CVE Feed

    Dashboard / CVE

    7
    High

    CVE-2026-50358

    Last Modified: 14 Jul 2026

    Use after free in Windows Media allows an authorized attacker to elevate privileges locally.

    Published: 14 Jul 2026
    3.3
    Low

    CVE-2026-50416

    Last Modified: 15 Jul 2026

    Exposure of sensitive information to an unauthorized actor in Windows Win32K allows an authorized attacker to disclose information locally.

    Published: 14 Jul 2026
    6.5
    Medium

    CVE-2026-50366

    Last Modified: 14 Jul 2026

    Null pointer dereference in Active Directory Domain Services allows an authorized attacker to deny service over a network.

    Published: 14 Jul 2026
    7
    High

    CVE-2026-50404

    Last Modified: 14 Jul 2026

    Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Media allows an authorized attacker to elevate privileges locally.

    Published: 14 Jul 2026
    8.5
    High

    CVE-2026-50340

    Last Modified: 15 Jul 2026

    Use after free in Windows Runtime allows an authorized attacker to elevate privileges over a network.

    Published: 14 Jul 2026
    7.8
    High

    CVE-2026-50317

    Last Modified: 15 Jul 2026

    Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Operating Systems allows an authorized attacker to elevate privileges locally.

    Published: 14 Jul 2026
    7.8
    High

    CVE-2026-50361

    Last Modified: 15 Jul 2026

    Double free in Microsoft Brokering File System allows an authorized attacker to elevate privileges locally.

    Published: 14 Jul 2026
    6.3
    Medium

    CVE-2026-50375

    Last Modified: 15 Jul 2026

    Heap-based buffer overflow in Windows DirectX allows an authorized attacker to elevate privileges locally.

    Published: 14 Jul 2026
    7.8
    High

    CVE-2026-50335

    Last Modified: 15 Jul 2026

    Improper access control in Windows Operating Systems allows an authorized attacker to elevate privileges locally.

    Published: 14 Jul 2026
    7
    High

    CVE-2026-50322

    Last Modified: 15 Jul 2026

    Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Runtime allows an authorized attacker to elevate privileges locally.

    Published: 14 Jul 2026
    7
    High

    CVE-2026-50345

    Last Modified: 15 Jul 2026

    Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Runtime allows an authorized attacker to elevate privileges locally.

    Published: 14 Jul 2026
    7
    High

    CVE-2026-50348

    Last Modified: 15 Jul 2026

    Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Runtime allows an unauthorized attacker to elevate privileges over a network.

    Published: 14 Jul 2026
    7
    High

    CVE-2026-50452

    Last Modified: 15 Jul 2026

    Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Runtime allows an unauthorized attacker to elevate privileges over a network.

    Published: 14 Jul 2026
    7
    High

    CVE-2026-50390

    Last Modified: 15 Jul 2026

    Access of resource using incompatible type ('type confusion') in Windows Kernel allows an authorized attacker to elevate privileges locally.

    Published: 14 Jul 2026
    5.5
    Medium

    CVE-2026-50377

    Last Modified: 14 Jul 2026

    Out-of-bounds read in Windows Kernel allows an authorized attacker to elevate privileges locally.

    Published: 14 Jul 2026
    7.8
    High

    CVE-2026-50357

    Last Modified: 15 Jul 2026

    Numeric truncation error in Windows Resilient File System (ReFS) allows an authorized attacker to execute code locally.

    Published: 14 Jul 2026
    7.5
    High

    CVE-2026-50330

    Last Modified: 15 Jul 2026

    Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to elevate privileges over a network.

    Published: 14 Jul 2026
    4.7
    Medium

    CVE-2026-50312

    Last Modified: 15 Jul 2026

    Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.

    Published: 14 Jul 2026
    5.9
    Medium

    CVE-2026-50324

    Last Modified: 22 Jul 2026

    Loop with unreachable exit condition ('infinite loop') in Active Directory Federation Services (AD FS) allows an unauthorized attacker to deny service over a network.

    Published: 14 Jul 2026
    4.7
    Medium

    CVE-2026-50310

    Last Modified: 15 Jul 2026

    Integer overflow or wraparound in Windows Devices Human Interface allows an authorized attacker to disclose information locally.

    Published: 14 Jul 2026
    5.5
    Medium

    CVE-2026-50430

    Last Modified: 15 Jul 2026

    Exposure of sensitive information to an unauthorized actor in Windows Push Notifications allows an authorized attacker to disclose information locally.

    Published: 14 Jul 2026
    5.5
    Medium

    CVE-2026-50339

    Last Modified: 15 Jul 2026

    Exposure of sensitive information to an unauthorized actor in Windows Push Notifications allows an authorized attacker to disclose information locally.

    Published: 14 Jul 2026
    5.5
    Medium

    CVE-2026-50434

    Last Modified: 14 Jul 2026

    Exposure of sensitive information to an unauthorized actor in Windows Push Notifications allows an authorized attacker to disclose information locally.

    Published: 14 Jul 2026
    7.8
    High

    CVE-2026-50315

    Last Modified: 16 Jul 2026

    Null pointer dereference in Windows Image Acquisition allows an authorized attacker to elevate privileges locally.

    Published: 14 Jul 2026
    7.8
    High

    CVE-2026-50425

    Last Modified: 15 Jul 2026

    Use after free in Windows Internal System User Profile allows an authorized attacker to elevate privileges locally.

    Published: 14 Jul 2026
    7.8
    High

    CVE-2026-50321

    Last Modified: 15 Jul 2026

    Concurrent execution using shared resource with improper synchronization ('race condition') in Windows USB Driver allows an authorized attacker to elevate privileges locally.

    Published: 14 Jul 2026
    7.8
    High

    CVE-2026-50347

    Last Modified: 14 Jul 2026

    Heap-based buffer overflow in Windows Data dll allows an unauthorized attacker to execute code locally.

    Published: 14 Jul 2026
    8.8
    High

    CVE-2026-50370

    Last Modified: 15 Jul 2026

    Heap-based buffer overflow in Windows DHCP Server allows an unauthorized attacker to execute code over an adjacent network.

    Published: 14 Jul 2026
    7
    High

    CVE-2026-50396

    Last Modified: 15 Jul 2026

    Use after free in Windows Kernel-Mode Drivers allows an authorized attacker to elevate privileges locally.

    Published: 14 Jul 2026
    7.8
    High

    CVE-2026-50343

    Last Modified: 15 Jul 2026

    Improper privilege management in Microsoft Install Service allows an authorized attacker to elevate privileges locally.

    Published: 14 Jul 2026
    7.8
    High

    CVE-2026-50331

    Last Modified: 15 Jul 2026

    Use after free in Windows Application Model allows an authorized attacker to elevate privileges locally.

    Published: 14 Jul 2026
    7.8
    High

    CVE-2026-50407

    Last Modified: 15 Jul 2026

    Heap-based buffer overflow in Windows Resilient File System (ReFS) allows an authorized attacker to elevate privileges locally.

    Published: 14 Jul 2026
    5.5
    Medium

    CVE-2026-50341

    Last Modified: 16 Jul 2026

    Buffer over-read in Windows NTFS allows an authorized attacker to disclose information locally.

    Published: 14 Jul 2026
    7.8
    High

    CVE-2026-50327

    Last Modified: 15 Jul 2026

    Heap-based buffer overflow in Windows Media allows an authorized attacker to execute code locally.

    Published: 14 Jul 2026
    9.6
    Critical

    CVE-2026-50380

    Last Modified: 15 Jul 2026

    Heap-based buffer overflow in Windows GDI+ allows an unauthorized attacker to execute code over a network.

    Published: 14 Jul 2026
    7.8
    High

    CVE-2026-50440

    Last Modified: 14 Jul 2026

    Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Audio Service allows an authorized attacker to elevate privileges locally.

    Published: 14 Jul 2026
    7.8
    High

    CVE-2026-50313

    Last Modified: 15 Jul 2026

    Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to execute code locally.

    Published: 14 Jul 2026
    7.8
    High

    CVE-2026-50326

    Last Modified: 14 Jul 2026

    Use after free in Windows Unified Consent System allows an authorized attacker to elevate privileges locally.

    Published: 14 Jul 2026
    7
    High

    CVE-2026-50307

    Last Modified: 15 Jul 2026

    Use after free in Windows TCP/IP allows an authorized attacker to elevate privileges locally.

    Published: 14 Jul 2026
    7.5
    High

    CVE-2026-50368

    Last Modified: 22 Jul 2026

    Stack-based buffer overflow in Active Directory Federation Services allows an unauthorized attacker to deny service over a network.

    Published: 14 Jul 2026
    3.3
    Low

    CVE-2026-50419

    Last Modified: 15 Jul 2026

    Exposure of sensitive information to an unauthorized actor in Windows Kernel allows an authorized attacker to disclose information locally.

    Published: 14 Jul 2026
    7.8
    High

    CVE-2026-50309

    Last Modified: 15 Jul 2026

    Heap-based buffer overflow in Windows NTFS allows an authorized attacker to execute code locally.

    Published: 14 Jul 2026
    7.8
    High

    CVE-2026-50400

    Last Modified: 15 Jul 2026

    Stack-based buffer overflow in Windows App Installer allows an authorized attacker to elevate privileges locally.

    Published: 14 Jul 2026
    7.8
    High

    CVE-2026-50386

    Last Modified: 15 Jul 2026

    Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to execute code locally.

    Published: 14 Jul 2026
    7.8
    High

    CVE-2026-50337

    Last Modified: 15 Jul 2026

    Incorrect type conversion or cast in Windows Notification allows an authorized attacker to elevate privileges locally.

    Published: 14 Jul 2026
    7.8
    High

    CVE-2026-50412

    Last Modified: 15 Jul 2026

    Stack-based buffer overflow in Windows NTFS allows an authorized attacker to elevate privileges locally.

    Published: 14 Jul 2026
    7
    High

    CVE-2026-50393

    Last Modified: 15 Jul 2026

    Use after free in Windows Kernel-Mode Drivers allows an authorized attacker to elevate privileges locally.

    Published: 14 Jul 2026
    8.8
    High

    CVE-2026-50360

    Last Modified: 15 Jul 2026

    Incorrect implementation of authentication algorithm in Windows SMB Server allows an authorized attacker to elevate privileges over a network.

    Published: 14 Jul 2026
    7.8
    High

    CVE-2026-50306

    Last Modified: 14 Jul 2026

    Use after free in Windows TCP/IP allows an authorized attacker to elevate privileges locally.

    Published: 14 Jul 2026
    7.5
    High

    CVE-2026-50328

    Last Modified: 15 Jul 2026

    Uncaught exception in Windows Server Update Service allows an unauthorized attacker to perform tampering over a network.

    Published: 14 Jul 2026