Loading market data...

CVE Feed

Latest vulnerabilities from the National Vulnerability Database.

52341
Total
4150
Critical
15505
High
15208
Medium
CVE ID Severity Score Description Published
CVE-2026-50339 MEDIUM 5.5 Exposure of sensitive information to an unauthorized actor in Windows Push Notifications allows an authorized attacker to disclose information locally. Jul 14, 2026
CVE-2026-50337 HIGH 7.8 Incorrect type conversion or cast in Windows Notification allows an authorized attacker to elevate privileges locally. Jul 14, 2026
CVE-2026-50336 HIGH 7.8 Heap-based buffer overflow in Windows Media allows an authorized attacker to elevate privileges locally. Jul 14, 2026
CVE-2026-50335 HIGH 7.8 Improper access control in Windows Operating Systems allows an authorized attacker to elevate privileges locally. Jul 14, 2026
CVE-2026-50334 MEDIUM 5.5 Exposure of sensitive information to an unauthorized actor in Windows Notification allows an authorized attacker to disclose information locally. Jul 14, 2026
CVE-2026-50332 HIGH 7.8 Heap-based buffer overflow in Windows Kernel allows an authorized attacker to elevate privileges locally. Jul 14, 2026
CVE-2026-50331 HIGH 7.8 Use after free in Windows Application Model allows an authorized attacker to elevate privileges locally. Jul 14, 2026
CVE-2026-50330 HIGH 7.5 Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to elevate privileges over a network. Jul 14, 2026
CVE-2026-50329 HIGH 7.8 Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally. Jul 14, 2026
CVE-2026-50328 HIGH 7.5 Uncaught exception in Windows Server Update Service allows an unauthorized attacker to perform tampering over a network. Jul 14, 2026
CVE-2026-50327 HIGH 7.8 Heap-based buffer overflow in Windows Media allows an authorized attacker to execute code locally. Jul 14, 2026
CVE-2026-50326 HIGH 7.8 Use after free in Windows Unified Consent System allows an authorized attacker to elevate privileges locally. Jul 14, 2026
CVE-2026-50324 MEDIUM 5.9 Loop with unreachable exit condition ('infinite loop') in Active Directory Federation Services (AD FS) allows an unauthorized attacker to deny service over a network. Jul 14, 2026
CVE-2026-50322 HIGH 7.0 Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Runtime allows an authorized attacker to elevate privileges locally. Jul 14, 2026
CVE-2026-50321 HIGH 7.8 Concurrent execution using shared resource with improper synchronization ('race condition') in Windows USB Driver allows an authorized attacker to elevate privileges locally. Jul 14, 2026
CVE-2026-50317 HIGH 7.8 Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Operating Systems allows an authorized attacker to elevate privileges locally. Jul 14, 2026
CVE-2026-50315 HIGH 7.8 Null pointer dereference in Windows Image Acquisition allows an authorized attacker to elevate privileges locally. Jul 14, 2026
CVE-2026-50314 HIGH 7.8 Use after free in Microsoft Office allows an unauthorized attacker to execute code locally. Jul 14, 2026
CVE-2026-50313 HIGH 7.8 Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to execute code locally. Jul 14, 2026
CVE-2026-50312 MEDIUM 4.7 Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally. Jul 14, 2026
CVE-2026-50310 MEDIUM 4.7 Integer overflow or wraparound in Windows Devices Human Interface allows an authorized attacker to disclose information locally. Jul 14, 2026
CVE-2026-50309 HIGH 7.8 Heap-based buffer overflow in Windows NTFS allows an authorized attacker to execute code locally. Jul 14, 2026
CVE-2026-50307 HIGH 7.0 Use after free in Windows TCP/IP allows an authorized attacker to elevate privileges locally. Jul 14, 2026
CVE-2026-50306 HIGH 7.8 Use after free in Windows TCP/IP allows an authorized attacker to elevate privileges locally. Jul 14, 2026
CVE-2026-50305 HIGH 7.8 Use after free in Microsoft Brokering File System allows an authorized attacker to elevate privileges locally. Jul 14, 2026