CVE Database
Synced from NVD, cross-referenced against CISA KEV and EPSS · ordered by last update
| CVE ID | Score | Description |
|---|---|---|
| 2h ago | 5.5 | Use of uninitialized resource in Windows Win32 Kernel Subsystem allows an authorized attacker to disclose information locally. |
| 2h ago | 5.5 | Out-of-bounds read in Microsoft Windows Search Component allows an authorized attacker to disclose information locally. |
| 2h ago | 5.9 | Out-of-bounds read in Windows DHCP Server allows an unauthorized attacker to disclose information over a network. |
| 2h ago | 5.9 | Concurrent execution using shared resource with improper synchronization ('race condition') in Windows DNS allows an unauthorized attacker to deny service over a network. |
| 2h ago | 6.5 | Windows hard link in Windows Compressed Folder allows an unauthorized attacker to disclose information over a network. |
| 2h ago | 5.9 | Out-of-bounds read in Windows DHCP Server allows an unauthorized attacker to disclose information over a network. |
| 2h ago | 5.9 | Out-of-bounds read in Windows DHCP Server allows an unauthorized attacker to disclose information over a network. |
| 2h ago | 4.7 | Out-of-bounds read in Windows Spaceport.sys allows an authorized attacker to disclose information locally. |
| 2h ago | 6.4 | Heap-based buffer overflow in Windows DHCP Server allows an authorized attacker to execute code locally. |
| 2h ago | 5.5 | Out-of-bounds read in Windows Wireless Wide Area Network Service allows an authorized attacker to disclose information locally. |
| 2h ago | 4.7 | Use of uninitialized resource in Windows Win32K allows an authorized attacker to disclose information locally. |
| 2h ago | 6.5 | Uncaught exception in Windows iSCSI Target Service allows an authorized attacker to deny service over a network. |
| 2h ago | 5.6 | Exposure of sensitive system information to an unauthorized control sphere in Windows Win32K allows an authorized attacker to disclose information locally. |
| 2h ago | 5.5 | Out-of-bounds read in Windows Win32K allows an authorized attacker to disclose information locally. |
| 2h ago | 5.9 | Out-of-bounds read in Windows DHCP Server allows an unauthorized attacker to disclose information over a network. |
| 2h ago | 5.5 | Buffer over-read in Windows Encrypting File System (EFS) allows an authorized attacker to disclose information locally. |
| 2h ago | 4.7 | Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Win32K allows an authorized attacker to bypass a security feature locally. |
| 2h ago | 6.5 | Missing release of memory after effective lifetime in Windows DHCP Client allows an unauthorized attacker to deny service over an adjacent network. |
| 2h ago | 4.7 | Improper link resolution before file access ('link following') in Windows Container Manager Service allows an authorized attacker to bypass a security feature locally. |
| 2h ago | 5.5 | Use of uninitialized resource in Windows Spaceport.sys allows an authorized attacker to disclose information locally. |
| 2h ago | 5.5 | Out-of-bounds read in Windows Spaceport.sys allows an authorized attacker to disclose information locally. |
| 2h ago | 6.5 | Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information over a network. |
| 2h ago | 6.5 | Integer overflow or wraparound in Microsoft Office Word allows an unauthorized attacker to disclose information over a network. |
| 2h ago | 5.7 | Exposure of sensitive system information to an unauthorized control sphere in Windows Kernel allows an authorized attacker to disclose information over a network. |
| 2h ago | 6.5 | Buffer over-read in Microsoft Office Word allows an unauthorized attacker to disclose information over a network. |
| 2h ago | 4.4 | Dependency on vulnerable third-party component in Windows Secure Boot allows an authorized attacker to bypass a security feature locally. |
| 2h ago | 4.6 | Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network. |
| 2h ago | 5.5 | Generation of error message containing sensitive information in Windows Error Reporting allows an authorized attacker to disclose information locally. |
| 2h ago | 6.5 | Server-side request forgery (ssrf) in Microsoft Office SharePoint allows an authorized attacker to disclose information over a network. |
| 2h ago | 5.7 | Out-of-bounds read in Windows DHCP Server allows an authorized attacker to deny service over an adjacent network. |