CVE-2026-62748
Last Modified: 18 Aug 2026Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Telephony Service allows an authorized attacker to elevate privileges locally.
CVE-2026-62724
Last Modified: 18 Aug 2026Use after free in Windows Telephony Service allows an authorized attacker to elevate privileges locally.
CVE-2026-62723
Last Modified: 18 Aug 2026Use after free in Windows Telephony Service allows an authorized attacker to elevate privileges locally.
CVE-2026-62722
Last Modified: 17 Aug 2026Heap-based buffer overflow in Windows Brokering File System allows an authorized attacker to elevate privileges locally.
CVE-2026-62719
Last Modified: 17 Aug 2026Heap-based buffer overflow in Windows Message Queuing allows an authorized attacker to elevate privileges locally.
CVE-2026-62716
Last Modified: 17 Aug 2026Integer underflow (wrap or wraparound) in Windows DHCP Server allows an unauthorized attacker to disclose information over an adjacent network.
CVE-2026-62715
Last Modified: 17 Aug 2026Integer underflow (wrap or wraparound) in Windows DHCP Server allows an unauthorized attacker to disclose information over an adjacent network.
CVE-2026-62718
Last Modified: 17 Aug 2026Integer underflow (wrap or wraparound) in Windows DHCP Server allows an unauthorized attacker to disclose information over an adjacent network.
CVE-2026-62712
Last Modified: 17 Aug 2026Heap-based buffer overflow in Windows Win32K allows an authorized attacker to elevate privileges locally.
CVE-2026-62713
Last Modified: 17 Aug 2026Heap-based buffer overflow in Windows Cloud Files Mini Filter Driver allows an authorized attacker to elevate privileges locally.
CVE-2026-62707
Last Modified: 17 Aug 2026Use after free in Windows Modern Device Management (MDM) allows an authorized attacker to elevate privileges locally.
CVE-2026-62705
Last Modified: 19 Aug 2026Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Bind Filter Driver allows an authorized attacker to elevate privileges locally.
CVE-2026-62703
Last Modified: 17 Aug 2026Out-of-bounds read in Windows DWM Core Library allows an authorized attacker to disclose information locally.
CVE-2026-62699
Last Modified: 17 Aug 2026Heap-based buffer overflow in Windows Universal Disk Format File System Driver (UDFS) allows an unauthorized attacker to execute code with a physical attack.
CVE-2026-62702
Last Modified: 17 Aug 2026Null pointer dereference in Windows Graphics Kernel allows an unauthorized attacker to deny service over a network.
CVE-2026-62696
Last Modified: 17 Aug 2026Integer underflow (wrap or wraparound) in Windows Program Compatibility Assistant Service allows an authorized attacker to elevate privileges locally.
CVE-2026-62693
Last Modified: 13 Aug 2026Concurrent execution using shared resource with improper synchronization ('race condition') in Windows MIDI Service Module allows an authorized attacker to elevate privileges locally.
CVE-2026-62690
Last Modified: 17 Aug 2026Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Push Notifications allows an authorized attacker to elevate privileges locally.
CVE-2026-62688
Last Modified: 13 Aug 2026Heap-based buffer overflow in Windows MIDI Service Module allows an authorized attacker to elevate privileges locally.
CVE-2026-62695
Last Modified: 17 Aug 2026Heap-based buffer overflow in Windows Storage allows an authorized attacker to elevate privileges locally.
CVE-2026-61939
Last Modified: 17 Aug 2026Use after free in Winlogon allows an authorized attacker to elevate privileges locally.
CVE-2026-61936
Last Modified: 17 Aug 2026Missing authorization in Windows Defender Firewall Service allows an authorized attacker to bypass a security feature locally.
CVE-2026-61934
Last Modified: 17 Aug 2026Use after free in Windows Bind Filter Driver allows an authorized attacker to elevate privileges locally.
CVE-2026-61933
Last Modified: 17 Aug 2026Out-of-bounds read in Windows DWM Core Library allows an authorized attacker to disclose information locally.
CVE-2026-61932
Last Modified: 17 Aug 2026Access of resource using incompatible type ('type confusion') in Windows DWM Core Library allows an authorized attacker to elevate privileges locally.
CVE-2026-62692
Last Modified: 17 Aug 2026Heap-based buffer overflow in Windows Remote Desktop Services allows an authorized attacker to elevate privileges locally.
CVE-2026-61937
Last Modified: 17 Aug 2026Integer overflow or wraparound in Windows HTTP.sys allows an authorized attacker to elevate privileges locally.
CVE-2026-61930
Last Modified: 17 Aug 2026Heap-based buffer overflow in Windows Kernel allows an authorized attacker to elevate privileges locally.
CVE-2026-61928
Last Modified: 17 Aug 2026Cleartext storage of sensitive information in Windows Hello allows an authorized attacker to perform tampering locally.
CVE-2026-61927
Last Modified: 17 Aug 2026Use after free in Windows Bind Filter Driver allows an authorized attacker to elevate privileges locally.
CVE-2026-61925
Last Modified: 17 Aug 2026Incorrect authorization in Windows Installer allows an authorized attacker to elevate privileges locally.
CVE-2026-61924
Last Modified: 17 Aug 2026Out-of-bounds read in Remote Desktop Client allows an unauthorized attacker to disclose information over a network.
CVE-2026-61368
Last Modified: 17 Aug 2026Heap-based buffer overflow in Windows Hyper-V allows an authorized attacker to disclose information locally.
CVE-2026-61366
Last Modified: 17 Aug 2026Double free in Windows Network Connection Broker allows an authorized attacker to elevate privileges locally.
CVE-2026-61923
Last Modified: 17 Aug 2026Heap-based buffer overflow in Windows Display Enhancement Service allows an authorized attacker to elevate privileges locally.
CVE-2026-61367
Last Modified: 17 Aug 2026Missing authentication for critical function in Windows Remote Desktop Services allows an authorized attacker to elevate privileges locally.
CVE-2026-61356
Last Modified: 17 Aug 2026Missing authentication for critical function in Windows Remote Desktop Services allows an authorized attacker to elevate privileges locally.
CVE-2026-61350
Last Modified: 17 Aug 2026Buffer over-read in Windows NTFS allows an unauthorized attacker to disclose information with a physical attack.
CVE-2026-61348
Last Modified: 17 Aug 2026Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.
CVE-2026-61361
Last Modified: 17 Aug 2026Use after free in Windows DHCP Client allows an authorized attacker to execute code locally.
CVE-2026-61347
Last Modified: 17 Aug 2026Buffer over-read in Windows Event Logging Service allows an authorized attacker to disclose information locally.
CVE-2026-61353
Last Modified: 17 Aug 2026Heap-based buffer overflow in Windows Telephony Service allows an authorized attacker to elevate privileges locally.
CVE-2026-61346
Last Modified: 17 Aug 2026Use after free in Windows Graphics Kernel allows an authorized attacker to elevate privileges locally.
CVE-2026-61345
Last Modified: 17 Aug 2026Null pointer dereference in Microsoft Remote Registry Service allows an authorized attacker to deny service over a network.
CVE-2026-59138
Last Modified: 17 Aug 2026Null pointer dereference in Microsoft Remote Registry Service allows an authorized attacker to deny service over a network.
CVE-2026-59137
Last Modified: 17 Aug 2026Use of uninitialized resource in Windows Event Logging Service allows an authorized attacker to disclose information locally.
CVE-2026-59136
Last Modified: 17 Aug 2026Use of uninitialized resource in Microsoft COM for Windows allows an authorized attacker to disclose information locally.
CVE-2026-59134
Last Modified: 17 Aug 2026Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code over a network.
CVE-2026-59135
Last Modified: 17 Aug 2026Weak authentication in Microsoft Windows Search Component allows an authorized attacker to disclose information locally.
CVE-2026-59132
Last Modified: 17 Aug 2026Null pointer dereference in Windows TCP/IP allows an unauthorized attacker to deny service over a network.
