CVE-2026-50358
Last Modified: 14 Jul 2026Use after free in Windows Media allows an authorized attacker to elevate privileges locally.
CVE-2026-50416
Last Modified: 15 Jul 2026Exposure of sensitive information to an unauthorized actor in Windows Win32K allows an authorized attacker to disclose information locally.
CVE-2026-50366
Last Modified: 14 Jul 2026Null pointer dereference in Active Directory Domain Services allows an authorized attacker to deny service over a network.
CVE-2026-50404
Last Modified: 14 Jul 2026Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Media allows an authorized attacker to elevate privileges locally.
CVE-2026-50340
Last Modified: 15 Jul 2026Use after free in Windows Runtime allows an authorized attacker to elevate privileges over a network.
CVE-2026-50317
Last Modified: 15 Jul 2026Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Operating Systems allows an authorized attacker to elevate privileges locally.
CVE-2026-50361
Last Modified: 15 Jul 2026Double free in Microsoft Brokering File System allows an authorized attacker to elevate privileges locally.
CVE-2026-50375
Last Modified: 15 Jul 2026Heap-based buffer overflow in Windows DirectX allows an authorized attacker to elevate privileges locally.
CVE-2026-50335
Last Modified: 15 Jul 2026Improper access control in Windows Operating Systems allows an authorized attacker to elevate privileges locally.
CVE-2026-50322
Last Modified: 15 Jul 2026Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Runtime allows an authorized attacker to elevate privileges locally.
CVE-2026-50345
Last Modified: 15 Jul 2026Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Runtime allows an authorized attacker to elevate privileges locally.
CVE-2026-50348
Last Modified: 15 Jul 2026Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Runtime allows an unauthorized attacker to elevate privileges over a network.
CVE-2026-50452
Last Modified: 15 Jul 2026Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Runtime allows an unauthorized attacker to elevate privileges over a network.
CVE-2026-50390
Last Modified: 15 Jul 2026Access of resource using incompatible type ('type confusion') in Windows Kernel allows an authorized attacker to elevate privileges locally.
CVE-2026-50377
Last Modified: 14 Jul 2026Out-of-bounds read in Windows Kernel allows an authorized attacker to elevate privileges locally.
CVE-2026-50357
Last Modified: 15 Jul 2026Numeric truncation error in Windows Resilient File System (ReFS) allows an authorized attacker to execute code locally.
CVE-2026-50330
Last Modified: 15 Jul 2026Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to elevate privileges over a network.
CVE-2026-50312
Last Modified: 15 Jul 2026Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.
CVE-2026-50324
Last Modified: 22 Jul 2026Loop with unreachable exit condition ('infinite loop') in Active Directory Federation Services (AD FS) allows an unauthorized attacker to deny service over a network.
CVE-2026-50310
Last Modified: 15 Jul 2026Integer overflow or wraparound in Windows Devices Human Interface allows an authorized attacker to disclose information locally.
CVE-2026-50430
Last Modified: 15 Jul 2026Exposure of sensitive information to an unauthorized actor in Windows Push Notifications allows an authorized attacker to disclose information locally.
CVE-2026-50339
Last Modified: 15 Jul 2026Exposure of sensitive information to an unauthorized actor in Windows Push Notifications allows an authorized attacker to disclose information locally.
CVE-2026-50434
Last Modified: 14 Jul 2026Exposure of sensitive information to an unauthorized actor in Windows Push Notifications allows an authorized attacker to disclose information locally.
CVE-2026-50315
Last Modified: 16 Jul 2026Null pointer dereference in Windows Image Acquisition allows an authorized attacker to elevate privileges locally.
CVE-2026-50425
Last Modified: 15 Jul 2026Use after free in Windows Internal System User Profile allows an authorized attacker to elevate privileges locally.
CVE-2026-50321
Last Modified: 15 Jul 2026Concurrent execution using shared resource with improper synchronization ('race condition') in Windows USB Driver allows an authorized attacker to elevate privileges locally.
CVE-2026-50347
Last Modified: 14 Jul 2026Heap-based buffer overflow in Windows Data dll allows an unauthorized attacker to execute code locally.
CVE-2026-50370
Last Modified: 15 Jul 2026Heap-based buffer overflow in Windows DHCP Server allows an unauthorized attacker to execute code over an adjacent network.
CVE-2026-50396
Last Modified: 15 Jul 2026Use after free in Windows Kernel-Mode Drivers allows an authorized attacker to elevate privileges locally.
CVE-2026-50343
Last Modified: 15 Jul 2026Improper privilege management in Microsoft Install Service allows an authorized attacker to elevate privileges locally.
CVE-2026-50331
Last Modified: 15 Jul 2026Use after free in Windows Application Model allows an authorized attacker to elevate privileges locally.
CVE-2026-50407
Last Modified: 15 Jul 2026Heap-based buffer overflow in Windows Resilient File System (ReFS) allows an authorized attacker to elevate privileges locally.
CVE-2026-50341
Last Modified: 16 Jul 2026Buffer over-read in Windows NTFS allows an authorized attacker to disclose information locally.
CVE-2026-50327
Last Modified: 15 Jul 2026Heap-based buffer overflow in Windows Media allows an authorized attacker to execute code locally.
CVE-2026-50380
Last Modified: 15 Jul 2026Heap-based buffer overflow in Windows GDI+ allows an unauthorized attacker to execute code over a network.
CVE-2026-50440
Last Modified: 14 Jul 2026Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Audio Service allows an authorized attacker to elevate privileges locally.
CVE-2026-50313
Last Modified: 15 Jul 2026Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to execute code locally.
CVE-2026-50326
Last Modified: 14 Jul 2026Use after free in Windows Unified Consent System allows an authorized attacker to elevate privileges locally.
CVE-2026-50307
Last Modified: 15 Jul 2026Use after free in Windows TCP/IP allows an authorized attacker to elevate privileges locally.
CVE-2026-50368
Last Modified: 22 Jul 2026Stack-based buffer overflow in Active Directory Federation Services allows an unauthorized attacker to deny service over a network.
CVE-2026-50419
Last Modified: 15 Jul 2026Exposure of sensitive information to an unauthorized actor in Windows Kernel allows an authorized attacker to disclose information locally.
CVE-2026-50309
Last Modified: 15 Jul 2026Heap-based buffer overflow in Windows NTFS allows an authorized attacker to execute code locally.
CVE-2026-50400
Last Modified: 15 Jul 2026Stack-based buffer overflow in Windows App Installer allows an authorized attacker to elevate privileges locally.
CVE-2026-50386
Last Modified: 15 Jul 2026Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to execute code locally.
CVE-2026-50337
Last Modified: 15 Jul 2026Incorrect type conversion or cast in Windows Notification allows an authorized attacker to elevate privileges locally.
CVE-2026-50412
Last Modified: 15 Jul 2026Stack-based buffer overflow in Windows NTFS allows an authorized attacker to elevate privileges locally.
CVE-2026-50393
Last Modified: 15 Jul 2026Use after free in Windows Kernel-Mode Drivers allows an authorized attacker to elevate privileges locally.
CVE-2026-50360
Last Modified: 15 Jul 2026Incorrect implementation of authentication algorithm in Windows SMB Server allows an authorized attacker to elevate privileges over a network.
CVE-2026-50306
Last Modified: 14 Jul 2026Use after free in Windows TCP/IP allows an authorized attacker to elevate privileges locally.
CVE-2026-50328
Last Modified: 15 Jul 2026Uncaught exception in Windows Server Update Service allows an unauthorized attacker to perform tampering over a network.
