2 zero-days addressed this Patch Tuesday, both actively exploited. A public bypass PoC (“ShieldCrash”) for a separate Defender fix (CVE-2026-69414) was also published within hours of release — see Critical CVEs tab.
| CVE | Component | Type | Severity | CVSS | Status | Notes |
|---|---|---|---|---|---|---|
| CVE-2026-81963 | Windows Update Stack | Elevation of Privilege | Important | TBC | Exploited | Local privilege escalation to SYSTEM; reported exploited in the wild by MSTIC. Affects Windows 11 and Windows Server 2025. Analysts assess it's most likely paired with a separate code-execution bug as the “final step” in post-compromise tooling. |
| CVE-2026-85880 | Windows ALPC | Elevation of Privilege (heap-based buffer overflow) | Important | TBC | Exploited | Local privilege escalation to SYSTEM; reported exploited in the wild by Proofpoint. Affects the entire supported Windows fleet including Windows 10 ESU and Server 2012–2022. Neither vendor has published exploitation-campaign details yet. |
| CVE | Product | Type | CVSS | Notes |
|---|---|---|---|---|
| CVE-2026-69730 | Windows DNS Server | RCE | TBC | Unauthenticated, no user interaction — part of a cluster of ~20 wormable bugs this month. ZDI's Dustin Childs calls it the “spiritual successor to SigRed.” Patch DNS servers/domain controllers first. |
| CVE-2026-69676 | Windows Kerberos | Auth Bypass → RCE | TBC | Rated “Exploitation More Likely” by Microsoft. Authenticated low-privilege attacker → code execution on a domain controller. ZDI: “a domain-compromise primitive.” |
| CVE-2026-55007 | Microsoft Exchange Server | RCE | TBC | Triggered by Exchange processing an email with a malicious Visio attachment. No user interaction needed beyond delivery to the mail server. |
| CVE-2026-80093 | Windows Cloud Files Mini Filter Driver | EoP | TBC | Requires winning a race condition, but technical details are already public (Talos advisory TALOS-2026-2445) — treat as high-priority despite the extra exploitation complexity. |
| CVE-2026-81963 | Windows Update Stack | EoP | TBC | Actively exploited zero-day — see Zero-days tab. |
| CVE-2026-85880 | Windows ALPC | EoP | TBC | Actively exploited zero-day, affects entire Windows fleet — see Zero-days tab. |
| CVE-2026-69414 | Microsoft Defender / Malware Protection Engine | EoP | TBC | Patch bypass PoC (“ShieldCrash”) already public — watch for weaponisation. |
CVSS scores not published in the sources reviewed this run — confirm at msrc.microsoft.com/update-guide
Day +3 known-issues review is due Friday 11 Sep 2026 and will replace this placeholder with confirmed deployment issues.
| Product | KB | Item | Status |
|---|---|---|---|
| Windows 10 22H2 / 21H2 (ESU / LTSC) | KB5122878 | No new known issues reported by Microsoft for this release. | None reported |
| Windows 11 24H2 / 25H2 / 23H2 | KB5124008 / KB5122880 | No new known issues reported by Microsoft for this release. | None reported |
Day 0 sources (9 Sep 2026)
961 of 965 Microsoft CVEs published 8–9 Sep 2026 (per NVD's own count), pulled directly from the NVD CVE API (filtered to sourceIdentifier=secure@microsoft.com) via sequential, individually-verified pagination — grouped by product, with NVD's CVSS v3.1 qualitative severity shown per CVE (Critical/High/Medium/Low). This uses NVD's severity buckets rather than MSRC's own Critical/Important/Moderate rating, and MSRC's own count for the release differs slightly (964–974 depending on source, see banner above) since NVD and MSRC don't always publish on identical schedules. 4 CVEs could not be confirmed present despite extensive re-verification sweeps of the index range and are omitted rather than guessed. Every row below was fetched from a live NVD API response — nothing here is inferred or fabricated.
| Product | CVE | Description | Severity |
|---|---|---|---|
| .NET 3 CVEs | |||
| .NET | CVE-2026-58649 | Origin validation error in .NET | Medium |
| .NET | CVE-2026-69805 | External path control in .NET | High |
| .NET | CVE-2026-69806 | Sensitive information exposure in .NET | High |
| .NET and Visual Studio 1 CVE | |||
| .NET and Visual Studio | CVE-2026-69439 | Heap-based buffer overflow in .NET and Visual Studio | High |
| Active Directory Certificate Services 4 CVEs | |||
| Active Directory Certificate Services | CVE-2026-62810 | Heap-based buffer overflow in Active Directory Certificate Services | High |
| Active Directory Certificate Services | CVE-2026-69395 | Format string vulnerability in Active Directory Certificate Services | Medium |
| Active Directory Certificate Services | CVE-2026-69624 | Incomplete input validation in Active Directory Certificate Services | Medium |
| Active Directory Certificate Services | CVE-2026-69821 | Improper output encoding in Active Directory Certificate Services | High |
| Active Directory Domain Services 6 CVEs | |||
| Active Directory Domain Services | CVE-2026-62762 | Null pointer dereference in Active Directory Domain Services | Medium |
| Active Directory Domain Services | CVE-2026-62813 | Use after free in Active Directory Domain Services | High |
| Active Directory Domain Services | CVE-2026-69359 | Heap buffer overflow in Active Directory Domain Services enables privilege elevation | High |
| Active Directory Domain Services | CVE-2026-69524 | Use after free in Active Directory Domain Services | High |
| Active Directory Domain Services | CVE-2026-69546 | Use after free in Active Directory Domain Services | High |
| Active Directory Domain Services | CVE-2026-69809 | Memory leak in Active Directory Domain Services | High |
| Active Directory Federation Services 1 CVE | |||
| Active Directory Federation Services | CVE-2026-72978 | Allocation of resources without limits in Active Directory Federation Services | Medium |
| ASP.NET 1 CVE | |||
| ASP.NET | CVE-2026-69304 | Improper handling of highly compressed data in ASP.NET | Medium |
| Audio Video Control Transport Protocol 1 CVE | |||
| Audio Video Control Transport Protocol | CVE-2026-69401 | Use after free in Audio Video Control Transport Protocol | High |
| Azure Arc 1 CVE | |||
| Azure Arc | CVE-2026-62895 | Permissive cross-domain policy with untrusted domains in Azure Arc | High |
| Azure CycleCloud 1 CVE | |||
| Azure CycleCloud | CVE-2026-77909 | Insufficiently protected credentials in Azure CycleCloud cause information disclosure | High |
| Azure HDInsight 1 CVE | |||
| Azure HDInsight | CVE-2026-81349 | OS command injection in Azure HDInsight allows network privilege escalation | High |
| BranchCache 1 CVE | |||
| BranchCache | CVE-2026-69329 | Out-of-bounds read in BranchCache | High |
| Connected Devices Platform Service 1 CVE | |||
| Connected Devices Platform Service | CVE-2026-69516 | Use after free in Connected Devices Platform Service | High |
| Data Sharing Service Client 1 CVE | |||
| Data Sharing Service Client | CVE-2026-73014 | Missing authorization in Data Sharing Service Client enables privilege escalation | High |
| DNS Server 1 CVE | |||
| DNS Server | CVE-2026-77505 | Use-after-free in DNS Server enables network code execution | High |
| GitHub Copilot and Visual Studio Code 2 CVEs | |||
| GitHub Copilot and Visual Studio Code | CVE-2026-81380 | Command injection in GitHub Copilot and Visual Studio Code | Medium |
| GitHub Copilot and Visual Studio Code | CVE-2026-81381 | Credential exposure vulnerability in GitHub Copilot and Visual Studio Code | Medium |
| Graphic Fonts 3 CVEs | |||
| Graphic Fonts | CVE-2026-69576 | Use after free in Graphic Fonts | High |
| Graphic Fonts | CVE-2026-72986 | Heap-based buffer overflow in Graphic Fonts | High |
| Graphic Fonts | CVE-2026-73018 | Heap buffer overflow in Graphic Fonts enables network code execution | High |
| HEIF Image Extension 1 CVE | |||
| HEIF Image Extension | CVE-2026-81353 | Heap buffer overflow in HEIF Image Extension enables local code execution | High |
| HID class driver 1 CVE | |||
| HID class driver | CVE-2026-69731 | Heap-based buffer overflow in HID class driver | High |
| Internet Storage Name Service 1 CVE | |||
| Internet Storage Name Service | CVE-2026-68895 | Numeric truncation error in Internet Storage Name Service | Medium |
| IP Helper 1 CVE | |||
| IP Helper | CVE-2026-72981 | Use after free in IP Helper | High |
| Kernel Streaming WOW Thunk 1 CVE | |||
| Kernel Streaming WOW Thunk | CVE-2026-69900 | Untrusted pointer dereference in Kernel Streaming WOW Thunk | High |
| Kernel Streaming WOW Thunk Service Driver 1 CVE | |||
| Kernel Streaming WOW Thunk Service Driver | CVE-2026-69275 | Use after free in Kernel Streaming WOW Thunk Service Driver | High |
| Microsoft 1 CVE | |||
| Microsoft | CVE-2026-65812 | Insertion of sensitive information into sent data in Microsoft | Medium |
| Microsoft Account 2 CVEs | |||
| Microsoft Account | CVE-2026-68850 | Heap-based buffer overflow in Microsoft Account | High |
| Microsoft Account | CVE-2026-68852 | Use of uninitialized resource in Microsoft Account | Medium |
| Microsoft Authentication Library 1 CVE | |||
| Microsoft Authentication Library | CVE-2026-84003 | Authentication bypass in Microsoft Authentication Library enables spoofing | High |
| Microsoft Authenticator for Android 1 CVE | |||
| Microsoft Authenticator for Android | CVE-2026-80097 | Improper authentication in Microsoft Authenticator for Android allows local privilege escalation | High |
| Microsoft Azure CLI 1 CVE | |||
| Microsoft Azure CLI | CVE-2026-83948 | Command injection in Microsoft Azure CLI allows code execution over network | High |
| Microsoft COM for Windows 1 CVE | |||
| Microsoft COM for Windows | CVE-2026-69299 | Use after free in Microsoft COM for Windows | High |
| Microsoft Dynamics 365 2 CVEs | |||
| Microsoft Dynamics 365 | CVE-2026-65772 | Deserialization of untrusted data in Microsoft Dynamics 365 | High |
| Microsoft Dynamics 365 | CVE-2026-77908 | Code injection in Microsoft Dynamics 365 enables remote execution | High |
| Microsoft Entra 1 CVE | |||
| Microsoft Entra | CVE-2026-83941 | Missing authorization in Microsoft Entra allows privilege escalation over network | Critical |
| Microsoft Exchange Server 9 CVEs | |||
| Microsoft Exchange Server | CVE-2026-55007 | Double free in Microsoft Exchange Server allows an unauthorized attacker to execute code | High |
| Microsoft Exchange Server | CVE-2026-69355 | External control of file name or path in Microsoft Exchange Server | High |
| Microsoft Exchange Server | CVE-2026-69356 | Improper neutralization of input in Microsoft Exchange Server enables cross-site scripting | Critical |
| Microsoft Exchange Server | CVE-2026-69361 | Server-side request forgery in Microsoft Exchange Server enables spoofing | Medium |
| Microsoft Exchange Server | CVE-2026-69375 | Authorization bypass through user-controlled key in Microsoft Exchange Server | Medium |
| Microsoft Exchange Server | CVE-2026-69378 | Uncontrolled recursion in Microsoft Exchange Server | High |
| Microsoft Exchange Server | CVE-2026-69380 | Missing authorization in Microsoft Exchange Server | High |
| Microsoft Exchange Server | CVE-2026-69382 | Use of a broken or risky cryptographic algorithm in Microsoft Exchange Server | Medium |
| Microsoft Exchange Server | CVE-2026-69641 | Missing authorization in Microsoft Exchange Server | Critical |
| Microsoft Graphics Component 8 CVEs | |||
| Microsoft Graphics Component | CVE-2026-69467 | Stack-based buffer overflow in Microsoft Graphics Component | High |
| Microsoft Graphics Component | CVE-2026-73006 | Stack buffer overflow in Microsoft Graphics Component enables network code execution | High |
| Microsoft Graphics Component | CVE-2026-73016 | Heap buffer overflow in Microsoft Graphics Component enables network code execution | High |
| Microsoft Graphics Component | CVE-2026-77493 | Double free in Microsoft Graphics Component enables network code execution | Critical |
| Microsoft Graphics Component | CVE-2026-78439 | Stack buffer overflow in Microsoft Graphics Component enables code execution | High |
| Microsoft Graphics Component | CVE-2026-81955 | Heap buffer overflow in Microsoft Graphics Component enables network execution | High |
| Microsoft Graphics Component | CVE-2026-83990 | Stack buffer overflow in Microsoft Graphics Component enables code execution | High |
| Microsoft Graphics Component | CVE-2026-84000 | Heap buffer overflow in Microsoft Graphics Component allows code execution | High |
| Microsoft JScript 2 CVEs | |||
| Microsoft JScript | CVE-2026-69325 | Heap-based buffer overflow in Microsoft JScript | High |
| Microsoft JScript | CVE-2026-69438 | Incorrect numeric type conversion in Microsoft JScript | High |
| Microsoft Local Security Authority Server 2 CVEs | |||
| Microsoft Local Security Authority Server | CVE-2026-69277 | Stack-based buffer overflow in Microsoft Local Security Authority Server | High |
| Microsoft Local Security Authority Server | CVE-2026-69365 | Out-of-bounds read in Microsoft Local Security Authority Server enables elevation | High |
| Microsoft Office 14 CVEs | |||
| Microsoft Office | CVE-2026-64918 | Insufficiently protected credentials in Microsoft Office allows spoofing | Medium |
| Microsoft Office | CVE-2026-69285 | Heap-based buffer overflow in Microsoft Office | High |
| Microsoft Office | CVE-2026-69442 | Heap-based buffer overflow in Microsoft Office | High |
| Microsoft Office | CVE-2026-69626 | Buffer over-read in Microsoft Office | Medium |
| Microsoft Office | CVE-2026-69632 | Use after free in Microsoft Office | High |
| Microsoft Office | CVE-2026-69739 | Out-of-bounds read in Microsoft Office | High |
| Microsoft Office | CVE-2026-77898 | Heap buffer overflow in Microsoft Office enables remote code execution | High |
| Microsoft Office | CVE-2026-78524 | Out-of-bounds write in Microsoft Office enables network code execution | High |
| Microsoft Office | CVE-2026-80076 | Out-of-bounds read in Microsoft Office enables network information disclosure | Medium |
| Microsoft Office | CVE-2026-80078 | Out-of-bounds read in Microsoft Office enables network information disclosure | Medium |
| Microsoft Office | CVE-2026-80082 | Out-of-bounds read in Microsoft Office enables network information disclosure | Medium |
| Microsoft Office | CVE-2026-80087 | Heap buffer overflow in Microsoft Office enables network information disclosure | Medium |
| Microsoft Office | CVE-2026-80089 | Out-of-bounds read in Microsoft Office enables network information disclosure | Medium |
| Microsoft Office | CVE-2026-80091 | Use of uninitialized resource in Microsoft Office enables network information disclosure | Medium |
| Microsoft Office Access 4 CVEs | |||
| Microsoft Office Access | CVE-2026-69477 | Heap-based buffer overflow in Microsoft Office Access | High |
| Microsoft Office Access | CVE-2026-69529 | Heap-based buffer overflow in Microsoft Office Access | High |
| Microsoft Office Access | CVE-2026-69614 | Stack-based buffer overflow in Microsoft Office Access | High |
| Microsoft Office Access | CVE-2026-69778 | Heap-based buffer overflow in Microsoft Office Access | High |
| Microsoft Office Excel 32 CVEs | |||
| Microsoft Office Excel | CVE-2026-72974 | Buffer over-read in Microsoft Office Excel | Medium |
| Microsoft Office Excel | CVE-2026-78515 | Out-of-bounds read in Microsoft Office Excel discloses information over network | Medium |
| Microsoft Office Excel | CVE-2026-78518 | Out-of-bounds read in Microsoft Office Excel enables network code execution | High |
| Microsoft Office Excel | CVE-2026-81386 | Heap buffer overflow in Microsoft Office Excel enables code execution | High |
| Microsoft Office Excel | CVE-2026-81387 | System information exposure in Microsoft Office Excel | Medium |
| Microsoft Office Excel | CVE-2026-81388 | Stack buffer overflow in Microsoft Office Excel enables code execution | High |
| Microsoft Office Excel | CVE-2026-81389 | Heap buffer overflow in Microsoft Office Excel enables code execution | High |
| Microsoft Office Excel | CVE-2026-81390 | Out-of-bounds read in Microsoft Office Excel discloses information | Medium |
| Microsoft Office Excel | CVE-2026-81391 | Uninitialized resource use in Microsoft Office Excel discloses information | Medium |
| Microsoft Office Excel | CVE-2026-81392 | Out-of-bounds read in Microsoft Office Excel discloses information | Medium |
| Microsoft Office Excel | CVE-2026-81393 | Out-of-bounds read in Microsoft Office Excel discloses information | Medium |
| Microsoft Office Excel | CVE-2026-81394 | System information exposure in Microsoft Office Excel | Medium |
| Microsoft Office Excel | CVE-2026-81395 | Out-of-bounds read in Microsoft Office Excel discloses information | Medium |
| Microsoft Office Excel | CVE-2026-81396 | Stack buffer overflow in Microsoft Office Excel enables code execution | High |
| Microsoft Office Excel | CVE-2026-81397 | Heap buffer overflow in Microsoft Office Excel enables code execution | High |
| Microsoft Office Excel | CVE-2026-81398 | Heap buffer overflow in Microsoft Office Excel enables code execution | High |
| Microsoft Office Excel | CVE-2026-81399 | Buffer over-read in Microsoft Office Excel causes information disclosure | Medium |
| Microsoft Office Excel | CVE-2026-81400 | Out-of-bounds read in Microsoft Office Excel causes information disclosure | Medium |
| Microsoft Office Excel | CVE-2026-81401 | Type confusion in Microsoft Office Excel causes information disclosure | Medium |
| Microsoft Office Excel | CVE-2026-81947 | Heap buffer overflow in Microsoft Office Excel enables remote execution | High |
| Microsoft Office Excel | CVE-2026-81948 | Heap buffer overflow in Microsoft Office Excel enables code execution | High |
| Microsoft Office Excel | CVE-2026-81949 | Integer overflow in Microsoft Office Excel enables remote code execution | High |
| Microsoft Office Excel | CVE-2026-81950 | Double free in Microsoft Office Excel enables code execution | High |
| Microsoft Office Excel | CVE-2026-81951 | Heap buffer overflow in Microsoft Office Excel enables exploitation | High |
| Microsoft Office Excel | CVE-2026-81953 | Stack buffer overflow in Microsoft Office Excel enables code execution | High |
| Microsoft Office Excel | CVE-2026-81954 | Use-after-free in Microsoft Office Excel enables code execution | High |
| Microsoft Office Excel | CVE-2026-81956 | Out-of-bounds read in Microsoft Office Excel enables code execution | High |
| Microsoft Office Excel | CVE-2026-81957 | Out-of-bounds read in Microsoft Office Excel enables local code execution | High |
| Microsoft Office Excel | CVE-2026-81958 | Uninitialized resource in Microsoft Office Excel allows information disclosure | Medium |
| Microsoft Office Excel | CVE-2026-81959 | Heap buffer overflow in Microsoft Office Excel enables local code execution | High |
| Microsoft Office Excel | CVE-2026-81960 | Heap buffer overflow in Microsoft Office Excel enables local code execution | High |
| Microsoft Office Excel | CVE-2026-85875 | Out-of-bounds read in Microsoft Office Excel discloses information | Medium |
| Microsoft Office Outlook 6 CVEs | |||
| Microsoft Office Outlook | CVE-2026-69629 | Heap-based buffer overflow in Microsoft Office Outlook | High |
| Microsoft Office Outlook | CVE-2026-78509 | Heap buffer overflow in Microsoft Office Outlook enables remote code execution | Critical |
| Microsoft Office Outlook | CVE-2026-78519 | Uninitialized resource use in Microsoft Office Outlook enables network code execution | High |
| Microsoft Office Outlook | CVE-2026-78520 | Out-of-bounds read in Microsoft Office Outlook discloses information over network | Medium |
| Microsoft Office Outlook | CVE-2026-78525 | Use-after-free in Microsoft Office Outlook enables network code execution | High |
| Microsoft Office Outlook | CVE-2026-80073 | Out-of-bounds read in Microsoft Office Outlook discloses information over network | Medium |
| Microsoft Office PowerPoint 8 CVEs | |||
| Microsoft Office PowerPoint | CVE-2026-69678 | Use after free in Microsoft Office PowerPoint | High |
| Microsoft Office PowerPoint | CVE-2026-69767 | Use after free in Microsoft Office PowerPoint | High |
| Microsoft Office PowerPoint | CVE-2026-69797 | Use after free in Microsoft Office PowerPoint | High |
| Microsoft Office PowerPoint | CVE-2026-72938 | Type confusion in Microsoft Office PowerPoint | Medium |
| Microsoft Office PowerPoint | CVE-2026-72956 | Untrusted pointer dereference in Microsoft Office PowerPoint | Medium |
| Microsoft Office PowerPoint | CVE-2026-72975 | Out-of-bounds read in Microsoft Office PowerPoint | Medium |
| Microsoft Office PowerPoint | CVE-2026-72977 | Out-of-bounds read in Microsoft Office PowerPoint | Medium |
| Microsoft Office PowerPoint | CVE-2026-78513 | Out-of-bounds read in Microsoft Office PowerPoint discloses information locally | Medium |
| Microsoft Office Publisher 2 CVEs | |||
| Microsoft Office Publisher | CVE-2026-69742 | Integer overflow in Microsoft Office Publisher | High |
| Microsoft Office Publisher | CVE-2026-81385 | Deserialization flaw in Microsoft Office Publisher enables code execution | High |
| Microsoft Office SharePoint 7 CVEs | |||
| Microsoft Office SharePoint | CVE-2026-69268 | Improper access control in Microsoft Office SharePoint | High |
| Microsoft Office SharePoint | CVE-2026-69273 | Improper access control in Microsoft Office SharePoint | High |
| Microsoft Office SharePoint | CVE-2026-69282 | Improper access control in Microsoft Office SharePoint | High |
| Microsoft Office SharePoint | CVE-2026-69402 | Cross-site scripting in Microsoft Office SharePoint | High |
| Microsoft Office SharePoint | CVE-2026-69636 | SQL injection in Microsoft Office SharePoint | Medium |
| Microsoft Office SharePoint | CVE-2026-69683 | Server-side request forgery in Microsoft Office SharePoint | High |
| Microsoft Office SharePoint | CVE-2026-69690 | Cross-site scripting in Microsoft Office SharePoint | Medium |
| Microsoft Office suite 1 CVE | |||
| Microsoft Office suite | CVE-2026-78505 | Heap buffer overflow in Microsoft Office suite enables remote code execution | High |
| Microsoft Office Word 32 CVEs | |||
| Microsoft Office Word | CVE-2026-68843 | Use after free in Microsoft Office Word | Medium |
| Microsoft Office Word | CVE-2026-69360 | Heap buffer overflow in Microsoft Office Word enables code execution | High |
| Microsoft Office Word | CVE-2026-69556 | Heap-based buffer overflow in Microsoft Office Word | High |
| Microsoft Office Word | CVE-2026-69671 | Heap-based buffer overflow in Microsoft Office Word | High |
| Microsoft Office Word | CVE-2026-69686 | Stack-based buffer overflow in Microsoft Office Word | High |
| Microsoft Office Word | CVE-2026-69719 | Buffer over-read in Microsoft Office Word | Medium |
| Microsoft Office Word | CVE-2026-69722 | Stack-based buffer overflow in Microsoft Office Word | High |
| Microsoft Office Word | CVE-2026-69734 | Integer overflow in Microsoft Office Word | Medium |
| Microsoft Office Word | CVE-2026-69759 | Stack-based buffer overflow in Microsoft Office Word | High |
| Microsoft Office Word | CVE-2026-69764 | Heap-based buffer overflow in Microsoft Office Word | High |
| Microsoft Office Word | CVE-2026-72972 | Heap-based buffer overflow in Microsoft Office Word | High |
| Microsoft Office Word | CVE-2026-72973 | Heap-based buffer overflow in Microsoft Office Word | High |
| Microsoft Office Word | CVE-2026-72976 | Out-of-bounds read in Microsoft Office Word | Medium |
| Microsoft Office Word | CVE-2026-77504 | Double free in Microsoft Office Word enables network code execution | High |
| Microsoft Office Word | CVE-2026-77901 | Null pointer dereference in Microsoft Office Word enables remote execution | High |
| Microsoft Office Word | CVE-2026-77911 | Out-of-bounds read in Microsoft Office Word causes information disclosure | Medium |
| Microsoft Office Word | CVE-2026-78502 | Out-of-bounds read in Microsoft Office Word causes information disclosure | Medium |
| Microsoft Office Word | CVE-2026-78503 | Out-of-bounds read in Microsoft Office Word causes information disclosure | Medium |
| Microsoft Office Word | CVE-2026-78504 | Stack buffer overflow in Microsoft Office Word enables remote code execution | High |
| Microsoft Office Word | CVE-2026-78506 | Improper null termination in Microsoft Office Word causes information disclosure | Medium |
| Microsoft Office Word | CVE-2026-78507 | Use-after-free in Microsoft Office Word enables remote code execution | High |
| Microsoft Office Word | CVE-2026-78510 | Heap buffer overflow in Microsoft Office Word enables remote code execution | High |
| Microsoft Office Word | CVE-2026-78511 | Heap buffer overflow in Microsoft Office Word enables network code execution | High |
| Microsoft Office Word | CVE-2026-78512 | Numeric truncation error in Microsoft Office Word enables network code execution | High |
| Microsoft Office Word | CVE-2026-78514 | Use-after-free in Microsoft Office Word enables network code execution | High |
| Microsoft Office Word | CVE-2026-78517 | Heap buffer overflow in Microsoft Office Word enables network code execution | High |
| Microsoft Office Word | CVE-2026-78521 | Heap buffer overflow in Microsoft Office Word enables network code execution | High |
| Microsoft Office Word | CVE-2026-78522 | Out-of-bounds read in Microsoft Office Word discloses information over network | Medium |
| Microsoft Office Word | CVE-2026-78526 | Heap buffer overflow in Microsoft Office Word enables network code execution | High |
| Microsoft Office Word | CVE-2026-81952 | Heap buffer overflow in Microsoft Office Word enables network execution | High |
| Microsoft Office Word | CVE-2026-83949 | Buffer over-read in Microsoft Office Word enables information disclosure | Medium |
| Microsoft Office Word | CVE-2026-83951 | Buffer over-read in Microsoft Office Word enables information disclosure | Medium |
| Microsoft Outlook 1 CVE | |||
| Microsoft Outlook | CVE-2026-80084 | Out-of-bounds read in Microsoft Outlook enables network information disclosure | Medium |
| Microsoft PowerPoint 2 CVEs | |||
| Microsoft PowerPoint | CVE-2026-80081 | Use-after-free in Microsoft PowerPoint enables network code execution | High |
| Microsoft PowerPoint | CVE-2026-80086 | Out-of-bounds read in Microsoft PowerPoint enables network information disclosure | Medium |
| Microsoft SharePoint 3 CVEs | |||
| Microsoft SharePoint | CVE-2026-69409 | Unnecessary privileges in Microsoft SharePoint enable information disclosure | Medium |
| Microsoft SharePoint | CVE-2026-69417 | Cross-site scripting in Microsoft SharePoint enables spoofing attacks | Medium |
| Microsoft SharePoint | CVE-2026-69804 | Time-of-check time-of-use race condition in Microsoft SharePoint | High |
| Microsoft SharePoint Server 6 CVEs | |||
| Microsoft SharePoint Server | CVE-2026-69464 | Unnecessary privileges in Microsoft SharePoint Server | High |
| Microsoft SharePoint Server | CVE-2026-69465 | Missing authorization in Microsoft SharePoint Server | High |
| Microsoft SharePoint Server | CVE-2026-69615 | Cross-site scripting in Microsoft SharePoint Server | Medium |
| Microsoft SharePoint Server | CVE-2026-69716 | SQL injection in Microsoft SharePoint Server | High |
| Microsoft SharePoint Server | CVE-2026-69724 | Missing authorization in Microsoft SharePoint Server | High |
| Microsoft SharePoint Server | CVE-2026-69904 | Server-side request forgery in Microsoft SharePoint Server | Low |
| Microsoft Standard XPS 18 CVEs | |||
| Microsoft Standard XPS | CVE-2026-68881 | Out-of-bounds read in Microsoft Standard XPS | Medium |
| Microsoft Standard XPS | CVE-2026-68885 | Heap-based buffer overflow in Microsoft Standard XPS | High |
| Microsoft Standard XPS | CVE-2026-68888 | Heap-based buffer overflow in Microsoft Standard XPS | High |
| Microsoft Standard XPS | CVE-2026-68889 | Heap-based buffer overflow in Microsoft Standard XPS | High |
| Microsoft Standard XPS | CVE-2026-68890 | Heap-based buffer overflow in Microsoft Standard XPS | High |
| Microsoft Standard XPS | CVE-2026-68891 | Out-of-bounds read in Microsoft Standard XPS | Medium |
| Microsoft Standard XPS | CVE-2026-68892 | Heap-based buffer overflow in Microsoft Standard XPS | High |
| Microsoft Standard XPS | CVE-2026-68897 | Heap-based buffer overflow in Microsoft Standard XPS | High |
| Microsoft Standard XPS | CVE-2026-69269 | Integer underflow in Microsoft Standard XPS | High |
| Microsoft Standard XPS | CVE-2026-69271 | Heap-based buffer overflow in Microsoft Standard XPS | High |
| Microsoft Standard XPS | CVE-2026-69272 | Heap-based buffer overflow in Microsoft Standard XPS | High |
| Microsoft Standard XPS | CVE-2026-69308 | Out-of-bounds read in Microsoft Standard XPS causes information disclosure | Medium |
| Microsoft Standard XPS | CVE-2026-69313 | Heap buffer overflow in Microsoft Standard XPS enables code execution | High |
| Microsoft Standard XPS | CVE-2026-69336 | Heap-based buffer overflow in Microsoft Standard XPS | High |
| Microsoft Standard XPS | CVE-2026-69345 | Out-of-bounds read in Microsoft Standard XPS | Medium |
| Microsoft Standard XPS | CVE-2026-69367 | Out-of-bounds read in Microsoft Standard XPS | Medium |
| Microsoft Standard XPS | CVE-2026-69376 | Out-of-bounds read in Microsoft Standard XPS | Medium |
| Microsoft Standard XPS | CVE-2026-69824 | Integer underflow in Microsoft Standard XPS | Critical |
| Microsoft Teams for Android 1 CVE | |||
| Microsoft Teams for Android | CVE-2026-69559 | Origin validation error in Microsoft Teams for Android | Medium |
| Microsoft Trace Data Helper 1 CVE | |||
| Microsoft Trace Data Helper | CVE-2026-56198 | Out-of-bounds read in Microsoft Trace Data Helper | High |
| Microsoft UxTheme Library 1 CVE | |||
| Microsoft UxTheme Library | CVE-2026-69276 | Integer underflow in Microsoft UxTheme Library | Critical |
| Microsoft WDAC OLE DB provider for SQL 1 CVE | |||
| Microsoft WDAC OLE DB provider for SQL | CVE-2026-72933 | Heap-based buffer overflow in Microsoft WDAC OLE DB provider for SQL | High |
| Microsoft WebP Image Extension 1 CVE | |||
| Microsoft WebP Image Extension | CVE-2026-70351 | Integer overflow in Microsoft WebP Image Extension | High |
| Microsoft Windows Codecs Library 2 CVEs | |||
| Microsoft Windows Codecs Library | CVE-2026-58599 | Heap-based buffer overflow in Microsoft Windows Codecs Library | High |
| Microsoft Windows Codecs Library | CVE-2026-58600 | Heap-based buffer overflow in Microsoft Windows Codecs Library | High |
| Microsoft Windows Media 1 CVE | |||
| Microsoft Windows Media | CVE-2026-62744 | Heap-based buffer overflow in Microsoft Windows Media | High |
| Microsoft Windows Media Foundation 2 CVEs | |||
| Microsoft Windows Media Foundation | CVE-2026-62706 | Out-of-bounds read in Microsoft Windows Media Foundation | High |
| Microsoft Windows Media Foundation | CVE-2026-69386 | Heap-based buffer overflow in Microsoft Windows Media Foundation | High |
| Microsoft Windows Search Component 3 CVEs | |||
| Microsoft Windows Search Component | CVE-2026-68896 | Absolute path traversal in Microsoft Windows Search Component | High |
| Microsoft Windows Search Component | CVE-2026-69305 | Use after free in Microsoft Windows Search Component | High |
| Microsoft Windows Search Component | CVE-2026-69322 | Double free in Microsoft Windows Search Component enables code execution | High |
| Microsoft Word 5 CVEs | |||
| Microsoft Word | CVE-2026-80079 | Out-of-bounds read in Microsoft Word enables network information disclosure | Medium |
| Microsoft Word | CVE-2026-80080 | Double free in Microsoft Word enables network code execution | High |
| Microsoft Word | CVE-2026-80085 | Heap buffer overflow in Microsoft Word enables network code execution | High |
| Microsoft Word | CVE-2026-80088 | Out-of-bounds read in Microsoft Word enables network information disclosure | Medium |
| Microsoft Word | CVE-2026-80090 | Out-of-bounds read in Microsoft Word enables network information disclosure | Medium |
| OpenSSH for Windows 1 CVE | |||
| OpenSSH for Windows | CVE-2026-69397 | Use after free in OpenSSH for Windows | High |
| output used by a downstream component 1 CVE | |||
| output used by a downstream component | CVE-2026-65669 | Improper neutralization of special elements in output used by a downstream component | Critical |
| Power Automate Desktop 1 CVE | |||
| Power Automate Desktop | CVE-2026-77897 | Path traversal in Power Automate Desktop enables privilege escalation | High |
| Push Message Routing Service 1 CVE | |||
| Push Message Routing Service | CVE-2026-69303 | Out-of-bounds read in Push Message Routing Service | Medium |
| Reliable Multicast Transport Driver 1 CVE | |||
| Reliable Multicast Transport Driver | CVE-2026-69530 | Use after free in Reliable Multicast Transport Driver | High |
| Remote Desktop Client 8 CVEs | |||
| Remote Desktop Client | CVE-2026-68828 | Heap-based buffer overflow in Remote Desktop Client | High |
| Remote Desktop Client | CVE-2026-69317 | Out-of-bounds read in Remote Desktop Client causes information disclosure | Medium |
| Remote Desktop Client | CVE-2026-69358 | Use of uninitialized resource in Remote Desktop Client enables code execution | High |
| Remote Desktop Client | CVE-2026-69485 | Uninitialized resource in Remote Desktop Client | High |
| Remote Desktop Client | CVE-2026-77896 | Integer overflow in Remote Desktop Client allows denial of service | Medium |
| Remote Desktop Client | CVE-2026-80074 | Heap buffer overflow in Remote Desktop Client enables network code execution | High |
| Remote Desktop Client | CVE-2026-80077 | Heap buffer overflow in Remote Desktop Client enables network code execution | High |
| Remote Desktop Client | CVE-2026-83998 | Heap buffer overflow in Remote Desktop Client allows code execution | High |
| Remote Desktop Client for Windows 1 CVE | |||
| Remote Desktop Client for Windows | CVE-2026-78463 | Code injection in Remote Desktop Client for Windows enables execution | High |
| Remote Desktop Gateway Service 2 CVEs | |||
| Remote Desktop Gateway Service | CVE-2026-69292 | Double free in Remote Desktop Gateway Service | High |
| Remote Desktop Gateway Service | CVE-2026-69338 | Use after free in Remote Desktop Gateway Service | High |
| RPC Runtime 1 CVE | |||
| RPC Runtime | CVE-2026-69819 | Out-of-bounds write in RPC Runtime | Critical |
| Skype for Business Server 10 CVEs | |||
| Skype for Business Server | CVE-2026-63523 | Cross-site scripting in Skype for Business Server | Medium |
| Skype for Business Server | CVE-2026-66302 | External control of file name in Skype for Business Server | Critical |
| Skype for Business Server | CVE-2026-66303 | Null pointer dereference in Skype for Business Server | Medium |
| Skype for Business Server | CVE-2026-66304 | Server-side request forgery in Skype for Business Server | High |
| Skype for Business Server | CVE-2026-66305 | Client-side authentication spoofing in Skype for Business Server | High |
| Skype for Business Server | CVE-2026-66306 | Sensitive information disclosure in Skype for Business Server | Medium |
| Skype for Business Server | CVE-2026-66307 | Integer underflow causing denial of service in Skype for Business Server | High |
| Skype for Business Server | CVE-2026-66308 | Out-of-bounds read in Skype for Business Server | Medium |
| Skype for Business Server | CVE-2026-69642 | Cross-site scripting spoofing in Skype for Business Server | Medium |
| Skype for Business Server | CVE-2026-69646 | Cryptographic signature verification flaw in Skype for Business Server | High |
| Spring Cloud Azure 1 CVE | |||
| Spring Cloud Azure | CVE-2026-69854 | Improper authentication in Spring Cloud Azure allows privilege elevation | Critical |
| SQL Server 59 CVEs | |||
| SQL Server | CVE-2026-47297 | Deserialization of untrusted data in SQL Server | High |
| SQL Server | CVE-2026-66814 | Insufficient granularity of access control in SQL Server | High |
| SQL Server | CVE-2026-66816 | Insufficient logging in SQL Server | Medium |
| SQL Server | CVE-2026-66818 | Improper privilege management in SQL Server | High |
| SQL Server | CVE-2026-66819 | Improper neutralization of special elements used in SQL Server | High |
| SQL Server | CVE-2026-66820 | Improper neutralization of special elements used in SQL Server | High |
| SQL Server | CVE-2026-67368 | Improper link resolution before file access in SQL Server | High |
| SQL Server | CVE-2026-67369 | Out-of-bounds read in SQL Server | Medium |
| SQL Server | CVE-2026-67370 | Improper neutralization of special elements used in SQL Server | High |
| SQL Server | CVE-2026-67373 | Heap-based buffer overflow in SQL Server | High |
| SQL Server | CVE-2026-67376 | Integer overflow or wraparound in SQL Server | High |
| SQL Server | CVE-2026-67378 | Untrusted pointer dereference in SQL Server | High |
| SQL Server | CVE-2026-67379 | Stack-based buffer overflow in SQL Server | High |
| SQL Server | CVE-2026-67380 | Heap-based buffer overflow in SQL Server | High |
| SQL Server | CVE-2026-67381 | Heap-based buffer overflow in SQL Server | High |
| SQL Server | CVE-2026-67383 | Generation of error message containing sensitive information in SQL Server | Medium |
| SQL Server | CVE-2026-67384 | Integer overflow or wraparound in SQL Server | High |
| SQL Server | CVE-2026-67385 | Use after free in SQL Server | High |
| SQL Server | CVE-2026-67386 | Use of uninitialized resource in SQL Server | Medium |
| SQL Server | CVE-2026-67388 | Heap-based buffer overflow in SQL Server | High |
| SQL Server | CVE-2026-67389 | Out-of-bounds read in SQL Server | Medium |
| SQL Server | CVE-2026-67390 | Buffer over-read in SQL Server | Medium |
| SQL Server | CVE-2026-67393 | Buffer over-read in SQL Server | Medium |
| SQL Server | CVE-2026-67624 | Out-of-bounds read in SQL Server | Medium |
| SQL Server | CVE-2026-67629 | Out-of-bounds read in SQL Server | Medium |
| SQL Server | CVE-2026-67630 | Out-of-bounds read in SQL Server | Medium |
| SQL Server | CVE-2026-67631 | Heap-based buffer overflow in SQL Server | High |
| SQL Server | CVE-2026-67633 | Out-of-bounds read in SQL Server | Medium |
| SQL Server | CVE-2026-67636 | Out-of-bounds read in SQL Server | High |
| SQL Server | CVE-2026-67638 | Heap-based buffer overflow in SQL Server | High |
| SQL Server | CVE-2026-67639 | Heap-based buffer overflow in SQL Server | High |
| SQL Server | CVE-2026-67641 | Integer overflow or wraparound in SQL Server | Medium |
| SQL Server | CVE-2026-67642 | Heap-based buffer overflow in SQL Server | High |
| SQL Server | CVE-2026-67643 | Heap-based buffer overflow in SQL Server | High |
| SQL Server | CVE-2026-67645 | Out-of-bounds read in SQL Server | Medium |
| SQL Server | CVE-2026-67648 | Use of uninitialized resource in SQL Server | Medium |
| SQL Server | CVE-2026-68775 | Heap-based buffer overflow in SQL Server | High |
| SQL Server | CVE-2026-68776 | Use of uninitialized resource in SQL Server | Medium |
| SQL Server | CVE-2026-68777 | Out-of-bounds read in SQL Server | Medium |
| SQL Server | CVE-2026-68778 | Out-of-bounds read in SQL Server | Medium |
| SQL Server | CVE-2026-68779 | Out-of-bounds read in SQL Server | Medium |
| SQL Server | CVE-2026-68780 | Out-of-bounds read in SQL Server | Medium |
| SQL Server | CVE-2026-68781 | Out-of-bounds read in SQL Server | Medium |
| SQL Server | CVE-2026-68784 | Out-of-bounds read in SQL Server | Medium |
| SQL Server | CVE-2026-68785 | Heap-based buffer overflow in SQL Server | Medium |
| SQL Server | CVE-2026-68786 | Heap-based buffer overflow in SQL Server | High |
| SQL Server | CVE-2026-68787 | Heap-based buffer overflow in SQL Server | High |
| SQL Server | CVE-2026-69562 | Out-of-bounds read in SQL Server | Medium |
| SQL Server | CVE-2026-73028 | Improper access control in SQL Server enables network privilege escalation | High |
| SQL Server | CVE-2026-73029 | Buffer over-read in SQL Server enables network information disclosure | Medium |
| SQL Server | CVE-2026-77480 | Insufficient granularity of access control in SQL Server enables privilege escalation | High |
| SQL Server | CVE-2026-77481 | Heap buffer overflow in SQL Server enables network code execution | High |
| SQL Server | CVE-2026-77482 | Heap buffer overflow in SQL Server enables network code execution | High |
| SQL Server | CVE-2026-77483 | Weak authentication in SQL Server enables network privilege escalation | High |
| SQL Server | CVE-2026-77484 | Deserialization of untrusted data in SQL Server enables privilege escalation | High |
| SQL Server | CVE-2026-77485 | Use-after-free in SQL Server enables local privilege elevation | High |
| SQL Server | CVE-2026-77486 | Integer overflow in SQL Server enables network code execution | High |
| SQL Server | CVE-2026-77487 | Improper access control in SQL Server enables network privilege escalation | High |
| SQL Server | CVE-2026-77488 | Integer underflow in SQL Server causes local information disclosure | Medium |
| SQL Server 2022 1 CVE | |||
| SQL Server 2022 | CVE-2026-78456 | Heap buffer overflow in SQL Server 2022 enables remote code execution | High |
| Storage Port Driver 3 CVEs | |||
| Storage Port Driver | CVE-2026-72937 | Out-of-bounds read in Storage Port Driver | Medium |
| Storage Port Driver | CVE-2026-72946 | Heap-based buffer overflow in Storage Port Driver | High |
| Storage Port Driver | CVE-2026-77492 | Out-of-bounds read in Storage Port Driver allows information disclosure | Medium |
| Telnet Client 1 CVE | |||
| Telnet Client | CVE-2026-69431 | Heap-based buffer overflow in Telnet Client | Critical |
| VHD Miniport Driver 3 CVEs | |||
| VHD Miniport Driver | CVE-2026-69541 | Heap-based buffer overflow in VHD Miniport Driver | High |
| VHD Miniport Driver | CVE-2026-69549 | Out-of-bounds read in VHD Miniport Driver | High |
| VHD Miniport Driver | CVE-2026-70574 | Out-of-bounds read in VHD Miniport Driver | High |
| Virtual Hard Disk / VHD Miniport 1 CVE | |||
| Virtual Hard Disk / VHD Miniport | CVE-2026-69384 | Null pointer dereference in Virtual Hard Disk / VHD Miniport | High |
| Virtual Hard Disk driver 1 CVE | |||
| Virtual Hard Disk driver | CVE-2026-69681 | Heap-based buffer overflow in Virtual Hard Disk driver | High |
| Virtual Hard Disk Miniport Driver 1 CVE | |||
| Virtual Hard Disk Miniport Driver | CVE-2026-69611 | Use after free in Virtual Hard Disk Miniport Driver | High |
| Visual Studio 3 CVEs | |||
| Visual Studio | CVE-2026-71328 | Heap-based buffer overflow in Visual Studio | High |
| Visual Studio | CVE-2026-77906 | Heap buffer overflow in Visual Studio enables remote code execution | High |
| Visual Studio | CVE-2026-77907 | Heap buffer overflow in Visual Studio enables remote code execution | High |
| Visual Studio and .NET Framework 1 CVE | |||
| Visual Studio and .NET Framework | CVE-2026-69522 | Heap-based buffer overflow in Visual Studio and .NET Framework | High |
| Visual Studio Code 10 CVEs | |||
| Visual Studio Code | CVE-2026-70334 | Incomplete input validation in Visual Studio Code | High |
| Visual Studio Code | CVE-2026-78461 | Path traversal in Visual Studio Code enables code execution | High |
| Visual Studio Code | CVE-2026-78462 | Authorization bypass in Visual Studio Code enables privilege escalation | High |
| Visual Studio Code | CVE-2026-81356 | HTTP request smuggling in Visual Studio Code enables security bypass | High |
| Visual Studio Code | CVE-2026-81357 | SSRF vulnerability in Visual Studio Code enables security feature bypass | High |
| Visual Studio Code | CVE-2026-81376 | Incomplete comparison flaw in Visual Studio Code enables bypass | Critical |
| Visual Studio Code | CVE-2026-81377 | Path traversal vulnerability in Visual Studio Code | Medium |
| Visual Studio Code | CVE-2026-81378 | Interpretation conflict in Visual Studio Code enables security bypass | High |
| Visual Studio Code | CVE-2026-81379 | Insecure failure mode in Visual Studio Code enables bypass | High |
| Visual Studio Code | CVE-2026-81383 | Name resolution flaw in Visual Studio Code enables bypass | High |
| Volume Manager Driver 3 CVEs | |||
| Volume Manager Driver | CVE-2026-69407 | Integer overflow in Volume Manager Driver | High |
| Volume Manager Driver | CVE-2026-69418 | Heap buffer overflow in Volume Manager Driver enables privilege escalation | High |
| Volume Manager Driver | CVE-2026-69432 | Heap-based buffer overflow in Volume Manager Driver | High |
| Windows 11 CVEs | |||
| Windows | CVE-2026-50349 | Concurrent execution using shared resource with improper synchronization in Windows | High |
| Windows | CVE-2026-57098 | Improper verification of cryptographic signature in Windows | High |
| Windows | CVE-2026-57099 | Allocation of resources without limits or throttling in Windows | High |
| Windows | CVE-2026-62804 | External control of file name or path in Windows | High |
| Windows | CVE-2026-68831 | Files or directories accessible to external parties in Windows | Medium |
| Windows | CVE-2026-68842 | Exposure of sensitive system information to unauthorized control sphere in Windows | Medium |
| Windows | CVE-2026-68873 | Insertion of sensitive information into log file in Windows | Medium |
| Windows | CVE-2026-69267 | Insufficient granularity of access control in Windows | Medium |
| Windows | CVE-2026-69289 | Improper link resolution before file access in Windows | High |
| Windows | CVE-2026-69294 | Generation of error message containing sensitive information in Windows | Medium |
| Windows | CVE-2026-69297 | Storing passwords in a recoverable format in Windows | Medium |
| Windows Accounts Control 2 CVEs | |||
| Windows Accounts Control | CVE-2026-69654 | Use after free in Windows Accounts Control | High |
| Windows Accounts Control | CVE-2026-69816 | Use after free in Windows Accounts Control | High |
| Windows AF_UNIX Socket Provider 1 CVE | |||
| Windows AF_UNIX Socket Provider | CVE-2026-70565 | Use after free in Windows AF_UNIX Socket Provider | High |
| Windows ALPC 2 CVEs | |||
| Windows ALPC | CVE-2026-69874 | Untrusted pointer dereference in Windows ALPC allows privilege elevation | High |
| Windows ALPC | CVE-2026-85880 | Heap buffer overflow in Windows ALPC enables privilege escalation | High |
| Windows ALPC use after free 1 CVE | |||
| Windows ALPC use after free | CVE-2026-69834 | Windows ALPC use after free | High |
| Windows Ancillary Function Driver 1 CVE | |||
| Windows Ancillary Function Driver | CVE-2026-70342 | Use after free in Windows Ancillary Function Driver | High |
| Windows Audio Service 8 CVEs | |||
| Windows Audio Service | CVE-2026-69311 | Use-after-free in Windows Audio Service enables privilege escalation | High |
| Windows Audio Service | CVE-2026-69394 | Heap-based buffer overflow in Windows Audio Service | High |
| Windows Audio Service | CVE-2026-69447 | Heap-based buffer overflow in Windows Audio Service | High |
| Windows Audio Service | CVE-2026-69540 | Use after free in Windows Audio Service | High |
| Windows Audio Service | CVE-2026-69604 | Heap-based buffer overflow in Windows Audio Service | High |
| Windows Audio Service | CVE-2026-69692 | Use after free in Windows Audio Service | High |
| Windows Audio Service | CVE-2026-69801 | Heap-based buffer overflow in Windows Audio Service | High |
| Windows Audio Service | CVE-2026-70562 | Double free in Windows Audio Service | High |
| Windows Authentication Methods 1 CVE | |||
| Windows Authentication Methods | CVE-2026-73005 | Use-after-free in Windows Authentication Methods enables privilege escalation | High |
| Windows Autopilot 1 CVE | |||
| Windows Autopilot | CVE-2026-73004 | Missing authentication in Windows Autopilot enables local tampering | Medium |
| Windows Bind Filter Driver 1 CVE | |||
| Windows Bind Filter Driver | CVE-2026-68825 | Use after free in Windows Bind Filter Driver | High |
| Windows Biometric Service 64 CVEs | |||
| Windows Biometric Service | CVE-2026-69293 | Heap-based buffer overflow in Windows Biometric Service | High |
| Windows Biometric Service | CVE-2026-69298 | Integer overflow or wraparound in Windows Biometric Service | High |
| Windows Biometric Service | CVE-2026-69323 | Heap buffer overflow in Windows Biometric Service enables privilege escalation | High |
| Windows Biometric Service | CVE-2026-69352 | Heap buffer overflow in Windows Biometric Service allows privilege elevation | High |
| Windows Biometric Service | CVE-2026-69476 | Heap-based buffer overflow in Windows Biometric Service | High |
| Windows Biometric Service | CVE-2026-69489 | Heap-based buffer overflow in Windows Biometric Service | High |
| Windows Biometric Service | CVE-2026-69580 | Heap-based buffer overflow in Windows Biometric Service | High |
| Windows Biometric Service | CVE-2026-69583 | Heap-based buffer overflow in Windows Biometric Service | High |
| Windows Biometric Service | CVE-2026-69589 | Heap-based buffer overflow in Windows Biometric Service | High |
| Windows Biometric Service | CVE-2026-69593 | Heap-based buffer overflow in Windows Biometric Service | High |
| Windows Biometric Service | CVE-2026-69727 | Heap-based buffer overflow in Windows Biometric Service | High |
| Windows Biometric Service | CVE-2026-69738 | Integer overflow in Windows Biometric Service | High |
| Windows Biometric Service | CVE-2026-69773 | Heap-based buffer overflow in Windows Biometric Service | High |
| Windows Biometric Service | CVE-2026-69787 | Heap-based buffer overflow in Windows Biometric Service | High |
| Windows Biometric Service | CVE-2026-69826 | Heap-based buffer overflow in Windows Biometric Service | High |
| Windows Biometric Service | CVE-2026-70572 | Integer overflow in Windows Biometric Service | High |
| Windows Biometric Service | CVE-2026-70573 | Heap-based buffer overflow in Windows Biometric Service | High |
| Windows Biometric Service | CVE-2026-70581 | Integer overflow in Windows Biometric Service | High |
| Windows Biometric Service | CVE-2026-72941 | Heap-based buffer overflow in Windows Biometric Service | High |
| Windows Biometric Service | CVE-2026-72988 | Heap-based buffer overflow in Windows Biometric Service | High |
| Windows Biometric Service | CVE-2026-72990 | Heap-based buffer overflow in Windows Biometric Service | High |
| Windows Biometric Service | CVE-2026-72991 | Heap-based buffer overflow in Windows Biometric Service | High |
| Windows Biometric Service | CVE-2026-72992 | Heap-based buffer overflow in Windows Biometric Service | High |
| Windows Biometric Service | CVE-2026-72993 | Heap-based buffer overflow in Windows Biometric Service | High |
| Windows Biometric Service | CVE-2026-72994 | Heap-based buffer overflow in Windows Biometric Service | High |
| Windows Biometric Service | CVE-2026-72995 | Heap-based buffer overflow in Windows Biometric Service | High |
| Windows Biometric Service | CVE-2026-72996 | Heap-based buffer overflow in Windows Biometric Service | High |
| Windows Biometric Service | CVE-2026-72997 | Heap buffer overflow in Windows Biometric Service enables privilege escalation | High |
| Windows Biometric Service | CVE-2026-73000 | Heap buffer overflow in Windows Biometric Service enables privilege escalation | High |
| Windows Biometric Service | CVE-2026-73001 | Heap buffer overflow in Windows Biometric Service enables privilege escalation | High |
| Windows Biometric Service | CVE-2026-73002 | Integer overflow in Windows Biometric Service enables privilege escalation | High |
| Windows Biometric Service | CVE-2026-73007 | Heap buffer overflow in Windows Biometric Service enables privilege escalation | High |
| Windows Biometric Service | CVE-2026-73008 | Private information exposure in Windows Biometric Service discloses user data | Medium |
| Windows Biometric Service | CVE-2026-73011 | Heap buffer overflow in Windows Biometric Service enables privilege escalation | High |
| Windows Biometric Service | CVE-2026-73015 | Heap buffer overflow in Windows Biometric Service enables privilege escalation | High |
| Windows Biometric Service | CVE-2026-73020 | Heap buffer overflow in Windows Biometric Service enables privilege escalation | High |
| Windows Biometric Service | CVE-2026-73021 | Heap buffer overflow in Windows Biometric Service enables privilege escalation | High |
| Windows Biometric Service | CVE-2026-73026 | Heap buffer overflow in Windows Biometric Service enables privilege escalation | High |
| Windows Biometric Service | CVE-2026-77489 | Null pointer dereference in Windows Biometric Service enables privilege elevation | High |
| Windows Biometric Service | CVE-2026-78447 | Heap buffer overflow in Windows Biometric Service enables privilege elevation | High |
| Windows Biometric Service | CVE-2026-78448 | Heap buffer overflow in Windows Biometric Service enables privilege escalation | High |
| Windows Biometric Service | CVE-2026-83954 | Heap buffer overflow in Windows Biometric Service enables privilege elevation | High |
| Windows Biometric Service | CVE-2026-83955 | Heap buffer overflow in Windows Biometric Service enables privilege elevation | High |
| Windows Biometric Service | CVE-2026-83967 | Heap buffer overflow in Windows Biometric Service enables privilege elevation | High |
| Windows Biometric Service | CVE-2026-83968 | Use-after-free in Windows Biometric Service enables local privilege escalation | High |
| Windows Biometric Service | CVE-2026-83969 | Heap buffer overflow in Windows Biometric Service allows local privilege escalation | High |
| Windows Biometric Service | CVE-2026-83970 | Heap buffer overflow in Windows Biometric Service enables local escalation | High |
| Windows Biometric Service | CVE-2026-83971 | Heap buffer overflow in Windows Biometric Service permits local privilege elevation | High |
| Windows Biometric Service | CVE-2026-83972 | Heap buffer overflow in Windows Biometric Service enables local privilege escalation | High |
| Windows Biometric Service | CVE-2026-83973 | Heap buffer overflow in Windows Biometric Service allows local privilege escalation | High |
| Windows Biometric Service | CVE-2026-83974 | Heap buffer overflow in Windows Biometric Service permits local privilege escalation | High |
| Windows Biometric Service | CVE-2026-83975 | Heap buffer overflow in Windows Biometric Service enables local privilege escalation | High |
| Windows Biometric Service | CVE-2026-83976 | Heap buffer overflow in Windows Biometric Service allows local privilege escalation | High |
| Windows Biometric Service | CVE-2026-83977 | Heap buffer overflow in Windows Biometric Service permits local privilege escalation | High |
| Windows Biometric Service | CVE-2026-83978 | Heap buffer overflow in Windows Biometric Service enables privilege escalation | High |
| Windows Biometric Service | CVE-2026-83979 | Use-after-free in Windows Biometric Service allows privilege elevation | High |
| Windows Biometric Service | CVE-2026-83980 | Heap buffer overflow in Windows Biometric Service enables privilege escalation | High |
| Windows Biometric Service | CVE-2026-83981 | Heap buffer overflow in Windows Biometric Service enables privilege escalation | High |
| Windows Biometric Service | CVE-2026-83982 | Heap buffer overflow in Windows Biometric Service enables privilege escalation | High |
| Windows Biometric Service | CVE-2026-83983 | Heap buffer overflow in Windows Biometric Service enables privilege escalation | High |
| Windows Biometric Service | CVE-2026-83985 | Heap buffer overflow in Windows Biometric Service enables privilege escalation | High |
| Windows Biometric Service | CVE-2026-83986 | Heap buffer overflow in Windows Biometric Service enables privilege escalation | High |
| Windows Biometric Service | CVE-2026-83987 | Heap buffer overflow in Windows Biometric Service enables privilege escalation | High |
| Windows Biometric Service | CVE-2026-83988 | Heap buffer overflow in Windows Biometric Service allows privilege escalation | High |
| Windows BitLocker 2 CVEs | |||
| Windows BitLocker | CVE-2026-69449 | Heap-based buffer overflow in Windows BitLocker | Medium |
| Windows BitLocker | CVE-2026-69458 | Out-of-bounds read in Windows BitLocker | High |
| Windows Bluetooth Port Driver 2 CVEs | |||
| Windows Bluetooth Port Driver | CVE-2026-68849 | Out-of-bounds read in Windows Bluetooth Port Driver | Medium |
| Windows Bluetooth Port Driver | CVE-2026-69817 | Use after free in Windows Bluetooth Port Driver | High |
| Windows Bluetooth Service 4 CVEs | |||
| Windows Bluetooth Service | CVE-2026-69388 | Use after free in Windows Bluetooth Service | High |
| Windows Bluetooth Service | CVE-2026-69398 | Race condition in Windows Bluetooth Service | High |
| Windows Bluetooth Service | CVE-2026-69448 | Race condition in Windows Bluetooth Service | High |
| Windows Bluetooth Service | CVE-2026-69889 | Use after free in Windows Bluetooth Service | High |
| Windows Boot Manager 1 CVE | |||
| Windows Boot Manager | CVE-2026-77892 | Physical attack vector in Windows Boot Manager enables privilege escalation | Unknown |
| Windows Broadcast DVR User Service 1 CVE | |||
| Windows Broadcast DVR User Service | CVE-2026-69735 | Use after free in Windows Broadcast DVR User Service | High |
| Windows Broker Infrastructure Service 1 CVE | |||
| Windows Broker Infrastructure Service | CVE-2026-69391 | Stack-based buffer overflow in Windows Broker Infrastructure Service | High |
| Windows Camera Frame Server 1 CVE | |||
| Windows Camera Frame Server | CVE-2026-69542 | Heap-based buffer overflow in Windows Camera Frame Server | High |
| Windows CD-ROM Driver 4 CVEs | |||
| Windows CD-ROM Driver | CVE-2026-69283 | Heap-based buffer overflow in Windows CD-ROM Driver | High |
| Windows CD-ROM Driver | CVE-2026-69561 | Out-of-bounds read in Windows CD-ROM Driver | High |
| Windows CD-ROM Driver | CVE-2026-78454 | Out-of-bounds read in Windows CD-ROM Driver causes information disclosure | Medium |
| Windows CD-ROM Driver | CVE-2026-78508 | Out-of-bounds read in Windows CD-ROM Driver causes information disclosure | Medium |
| Windows Cloud Files Mini Filter Driver 3 CVEs | |||
| Windows Cloud Files Mini Filter Driver | CVE-2026-69279 | Use after free in Windows Cloud Files Mini Filter Driver | High |
| Windows Cloud Files Mini Filter Driver | CVE-2026-80093 | Use-after-free in Windows Cloud Files Mini Filter Driver allows local privilege escalation | High |
| Windows Cloud Files Mini Filter Driver | CVE-2026-83991 | Missing authentication for critical function in Windows Cloud Files Mini Filter Driver | Medium |
| Windows Codecs Library 1 CVE | |||
| Windows Codecs Library | CVE-2026-81352 | Heap buffer overflow in Windows Codecs Library enables network code execution | High |
| Windows Compressed Folder 3 CVEs | |||
| Windows Compressed Folder | CVE-2026-69445 | Path traversal in Windows Compressed Folder | High |
| Windows Compressed Folder | CVE-2026-69496 | Heap-based buffer overflow in Windows Compressed Folder | Critical |
| Windows Compressed Folder | CVE-2026-70019 | Hard link issue in Windows Compressed Folder | Medium |
| Windows Connected User Experiences 1 CVE | |||
| Windows Connected User Experiences | CVE-2026-69625 | Heap-based buffer overflow in Windows Connected User Experiences | High |
| Windows Connected User Experiences and Telemetry 3 CVEs | |||
| Windows Connected User Experiences and Telemetry | CVE-2026-68824 | Race condition in Windows Connected User Experiences and Telemetry | High |
| Windows Connected User Experiences and Telemetry | CVE-2026-68847 | Use after free in Windows Connected User Experiences and Telemetry | High |
| Windows Connected User Experiences and Telemetry | CVE-2026-69470 | Use after free in Windows Connected User Experiences and Telemetry | High |
| Windows Container Manager Service 1 CVE | |||
| Windows Container Manager Service | CVE-2026-69771 | Link following in Windows Container Manager Service | Medium |
| Windows Core Messaging 2 CVEs | |||
| Windows Core Messaging | CVE-2026-70583 | Heap-based buffer overflow in Windows Core Messaging | High |
| Windows Core Messaging | CVE-2026-70584 | Type confusion in Windows Core Messaging | High |
| Windows Credential Guard 2 CVEs | |||
| Windows Credential Guard | CVE-2026-70578 | Heap-based buffer overflow in Windows Credential Guard | High |
| Windows Credential Guard | CVE-2026-72958 | Double free in Windows Credential Guard | High |
| Windows Credential Providers 3 CVEs | |||
| Windows Credential Providers | CVE-2026-69729 | Heap-based buffer overflow in Windows Credential Providers | High |
| Windows Credential Providers | CVE-2026-69790 | Heap-based buffer overflow in Windows Credential Providers | High |
| Windows Credential Providers | CVE-2026-69814 | Use after free in Windows Credential Providers | High |
| Windows DCOM Server 1 CVE | |||
| Windows DCOM Server | CVE-2026-69284 | Heap-based buffer overflow in Windows DCOM Server | High |
| Windows Defender Firewall Service 1 CVE | |||
| Windows Defender Firewall Service | CVE-2026-70568 | Heap-based buffer overflow in Windows Defender Firewall Service | High |
| Windows Deployment Services 4 CVEs | |||
| Windows Deployment Services | CVE-2026-69607 | Use after free in Windows Deployment Services | High |
| Windows Deployment Services | CVE-2026-72943 | Use after free in Windows Deployment Services | High |
| Windows Deployment Services | CVE-2026-72954 | Use after free in Windows Deployment Services | High |
| Windows Deployment Services | CVE-2026-72957 | Heap-based buffer overflow in Windows Deployment Services | High |
| Windows Device Association Broker 1 CVE | |||
| Windows Device Association Broker | CVE-2026-69693 | Use after free in Windows Device Association Broker | High |
| Windows Device Association Broker service 1 CVE | |||
| Windows Device Association Broker service | CVE-2026-69314 | Use-after-free in Windows Device Association Broker service enables privilege escalation | High |
| Windows Device Association Service 11 CVEs | |||
| Windows Device Association Service | CVE-2026-69296 | Use after free in Windows Device Association Service | High |
| Windows Device Association Service | CVE-2026-69478 | Heap-based buffer overflow in Windows Device Association Service | High |
| Windows Device Association Service | CVE-2026-69488 | Use after free in Windows Device Association Service | High |
| Windows Device Association Service | CVE-2026-69574 | Use after free in Windows Device Association Service | High |
| Windows Device Association Service | CVE-2026-69581 | Use after free in Windows Device Association Service | High |
| Windows Device Association Service | CVE-2026-69711 | Use after free in Windows Device Association Service | High |
| Windows Device Association Service | CVE-2026-69714 | Stack-based buffer overflow in Windows Device Association Service | High |
| Windows Device Association Service | CVE-2026-69791 | Use after free in Windows Device Association Service | High |
| Windows Device Association Service | CVE-2026-69866 | Use-after-free in Windows Device Association Service | High |
| Windows Device Association Service | CVE-2026-77500 | Invalid pointer release in Windows Device Association Service enables privilege escalation | High |
| Windows Device Association Service | CVE-2026-83940 | Use-after-free in Windows Device Association Service enables privilege escalation | High |
| Windows Device Health Attestation 1 CVE | |||
| Windows Device Health Attestation | CVE-2026-69443 | Out-of-bounds read in Windows Device Health Attestation | High |
| Windows Devices Human Interface 1 CVE | |||
| Windows Devices Human Interface | CVE-2026-69472 | Use after free in Windows Devices Human Interface | High |
| Windows DHCP Client 2 CVEs | |||
| Windows DHCP Client | CVE-2026-69777 | Heap-based buffer overflow in Windows DHCP Client | High |
| Windows DHCP Client | CVE-2026-69781 | Memory leak in Windows DHCP Client | Medium |
| Windows DHCP Server 35 CVEs | |||
| Windows DHCP Server | CVE-2026-69266 | Integer overflow in Windows DHCP Server allows unauthorized code execution | High |
| Windows DHCP Server | CVE-2026-69342 | Out-of-bounds read in Windows DHCP Server | High |
| Windows DHCP Server | CVE-2026-69405 | Memory leak in Windows DHCP Server | Medium |
| Windows DHCP Server | CVE-2026-69412 | Stack buffer overflow in Windows DHCP Server enables code execution | High |
| Windows DHCP Server | CVE-2026-69415 | Missing authentication for critical function in Windows DHCP Server | Medium |
| Windows DHCP Server | CVE-2026-69416 | Buffer over-read in Windows DHCP Server causes denial of service | Medium |
| Windows DHCP Server | CVE-2026-69497 | Memory leak in Windows DHCP Server | Medium |
| Windows DHCP Server | CVE-2026-69510 | Stack-based buffer overflow in Windows DHCP Server | High |
| Windows DHCP Server | CVE-2026-69547 | Heap-based buffer overflow in Windows DHCP Server | High |
| Windows DHCP Server | CVE-2026-69620 | Stack-based buffer overflow in Windows DHCP Server | High |
| Windows DHCP Server | CVE-2026-69637 | Out-of-bounds read in Windows DHCP Server | Medium |
| Windows DHCP Server | CVE-2026-69679 | Out-of-bounds read in Windows DHCP Server | Medium |
| Windows DHCP Server | CVE-2026-69803 | Out-of-bounds read in Windows DHCP Server | Medium |
| Windows DHCP Server | CVE-2026-69845 | Heap buffer overflow in Windows DHCP Server | Critical |
| Windows DHCP Server | CVE-2026-69847 | Heap buffer overflow in Windows DHCP Server | High |
| Windows DHCP Server | CVE-2026-69876 | Use after free in Windows DHCP Server | High |
| Windows DHCP Server | CVE-2026-69878 | Heap-based buffer overflow in Windows DHCP Server | Medium |
| Windows DHCP Server | CVE-2026-69929 | Out-of-bounds read in Windows DHCP Server | Medium |
| Windows DHCP Server | CVE-2026-69930 | Out-of-bounds read in Windows DHCP Server | Medium |
| Windows DHCP Server | CVE-2026-70065 | Memory leak in Windows DHCP Server | High |
| Windows DHCP Server | CVE-2026-70124 | Out-of-bounds read in Windows DHCP Server | Medium |
| Windows DHCP Server | CVE-2026-72979 | Use after free in Windows DHCP Server | Critical |
| Windows DHCP Server | CVE-2026-77494 | Type confusion in Windows DHCP Server allows denial of service | High |
| Windows DHCP Server | CVE-2026-77498 | Out-of-bounds read in Windows DHCP Server allows denial of service | High |
| Windows DHCP Server | CVE-2026-77499 | Type confusion in Windows DHCP Server allows denial of service | High |
| Windows DHCP Server | CVE-2026-77501 | Out-of-bounds read in Windows DHCP Server allows denial of service | High |
| Windows DHCP Server | CVE-2026-77502 | Out-of-bounds read in Windows DHCP Server allows denial of service | High |
| Windows DHCP Server | CVE-2026-77886 | Out-of-bounds read in Windows DHCP Server allows denial of service | High |
| Windows DHCP Server | CVE-2026-77887 | Out-of-bounds read in Windows DHCP Server enables local code execution | Medium |
| Windows DHCP Server | CVE-2026-77888 | Type confusion in Windows DHCP Server allows denial of service | High |
| Windows DHCP Server | CVE-2026-77889 | Type confusion in Windows DHCP Server allows denial of service | High |
| Windows DHCP Server | CVE-2026-77890 | Type confusion in Windows DHCP Server allows denial of service | High |
| Windows DHCP Server | CVE-2026-77891 | Out-of-bounds read in Windows DHCP Server enables local code execution | Medium |
| Windows DHCP Server | CVE-2026-77893 | Out-of-bounds read in Windows DHCP Server allows denial of service | High |
| Windows DHCP Server | CVE-2026-77895 | Out-of-bounds read in Windows DHCP Server allows network denial of service | High |
| Windows Direct Show 1 CVE | |||
| Windows Direct Show | CVE-2026-69715 | Out-of-bounds read in Windows Direct Show | Critical |
| Windows Display Enhancement Service 1 CVE | |||
| Windows Display Enhancement Service | CVE-2026-70567 | Double free in Windows Display Enhancement Service | High |
| Windows Distributed File System 2 CVEs | |||
| Windows Distributed File System | CVE-2026-69424 | Heap buffer overflow in Windows Distributed File System enables escalation | High |
| Windows Distributed File System | CVE-2026-78446 | Use-after-free in Windows Distributed File System causes denial of service | Medium |
| Windows DNS 11 CVEs | |||
| Windows DNS | CVE-2026-69310 | Use-after-free in Windows DNS enables code execution | High |
| Windows DNS | CVE-2026-69551 | Use after free in Windows DNS | High |
| Windows DNS | CVE-2026-69631 | Integer overflow in Windows DNS | High |
| Windows DNS | CVE-2026-69672 | Uninitialized resource in Windows DNS | Medium |
| Windows DNS | CVE-2026-69680 | Origin validation error in Windows DNS | High |
| Windows DNS | CVE-2026-69813 | Use after free in Windows DNS | High |
| Windows DNS | CVE-2026-70091 | Race condition in Windows DNS | Medium |
| Windows DNS | CVE-2026-72928 | Use after free in Windows DNS | High |
| Windows DNS | CVE-2026-72948 | Relative path traversal in Windows DNS | Medium |
| Windows DNS | CVE-2026-72987 | Use after free in Windows DNS | High |
| Windows DNS | CVE-2026-78523 | Use-after-free in Windows DNS causes denial of service over network | Medium |
| Windows DNS Client 1 CVE | |||
| Windows DNS Client | CVE-2026-69369 | Out-of-bounds read in Windows DNS Client | Medium |
| Windows DNS Server 4 CVEs | |||
| Windows DNS Server | CVE-2026-69730 | Use after free in Windows DNS Server | Critical |
| Windows DNS Server | CVE-2026-69782 | Race condition in Windows DNS Server | High |
| Windows DNS Server | CVE-2026-69827 | Race condition in Windows DNS Server | High |
| Windows DNS Server | CVE-2026-69989 | Use after free in Windows DNS Server | High |
| Windows DNS use after free 1 CVE | |||
| Windows DNS use after free | CVE-2026-69858 | Windows DNS use after free | High |
| Windows DWM Core Library 1 CVE | |||
| Windows DWM Core Library | CVE-2026-69775 | Use after free in Windows DWM Core Library | High |
| Windows Embedded Mode Service 1 CVE | |||
| Windows Embedded Mode Service | CVE-2026-69430 | Use after free in Windows Embedded Mode Service | High |
| Windows Encrypting File System 3 CVEs | |||
| Windows Encrypting File System | CVE-2026-69688 | Heap-based buffer overflow in Windows Encrypting File System | High |
| Windows Encrypting File System | CVE-2026-69794 | Buffer over-read in Windows Encrypting File System | Medium |
| Windows Encrypting File System | CVE-2026-69841 | Heap buffer overflow in Windows Encrypting File System | High |
| Windows Enterprise App Management 2 CVEs | |||
| Windows Enterprise App Management | CVE-2026-69481 | Heap-based buffer overflow in Windows Enterprise App Management | High |
| Windows Enterprise App Management | CVE-2026-69907 | Improper permission handling in Windows Enterprise App Management | High |
| Windows Error Reporting 12 CVEs | |||
| Windows Error Reporting | CVE-2026-68894 | Heap-based buffer overflow in Windows Error Reporting | High |
| Windows Error Reporting | CVE-2026-69362 | Use-after-free in Windows Error Reporting enables privilege elevation | High |
| Windows Error Reporting | CVE-2026-69433 | Heap-based buffer overflow in Windows Error Reporting | High |
| Windows Error Reporting | CVE-2026-69436 | Heap-based buffer overflow in Windows Error Reporting | High |
| Windows Error Reporting | CVE-2026-69450 | Out-of-bounds read in Windows Error Reporting | High |
| Windows Error Reporting | CVE-2026-69462 | Heap-based buffer overflow in Windows Error Reporting | High |
| Windows Error Reporting | CVE-2026-69482 | Insecure temp file creation in Windows Error Reporting | High |
| Windows Error Reporting | CVE-2026-69513 | Heap-based buffer overflow in Windows Error Reporting | High |
| Windows Error Reporting | CVE-2026-69612 | Absolute path traversal in Windows Error Reporting | High |
| Windows Error Reporting | CVE-2026-69684 | Error message containing sensitive information in Windows Error Reporting | Medium |
| Windows Error Reporting | CVE-2026-69896 | Use after free in Windows Error Reporting | High |
| Windows Error Reporting | CVE-2026-83996 | Heap buffer overflow in Windows Error Reporting allows privilege escalation | High |
| Windows Event Logging Service 3 CVEs | |||
| Windows Event Logging Service | CVE-2026-69493 | Out-of-bounds read in Windows Event Logging Service | Critical |
| Windows Event Logging Service | CVE-2026-69494 | Out-of-bounds read in Windows Event Logging Service | High |
| Windows Event Logging Service | CVE-2026-69495 | Heap-based buffer overflow in Windows Event Logging Service | High |
| Windows exFAT File System 1 CVE | |||
| Windows exFAT File System | CVE-2026-69619 | Out-of-bounds read in Windows exFAT File System | High |
| Windows Failover Cluster 4 CVEs | |||
| Windows Failover Cluster | CVE-2026-71338 | Double free in Windows Failover Cluster | Medium |
| Windows Failover Cluster | CVE-2026-72989 | Use of uninitialized resource in Windows Failover Cluster | High |
| Windows Failover Cluster | CVE-2026-73010 | Use-after-free in Windows Failover Cluster enables network code execution | Critical |
| Windows Failover Cluster | CVE-2026-78444 | Untrusted pointer dereference in Windows Failover Cluster enables execution | High |
| Windows Fast FAT Driver 1 CVE | |||
| Windows Fast FAT Driver | CVE-2026-68878 | Stack-based buffer overflow in Windows Fast FAT Driver | High |
| Windows Fax Service 3 CVEs | |||
| Windows Fax Service | CVE-2026-69509 | Heap-based buffer overflow in Windows Fax Service | High |
| Windows Fax Service | CVE-2026-69621 | Heap-based buffer overflow in Windows Fax Service | High |
| Windows Fax Service | CVE-2026-72944 | Heap-based buffer overflow in Windows Fax Service | High |
| Windows File History Service 3 CVEs | |||
| Windows File History Service | CVE-2026-68837 | Use after free in Windows File History Service | High |
| Windows File History Service | CVE-2026-71340 | Use after free in Windows File History Service | High |
| Windows File History Service | CVE-2026-72947 | Integer underflow in Windows File History Service | Medium |
| Windows GDI 1 CVE | |||
| Windows GDI | CVE-2026-77491 | Out-of-bounds read in Windows GDI causes local information disclosure | Medium |
| Windows GDI+ 2 CVEs | |||
| Windows GDI+ | CVE-2026-68827 | Integer underflow in Windows GDI+ | High |
| Windows GDI+ | CVE-2026-69288 | Use of uninitialized resource in Windows GDI+ | Medium |
| Windows Graphics Kernel 1 CVE | |||
| Windows Graphics Kernel | CVE-2026-73017 | Heap buffer overflow in Windows Graphics Kernel enables local code execution | High |
| Windows Group Policy 1 CVE | |||
| Windows Group Policy | CVE-2026-69717 | Untrusted pointer dereference in Windows Group Policy | High |
| Windows Hello 8 CVEs | |||
| Windows Hello | CVE-2026-69710 | Race condition in Windows Hello | High |
| Windows Hello | CVE-2026-69725 | Double free in Windows Hello | High |
| Windows Hello | CVE-2026-69740 | Use after free in Windows Hello | High |
| Windows Hello | CVE-2026-69784 | Use after free in Windows Hello | High |
| Windows Hello | CVE-2026-69799 | Race condition in Windows Hello | High |
| Windows Hello | CVE-2026-69820 | Heap-based buffer overflow in Windows Hello | High |
| Windows Hello | CVE-2026-72980 | Uncontrolled search path element in Windows Hello | Medium |
| Windows Hello | CVE-2026-81354 | Heap buffer overflow in Windows Hello allows local privilege escalation | High |
| Windows Hello use after free 1 CVE | |||
| Windows Hello use after free | CVE-2026-69864 | Windows Hello use after free | High |
| Windows Host Guardian Service 1 CVE | |||
| Windows Host Guardian Service | CVE-2026-69682 | Use after free in Windows Host Guardian Service | High |
| Windows HTTP Print Provider 2 CVEs | |||
| Windows HTTP Print Provider | CVE-2026-69623 | Heap-based buffer overflow in Windows HTTP Print Provider | High |
| Windows HTTP Print Provider | CVE-2026-69769 | Heap-based buffer overflow in Windows HTTP Print Provider | Critical |
| Windows HTTP.sys 1 CVE | |||
| Windows HTTP.sys | CVE-2026-69597 | Use after free in Windows HTTP.sys | High |
| Windows Hyper-V 5 CVEs | |||
| Windows Hyper-V | CVE-2026-69553 | Missing authorization in Windows Hyper-V | High |
| Windows Hyper-V | CVE-2026-69603 | Heap-based buffer overflow in Windows Hyper-V | High |
| Windows Hyper-V | CVE-2026-69910 | Stack-based buffer overflow in Windows Hyper-V | Critical |
| Windows Hyper-V | CVE-2026-72961 | Out-of-bounds read in Windows Hyper-V | High |
| Windows Hyper-V | CVE-2026-80083 | Untrusted pointer dereference in Windows Hyper-V allows local privilege escalation | High |
| Windows IKE Extension 3 CVEs | |||
| Windows IKE Extension | CVE-2026-69429 | Heap-based buffer overflow in Windows IKE Extension | High |
| Windows IKE Extension | CVE-2026-69587 | Null pointer dereference in Windows IKE Extension | High |
| Windows IKE Extension | CVE-2026-69881 | Null pointer dereference in Windows IKE Extension | High |
| Windows Image Acquisition 4 CVEs | |||
| Windows Image Acquisition | CVE-2026-69341 | Use after free in Windows Image Acquisition | High |
| Windows Image Acquisition | CVE-2026-69483 | Out-of-bounds read in Windows Image Acquisition | Medium |
| Windows Image Acquisition | CVE-2026-69500 | Use after free in Windows Image Acquisition | High |
| Windows Image Acquisition | CVE-2026-69613 | Use after free in Windows Image Acquisition | High |
| Windows Imaging Component 8 CVEs | |||
| Windows Imaging Component | CVE-2026-69318 | Out-of-bounds read in Windows Imaging Component causes information disclosure | Medium |
| Windows Imaging Component | CVE-2026-69499 | Integer overflow in Windows Imaging Component | High |
| Windows Imaging Component | CVE-2026-69860 | Heap buffer overflow in Windows Imaging Component | High |
| Windows Imaging Component | CVE-2026-70296 | Out-of-bounds write in Windows Imaging Component | Critical |
| Windows Imaging Component | CVE-2026-73013 | Heap buffer overflow in Windows Imaging Component enables network code execution | High |
| Windows Imaging Component | CVE-2026-73023 | Heap buffer overflow in Windows Imaging Component enables network code execution | High |
| Windows Imaging Component | CVE-2026-77495 | Heap buffer overflow in Windows Imaging Component enables network code execution | High |
| Windows Imaging Component | CVE-2026-83992 | Heap buffer overflow in Windows Imaging Component allows code execution | High |
| Windows Install Service 1 CVE | |||
| Windows Install Service | CVE-2026-69605 | Use after free in Windows Install Service | High |
| Windows Installer 5 CVEs | |||
| Windows Installer | CVE-2026-62694 | Use after free in Windows Installer | High |
| Windows Installer | CVE-2026-69441 | Race condition in Windows Installer | High |
| Windows Installer | CVE-2026-71339 | Heap-based buffer overflow in Windows Installer | Medium |
| Windows Installer | CVE-2026-72929 | Improper integrity validation in Windows Installer | High |
| Windows Installer | CVE-2026-77894 | Race condition in Windows Installer enables privilege escalation | High |
| Windows Internet Connection Sharing 3 CVEs | |||
| Windows Internet Connection Sharing | CVE-2026-72926 | Use after free in Windows Internet Connection Sharing | High |
| Windows Internet Connection Sharing | CVE-2026-72964 | Missing authentication for critical function in Windows Internet Connection Sharing | Medium |
| Windows Internet Connection Sharing | CVE-2026-72983 | Use after free in Windows Internet Connection Sharing | Critical |
| Windows IPAM Service 1 CVE | |||
| Windows IPAM Service | CVE-2026-69694 | Deserialization of untrusted data in Windows IPAM Service | High |
| Windows iSCSI 4 CVEs | |||
| Windows iSCSI | CVE-2026-68898 | Out-of-bounds read in Windows iSCSI | Medium |
| Windows iSCSI | CVE-2026-69598 | Buffer size miscalculation in Windows iSCSI | High |
| Windows iSCSI | CVE-2026-69628 | Heap-based buffer overflow in Windows iSCSI | High |
| Windows iSCSI | CVE-2026-73025 | Weak authentication in Windows iSCSI enables network security feature bypass | Critical |
| Windows iSCSI Target Service 1 CVE | |||
| Windows iSCSI Target Service | CVE-2026-69839 | Uncaught exception in Windows iSCSI Target Service | Medium |
| Windows Kerberos 5 CVEs | |||
| Windows Kerberos | CVE-2026-69676 | Authentication bypass via capture-replay in Windows Kerberos | High |
| Windows Kerberos | CVE-2026-69685 | Heap-based buffer overflow in Windows Kerberos | High |
| Windows Kerberos | CVE-2026-69744 | Null pointer dereference in Windows Kerberos | High |
| Windows Kerberos | CVE-2026-69760 | Out-of-bounds read in Windows Kerberos | High |
| Windows Kerberos | CVE-2026-69822 | Numeric truncation error in Windows Kerberos | High |
| Windows Kernel 11 CVEs | |||
| Windows Kernel | CVE-2026-68846 | Use after free in Windows Kernel | High |
| Windows Kernel | CVE-2026-68884 | Heap-based buffer overflow in Windows Kernel | High |
| Windows Kernel | CVE-2026-69366 | Use after free in Windows Kernel | High |
| Windows Kernel | CVE-2026-69406 | Sensitive system information exposure in Windows Kernel | Medium |
| Windows Kernel | CVE-2026-69466 | Time-of-check time-of-use race condition in Windows Kernel | High |
| Windows Kernel | CVE-2026-69473 | Use after free in Windows Kernel | High |
| Windows Kernel | CVE-2026-69578 | Numeric truncation error in Windows Kernel | High |
| Windows Kernel | CVE-2026-69669 | Heap-based buffer overflow in Windows Kernel | High |
| Windows Kernel | CVE-2026-69723 | Sensitive information exposure in Windows Kernel | Medium |
| Windows Kernel | CVE-2026-83942 | Missing authorization in Windows Kernel allows local privilege escalation | High |
| Windows Kernel | CVE-2026-85360 | Use-after-free in Windows Kernel enables privilege elevation | High |
| Windows Kernel Mode Driver 1 CVE | |||
| Windows Kernel Mode Driver | CVE-2026-69421 | Integer underflow in Windows Kernel Mode Driver enables privilege escalation | High |
| Windows Key Distribution Center 2 CVEs | |||
| Windows Key Distribution Center | CVE-2026-69712 | Use after free in Windows Key Distribution Center | High |
| Windows Key Distribution Center | CVE-2026-84001 | Out-of-bounds read in Windows Key Distribution Center allows information disclosure | High |
| Windows LDAP 1 CVE | |||
| Windows LDAP | CVE-2026-69428 | Out-of-bounds read in Windows LDAP | High |
| Windows License Manager 2 CVEs | |||
| Windows License Manager | CVE-2026-69281 | Use after free in Windows License Manager | High |
| Windows License Manager | CVE-2026-69315 | Exposure of sensitive information in Windows License Manager | Medium |
| Windows Link Layer Topology Discovery 1 CVE | |||
| Windows Link Layer Topology Discovery | CVE-2026-69732 | Heap-based buffer overflow in Windows Link Layer Topology Discovery | High |
| Windows LSA Server 1 CVE | |||
| Windows LSA Server | CVE-2026-69594 | Heap-based buffer overflow in Windows LSA Server | High |
| Windows Management Instrumentation 3 CVEs | |||
| Windows Management Instrumentation | CVE-2026-69451 | Use after free in Windows Management Instrumentation | High |
| Windows Management Instrumentation | CVE-2026-70582 | Race condition in Windows Management Instrumentation | Medium |
| Windows Management Instrumentation | CVE-2026-77905 | Use-after-free in Windows Management Instrumentation enables privilege escalation | High |
| Windows Management Services 1 CVE | |||
| Windows Management Services | CVE-2026-73012 | Heap buffer overflow in Windows Management Services enables network privilege escalation | High |
| Windows MDM 1 CVE | |||
| Windows MDM | CVE-2026-69674 | Missing authentication in Windows MDM | Medium |
| Windows Media 1 CVE | |||
| Windows Media | CVE-2026-69891 | Use after free in Windows Media | High |
| Windows Media Foundation 3 CVEs | |||
| Windows Media Foundation | CVE-2026-69408 | Integer overflow in Windows Media Foundation enables network code execution | Critical |
| Windows Media Foundation | CVE-2026-69511 | Heap-based buffer overflow in Windows Media Foundation | High |
| Windows Media Foundation | CVE-2026-69601 | Heap-based buffer overflow in Windows Media Foundation | High |
| Windows Media Player 2 CVEs | |||
| Windows Media Player | CVE-2026-70203 | Heap-based buffer overflow in Windows Media Player | High |
| Windows Media Player | CVE-2026-72960 | Heap-based buffer overflow in Windows Media Player | High |
| Windows Message Queuing 3 CVEs | |||
| Windows Message Queuing | CVE-2026-69579 | Use after free in Windows Message Queuing | Critical |
| Windows Message Queuing | CVE-2026-69645 | Use after free in Windows Message Queuing | High |
| Windows Message Queuing | CVE-2026-83997 | Use-after-free in Windows Message Queuing allows code execution | High |
| Windows Message Queuing Queue Manager 2 CVEs | |||
| Windows Message Queuing Queue Manager | CVE-2026-68887 | Out-of-bounds read in Windows Message Queuing Queue Manager | High |
| Windows Message Queuing Queue Manager | CVE-2026-72932 | Buffer over-read in Windows Message Queuing Queue Manager | High |
| Windows Microsoft DirectMusic 1 CVE | |||
| Windows Microsoft DirectMusic | CVE-2026-69491 | Heap-based buffer overflow in Windows Microsoft DirectMusic | Critical |
| Windows MIDI Service 2 CVEs | |||
| Windows MIDI Service | CVE-2026-69440 | Time-of-check time-of-use race condition in Windows MIDI Service | High |
| Windows MIDI Service | CVE-2026-78464 | Time-of-check time-of-use race condition in Windows MIDI Service enables privilege escalation | High |
| Windows MIDI Service Module 3 CVEs | |||
| Windows MIDI Service Module | CVE-2026-69339 | Exposure of sensitive system information in Windows MIDI Service Module | Medium |
| Windows MIDI Service Module | CVE-2026-69508 | Stack-based buffer overflow in Windows MIDI Service Module | High |
| Windows MIDI Service Module | CVE-2026-69720 | Heap-based buffer overflow in Windows MIDI Service Module | High |
| Windows Mobile Broadband 1 CVE | |||
| Windows Mobile Broadband | CVE-2026-70579 | Out-of-bounds read in Windows Mobile Broadband | High |
| Windows Modern Device Management 5 CVEs | |||
| Windows Modern Device Management | CVE-2026-69377 | Missing authorization in Windows Modern Device Management | High |
| Windows Modern Device Management | CVE-2026-69460 | Use after free in Windows Modern Device Management | High |
| Windows Modern Device Management | CVE-2026-70577 | Use after free in Windows Modern Device Management | High |
| Windows Modern Device Management | CVE-2026-73003 | Use-after-free in Windows Modern Device Management allows privilege escalation | High |
| Windows Modern Device Management | CVE-2026-73022 | Use-after-free in Windows Modern Device Management allows local privilege escalation | High |
| Windows Modern Execution Server 1 CVE | |||
| Windows Modern Execution Server | CVE-2026-72963 | Use after free in Windows Modern Execution Server | High |
| Windows NDIS 2 CVEs | |||
| Windows NDIS | CVE-2026-69357 | Use-after-free in Windows NDIS enables privilege elevation over network | High |
| Windows NDIS | CVE-2026-69396 | Use after free in Windows NDIS | High |
| Windows Netlogon 2 CVEs | |||
| Windows Netlogon | CVE-2026-62759 | Authentication bypass by spoofing in Windows Netlogon | High |
| Windows Netlogon | CVE-2026-72982 | Stack-based buffer overflow in Windows Netlogon | Critical |
| Windows Network Connection Broker 2 CVEs | |||
| Windows Network Connection Broker | CVE-2026-68886 | Use after free in Windows Network Connection Broker | Medium |
| Windows Network Connection Broker | CVE-2026-72967 | Heap-based buffer overflow in Windows Network Connection Broker | High |
| Windows Network File System 2 CVEs | |||
| Windows Network File System | CVE-2026-69372 | Out-of-bounds read in Windows Network File System | Medium |
| Windows Network File System | CVE-2026-69772 | Heap-based buffer overflow in Windows Network File System | High |
| Windows NFS ONCRPC XDR 1 CVE | |||
| Windows NFS ONCRPC XDR | CVE-2026-69595 | Use after free in Windows NFS ONCRPC XDR | Critical |
| Windows NFS Portmapper 1 CVE | |||
| Windows NFS Portmapper | CVE-2026-71334 | Heap-based buffer overflow in Windows NFS Portmapper | High |
| Windows Notification 1 CVE | |||
| Windows Notification | CVE-2026-69648 | Use after free in Windows Notification | High |
| Windows NTFS 28 CVEs | |||
| Windows NTFS | CVE-2026-68832 | Integer overflow in Windows NTFS | High |
| Windows NTFS | CVE-2026-68833 | Heap-based buffer overflow in Windows NTFS | Medium |
| Windows NTFS | CVE-2026-68834 | Stack-based buffer overflow in Windows NTFS | High |
| Windows NTFS | CVE-2026-68838 | Stack-based buffer overflow in Windows NTFS | High |
| Windows NTFS | CVE-2026-68841 | Heap buffer overflow in Windows NTFS allows local privilege elevation | High |
| Windows NTFS | CVE-2026-68851 | Buffer over-read in Windows NTFS | Medium |
| Windows NTFS | CVE-2026-68875 | Buffer over-read in Windows NTFS | High |
| Windows NTFS | CVE-2026-69265 | Out-of-bounds read in Windows NTFS | High |
| Windows NTFS | CVE-2026-69312 | Out-of-bounds read in Windows NTFS enables privilege escalation | High |
| Windows NTFS | CVE-2026-69332 | Out-of-bounds read in Windows NTFS | High |
| Windows NTFS | CVE-2026-69340 | Heap-based buffer overflow in Windows NTFS | High |
| Windows NTFS | CVE-2026-69379 | Improper link resolution before file access in Windows NTFS | High |
| Windows NTFS | CVE-2026-69425 | Improper link resolution in Windows NTFS allows local tampering | Medium |
| Windows NTFS | CVE-2026-69461 | Stack-based buffer overflow in Windows NTFS | High |
| Windows NTFS | CVE-2026-69463 | Heap-based buffer overflow in Windows NTFS | Critical |
| Windows NTFS | CVE-2026-69479 | Heap-based buffer overflow in Windows NTFS | High |
| Windows NTFS | CVE-2026-69504 | Out-of-bounds read in Windows NTFS | Medium |
| Windows NTFS | CVE-2026-69505 | Out-of-bounds read in Windows NTFS | High |
| Windows NTFS | CVE-2026-69532 | Out-of-bounds read in Windows NTFS | High |
| Windows NTFS | CVE-2026-69566 | Heap-based buffer overflow in Windows NTFS | High |
| Windows NTFS | CVE-2026-69567 | Use after free in Windows NTFS | High |
| Windows NTFS | CVE-2026-69591 | Out-of-bounds read in Windows NTFS | Medium |
| Windows NTFS | CVE-2026-69638 | Heap-based buffer overflow in Windows NTFS | High |
| Windows NTFS | CVE-2026-69709 | Heap-based buffer overflow in Windows NTFS | High |
| Windows NTFS | CVE-2026-71329 | Heap-based buffer overflow in Windows NTFS | Medium |
| Windows NTFS | CVE-2026-72935 | Out-of-bounds read in Windows NTFS | Medium |
| Windows NTFS | CVE-2026-77503 | Out-of-bounds read in Windows NTFS enables privilege escalation | High |
| Windows NTFS | CVE-2026-83995 | Heap buffer overflow in Windows NTFS allows privilege escalation | High |
| Windows NTFS heap-based buffer overflow 1 CVE | |||
| Windows NTFS heap-based buffer overflow | CVE-2026-69875 | Windows NTFS heap-based buffer overflow | High |
| Windows OCSP 1 CVE | |||
| Windows OCSP | CVE-2026-69564 | Heap-based buffer overflow in Windows OCSP | High |
| Windows OLE DB 2 CVEs | |||
| Windows OLE DB | CVE-2026-78441 | Out-of-bounds read in Windows OLE DB causes information disclosure | Medium |
| Windows OLE DB | CVE-2026-78442 | Heap buffer overflow in Windows OLE DB enables remote execution | High |
| Windows Overlay Filter 7 CVEs | |||
| Windows Overlay Filter | CVE-2026-69316 | Buffer over-read in Windows Overlay Filter causes information disclosure | Medium |
| Windows Overlay Filter | CVE-2026-69343 | Out-of-bounds read in Windows Overlay Filter | Medium |
| Windows Overlay Filter | CVE-2026-69350 | Heap buffer overflow in Windows Overlay Filter allows privilege elevation | Medium |
| Windows Overlay Filter | CVE-2026-69368 | Heap-based buffer overflow in Windows Overlay Filter | High |
| Windows Overlay Filter | CVE-2026-69371 | Heap-based buffer overflow in Windows Overlay Filter | High |
| Windows Overlay Filter | CVE-2026-69373 | Integer overflow or wraparound in Windows Overlay Filter | Medium |
| Windows Overlay Filter | CVE-2026-69474 | Use after free in Windows Overlay Filter | Medium |
| Windows Paint 1 CVE | |||
| Windows Paint | CVE-2026-70586 | Heap-based buffer overflow in Windows Paint | High |
| Windows Partition Management Driver 3 CVEs | |||
| Windows Partition Management Driver | CVE-2026-69480 | Heap-based buffer overflow in Windows Partition Management Driver | High |
| Windows Partition Management Driver | CVE-2026-69492 | Heap-based buffer overflow in Windows Partition Management Driver | High |
| Windows Partition Management Driver | CVE-2026-71341 | Out-of-bounds read in Windows Partition Management Driver | Medium |
| Windows PDF 1 CVE | |||
| Windows PDF | CVE-2026-69586 | Integer overflow in Windows PDF | Critical |
| Windows Performance Monitor 1 CVE | |||
| Windows Performance Monitor | CVE-2026-69324 | Type confusion in Windows Performance Monitor enables privilege escalation | High |
| Windows Power Dependency Coordinator 2 CVEs | |||
| Windows Power Dependency Coordinator | CVE-2026-69321 | Missing authentication in Windows Power Dependency Coordinator | Medium |
| Windows Power Dependency Coordinator | CVE-2026-69459 | Heap-based buffer overflow in Windows Power Dependency Coordinator | High |
| Windows PowerShell 2 CVEs | |||
| Windows PowerShell | CVE-2026-62801 | Path traversal in Windows PowerShell allows security feature bypass | Medium |
| Windows PowerShell | CVE-2026-69807 | Path traversal in Windows PowerShell | High |
| Windows Print Spooler 3 CVEs | |||
| Windows Print Spooler | CVE-2026-69921 | Heap-based buffer overflow in Windows Print Spooler | High |
| Windows Print Spooler | CVE-2026-70564 | Heap-based buffer overflow in Windows Print Spooler | High |
| Windows Print Spooler | CVE-2026-85877 | Heap buffer overflow in Windows Print Spooler enables code execution | High |
| Windows Print Spooler Components 8 CVEs | |||
| Windows Print Spooler Components | CVE-2026-68835 | Use after free in Windows Print Spooler Components | High |
| Windows Print Spooler Components | CVE-2026-68848 | Heap-based buffer overflow in Windows Print Spooler Components | High |
| Windows Print Spooler Components | CVE-2026-69309 | Double free in Windows Print Spooler Components enables code execution | High |
| Windows Print Spooler Components | CVE-2026-69344 | Out-of-bounds read in Windows Print Spooler Components | Medium |
| Windows Print Spooler Components | CVE-2026-69364 | Race condition in Windows Print Spooler Components enables privilege elevation | High |
| Windows Print Spooler Components | CVE-2026-69552 | Error message information disclosure in Windows Print Spooler Components | Medium |
| Windows Print Spooler Components | CVE-2026-69569 | Untrusted pointer dereference in Windows Print Spooler Components | Medium |
| Windows Print Spooler Components | CVE-2026-69838 | Use-after-free in Windows Print Spooler Components | High |
| Windows PrintWorkflowUserSvc 1 CVE | |||
| Windows PrintWorkflowUserSvc | CVE-2026-69602 | Use after free in Windows PrintWorkflowUserSvc | High |
| Windows Program Compatibility Assistant 1 CVE | |||
| Windows Program Compatibility Assistant | CVE-2026-69563 | Heap-based buffer overflow in Windows Program Compatibility Assistant | High |
| Windows Program Compatibility Assistant Service 4 CVEs | |||
| Windows Program Compatibility Assistant Service | CVE-2026-68845 | Heap-based buffer overflow in Windows Program Compatibility Assistant Service | High |
| Windows Program Compatibility Assistant Service | CVE-2026-68874 | Out-of-bounds read in Windows Program Compatibility Assistant Service | Medium |
| Windows Program Compatibility Assistant Service | CVE-2026-68876 | Heap-based buffer overflow in Windows Program Compatibility Assistant Service | High |
| Windows Program Compatibility Assistant Service | CVE-2026-69534 | Command injection in Windows Program Compatibility Assistant Service | High |
| Windows Push Notifications 3 CVEs | |||
| Windows Push Notifications | CVE-2026-62697 | Use after free in Windows Push Notifications | High |
| Windows Push Notifications | CVE-2026-69280 | Use after free in Windows Push Notifications | High |
| Windows Push Notifications | CVE-2026-69300 | Use after free in Windows Push Notifications | High |
| Windows Raw Image Extension 1 CVE | |||
| Windows Raw Image Extension | CVE-2026-69649 | Heap-based buffer overflow in Windows Raw Image Extension | High |
| Windows ReFS 1 CVE | |||
| Windows ReFS | CVE-2026-83952 | Heap buffer overflow in Windows ReFS allows privilege escalation | High |
| Windows Registry 1 CVE | |||
| Windows Registry | CVE-2026-69337 | Double free in Windows Registry | High |
| Windows Reliable Multicast Transport Driver 2 CVEs | |||
| Windows Reliable Multicast Transport Driver | CVE-2026-78449 | Use-after-free in Windows Reliable Multicast Transport Driver enables code execution | High |
| Windows Reliable Multicast Transport Driver | CVE-2026-78450 | Use-after-free in Windows Reliable Multicast Transport Driver enables code execution | High |
| Windows Remote Access Connection Manager 7 CVEs | |||
| Windows Remote Access Connection Manager | CVE-2026-69331 | Use after free in Windows Remote Access Connection Manager | High |
| Windows Remote Access Connection Manager | CVE-2026-69455 | Heap-based buffer overflow in Windows Remote Access Connection Manager | High |
| Windows Remote Access Connection Manager | CVE-2026-71333 | Use after free in Windows Remote Access Connection Manager | High |
| Windows Remote Access Connection Manager | CVE-2026-71342 | Use after free in Windows Remote Access Connection Manager | High |
| Windows Remote Access Connection Manager | CVE-2026-71343 | Heap-based buffer overflow in Windows Remote Access Connection Manager | High |
| Windows Remote Access Connection Manager | CVE-2026-71352 | Integer underflow in Windows Remote Access Connection Manager | High |
| Windows Remote Access Connection Manager | CVE-2026-72966 | Missing authorization in Windows Remote Access Connection Manager | Medium |
| Windows Remote Desktop application 1 CVE | |||
| Windows Remote Desktop application | CVE-2026-69518 | Heap-based buffer overflow in Windows Remote Desktop application | High |
| Windows Remote Desktop Licensing Service 2 CVEs | |||
| Windows Remote Desktop Licensing Service | CVE-2026-68893 | Use after free in Windows Remote Desktop Licensing Service | High |
| Windows Remote Desktop Licensing Service | CVE-2026-69627 | Out-of-bounds read in Windows Remote Desktop Licensing Service | Medium |
| Windows Remote Desktop Protocol 1 CVE | |||
| Windows Remote Desktop Protocol | CVE-2026-70587 | Improper null termination in Windows Remote Desktop Protocol | High |
| Windows Remote Desktop Services 9 CVEs | |||
| Windows Remote Desktop Services | CVE-2026-69287 | Use after free in Windows Remote Desktop Services | High |
| Windows Remote Desktop Services | CVE-2026-69475 | Untrusted pointer dereference in Windows Remote Desktop Services | High |
| Windows Remote Desktop Services | CVE-2026-69514 | Heap-based buffer overflow in Windows Remote Desktop Services | High |
| Windows Remote Desktop Services | CVE-2026-69525 | Use after free in Windows Remote Desktop Services | Critical |
| Windows Remote Desktop Services | CVE-2026-69536 | Use after free in Windows Remote Desktop Services | High |
| Windows Remote Desktop Services | CVE-2026-69539 | Use after free in Windows Remote Desktop Services | High |
| Windows Remote Desktop Services | CVE-2026-69599 | Use after free in Windows Remote Desktop Services | High |
| Windows Remote Desktop Services | CVE-2026-69616 | Out-of-bounds read in Windows Remote Desktop Services | Medium |
| Windows Remote Desktop Services | CVE-2026-80096 | Out-of-bounds read in Windows Remote Desktop Services allows network privilege escalation | High |
| Windows Resilient File System 2 CVEs | |||
| Windows Resilient File System | CVE-2026-69617 | Out-of-bounds read in Windows Resilient File System | High |
| Windows Resilient File System | CVE-2026-83999 | Improper link resolution before file access in Windows Resilient File System | High |
| Windows RNDIS 2 CVEs | |||
| Windows RNDIS | CVE-2026-69548 | Heap-based buffer overflow in Windows RNDIS | Medium |
| Windows RNDIS | CVE-2026-69768 | Heap-based buffer overflow in Windows RNDIS | Critical |
| Windows Routing and Remote Access Service 5 CVEs | |||
| Windows Routing and Remote Access Service | CVE-2026-69852 | Remote code execution in Windows Routing and Remote Access Service | High |
| Windows Routing and Remote Access Service | CVE-2026-70570 | Remote code execution in Windows Routing and Remote Access Service | High |
| Windows Routing and Remote Access Service | CVE-2026-71351 | Double free in Windows Routing and Remote Access Service | High |
| Windows Routing and Remote Access Service | CVE-2026-71353 | Double free in Windows Routing and Remote Access Service | High |
| Windows Routing and Remote Access Service | CVE-2026-72959 | Remote code execution in Windows Routing and Remote Access Service | High |
| Windows RRAS 3 CVEs | |||
| Windows RRAS | CVE-2026-69590 | Remote code execution in Windows RRAS | Critical |
| Windows RRAS | CVE-2026-72939 | Null pointer dereference in Windows RRAS | Medium |
| Windows RRAS | CVE-2026-72950 | Remote code execution in Windows RRAS | High |
| Windows Schannel 2 CVEs | |||
| Windows Schannel | CVE-2026-70575 | Null pointer dereference in Windows Schannel | Medium |
| Windows Schannel | CVE-2026-72940 | Heap-based buffer overflow in Windows Schannel | High |
| Windows SCSI Class System File 3 CVEs | |||
| Windows SCSI Class System File | CVE-2026-78451 | Untrusted pointer dereference in Windows SCSI Class System File causes denial of service | Medium |
| Windows SCSI Class System File | CVE-2026-78452 | Out-of-bounds read in Windows SCSI Class System File causes information disclosure | Medium |
| Windows SCSI Class System File | CVE-2026-78453 | Integer underflow in Windows SCSI Class System File causes denial of service | Medium |
| Windows Search Component 8 CVEs | |||
| Windows Search Component | CVE-2026-69453 | Missing authorization in Windows Search Component | Medium |
| Windows Search Component | CVE-2026-69507 | Sensitive information disclosure in Windows Search Component | Medium |
| Windows Search Component | CVE-2026-69554 | Missing authentication in Windows Search Component | Medium |
| Windows Search Component | CVE-2026-69585 | Incorrect type conversion in Windows Search Component | High |
| Windows Search Component | CVE-2026-69600 | Use after free in Windows Search Component | High |
| Windows Search Component | CVE-2026-69608 | Integer overflow in Windows Search Component | High |
| Windows Search Component | CVE-2026-69911 | Use after free in Windows Search Component | High |
| Windows Search Component | CVE-2026-70145 | Out-of-bounds read in Windows Search Component | Medium |
| Windows Secure Boot 1 CVE | |||
| Windows Secure Boot | CVE-2026-69713 | Vulnerable third-party component in Windows Secure Boot | Medium |
| Windows Secure Kernel Mode 4 CVEs | |||
| Windows Secure Kernel Mode | CVE-2026-69501 | Untrusted pointer dereference in Windows Secure Kernel Mode | High |
| Windows Secure Kernel Mode | CVE-2026-69846 | Integer overflow in Windows Secure Kernel Mode allows privilege escalation | High |
| Windows Secure Kernel Mode | CVE-2026-69906 | Heap-based buffer overflow in Windows Secure Kernel Mode | High |
| Windows Secure Kernel Mode | CVE-2026-83939 | Untrusted pointer dereference in Windows Secure Kernel Mode allows privilege elevation | High |
| Windows Secure Socket Tunneling Protocol 2 CVEs | |||
| Windows Secure Socket Tunneling Protocol | CVE-2026-71332 | Use after free in Windows Secure Socket Tunneling Protocol | High |
| Windows Secure Socket Tunneling Protocol | CVE-2026-72930 | Use after free in Windows Secure Socket Tunneling Protocol | High |
| Windows Security Center 1 CVE | |||
| Windows Security Center | CVE-2026-77899 | Use-after-free in Windows Security Center enables privilege escalation | High |
| Windows Security Health Service 1 CVE | |||
| Windows Security Health Service | CVE-2026-78457 | Use-after-free in Windows Security Health Service enables privilege escalation | High |
| Windows Server 1 CVE | |||
| Windows Server | CVE-2026-56177 | Use after free in Windows Server allows an unauthorized attacker to execute code | High |
| Windows Services for NFS ONCRPC 4 CVEs | |||
| Windows Services for NFS ONCRPC | CVE-2026-71330 | Sensitive information exposure in Windows Services for NFS ONCRPC | High |
| Windows Services for NFS ONCRPC | CVE-2026-73024 | Heap buffer overflow in Windows Services for NFS ONCRPC enables privilege escalation | High |
| Windows Services for NFS ONCRPC | CVE-2026-78445 | Use-after-free in Windows Services for NFS ONCRPC enables remote execution | Critical |
| Windows Services for NFS ONCRPC | CVE-2026-83989 | Out-of-bounds read in Windows Services for NFS ONCRPC allows privilege escalation | High |
| Windows Services for NFS ONCRPC XDR 1 CVE | |||
| Windows Services for NFS ONCRPC XDR | CVE-2026-70585 | Use after free in Windows Services for NFS ONCRPC XDR | High |
| Windows Shell 6 CVEs | |||
| Windows Shell | CVE-2026-69383 | External control of file name or path in Windows Shell | High |
| Windows Shell | CVE-2026-69392 | Use after free in Windows Shell | High |
| Windows Shell | CVE-2026-69528 | Missing authentication in Windows Shell | High |
| Windows Shell | CVE-2026-69606 | Use after free in Windows Shell | High |
| Windows Shell | CVE-2026-69829 | Heap-based buffer overflow in Windows Shell | High |
| Windows Shell | CVE-2026-70563 | Improper link resolution in Windows Shell | High |
| Windows Smart Card 1 CVE | |||
| Windows Smart Card | CVE-2026-69785 | Untrusted search path in Windows Smart Card | High |
| Windows SMB Client 4 CVEs | |||
| Windows SMB Client | CVE-2026-69544 | Heap-based buffer overflow in Windows SMB Client | High |
| Windows SMB Client | CVE-2026-69572 | Out-of-bounds read in Windows SMB Client | Medium |
| Windows SMB Client | CVE-2026-69618 | Out-of-bounds read in Windows SMB Client | Medium |
| Windows SMB Client | CVE-2026-72936 | Use after free in Windows SMB Client | High |
| Windows SMB Server 2 CVEs | |||
| Windows SMB Server | CVE-2026-69374 | Allocation of resources without limits in Windows SMB Server | Medium |
| Windows SMB Server | CVE-2026-69403 | Missing authorization in Windows SMB Server | Medium |
| Windows SMB Server Network Transport Driver 1 CVE | |||
| Windows SMB Server Network Transport Driver | CVE-2026-72949 | Null pointer dereference in Windows SMB Server Network Transport Driver | High |
| Windows Spaceport.sys 13 CVEs | |||
| Windows Spaceport.sys | CVE-2026-69390 | Out-of-bounds read in Windows Spaceport.sys | Medium |
| Windows Spaceport.sys | CVE-2026-69643 | Heap-based buffer overflow in Windows Spaceport.sys | High |
| Windows Spaceport.sys | CVE-2026-69691 | Heap-based buffer overflow in Windows Spaceport.sys | High |
| Windows Spaceport.sys | CVE-2026-69741 | Out-of-bounds read in Windows Spaceport.sys | Medium |
| Windows Spaceport.sys | CVE-2026-69770 | Uninitialized resource in Windows Spaceport.sys | Medium |
| Windows Spaceport.sys | CVE-2026-69895 | Out-of-bounds read in Windows Spaceport.sys | Medium |
| Windows Spaceport.sys | CVE-2026-70569 | Out-of-bounds read in Windows Spaceport.sys | High |
| Windows Spaceport.sys | CVE-2026-71345 | Out-of-bounds write in Windows Spaceport.sys | High |
| Windows Spaceport.sys | CVE-2026-71348 | Heap-based buffer overflow in Windows Spaceport.sys | Medium |
| Windows Spaceport.sys | CVE-2026-71349 | Heap-based buffer overflow in Windows Spaceport.sys | Medium |
| Windows Spaceport.sys | CVE-2026-71350 | Heap-based buffer overflow in Windows Spaceport.sys | Medium |
| Windows Spaceport.sys | CVE-2026-72942 | Out-of-bounds read in Windows Spaceport.sys | Medium |
| Windows Spaceport.sys | CVE-2026-72952 | Out-of-bounds read in Windows Spaceport.sys | High |
| Windows Spaceport.sys (network) 1 CVE | |||
| Windows Spaceport.sys (network) | CVE-2026-69393 | Out-of-bounds read in Windows Spaceport.sys (network) | Medium |
| Windows Spaceport.sys driver 3 CVEs | |||
| Windows Spaceport.sys driver | CVE-2026-69512 | Heap-based buffer overflow in Windows Spaceport.sys driver | High |
| Windows Spaceport.sys driver | CVE-2026-69535 | Numeric truncation in Windows Spaceport.sys driver | High |
| Windows Spaceport.sys driver | CVE-2026-69538 | Out-of-bounds read in Windows Spaceport.sys driver | High |
| Windows Speech 3 CVEs | |||
| Windows Speech | CVE-2026-69444 | Heap-based buffer overflow in Windows Speech | High |
| Windows Speech | CVE-2026-69456 | Heap-based buffer overflow in Windows Speech | High |
| Windows Speech | CVE-2026-69531 | Confused deputy vulnerability in Windows Speech | Medium |
| Windows SSTP 2 CVEs | |||
| Windows SSTP | CVE-2026-72931 | Resource leak in Windows SSTP | Medium |
| Windows SSTP | CVE-2026-73009 | Use-after-free in Windows SSTP enables network code execution | Critical |
| Windows Storage 2 CVEs | |||
| Windows Storage | CVE-2026-69328 | Untrusted search path in Windows Storage | High |
| Windows Storage | CVE-2026-78516 | Buffer over-read in Windows Storage discloses information via physical attack | Medium |
| Windows Storage Management Provider 2 CVEs | |||
| Windows Storage Management Provider | CVE-2026-69389 | Heap-based buffer overflow in Windows Storage Management Provider | High |
| Windows Storage Management Provider | CVE-2026-71337 | Stack-based buffer overflow in Windows Storage Management Provider | High |
| Windows Storage Port Driver 1 CVE | |||
| Windows Storage Port Driver | CVE-2026-69381 | Out-of-bounds read in Windows Storage Port Driver | Medium |
| Windows Storage Spaces 1 CVE | |||
| Windows Storage Spaces | CVE-2026-69290 | Stack-based buffer overflow in Windows Storage Spaces | High |
| Windows Storage Spaces Controller 4 CVEs | |||
| Windows Storage Spaces Controller | CVE-2026-68844 | Heap-based buffer overflow in Windows Storage Spaces Controller | High |
| Windows Storage Spaces Controller | CVE-2026-68877 | Heap-based buffer overflow in Windows Storage Spaces Controller | High |
| Windows Storage Spaces Controller | CVE-2026-69568 | Out-of-bounds read in Windows Storage Spaces Controller | Medium |
| Windows Storage Spaces Controller | CVE-2026-69575 | Use after free in Windows Storage Spaces Controller | High |
| Windows Task Scheduler 1 CVE | |||
| Windows Task Scheduler | CVE-2026-72945 | Uninitialized resource in Windows Task Scheduler | Medium |
| Windows TCP/IP 6 CVEs | |||
| Windows TCP/IP | CVE-2026-69385 | Concurrent execution using shared resource with improper synchronization (race condition) in Windows TCP/IP | High |
| Windows TCP/IP | CVE-2026-69404 | Race condition in Windows TCP/IP | High |
| Windows TCP/IP | CVE-2026-69588 | Memory leak in Windows TCP/IP | High |
| Windows TCP/IP | CVE-2026-69757 | Use after free in Windows TCP/IP | High |
| Windows TCP/IP | CVE-2026-69761 | Use after free in Windows TCP/IP | High |
| Windows TCP/IP | CVE-2026-69793 | Input validation bypass in Windows TCP/IP | High |
| Windows Text Shaping 2 CVEs | |||
| Windows Text Shaping | CVE-2026-69353 | Out-of-bounds read in Windows Text Shaping causes information disclosure | Medium |
| Windows Text Shaping | CVE-2026-69786 | Heap-based buffer overflow in Windows Text Shaping | High |
| Windows UDFS 3 CVEs | |||
| Windows UDFS | CVE-2026-69573 | Use after free in Windows UDFS | High |
| Windows UDFS | CVE-2026-69592 | Heap-based buffer overflow in Windows UDFS | High |
| Windows UDFS | CVE-2026-69758 | Heap-based buffer overflow in Windows UDFS | High |
| Windows Universal Plug and Play 2 CVEs | |||
| Windows Universal Plug and Play | CVE-2026-68830 | Link following in Windows Universal Plug and Play | Medium |
| Windows Universal Plug and Play | CVE-2026-69351 | Exposure of private personal information in Windows Universal Plug and Play | Medium |
| Windows Update Stack 1 CVE | |||
| Windows Update Stack | CVE-2026-81963 | Link following in Windows Update Stack allows local privilege escalation | High |
| Windows URL Moniker 1 CVE | |||
| Windows URL Moniker | CVE-2026-69434 | Heap-based buffer overflow in Windows URL Moniker | High |
| Windows URL Moniker security bypass 1 CVE | |||
| Windows URL Moniker security bypass | CVE-2026-73019 | Path equivalence improper resolution in Windows URL Moniker security bypass | Medium |
| Windows USB Audio Class Driver 2 CVEs | |||
| Windows USB Audio Class Driver | CVE-2026-69270 | Heap-based buffer overflow in Windows USB Audio Class Driver | High |
| Windows USB Audio Class Driver | CVE-2026-69286 | Out-of-bounds read in Windows USB Audio Class Driver | Medium |
| Windows USB Audio Class driver 7 CVEs | |||
| Windows USB Audio Class driver | CVE-2026-69307 | Heap buffer overflow in Windows USB Audio Class driver enables code execution | High |
| Windows USB Audio Class driver | CVE-2026-69413 | Use-after-free in Windows USB Audio Class driver enables privilege elevation | High |
| Windows USB Audio Class driver | CVE-2026-69469 | Integer overflow in Windows USB Audio Class driver | Medium |
| Windows USB Audio Class driver | CVE-2026-69571 | Heap-based buffer overflow in Windows USB Audio Class driver | High |
| Windows USB Audio Class driver | CVE-2026-69687 | Integer underflow in Windows USB Audio Class driver | High |
| Windows USB Audio Class driver | CVE-2026-69707 | Integer overflow in Windows USB Audio Class driver | High |
| Windows USB Audio Class driver | CVE-2026-69859 | Race condition in Windows USB Audio Class driver | High |
| Windows USB Driver 5 CVEs | |||
| Windows USB Driver | CVE-2026-68840 | Race condition in Windows USB Driver | High |
| Windows USB Driver | CVE-2026-69295 | Out-of-bounds read in Windows USB Driver | High |
| Windows USB Driver | CVE-2026-69457 | Out-of-bounds read in Windows USB Driver | Medium |
| Windows USB Driver | CVE-2026-69503 | Stack-based buffer overflow in Windows USB Driver | High |
| Windows USB Driver | CVE-2026-72953 | Heap-based buffer overflow in Windows USB Driver | High |
| Windows USB Hub Driver 1 CVE | |||
| Windows USB Hub Driver | CVE-2026-72999 | Out-of-bounds read in Windows USB Hub Driver permits physical privilege escalation | Medium |
| Windows USB Mass Storage Class Driver 3 CVEs | |||
| Windows USB Mass Storage Class Driver | CVE-2026-68839 | Heap-based buffer overflow in Windows USB Mass Storage Class Driver | Critical |
| Windows USB Mass Storage Class Driver | CVE-2026-69490 | Out-of-bounds read in Windows USB Mass Storage Class Driver | High |
| Windows USB Mass Storage Class Driver | CVE-2026-69527 | Out-of-bounds read in Windows USB Mass Storage Class Driver | Medium |
| Windows USB Video Driver 5 CVEs | |||
| Windows USB Video Driver | CVE-2026-69319 | Race condition in Windows USB Video Driver enables privilege escalation | High |
| Windows USB Video Driver | CVE-2026-69422 | Use-after-free in Windows USB Video Driver enables privilege elevation | High |
| Windows USB Video Driver | CVE-2026-69423 | Heap buffer overflow in Windows USB Video Driver enables escalation | High |
| Windows USB Video Driver | CVE-2026-69584 | Integer overflow in Windows USB Video Driver | High |
| Windows USB Video Driver | CVE-2026-72962 | Heap-based buffer overflow in Windows USB Video Driver | High |
| Windows VBS Enclave 2 CVEs | |||
| Windows VBS Enclave | CVE-2026-83498 | Untrusted pointer dereference in Windows VBS Enclave allows privilege elevation | High |
| Windows VBS Enclave | CVE-2026-83501 | Out-of-bounds read in Windows VBS Enclave allows information disclosure | Medium |
| Windows VHD miniport driver 1 CVE | |||
| Windows VHD miniport driver | CVE-2026-56172 | Use after free in Windows VHD miniport driver | High |
| Windows VHD Miniport Driver 1 CVE | |||
| Windows VHD Miniport Driver | CVE-2026-81355 | Heap buffer overflow in Windows VHD Miniport Driver enables code execution | High |
| Windows VOLSNAP.SYS 3 CVEs | |||
| Windows VOLSNAP.SYS | CVE-2026-69420 | Heap buffer overflow in Windows VOLSNAP.SYS enables privilege elevation | High |
| Windows VOLSNAP.SYS | CVE-2026-69426 | Heap buffer overflow in Windows VOLSNAP.SYS enables local code execution | High |
| Windows VOLSNAP.SYS | CVE-2026-69427 | Out-of-bounds read in Windows VOLSNAP.SYS | High |
| Windows Volume Manager 1 CVE | |||
| Windows Volume Manager | CVE-2026-77904 | Heap buffer overflow in Windows Volume Manager enables privilege escalation | High |
| Windows Volume Manager Extension 2 CVEs | |||
| Windows Volume Manager Extension | CVE-2026-69291 | Heap-based buffer overflow in Windows Volume Manager Extension | High |
| Windows Volume Manager Extension | CVE-2026-69334 | Heap-based buffer overflow in Windows Volume Manager Extension | High |
| Windows Volume Manager Extension Driver 2 CVEs | |||
| Windows Volume Manager Extension Driver | CVE-2026-69468 | Heap-based buffer overflow in Windows Volume Manager Extension Driver | High |
| Windows Volume Manager Extension Driver | CVE-2026-69582 | Buffer over-read in Windows Volume Manager Extension Driver | High |
| Windows Volume Shadow Copy 1 CVE | |||
| Windows Volume Shadow Copy | CVE-2026-72985 | Heap-based buffer overflow in Windows Volume Shadow Copy | Medium |
| Windows vTPM 1 CVE | |||
| Windows vTPM | CVE-2026-69890 | Use after free in Windows vTPM | High |
| Windows Web Platform Storage 1 CVE | |||
| Windows Web Platform Storage | CVE-2026-69708 | Use after free in Windows Web Platform Storage | High |
| Windows WebClient Service 1 CVE | |||
| Windows WebClient Service | CVE-2026-72965 | Use after free in Windows WebClient Service | High |
| Windows Win32 Kernel Subsystem 2 CVEs | |||
| Windows Win32 Kernel Subsystem | CVE-2026-70289 | Heap-based buffer overflow in Windows Win32 Kernel Subsystem | High |
| Windows Win32 Kernel Subsystem | CVE-2026-70290 | Uninitialized resource in Windows Win32 Kernel Subsystem | Medium |
| Windows Win32K 20 CVEs | |||
| Windows Win32K | CVE-2026-68880 | Heap-based buffer overflow in Windows Win32K | High |
| Windows Win32K | CVE-2026-69274 | Use after free in Windows Win32K | High |
| Windows Win32K | CVE-2026-69301 | Stack-based buffer overflow in Windows Win32K | High |
| Windows Win32K | CVE-2026-69333 | Use after free in Windows Win32K | High |
| Windows Win32K | CVE-2026-69335 | Use after free in Windows Win32K | High |
| Windows Win32K | CVE-2026-69410 | Use-after-free in Windows Win32K enables privilege elevation | High |
| Windows Win32K | CVE-2026-69498 | Use after free in Windows Win32K | High |
| Windows Win32K | CVE-2026-69609 | Out-of-bounds read in Windows Win32K | Medium |
| Windows Win32K | CVE-2026-69610 | Buffer over-read in Windows Win32K | High |
| Windows Win32K | CVE-2026-69630 | Out-of-bounds read in Windows Win32K | High |
| Windows Win32K | CVE-2026-69652 | Use after free in Windows Win32K | High |
| Windows Win32K | CVE-2026-69689 | Out-of-bounds read in Windows Win32K | High |
| Windows Win32K | CVE-2026-69706 | Use after free in Windows Win32K | High |
| Windows Win32K | CVE-2026-69762 | Stack-based buffer overflow in Windows Win32K | High |
| Windows Win32K | CVE-2026-69779 | Time-of-check time-of-use race condition in Windows Win32K | High |
| Windows Win32K | CVE-2026-69792 | Race condition in Windows Win32K | Medium |
| Windows Win32K | CVE-2026-69808 | Out-of-bounds read in Windows Win32K | Medium |
| Windows Win32K | CVE-2026-69818 | Use after free in Windows Win32K | High |
| Windows Win32K | CVE-2026-69832 | Information exposure to unauthorized control sphere in Windows Win32K | Medium |
| Windows Win32K | CVE-2026-70283 | Incorrect authorization in Windows Win32K | High |
| Windows Win32K out-of-bounds read 1 CVE | |||
| Windows Win32K out-of-bounds read | CVE-2026-69844 | Windows Win32K out-of-bounds read | High |
| Windows Win32K uninitialized resource 1 CVE | |||
| Windows Win32K uninitialized resource | CVE-2026-69853 | Windows Win32K uninitialized resource | Medium |
| Windows Wireless Networking 1 CVE | |||
| Windows Wireless Networking | CVE-2026-69517 | Use after free in Windows Wireless Networking | High |
| Windows Wireless Wide Area Network Service 1 CVE | |||
| Windows Wireless Wide Area Network Service | CVE-2026-69862 | Out-of-bounds read in Windows Wireless Wide Area Network Service | Medium |
| Windows Work Folder Service 2 CVEs | |||
| Windows Work Folder Service | CVE-2026-69560 | Use after free in Windows Work Folder Service | High |
| Windows Work Folder Service | CVE-2026-71336 | Integer overflow in Windows Work Folder Service | High |
| Windows Work Folders 1 CVE | |||
| Windows Work Folders | CVE-2026-80075 | Heap buffer overflow in Windows Work Folders allows local privilege escalation | High |
| Winsock 1 CVE | |||
| Winsock | CVE-2026-72927 | Heap-based buffer overflow in Winsock | Medium |
| Xbox component 1 CVE | |||
| Xbox component | CVE-2026-78455 | Out-of-bounds read in Xbox component causes information disclosure | Medium |
| XBox Gaming Services 1 CVE | |||
| XBox Gaming Services | CVE-2026-58611 | Improper authorization in XBox Gaming Services | High |