | Normal | — | — | — | Browser (Edge auto-update) | Edge / Chromium | Chromium: CVE-2026-84332 Incorrect authorization in SiteSettings |
| CVE-2026-84334 | Normal | — | — | — | Browser (Edge auto-update) | Edge / Chromium | Chromium: CVE-2026-84334 Incorrect authorization in Chromoting |
| CVE-2026-84335 | Normal | — | — | — | Browser (Edge auto-update) | Edge / Chromium | Chromium: CVE-2026-84335 Incorrect authorization in TabStrip |
| CVE-2026-84347 | Normal | — | — | — | Browser (Edge auto-update) | Edge / Chromium | Chromium: CVE-2026-84347 Use after free in WebRTC |
| CVE-2026-84348 | Normal | — | — | — | Browser (Edge auto-update) | Edge / Chromium | Chromium: CVE-2026-84348 Information leak in MediaCapture |
| CVE-2026-84349 | Normal | — | — | — | Browser (Edge auto-update) | Edge / Chromium | Chromium: CVE-2026-84349 Use after free in Browser |
| CVE-2026-84350 | Normal | — | — | — | Browser (Edge auto-update) | Edge / Chromium | Chromium: CVE-2026-84350 Use after free in TabStrip |
| CVE-2026-84351 | Normal | — | — | — | Browser (Edge auto-update) | Edge / Chromium | Chromium: CVE-2026-84351 Buffer overflow in GPU |
| CVE-2026-84353 | Normal | — | — | — | Browser (Edge auto-update) | Edge / Chromium | Chromium: CVE-2026-84353 Use after free in Shared Tab Groups |
| CVE-2026-84354 | Normal | — | — | — | Browser (Edge auto-update) | Edge / Chromium | Chromium: CVE-2026-84354 Incorrect authorization in FileSystem |
| CVE-2026-84355 | Normal | — | — | — | Browser (Edge auto-update) | Edge / Chromium | Chromium: CVE-2026-84355 Incorrect authorization in Navigation |
| CVE-2026-84356 | Normal | — | — | — | Browser (Edge auto-update) | Edge / Chromium | Chromium: CVE-2026-84356 UI misrepresentation in FullScreen |
| CVE-2026-84357 | Normal | — | — | — | Browser (Edge auto-update) | Edge / Chromium | Chromium: CVE-2026-84357 Improper input validation in Omnibox |
| CVE-2026-84358 | Normal | — | — | — | Browser (Edge auto-update) | Edge / Chromium | Chromium: CVE-2026-84358 Improper privilege management in Downloads |
| CVE-2026-84359 | Normal | — | — | — | Browser (Edge auto-update) | Edge / Chromium | Chromium: CVE-2026-84359 Information leak in Skia |
| CVE-2026-55951 | Normal | — | Important | — | Other / general Windows | Linux / other | httpc memory exhaustion via unbounded response header accumulation |
| CVE-2026-59696 | Normal | — | Moderate | — | Other / general Windows | Linux / other | uri_string does not bound the port component of a URI before integer conversion |
| CVE-2026-66357 | Normal | — | Important | — | Other / general Windows | Linux / other | inets,httpd:HTTP Request Smuggling via obs-fold Header Continuation |
| CVE-2026-66835 | Normal | — | Important | — | Other / general Windows | Linux / other | httpd mod_auth directory protection bypassed by a doubled slash in the request path |
| CVE-2026-69664 | Normal | — | Important | — | Other / general Windows | Linux / other | httpd parks a request worker indefinitely on a malformed chunk size sent after the headers |
| CVE-2026-70409 | Normal | — | Moderate | — | Identity / AD | Linux / other | eldap does not bound the port component of a referral URL before integer conversion |
| CVE-2026-71380 | Normal | — | Important | — | Other / general Windows | Linux / other | httpd applies no timeout while receiving a request body, parking a worker on a stalled client |
| CVE-2026-71562 | Normal | — | Moderate | — | Other / general Windows | Linux / other | httpc does not bound server-supplied numeric header values before integer conversion |
| CVE-2026-73270 | Normal | — | Important | — | Other / general Windows | Linux / other | httpd mod_auth directory protection bypassed by request path casing on case-insensitive filesystems |
| CVE-2026-73276 | Normal | — | Important | — | Other / general Windows | Linux / other | inets, httpd: HTTP Request Smuggling via Whitespace-Before-Colon Header Dropping i |
| CVE-2026-73812 | Normal | — | Important | — | Other / general Windows | Linux / other | inets, httpd: HTTP Request Smuggling via Transfer-Encoding and Content-Length |
| CVE-2026-74835 | Normal | — | Important | — | Other / general Windows | Linux / other | inets,httpd: Memory Exhaustion via Unenforced max_body_size During Chunked Body Reception |
| CVE-2026-74994 | Normal | — | Moderate | — | Other / general Windows | Linux / other | inets, httpd: Authentication Bypass via Directory Namespace Collapse in httpd mod_auth |
| CVE-2026-75538 | Normal | — | Important | — | Endpoints / Windows client | Linux / other | A Signed Length Overflow in Erlang/OTP's inet TCP Driver Overflows the Receive Buffer Into BEAM VM Memory From an Unauthenticated Peer |
| CVE-2026-84304 | Normal | — | Important | — | Other / general Windows | Linux / other | gRPC-Go: Heap Memory Exhaustion (OOM) via HTTP/2 DATA Frame Fragmentation |
| CVE-2026-83605 | Normal | — | Important | — | Other / general Windows | Linux / other | xmldom: Attribute name injection via setAttribute() bypasses requireWellFormed |
| CVE-2026-83607 | Normal | — | Important | — | Other / general Windows | Linux / other | xmldom: Element name injection via createElement() bypasses requireWellFormed |
| CVE-2026-83608 | Normal | — | Important | — | Other / general Windows | Linux / other | xmldom: DocType `name` Injection Bypasses requireWellFormed |
| CVE-2026-83610 | Normal | — | Moderate | — | Other / general Windows | Linux / other | xmldom: XML fragment injection via invalid EntityReference.nodeName during requireWellFormed serialization |
| CVE-2026-83611 | Normal | — | Moderate | — | Other / general Windows | Linux / other | xmldom: Parser silently accepts a not-well-formed end tag whose name is followed by a line break and trailing content |
| CVE-2026-83613 | Normal | — | Important | — | Other / general Windows | Linux / other | xmldom: Quadratic-time attribute deduplication |
| CVE-2026-83614 | Normal | — | Important | — | Other / general Windows | Linux / other | xmldom: Quadratic-time parsing via the malformed-input recovery path — `parseElementStartPart` re-scan and `normalize()` adjacent-text merge |
| CVE-2026-83615 | Normal | — | Important | — | Other / general Windows | Linux / other | xmldom: Quadratic-memory consumption |
| CVE-2026-83616 | Normal | — | Important | — | Other / general Windows | Linux / other | xmldom: Processing Instruction Target Injection Bypasses requireWellFormed |
| CVE-2026-83619 | Normal | — | Important | — | Other / general Windows | Linux / other | xmldom: End-tag Whitespace-Trim Regex ReDoS — quadratic backtracking in the 0.8.x end-tag parser |
| CVE-2026-84303 | Normal | — | Moderate | — | Other / general Windows | Linux / other | gRPC-Go: xDS RBAC HTTP Filter bypass via mixed-case Header Matching and gRFC A41 validation evasion |
| CVE-2026-85062 | Normal | — | Moderate | — | Other / general Windows | Linux / other | Colord: Slow rejection of oversized malformed color strings |