CVE Feed

    Dashboard / CVE

    7
    High

    CVE-2026-69280

    Last Modified: 10 Sept 2026

    Use after free in Windows Push Notifications allows an authorized attacker to elevate privileges locally.

    Published: 8 Sept 2026
    5.5
    Medium

    CVE-2026-68895

    Last Modified: 10 Sept 2026

    Numeric truncation error in Internet Storage Name Service allows an authorized attacker to disclose information locally.

    Published: 8 Sept 2026
    8
    High

    CVE-2026-68894

    Last Modified: 10 Sept 2026

    Heap-based buffer overflow in Windows Error Reporting allows an authorized attacker to elevate privileges over a network.

    Published: 8 Sept 2026
    8.8
    High

    CVE-2026-69266

    Last Modified: 10 Sept 2026

    Integer overflow or wraparound in Windows DHCP Server allows an unauthorized attacker to execute code over a network.

    Published: 8 Sept 2026
    5.5
    Medium

    CVE-2026-69288

    Last Modified: 10 Sept 2026

    Use of uninitialized resource in Windows GDI+ allows an authorized attacker to disclose information locally.

    Published: 8 Sept 2026
    7.1
    High

    CVE-2026-69274

    Last Modified: 10 Sept 2026

    Use after free in Windows Win32K allows an authorized attacker to elevate privileges over a network.

    Published: 8 Sept 2026
    7.1
    High

    CVE-2026-69272

    Last Modified: 10 Sept 2026

    Heap-based buffer overflow in Microsoft Standard XPS allows an authorized attacker to elevate privileges over a network.

    Published: 8 Sept 2026
    4.7
    Medium

    CVE-2026-68891

    Last Modified: 10 Sept 2026

    Out-of-bounds read in Microsoft Standard XPS allows an authorized attacker to disclose information locally.

    Published: 8 Sept 2026
    7.1
    High

    CVE-2026-68889

    Last Modified: 11 Sept 2026

    Heap-based buffer overflow in Microsoft Standard XPS allows an authorized attacker to elevate privileges over a network.

    Published: 8 Sept 2026
    7.8
    High

    CVE-2026-68888

    Last Modified: 10 Sept 2026

    Heap-based buffer overflow in Microsoft Standard XPS allows an authorized attacker to elevate privileges locally.

    Published: 8 Sept 2026
    5.5
    Medium

    CVE-2026-68886

    Last Modified: 10 Sept 2026

    Use after free in Windows Network Connection Broker allows an authorized attacker to disclose information locally.

    Published: 8 Sept 2026
    6.5
    Medium

    CVE-2026-68898

    Last Modified: 10 Sept 2026

    Out-of-bounds read in Windows iSCSI allows an unauthorized attacker to deny service over a network.

    Published: 8 Sept 2026
    7.8
    High

    CVE-2026-68885

    Last Modified: 8 Sept 2026

    Heap-based buffer overflow in Microsoft Standard XPS allows an authorized attacker to elevate privileges locally.

    Published: 8 Sept 2026
    5.5
    Medium

    CVE-2026-68873

    Last Modified: 10 Sept 2026

    Insertion of sensitive information into log file in Windows Program Compatibility Assistant Service allows an authorized attacker to disclose information locally.

    Published: 8 Sept 2026
    7.8
    High

    CVE-2026-69265

    Last Modified: 10 Sept 2026

    Out-of-bounds read in Windows NTFS allows an authorized attacker to elevate privileges locally.

    Published: 8 Sept 2026
    5.5
    Medium

    CVE-2026-68852

    Last Modified: 10 Sept 2026

    Use of uninitialized resource in Microsoft Account allows an authorized attacker to disclose information locally.

    Published: 8 Sept 2026
    7.8
    High

    CVE-2026-68850

    Last Modified: 10 Sept 2026

    Heap-based buffer overflow in Microsoft Account allows an authorized attacker to elevate privileges locally.

    Published: 8 Sept 2026
    5.7
    Medium

    CVE-2026-68874

    Last Modified: 8 Sept 2026

    Out-of-bounds read in Windows Program Compatibility Assistant Service allows an authorized attacker to disclose information over a network.

    Published: 8 Sept 2026
    8
    High

    CVE-2026-68876

    Last Modified: 10 Sept 2026

    Heap-based buffer overflow in Windows Program Compatibility Assistant Service allows an authorized attacker to elevate privileges over a network.

    Published: 8 Sept 2026
    8
    High

    CVE-2026-68880

    Last Modified: 10 Sept 2026

    Heap-based buffer overflow in Windows Win32K allows an authorized attacker to elevate privileges over a network.

    Published: 8 Sept 2026
    5.5
    Medium

    CVE-2026-68842

    Last Modified: 10 Sept 2026

    Exposure of sensitive system information to an unauthorized control sphere in Windows MIDI Service Module allows an authorized attacker to disclose information locally.

    Published: 8 Sept 2026
    7.8
    High

    CVE-2026-68848

    Last Modified: 9 Sept 2026

    Heap-based buffer overflow in Windows Print Spooler Components allows an authorized attacker to elevate privileges locally.

    Published: 8 Sept 2026
    7
    High

    CVE-2026-68840

    Last Modified: 10 Sept 2026

    Concurrent execution using shared resource with improper synchronization ('race condition') in Windows USB Driver allows an authorized attacker to elevate privileges locally.

    Published: 8 Sept 2026
    9.8
    Critical

    CVE-2026-68839

    Last Modified: 10 Sept 2026

    Heap-based buffer overflow in Windows USB Mass Storage Class Driver allows an unauthorized attacker to execute code over a network.

    Published: 8 Sept 2026
    8
    High

    CVE-2026-68838

    Last Modified: 10 Sept 2026

    Stack-based buffer overflow in Windows NTFS allows an authorized attacker to elevate privileges over a network.

    Published: 8 Sept 2026
    5.5
    Medium

    CVE-2026-68843

    Last Modified: 10 Sept 2026

    Use after free in Microsoft Office Word allows an authorized attacker to disclose information locally.

    Published: 8 Sept 2026
    8
    High

    CVE-2026-68834

    Last Modified: 10 Sept 2026

    Stack-based buffer overflow in Windows NTFS allows an authorized attacker to elevate privileges over a network.

    Published: 8 Sept 2026
    8
    High

    CVE-2026-68827

    Last Modified: 10 Sept 2026

    Integer underflow (wrap or wraparound) in Windows GDI+ allows an authorized attacker to elevate privileges over a network.

    Published: 8 Sept 2026
    5.5
    Medium

    CVE-2026-68831

    Last Modified: 10 Sept 2026

    Files or directories accessible to external parties in Windows Defender Firewall Service allows an authorized attacker to disclose information locally.

    Published: 8 Sept 2026
    8.8
    High

    CVE-2026-68828

    Last Modified: 10 Sept 2026

    Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code over a network.

    Published: 8 Sept 2026
    6.5
    Medium

    CVE-2026-68780

    Last Modified: 8 Sept 2026

    Out-of-bounds read in SQL Server allows an authorized attacker to disclose information over a network.

    Published: 8 Sept 2026
    6.5
    Medium

    CVE-2026-68779

    Last Modified: 10 Sept 2026

    Out-of-bounds read in SQL Server allows an authorized attacker to disclose information over a network.

    Published: 8 Sept 2026
    6.5
    Medium

    CVE-2026-68778

    Last Modified: 8 Sept 2026

    Out-of-bounds read in SQL Server allows an authorized attacker to disclose information over a network.

    Published: 8 Sept 2026
    6.5
    Medium

    CVE-2026-68777

    Last Modified: 10 Sept 2026

    Out-of-bounds read in SQL Server allows an authorized attacker to disclose information over a network.

    Published: 8 Sept 2026
    6.5
    Medium

    CVE-2026-68776

    Last Modified: 10 Sept 2026

    Use of uninitialized resource in SQL Server allows an authorized attacker to disclose information over a network.

    Published: 8 Sept 2026
    8.8
    High

    CVE-2026-68775

    Last Modified: 10 Sept 2026

    Heap-based buffer overflow in SQL Server allows an authorized attacker to execute code over a network.

    Published: 8 Sept 2026
    6.5
    Medium

    CVE-2026-67648

    Last Modified: 10 Sept 2026

    Use of uninitialized resource in SQL Server allows an authorized attacker to disclose information over a network.

    Published: 8 Sept 2026
    8.8
    High

    CVE-2026-67642

    Last Modified: 10 Sept 2026

    Heap-based buffer overflow in SQL Server allows an authorized attacker to execute code over a network.

    Published: 8 Sept 2026
    6.5
    Medium

    CVE-2026-67641

    Last Modified: 10 Sept 2026

    Integer overflow or wraparound in SQL Server allows an authorized attacker to deny service over a network.

    Published: 8 Sept 2026
    8.8
    High

    CVE-2026-67639

    Last Modified: 10 Sept 2026

    Heap-based buffer overflow in SQL Server allows an authorized attacker to execute code over a network.

    Published: 8 Sept 2026
    8.8
    High

    CVE-2026-67638

    Last Modified: 10 Sept 2026

    Heap-based buffer overflow in SQL Server allows an authorized attacker to execute code over a network.

    Published: 8 Sept 2026
    6.5
    Medium

    CVE-2026-67393

    Last Modified: 8 Sept 2026

    Buffer over-read in SQL Server allows an authorized attacker to disclose information over a network.

    Published: 8 Sept 2026
    6.5
    Medium

    CVE-2026-67390

    Last Modified: 9 Sept 2026

    Buffer over-read in SQL Server allows an authorized attacker to disclose information over a network.

    Published: 8 Sept 2026
    8.8
    High

    CVE-2026-67388

    Last Modified: 10 Sept 2026

    Heap-based buffer overflow in SQL Server allows an authorized attacker to execute code over a network.

    Published: 8 Sept 2026
    6.5
    Medium

    CVE-2026-67386

    Last Modified: 8 Sept 2026

    Use of uninitialized resource in SQL Server allows an authorized attacker to disclose information over a network.

    Published: 8 Sept 2026
    8.8
    High

    CVE-2026-67385

    Last Modified: 10 Sept 2026

    Use after free in SQL Server allows an authorized attacker to execute code over a network.

    Published: 8 Sept 2026
    8.8
    High

    CVE-2026-67381

    Last Modified: 9 Sept 2026

    Heap-based buffer overflow in SQL Server allows an authorized attacker to elevate privileges over a network.

    Published: 8 Sept 2026
    8.8
    High

    CVE-2026-67380

    Last Modified: 9 Sept 2026

    Heap-based buffer overflow in SQL Server allows an authorized attacker to execute code over a network.

    Published: 8 Sept 2026
    8.8
    High

    CVE-2026-66820

    Last Modified: 9 Sept 2026

    Improper neutralization of special elements used in an sql command ('sql injection') in SQL Server allows an authorized attacker to elevate privileges over a network.

    Published: 8 Sept 2026
    8.8
    High

    CVE-2026-66818

    Last Modified: 9 Sept 2026

    Improper privilege management in SQL Server allows an authorized attacker to elevate privileges over a network.

    Published: 8 Sept 2026
    Items Per Page