Security
CVE Feed
Latest vulnerabilities from the National Vulnerability Database.
48872
Total
3924
Critical
14491
High
14240
Medium
| CVE ID | Severity | Score | Description | Published |
|---|---|---|---|---|
| CVE-2026-62707 | HIGH | 7.8 | Use after free in Windows Modern Device Management (MDM) allows an authorized attacker to elevate privileges locally. | Aug 11, 2026 |
| CVE-2026-62705 | HIGH | 7.0 | Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Bind Filter Driver allows an authorized attacker to elevate privileges locally. | Aug 11, 2026 |
| CVE-2026-62703 | MEDIUM | 5.5 | Out-of-bounds read in Windows DWM Core Library allows an authorized attacker to disclose information locally. | Aug 11, 2026 |
| CVE-2026-62702 | MEDIUM | 6.8 | Null pointer dereference in Windows Graphics Kernel allows an unauthorized attacker to deny service over a network. | Aug 11, 2026 |
| CVE-2026-62701 | HIGH | 7.8 | Use after free in Windows Telephony Service allows an authorized attacker to elevate privileges locally. | Aug 11, 2026 |
| CVE-2026-62700 | HIGH | 7.8 | Heap-based buffer overflow in Windows NTFS allows an authorized attacker to elevate privileges locally. | Aug 11, 2026 |
| CVE-2026-62699 | MEDIUM | 6.8 | Heap-based buffer overflow in Windows Universal Disk Format File System Driver (UDFS) allows an unauthorized attacker to execute code with a physical attack. | Aug 11, 2026 |
| CVE-2026-62698 | HIGH | 7.8 | Numeric truncation error in Microsoft Digest Authentication allows an authorized attacker to elevate privileges locally. | Aug 11, 2026 |
| CVE-2026-62696 | HIGH | 7.8 | Integer underflow (wrap or wraparound) in Windows Program Compatibility Assistant Service allows an authorized attacker to elevate privileges locally. | Aug 11, 2026 |
| CVE-2026-62695 | HIGH | 7.8 | Heap-based buffer overflow in Windows Storage allows an authorized attacker to elevate privileges locally. | Aug 11, 2026 |
| CVE-2026-62693 | HIGH | 7.0 | Concurrent execution using shared resource with improper synchronization ('race condition') in Windows MIDI Service Module allows an authorized attacker to elevate privileges locally. | Aug 11, 2026 |
| CVE-2026-62692 | HIGH | 7.8 | Heap-based buffer overflow in Windows Remote Desktop Services allows an authorized attacker to elevate privileges locally. | Aug 11, 2026 |
| CVE-2026-62690 | HIGH | 7.0 | Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Push Notifications allows an authorized attacker to elevate privileges locally. | Aug 11, 2026 |
| CVE-2026-62688 | HIGH | 7.8 | Heap-based buffer overflow in Windows MIDI Service Module allows an authorized attacker to elevate privileges locally. | Aug 11, 2026 |
| CVE-2026-61939 | HIGH | 7.0 | Use after free in Winlogon allows an authorized attacker to elevate privileges locally. | Aug 11, 2026 |
| CVE-2026-61938 | HIGH | 7.0 | Use after free in Windows Installer allows an authorized attacker to elevate privileges locally. | Aug 11, 2026 |
| CVE-2026-61937 | HIGH | 7.8 | Integer overflow or wraparound in Windows HTTP.sys allows an authorized attacker to elevate privileges locally. | Aug 11, 2026 |
| CVE-2026-61936 | MEDIUM | 5.5 | Missing authorization in Windows Defender Firewall Service allows an authorized attacker to bypass a security feature locally. | Aug 11, 2026 |
| CVE-2026-61934 | HIGH | 7.8 | Use after free in Windows Bind Filter Driver allows an authorized attacker to elevate privileges locally. | Aug 11, 2026 |
| CVE-2026-61933 | MEDIUM | 5.5 | Out-of-bounds read in Windows DWM Core Library allows an authorized attacker to disclose information locally. | Aug 11, 2026 |
| CVE-2026-61932 | HIGH | 7.8 | Access of resource using incompatible type ('type confusion') in Windows DWM Core Library allows an authorized attacker to elevate privileges locally. | Aug 11, 2026 |
| CVE-2026-61930 | HIGH | 7.8 | Heap-based buffer overflow in Windows Kernel allows an authorized attacker to elevate privileges locally. | Aug 11, 2026 |
| CVE-2026-61929 | HIGH | 7.0 | Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally. | Aug 11, 2026 |
| CVE-2026-61928 | MEDIUM | 5.5 | Cleartext storage of sensitive information in Windows Hello allows an authorized attacker to perform tampering locally. | Aug 11, 2026 |
| CVE-2026-61927 | HIGH | 7.0 | Use after free in Windows Bind Filter Driver allows an authorized attacker to elevate privileges locally. | Aug 11, 2026 |