CVE-2026-77888
Last Modified: 10 Sept 2026Access of resource using incompatible type ('type confusion') in Windows DHCP Server allows an unauthorized attacker to deny service over a network.
CVE-2026-77505
Last Modified: 10 Sept 2026Use after free in DNS Server allows an unauthorized attacker to execute code over a network.
CVE-2026-77504
Last Modified: 10 Sept 2026Double free in Microsoft Office Word allows an unauthorized attacker to execute code over a network.
CVE-2026-77887
Last Modified: 10 Sept 2026Out-of-bounds read in Windows DHCP Server allows an authorized attacker to execute code locally.
CVE-2026-77503
Last Modified: 10 Sept 2026Out-of-bounds read in Windows NTFS allows an unauthorized attacker to elevate privileges locally.
CVE-2026-77502
Last Modified: 10 Sept 2026Out-of-bounds read in Windows DHCP Server allows an unauthorized attacker to deny service over a network.
CVE-2026-77501
Last Modified: 10 Sept 2026Out-of-bounds read in Windows DHCP Server allows an unauthorized attacker to deny service over a network.
CVE-2026-77499
Last Modified: 10 Sept 2026Access of resource using incompatible type ('type confusion') in Windows DHCP Server allows an unauthorized attacker to deny service over a network.
CVE-2026-77500
Last Modified: 10 Sept 2026Release of invalid pointer or reference in Windows Device Association Service allows an authorized attacker to elevate privileges locally.
CVE-2026-77498
Last Modified: 10 Sept 2026Out-of-bounds read in Windows DHCP Server allows an unauthorized attacker to deny service over a network.
CVE-2026-77494
Last Modified: 10 Sept 2026Access of resource using incompatible type ('type confusion') in Windows DHCP Server allows an unauthorized attacker to deny service over a network.
CVE-2026-77493
Last Modified: 10 Sept 2026Double free in Microsoft Graphics Component allows an unauthorized attacker to execute code over a network.
CVE-2026-77492
Last Modified: 10 Sept 2026Out-of-bounds read in Storage Port Driver allows an authorized attacker to disclose information locally.
CVE-2026-77491
Last Modified: 10 Sept 2026Out-of-bounds read in Windows GDI allows an unauthorized attacker to disclose information locally.
CVE-2026-77489
Last Modified: 11 Sept 2026Null pointer dereference in Windows Biometric Service allows an authorized attacker to elevate privileges locally.
CVE-2026-69579
Last Modified: 10 Sept 2026Use after free in Windows Message Queuing allows an unauthorized attacker to execute code over a network.
CVE-2026-72986
Last Modified: 10 Sept 2026Heap-based buffer overflow in Graphic Fonts allows an unauthorized attacker to execute code over a network.
CVE-2026-69787
Last Modified: 11 Sept 2026Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally.
CVE-2026-69476
Last Modified: 11 Sept 2026Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally.
CVE-2026-72982
Last Modified: 11 Sept 2026Stack-based buffer overflow in Windows Netlogon allows an unauthorized attacker to execute code over a network.
CVE-2026-72983
Last Modified: 10 Sept 2026Use after free in Windows Internet Connection Sharing (ICS) allows an unauthorized attacker to execute code over a network.
CVE-2026-72981
Last Modified: 9 Sept 2026Use after free in IP Helper allows an unauthorized attacker to execute code over a network.
CVE-2026-72980
Last Modified: 10 Sept 2026Uncontrolled search path element in Windows Hello allows an authorized attacker to bypass a security feature locally.
CVE-2026-72979
Last Modified: 10 Sept 2026Use after free in Windows DHCP Server allows an unauthorized attacker to execute code over a network.
CVE-2026-77495
Last Modified: 10 Sept 2026Heap-based buffer overflow in Windows Imaging Component allows an unauthorized attacker to execute code over a network.
CVE-2026-72978
Last Modified: 10 Sept 2026Allocation of resources without limits or throttling in Active Directory Federation Services (AD FS) allows an unauthorized attacker to deny service over a network.
CVE-2026-70283
Last Modified: 10 Sept 2026Incorrect authorization in Windows Win32K allows an authorized attacker to elevate privileges locally.
CVE-2026-70124
Last Modified: 10 Sept 2026Out-of-bounds read in Windows DHCP Server allows an unauthorized attacker to disclose information over a network.
CVE-2026-69930
Last Modified: 10 Sept 2026Out-of-bounds read in Windows DHCP Server allows an unauthorized attacker to disclose information over a network.
CVE-2026-69929
Last Modified: 10 Sept 2026Out-of-bounds read in Windows DHCP Server allows an unauthorized attacker to disclose information over a network.
CVE-2026-69846
Last Modified: 10 Sept 2026Integer overflow or wraparound in Windows Secure Kernel Mode allows an authorized attacker to elevate privileges locally.
CVE-2026-69804
Last Modified: 9 Sept 2026Time-of-check time-of-use (toctou) race condition in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.
CVE-2026-69797
Last Modified: 9 Sept 2026Use after free in Microsoft Office PowerPoint allows an unauthorized attacker to execute code over a network.
CVE-2026-69767
Last Modified: 9 Sept 2026Use after free in Microsoft Office PowerPoint allows an unauthorized attacker to execute code over a network.
CVE-2026-69778
Last Modified: 10 Sept 2026Heap-based buffer overflow in Microsoft Office Access allows an unauthorized attacker to execute code over a network.
CVE-2026-69764
Last Modified: 8 Sept 2026Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code over a network.
CVE-2026-69759
Last Modified: 9 Sept 2026Stack-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code over a network.
CVE-2026-69529
Last Modified: 10 Sept 2026Heap-based buffer overflow in Microsoft Office Access allows an unauthorized attacker to execute code over a network.
CVE-2026-69683
Last Modified: 8 Sept 2026Server-side request forgery (ssrf) in Microsoft Office SharePoint allows an authorized attacker to disclose information over a network.
CVE-2026-69739
Last Modified: 9 Sept 2026Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information over a network.
CVE-2026-69690
Last Modified: 9 Sept 2026Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.
CVE-2026-69719
Last Modified: 8 Sept 2026Buffer over-read in Microsoft Office Word allows an unauthorized attacker to disclose information over a network.
CVE-2026-69724
Last Modified: 9 Sept 2026Missing authorization in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.
CVE-2026-69742
Last Modified: 9 Sept 2026Integer overflow or wraparound in Microsoft Office Publisher allows an unauthorized attacker to execute code over a network.
CVE-2026-69734
Last Modified: 10 Sept 2026Integer overflow or wraparound in Microsoft Office Word allows an unauthorized attacker to disclose information over a network.
CVE-2026-69716
Last Modified: 9 Sept 2026Improper neutralization of special elements used in an sql command ('sql injection') in Microsoft Office SharePoint allows an authorized attacker to elevate privileges over a network.
CVE-2026-69722
Last Modified: 9 Sept 2026Stack-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code over a network.
CVE-2026-69686
Last Modified: 9 Sept 2026Stack-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code over a network.
CVE-2026-69678
Last Modified: 9 Sept 2026Use after free in Microsoft Office PowerPoint allows an unauthorized attacker to execute code over a network.
CVE-2026-69671
Last Modified: 9 Sept 2026Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code over a network.
