SEPTEMBER 27, 2026
Live Feed
Vulnerability Register

CVE Database

Synced from NVD, cross-referenced against CISA KEV and EPSS · ordered by last update

149,161 records on file
Page 735 of 4,973
CVE ID Score Description
1mo ago
7

Double free in Microsoft Brokering File System allows an authorized attacker to elevate privileges locally.

1mo ago
7.5

Stack-based buffer overflow in .NET and Visual Studio allows an unauthorized attacker to deny service over a network.

1mo ago
7.8

Use after free in Microsoft Office PowerPoint allows an unauthorized attacker to execute code locally.

1mo ago
7.8

Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

1mo ago
7.8

Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

1mo ago
7.8

Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

1mo ago
7

Stack-based buffer overflow in Windows Kernel allows an authorized attacker to elevate privileges locally.

1mo ago
7.8

Deserialization of untrusted data in Azure Monitor Agent allows an authorized attacker to elevate privileges locally.

1mo ago
8.4

Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.

1mo ago
7.8

Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

1mo ago
7.1

Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.

1mo ago
7.8

Deserialization of untrusted data in Microsoft High Performance Compute Pack (HPC) allows an authorized attacker to elevate privileges locally.

1mo ago
7.8

Improper neutralization of special elements used in a command ('command injection') in Windows Snipping Tool allows an unauthorized attacker to execute code locally.

1mo ago
7.5

Improper neutralization of special elements in .NET allows an unauthorized attacker to perform spoofing over a network.

1mo ago
8.8

Insufficiently protected credentials in Azure Logic Apps allows an authorized attacker to elevate privileges over a network.

1mo ago
7.8

Improper input validation in Azure Monitor Agent allows an authorized attacker to elevate privileges locally.

1mo ago
7.8

Use after free in Windows User Interface Core allows an authorized attacker to elevate privileges locally.

1mo ago
7.8

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows User Interface Core allows an authorized attacker to elevate privileges locally.

1mo ago
7.8

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows User Interface Core allows an authorized attacker to elevate privileges locally.

1mo ago
8.4

Acceptance of extraneous untrusted data with trusted data in Windows COM allows an unauthorized attacker to elevate privileges locally.

1mo ago
7.8

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Push Notifications allows an authorized attacker to elevate privileges locally.

1mo ago
7.8

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Push Notifications allows an authorized attacker to elevate privileges locally.

1mo ago
7.8

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Push Notifications allows an authorized attacker to elevate privileges locally.

1mo ago
8.8

Use after free in Remote Desktop Client allows an unauthorized attacker to execute code over a network.

1mo ago
7.4

Use after free in Windows Universal Plug and Play (UPnP) Device Host allows an unauthorized attacker to execute code locally.

1mo ago
7.8

Use after free in Desktop Window Manager allows an authorized attacker to elevate privileges locally.

1mo ago
7.8

Use after free in Desktop Window Manager allows an authorized attacker to elevate privileges locally.

1mo ago
7.8

Use after free in Microsoft Windows Speech allows an authorized attacker to elevate privileges locally.

1mo ago
7.8

Use after free in Desktop Window Manager allows an authorized attacker to elevate privileges locally.

1mo ago
7

Concurrent execution using shared resource with improper synchronization ('race condition') in Function Discovery Service (fdwsd.dll) allows an authorized attacker to elevate privileges locally.