CVE-2026-69280
Last Modified: 10 Sept 2026Use after free in Windows Push Notifications allows an authorized attacker to elevate privileges locally.
CVE-2026-68895
Last Modified: 10 Sept 2026Numeric truncation error in Internet Storage Name Service allows an authorized attacker to disclose information locally.
CVE-2026-68894
Last Modified: 10 Sept 2026Heap-based buffer overflow in Windows Error Reporting allows an authorized attacker to elevate privileges over a network.
CVE-2026-69266
Last Modified: 10 Sept 2026Integer overflow or wraparound in Windows DHCP Server allows an unauthorized attacker to execute code over a network.
CVE-2026-69288
Last Modified: 10 Sept 2026Use of uninitialized resource in Windows GDI+ allows an authorized attacker to disclose information locally.
CVE-2026-69274
Last Modified: 10 Sept 2026Use after free in Windows Win32K allows an authorized attacker to elevate privileges over a network.
CVE-2026-69272
Last Modified: 10 Sept 2026Heap-based buffer overflow in Microsoft Standard XPS allows an authorized attacker to elevate privileges over a network.
CVE-2026-68891
Last Modified: 10 Sept 2026Out-of-bounds read in Microsoft Standard XPS allows an authorized attacker to disclose information locally.
CVE-2026-68889
Last Modified: 11 Sept 2026Heap-based buffer overflow in Microsoft Standard XPS allows an authorized attacker to elevate privileges over a network.
CVE-2026-68888
Last Modified: 10 Sept 2026Heap-based buffer overflow in Microsoft Standard XPS allows an authorized attacker to elevate privileges locally.
CVE-2026-68886
Last Modified: 10 Sept 2026Use after free in Windows Network Connection Broker allows an authorized attacker to disclose information locally.
CVE-2026-68898
Last Modified: 10 Sept 2026Out-of-bounds read in Windows iSCSI allows an unauthorized attacker to deny service over a network.
CVE-2026-68885
Last Modified: 8 Sept 2026Heap-based buffer overflow in Microsoft Standard XPS allows an authorized attacker to elevate privileges locally.
CVE-2026-68873
Last Modified: 10 Sept 2026Insertion of sensitive information into log file in Windows Program Compatibility Assistant Service allows an authorized attacker to disclose information locally.
CVE-2026-69265
Last Modified: 10 Sept 2026Out-of-bounds read in Windows NTFS allows an authorized attacker to elevate privileges locally.
CVE-2026-68852
Last Modified: 10 Sept 2026Use of uninitialized resource in Microsoft Account allows an authorized attacker to disclose information locally.
CVE-2026-68850
Last Modified: 10 Sept 2026Heap-based buffer overflow in Microsoft Account allows an authorized attacker to elevate privileges locally.
CVE-2026-68874
Last Modified: 8 Sept 2026Out-of-bounds read in Windows Program Compatibility Assistant Service allows an authorized attacker to disclose information over a network.
CVE-2026-68876
Last Modified: 10 Sept 2026Heap-based buffer overflow in Windows Program Compatibility Assistant Service allows an authorized attacker to elevate privileges over a network.
CVE-2026-68880
Last Modified: 10 Sept 2026Heap-based buffer overflow in Windows Win32K allows an authorized attacker to elevate privileges over a network.
CVE-2026-68842
Last Modified: 10 Sept 2026Exposure of sensitive system information to an unauthorized control sphere in Windows MIDI Service Module allows an authorized attacker to disclose information locally.
CVE-2026-68848
Last Modified: 9 Sept 2026Heap-based buffer overflow in Windows Print Spooler Components allows an authorized attacker to elevate privileges locally.
CVE-2026-68840
Last Modified: 10 Sept 2026Concurrent execution using shared resource with improper synchronization ('race condition') in Windows USB Driver allows an authorized attacker to elevate privileges locally.
CVE-2026-68839
Last Modified: 10 Sept 2026Heap-based buffer overflow in Windows USB Mass Storage Class Driver allows an unauthorized attacker to execute code over a network.
CVE-2026-68838
Last Modified: 10 Sept 2026Stack-based buffer overflow in Windows NTFS allows an authorized attacker to elevate privileges over a network.
CVE-2026-68843
Last Modified: 10 Sept 2026Use after free in Microsoft Office Word allows an authorized attacker to disclose information locally.
CVE-2026-68834
Last Modified: 10 Sept 2026Stack-based buffer overflow in Windows NTFS allows an authorized attacker to elevate privileges over a network.
CVE-2026-68827
Last Modified: 10 Sept 2026Integer underflow (wrap or wraparound) in Windows GDI+ allows an authorized attacker to elevate privileges over a network.
CVE-2026-68831
Last Modified: 10 Sept 2026Files or directories accessible to external parties in Windows Defender Firewall Service allows an authorized attacker to disclose information locally.
CVE-2026-68828
Last Modified: 10 Sept 2026Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code over a network.
CVE-2026-68780
Last Modified: 8 Sept 2026Out-of-bounds read in SQL Server allows an authorized attacker to disclose information over a network.
CVE-2026-68779
Last Modified: 10 Sept 2026Out-of-bounds read in SQL Server allows an authorized attacker to disclose information over a network.
CVE-2026-68778
Last Modified: 8 Sept 2026Out-of-bounds read in SQL Server allows an authorized attacker to disclose information over a network.
CVE-2026-68777
Last Modified: 10 Sept 2026Out-of-bounds read in SQL Server allows an authorized attacker to disclose information over a network.
CVE-2026-68776
Last Modified: 10 Sept 2026Use of uninitialized resource in SQL Server allows an authorized attacker to disclose information over a network.
CVE-2026-68775
Last Modified: 10 Sept 2026Heap-based buffer overflow in SQL Server allows an authorized attacker to execute code over a network.
CVE-2026-67648
Last Modified: 10 Sept 2026Use of uninitialized resource in SQL Server allows an authorized attacker to disclose information over a network.
CVE-2026-67642
Last Modified: 10 Sept 2026Heap-based buffer overflow in SQL Server allows an authorized attacker to execute code over a network.
CVE-2026-67641
Last Modified: 10 Sept 2026Integer overflow or wraparound in SQL Server allows an authorized attacker to deny service over a network.
CVE-2026-67639
Last Modified: 10 Sept 2026Heap-based buffer overflow in SQL Server allows an authorized attacker to execute code over a network.
CVE-2026-67638
Last Modified: 10 Sept 2026Heap-based buffer overflow in SQL Server allows an authorized attacker to execute code over a network.
CVE-2026-67393
Last Modified: 8 Sept 2026Buffer over-read in SQL Server allows an authorized attacker to disclose information over a network.
CVE-2026-67390
Last Modified: 9 Sept 2026Buffer over-read in SQL Server allows an authorized attacker to disclose information over a network.
CVE-2026-67388
Last Modified: 10 Sept 2026Heap-based buffer overflow in SQL Server allows an authorized attacker to execute code over a network.
CVE-2026-67386
Last Modified: 8 Sept 2026Use of uninitialized resource in SQL Server allows an authorized attacker to disclose information over a network.
CVE-2026-67385
Last Modified: 10 Sept 2026Use after free in SQL Server allows an authorized attacker to execute code over a network.
CVE-2026-67381
Last Modified: 9 Sept 2026Heap-based buffer overflow in SQL Server allows an authorized attacker to elevate privileges over a network.
CVE-2026-67380
Last Modified: 9 Sept 2026Heap-based buffer overflow in SQL Server allows an authorized attacker to execute code over a network.
CVE-2026-66820
Last Modified: 9 Sept 2026Improper neutralization of special elements used in an sql command ('sql injection') in SQL Server allows an authorized attacker to elevate privileges over a network.
CVE-2026-66818
Last Modified: 9 Sept 2026Improper privilege management in SQL Server allows an authorized attacker to elevate privileges over a network.
