SEPTEMBER 27, 2026
Live Feed
Vulnerability Register

CVE Database

Synced from NVD, cross-referenced against CISA KEV and EPSS · ordered by last update

380,963 records on file
Page 764 of 12,699
CVE ID Score Description
17d ago
7

Use after free in Winlogon allows an authorized attacker to elevate privileges locally.

17d ago
7

Use after free in Windows Installer allows an authorized attacker to elevate privileges locally.

17d ago
7.8

Integer overflow or wraparound in Windows HTTP.sys allows an authorized attacker to elevate privileges locally.

17d ago
5.5

Missing authorization in Windows Defender Firewall Service allows an authorized attacker to bypass a security feature locally.

17d ago
7.8

Use after free in Windows Bind Filter Driver allows an authorized attacker to elevate privileges locally.

17d ago
5.5

Out-of-bounds read in Windows DWM Core Library allows an authorized attacker to disclose information locally.

17d ago
7.8

Access of resource using incompatible type ('type confusion') in Windows DWM Core Library allows an authorized attacker to elevate privileges locally.

17d ago
7.8

Heap-based buffer overflow in Windows Kernel allows an authorized attacker to elevate privileges locally.

17d ago
7

Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally.

17d ago
5.5

Cleartext storage of sensitive information in Windows Hello allows an authorized attacker to perform tampering locally.

17d ago
7

Use after free in Windows Bind Filter Driver allows an authorized attacker to elevate privileges locally.

17d ago
7.8

Heap-based buffer overflow in Windows USB Driver allows an authorized attacker to elevate privileges locally.

17d ago
7.8

Incorrect authorization in Windows Installer allows an authorized attacker to elevate privileges locally.

17d ago
6.5

Out-of-bounds read in Remote Desktop Client allows an unauthorized attacker to disclose information over a network.

17d ago
7.8

Heap-based buffer overflow in Windows Display Enhancement Service allows an authorized attacker to elevate privileges locally.

17d ago
6.5

Out-of-bounds read in Remote Desktop Client allows an unauthorized attacker to disclose information over a network.

17d ago
6.6

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows DNS allows an authorized attacker to execute code over a network.

17d ago
6.5

Out-of-bounds read in Remote Desktop Client allows an unauthorized attacker to disclose information over a network.

17d ago
5

Heap-based buffer overflow in Windows Hyper-V allows an authorized attacker to disclose information locally.

17d ago
7.8

Missing authentication for critical function in Windows Remote Desktop Services allows an authorized attacker to elevate privileges locally.

17d ago
7

Double free in Windows Network Connection Broker allows an authorized attacker to elevate privileges locally.

17d ago
7.8

Missing authentication for critical function in Windows Remote Desktop Services allows an authorized attacker to elevate privileges locally.

17d ago
7.8

Missing authentication for critical function in Windows Remote Desktop Services allows an authorized attacker to elevate privileges locally.

17d ago
7.5

Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code over a network.

17d ago
7

Use after free in Windows DHCP Client allows an authorized attacker to execute code locally.

17d ago
5.5

Untrusted pointer dereference in Windows GDI allows an authorized attacker to disclose information locally.

17d ago
7.8

Heap-based buffer overflow in Windows Storage allows an authorized attacker to elevate privileges locally.

17d ago
7.8

Improper link resolution before file access ('link following') in Windows Accessibility Infrastructure (ATBroker.exe) allows an authorized attacker to elevate privileges locally.

17d ago
7.8

Use after free in Application Information Services allows an authorized attacker to elevate privileges locally.

17d ago
7.8

Missing authentication for critical function in Windows Remote Desktop Services allows an authorized attacker to elevate privileges locally.