CVE Feed

    Dashboard / CVE

    7.8
    High

    CVE-2026-20857

    Last Modified: 16 Apr 2026

    Untrusted pointer dereference in Windows Cloud Files Mini Filter Driver allows an authorized attacker to elevate privileges locally.

    Published: 13 Jan 2026
    8.1
    High

    CVE-2026-20856

    Last Modified: 16 Apr 2026

    Improper input validation in Windows Server Update Service allows an unauthorized attacker to execute code over a network.

    Published: 13 Jan 2026
    7.7
    High

    CVE-2026-20852

    Last Modified: 16 Apr 2026

    Incorrect privilege assignment in Windows Hello allows an unauthorized attacker to perform tampering locally.

    Published: 13 Jan 2026
    6.2
    Medium

    CVE-2026-20851

    Last Modified: 16 Apr 2026

    Out-of-bounds read in Capability Access Management Service (camsvc) allows an unauthorized attacker to disclose information locally.

    Published: 13 Jan 2026
    6.5
    Medium

    CVE-2026-20847

    Last Modified: 16 Apr 2026

    Exposure of sensitive information to an unauthorized actor in Windows Shell allows an authorized attacker to perform spoofing over a network.

    Published: 13 Jan 2026
    7.4
    High

    CVE-2026-20844

    Last Modified: 16 Apr 2026

    Use after free in Windows Clipboard Server allows an unauthorized attacker to elevate privileges locally.

    Published: 13 Jan 2026
    7
    High

    CVE-2026-20842

    Last Modified: 16 Apr 2026

    Use after free in Windows DWM allows an authorized attacker to elevate privileges locally.

    Published: 13 Jan 2026
    7.8
    High

    CVE-2026-20840

    Last Modified: 18 Apr 2026

    Heap-based buffer overflow in Windows NTFS allows an authorized attacker to execute code locally.

    Published: 13 Jan 2026
    5.5
    Medium

    CVE-2026-20839

    Last Modified: 16 Apr 2026

    Improper access control in Windows Client-Side Caching (CSC) Service allows an authorized attacker to disclose information locally.

    Published: 13 Jan 2026
    5.5
    Medium

    CVE-2026-20838

    Last Modified: 16 Apr 2026

    Generation of error message containing sensitive information in Windows Kernel allows an authorized attacker to disclose information locally.

    Published: 13 Jan 2026
    7.8
    High

    CVE-2026-20837

    Last Modified: 16 Apr 2026

    Heap-based buffer overflow in Windows Media allows an unauthorized attacker to execute code locally.

    Published: 13 Jan 2026
    7
    High

    CVE-2026-20836

    Last Modified: 16 Apr 2026

    Concurrent execution using shared resource with improper synchronization ('race condition') in Graphics Kernel allows an authorized attacker to elevate privileges locally.

    Published: 13 Jan 2026
    5.5
    Medium

    CVE-2026-20835

    Last Modified: 16 Apr 2026

    Out-of-bounds read in Capability Access Management Service (camsvc) allows an authorized attacker to disclose information locally.

    Published: 13 Jan 2026
    4.6
    Medium

    CVE-2026-20834

    Last Modified: 16 Apr 2026

    Absolute path traversal in Windows Shell allows an unauthorized attacker to perform spoofing with a physical attack.

    Published: 13 Jan 2026
    5.5
    Medium

    CVE-2026-20833

    Last Modified: 16 Apr 2026

    Use of a broken or risky cryptographic algorithm in Windows Kerberos allows an authorized attacker to disclose information locally.

    Published: 13 Jan 2026
    7.8
    High

    CVE-2026-20832

    Last Modified: 16 Apr 2026

    Windows Remote Procedure Call Interface Definition Language (IDL) Elevation of Privilege Vulnerability

    Published: 13 Jan 2026
    7.8
    High

    CVE-2026-20831

    Last Modified: 16 Apr 2026

    Time-of-check time-of-use (toctou) race condition in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.

    Published: 13 Jan 2026
    5.5
    Medium

    CVE-2026-20829

    Last Modified: 18 Apr 2026

    Out-of-bounds read in Windows TPM allows an authorized attacker to disclose information locally.

    Published: 13 Jan 2026
    4.6
    Medium

    CVE-2026-20828

    Last Modified: 16 Apr 2026

    Out-of-bounds read in Windows Internet Connection Sharing (ICS) allows an unauthorized attacker to disclose information with a physical attack.

    Published: 13 Jan 2026
    5.5
    Medium

    CVE-2026-20827

    Last Modified: 16 Apr 2026

    Exposure of sensitive information to an unauthorized actor in Tablet Windows User Interface (TWINUI) Subsystem allows an authorized attacker to disclose information locally.

    Published: 13 Jan 2026
    7.8
    High

    CVE-2026-20826

    Last Modified: 16 Apr 2026

    Concurrent execution using shared resource with improper synchronization ('race condition') in Tablet Windows User Interface (TWINUI) Subsystem allows an authorized attacker to elevate privileges locally.

    Published: 13 Jan 2026
    4.4
    Medium

    CVE-2026-20825

    Last Modified: 16 Apr 2026

    Improper access control in Windows Hyper-V allows an authorized attacker to disclose information locally.

    Published: 13 Jan 2026
    5.5
    Medium

    CVE-2026-20824

    Last Modified: 18 Apr 2026

    Protection mechanism failure in Windows Remote Assistance allows an unauthorized attacker to bypass a security feature locally.

    Published: 13 Jan 2026
    5.5
    Medium

    CVE-2026-20823

    Last Modified: 16 Apr 2026

    Exposure of sensitive information to an unauthorized actor in Windows File Explorer allows an authorized attacker to disclose information locally.

    Published: 13 Jan 2026
    7.8
    High

    CVE-2026-20822

    Last Modified: 16 Apr 2026

    Use after free in Microsoft Graphics Component allows an authorized attacker to elevate privileges locally.

    Published: 13 Jan 2026
    6.2
    Medium

    CVE-2026-20821

    Last Modified: 16 Apr 2026

    Exposure of sensitive information to an unauthorized actor in Windows Remote Procedure Call allows an unauthorized attacker to disclose information locally.

    Published: 13 Jan 2026
    7.8
    High

    CVE-2026-20820

    Last Modified: 30 Jul 2026

    Heap-based buffer overflow in Windows Common Log File System Driver allows an authorized attacker to elevate privileges locally.

    Published: 13 Jan 2026
    5.5
    Medium

    CVE-2026-20819

    Last Modified: 30 Jul 2026

    Untrusted pointer dereference in Windows Virtualization-Based Security (VBS) Enclave allows an authorized attacker to disclose information locally.

    Published: 13 Jan 2026
    6.2
    Medium

    CVE-2026-20818

    Last Modified: 18 Apr 2026

    Insertion of sensitive information into log file in Windows Kernel allows an unauthorized attacker to disclose information locally.

    Published: 13 Jan 2026
    7.8
    High

    CVE-2026-20817

    Last Modified: 26 May 2026

    Improper handling of insufficient permissions or privileges in Windows Error Reporting allows an authorized attacker to elevate privileges locally.

    Published: 13 Jan 2026
    7.8
    High

    CVE-2026-20816

    Last Modified: 16 Apr 2026

    Time-of-check time-of-use (toctou) race condition in Windows Installer allows an authorized attacker to elevate privileges locally.

    Published: 13 Jan 2026
    7
    High

    CVE-2026-20815

    Last Modified: 16 Apr 2026

    Concurrent execution using shared resource with improper synchronization ('race condition') in Capability Access Management Service (camsvc) allows an authorized attacker to elevate privileges locally.

    Published: 13 Jan 2026
    7
    High

    CVE-2026-20814

    Last Modified: 16 Apr 2026

    Concurrent execution using shared resource with improper synchronization ('race condition') in Graphics Kernel allows an authorized attacker to elevate privileges locally.

    Published: 13 Jan 2026
    6.5
    Medium

    CVE-2026-20812

    Last Modified: 16 Apr 2026

    Improper input validation in Windows LDAP - Lightweight Directory Access Protocol allows an authorized attacker to perform tampering over a network.

    Published: 13 Jan 2026
    7.8
    High

    CVE-2026-20811

    Last Modified: 16 Apr 2026

    Access of resource using incompatible type ('type confusion') in Windows Win32K - ICOMP allows an authorized attacker to elevate privileges locally.

    Published: 13 Jan 2026
    7.8
    High

    CVE-2026-20810

    Last Modified: 16 Apr 2026

    Free of memory not on the heap in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.

    Published: 13 Jan 2026
    7.8
    High

    CVE-2026-20809

    Last Modified: 18 Apr 2026

    Time-of-check time-of-use (toctou) race condition in Windows Kernel Memory allows an authorized attacker to elevate privileges locally.

    Published: 13 Jan 2026
    7
    High

    CVE-2026-20808

    Last Modified: 18 Apr 2026

    Concurrent execution using shared resource with improper synchronization ('race condition') in Printer Association Object allows an authorized attacker to elevate privileges locally.

    Published: 13 Jan 2026
    5.5
    Medium

    CVE-2026-20805

    Last Modified: 16 Apr 2026

    Exposure of sensitive information to an unauthorized actor in Desktop Windows Manager allows an authorized attacker to disclose information locally.

    Published: 13 Jan 2026
    7.7
    High

    CVE-2026-20804

    Last Modified: 16 Apr 2026

    Incorrect privilege assignment in Windows Hello allows an unauthorized attacker to perform tampering locally.

    Published: 13 Jan 2026
    7.5
    High

    CVE-2026-20965

    Last Modified: 16 Apr 2026

    Improper verification of cryptographic signature in Windows Admin Center allows an authorized attacker to elevate privileges locally.

    Published: 13 Jan 2026
    7.2
    High

    CVE-2026-20803

    Last Modified: 16 Apr 2026

    Missing authentication for critical function in SQL Server allows an authorized attacker to elevate privileges over a network.

    Published: 13 Jan 2026
    7.5
    High

    CVE-2026-0386

    Last Modified: 18 Apr 2026

    Improper access control in Windows Deployment Services allows an unauthorized attacker to execute code over an adjacent network.

    Published: 13 Jan 2026
    6.4
    Medium

    CVE-2026-21265

    Last Modified: 18 Apr 2026

    Windows Secure Boot stores Microsoft certificates in the UEFI KEK and DB. These original certificates are approaching expiration, and devices containing affected certificate versions must update them to maintain Secure Boot functionality and avoid compromising security by losing security fixes related to Windows boot manager or Secure Boot. The operating system’s certificate update protection mechanism relies on firmware components that might contain defects, which can cause certificate trust updates to fail or behave unpredictably. This leads to potential disruption of the Secure Boot trust chain and requires careful validation and deployment to restore intended security guarantees. Certificate Authority (CA) Location Purpose Expiration Date Microsoft Corporation KEK CA 2011 KEK Signs updates to the DB and DBX 06/24/2026 Microsoft Corporation UEFI CA 2011 DB Signs 3rd party boot loaders, Option ROMs, etc. 06/27/2026 Microsoft Windows Production PCA 2011 DB Signs the Windows Boot Manager 10/19/2026 For more information see this CVE and Windows Secure Boot certificate expiration and CA updates.

    Published: 13 Jan 2026
    4.4
    Medium

    CVE-2026-20962

    Last Modified: 30 Jul 2026

    Use of uninitialized resource in Dynamic Root of Trust for Measurement (DRTM) allows an authorized attacker to disclose information locally.

    Published: 13 Jan 2026
    7.5
    High

    CVE-2025-37166

    Last Modified: 15 Apr 2026

    A vulnerability affecting HPE Networking Instant On Access Points has been identified where a device processing a specially crafted packet could enter a non-responsive state, in some cases requiring a hard reset to re-establish services. A malicious actor could leverage this vulnerability to conduct a Denial-of-Service attack on a target network.

    Published: 13 Jan 2026
    7.5
    High

    CVE-2025-37165

    Last Modified: 15 Apr 2026

    A vulnerability in the router mode configuration of HPE Instant On Access Points exposed certain network configuration details to unintended interfaces. A malicious actor could gain knowledge of internal network configuration details through inspecting impacted packets.

    Published: 13 Jan 2026
    7.8
    High

    CVE-2025-10865

    Last Modified: 30 Jan 2026

    Software installed and run as a non-privileged user may conduct improper GPU system calls to cause mismanagement of reference counting to cause a potential use after free. Improper reference counting on an internal resource caused scenario where potential for use after free was present.

    Published: 13 Jan 2026
    8.8
    High

    CVE-2025-58411

    Last Modified: 30 Jan 2026

    Software installed and run as a non-privileged user may conduct improper GPU system calls to cause mismanagement of resources reference counting creating a potential use after free scenario. Improper resource management and reference counting on an internal resource caused scenario where potential write use after free was present.

    Published: 13 Jan 2026
    3.5
    Low

    CVE-2025-58409

    Last Modified: 30 Jan 2026

    Software installed and run as a non-privileged user may conduct improper GPU system calls to subvert GPU HW to write to arbitrary physical memory pages. Under certain circumstances this exploit could be used to corrupt data pages not allocated by the GPU driver but memory pages in use by the kernel and drivers running on the platform altering their behaviour. This attack can lead the GPU to perform write operations on restricted internal GPU buffers that can lead to a second order affect of corrupted arbitrary physical memory.

    Published: 13 Jan 2026