SEPTEMBER 27, 2026
Live Feed
Vulnerability Register

CVE Database

Synced from NVD, cross-referenced against CISA KEV and EPSS · ordered by last update

380,963 records on file
Page 765 of 12,699
CVE ID Score Description
17d ago
7.8

Heap-based buffer overflow in Windows Sensor Data Service allows an authorized attacker to elevate privileges locally.

17d ago
7.8

Heap-based buffer overflow in Windows Telephony Service allows an authorized attacker to elevate privileges locally.

17d ago
7.5

Concurrent execution using shared resource with improper synchronization ('race condition') in Remote Desktop Client allows an unauthorized attacker to execute code over a network.

17d ago
4.6

Buffer over-read in Windows NTFS allows an unauthorized attacker to disclose information with a physical attack.

17d ago
7.8

Use after free in Windows Work Folder Service allows an authorized attacker to elevate privileges locally.

17d ago
7

Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.

17d ago
5.5

Buffer over-read in Windows Event Logging Service allows an authorized attacker to disclose information locally.

17d ago
7

Use after free in Windows Graphics Kernel allows an authorized attacker to elevate privileges locally.

17d ago
6.5

Null pointer dereference in Microsoft Remote Registry Service allows an authorized attacker to deny service over a network.

17d ago
6.5

Null pointer dereference in Microsoft Remote Registry Service allows an authorized attacker to deny service over a network.

17d ago
5.5

Use of uninitialized resource in Windows Event Logging Service allows an authorized attacker to disclose information locally.

17d ago
5.5

Use of uninitialized resource in Microsoft COM for Windows allows an authorized attacker to disclose information locally.

17d ago
5.5

Weak authentication in Microsoft Windows Search Component allows an authorized attacker to disclose information locally.

17d ago
7.5

Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code over a network.

17d ago
8.8

Execution with unnecessary privileges in Microsoft High Performance Computing (HPC) Pack allows an authorized attacker to elevate privileges over a network.

17d ago
7.5

Null pointer dereference in Windows TCP/IP allows an unauthorized attacker to deny service over a network.

17d ago
5.6

No cwe for this issue in AMD Zen allows an authorized attacker to disclose information locally.

17d ago
5.6

No cwe for this issue in AMD Zen allows an authorized attacker to disclose information locally.

17d ago
5.5

Out-of-bounds read in Windows Encrypting File System (EFS) allows an authorized attacker to disclose information locally.

17d ago
7.8

Integer overflow or wraparound in Windows Installer allows an authorized attacker to elevate privileges locally.

17d ago
7

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Event Logging Service allows an authorized attacker to elevate privileges locally.

17d ago
7

Use after free in Virtual Hard Disk (VHD) Miniport Driver allows an authorized attacker to elevate privileges locally.

17d ago
9.8

Deserialization of untrusted data in Microsoft High Performance Computing (HPC) Pack allows an unauthorized attacker to execute code over a network.

17d ago
7

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Telephony Service allows an authorized attacker to elevate privileges locally.

17d ago
7.3

Incorrect default permissions in Microsoft PowerShell allows an authorized attacker to elevate privileges locally.

17d ago
8.8

Missing authorization in Visual Studio Code allows an unauthorized attacker to execute code over a network.

17d ago
7.8

Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code locally.

17d ago
7.8

Authorization bypass through user-controlled key in Visual Studio Code allows an unauthorized attacker to bypass a security feature locally.

17d ago
7.8

Integer overflow or wraparound in .NET allows an unauthorized attacker to elevate privileges locally.

17d ago
6.5

Server-side request forgery (ssrf) in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.