SEPTEMBER 21, 2026
Live Feed
Vulnerability Register

CVE Database

Synced from NVD, cross-referenced against CISA KEV and EPSS · ordered by last update

148,146 records on file
Page 417 of 4,939
CVE ID Score Description
1mo ago
7.8

Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

1mo ago
7.8

Access of resource using incompatible type ('type confusion') in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

1mo ago
7.8

Access of resource using incompatible type ('type confusion') in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

1mo ago
7.8

Access of resource using incompatible type ('type confusion') in Microsoft Office allows an unauthorized attacker to execute code locally.

1mo ago
7.3

Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.

1mo ago
7.8

Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.

1mo ago
7.8

Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally.

1mo ago
7.8

Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

1mo ago
8.4

Use after free in Windows DHCP Client allows an unauthorized attacker to execute code locally.

1mo ago
7.8

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Runtime allows an authorized attacker to elevate privileges locally.

1mo ago
7.8

Integer overflow or wraparound in Windows Terminal allows an unauthorized attacker to execute code locally.

1mo ago
8.8

Improper authorization in Active Directory Certificate Services (AD CS) allows an authorized attacker to elevate privileges over a network.

1mo ago
7.8

Integer overflow or wraparound in Windows Active Directory allows an authorized attacker to elevate privileges locally.

1mo ago
8.8

Heap-based buffer overflow in Desktop Window Manager allows an authorized attacker to elevate privileges locally.

1mo ago
7.8

Use after free in Windows Clipboard Server allows an authorized attacker to elevate privileges locally.

1mo ago
7.8

Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally.

1mo ago
8.8

Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally.

1mo ago
8.1

Access of resource using incompatible type ('type confusion') in Windows OLE allows an unauthorized attacker to execute code over a network.

1mo ago
7.5

Double free in Windows DHCP Server allows an authorized attacker to execute code over a network.

1mo ago
8

Heap-based buffer overflow in Windows DHCP Server allows an authorized attacker to elevate privileges over an adjacent network.

1mo ago
7.1

Out-of-bounds read in Windows Active Directory allows an authorized attacker to deny service over a network.

1mo ago
8.2

Heap-based buffer overflow in Windows Hyper-V allows an authorized attacker to elevate privileges locally.

1mo ago
7.8

Heap-based buffer overflow in Microsoft Windows Search Component allows an authorized attacker to elevate privileges locally.

1mo ago
7.8

Use after free in Windows Media allows an authorized attacker to elevate privileges locally.

1mo ago
7.8

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Media allows an authorized attacker to elevate privileges locally.

1mo ago
7

Use after free in Windows USB Print Driver allows an authorized attacker to elevate privileges locally.

1mo ago
7.8

Null pointer dereference in Windows Kernel allows an authorized attacker to elevate privileges locally.

1mo ago
7

Use after free in Windows NTFS allows an authorized attacker to elevate privileges locally.

1mo ago
8.8

Out-of-bounds read in Windows Kernel allows an authorized attacker to elevate privileges locally.

1mo ago
7

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Telephony Service allows an authorized attacker to elevate privileges locally.