| CVE-2026-49805 | 7 | high | microsoft / windows 10 1607 | Improper access control in Windows Win32K allows an authorized attacker to elevate privileges locally. | 53d ago |
| CVE-2026-49803 | 7 | high | microsoft / windows 10 1607 | Concurrent execution using shared resource with improper synchronization ('race condition') in Windows AppX Deploy | 53d ago |
| CVE-2026-49802 | 7 | high | microsoft / windows 11 24h2 | Concurrent execution using shared resource with improper synchronization ('race condition') in Windows USB Print D | 53d ago |
| CVE-2026-49784 | 7 | high | microsoft / windows 10 1607 | Concurrent execution using shared resource with improper synchronization ('race condition') in Microsoft Windows A | 53d ago |
| CVE-2026-49183 | 7 | high | microsoft / windows 10 1809 | Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Clipboard S | 53d ago |
| CVE-2026-49162 | 7 | high | microsoft / windows 11 24h2 | Use after free in Microsoft Brokering File System allows an authorized attacker to elevate privileges locally. | 53d ago |
| CVE-2026-48572 | 7 | high | microsoft / windows 11 23h2 | Concurrent execution using shared resource with improper synchronization ('race condition') in Windows App Install | 53d ago |
| CVE-2026-48571 | 7 | high | microsoft / windows 11 23h2 | Use after free in Windows App Installer allows an authorized attacker to elevate privileges locally. | 53d ago |
| CVE-2026-47648 | 7 | high | microsoft / windows 10 1607 | Untrusted search path in Windows Storage allows an authorized attacker to elevate privileges locally. | 88d ago |
| CVE-2026-47293 | 7 | high | microsoft / 365 apps | Use after free in Microsoft Office Click-To-Run allows an authorized attacker to elevate privileges locally. | 88d ago |
| CVE-2026-45653 | 7 | high | microsoft / windows 10 1607 | Heap-based buffer overflow in Windows Kernel allows an authorized attacker to elevate privileges locally. | 88d ago |
| CVE-2026-45640 | 7 | high | microsoft / windows 10 21h2 | Use after free in Windows Bluetooth Port Driver allows an authorized attacker to elevate privileges locally. | 88d ago |
| CVE-2026-45603 | 7 | high | microsoft / windows 10 1607 | Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Ancillary F | 88d ago |
| CVE-2026-45601 | 7 | high | microsoft / windows 10 1607 | Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Ancillary F | 88d ago |
| CVE-2026-45598 | 7 | high | microsoft / windows 10 1607 | Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Ancillary F | 88d ago |
| CVE-2026-45597 | 7 | high | microsoft / windows 11 23h2 | Concurrent execution using shared resource with improper synchronization ('race condition') in UI Automation Manag | 88d ago |
| CVE-2026-45596 | 7 | high | microsoft / windows 10 1607 | Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privilege | 88d ago |
| CVE-2026-44818 | 7 | high | microsoft / 365 apps | Concurrent execution using shared resource with improper synchronization ('race condition') in Microsoft Office Ex | 88d ago |
| CVE-2026-42984 | 7 | high | microsoft / windows 10 1809 | Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally. | 88d ago |
| CVE-2026-42912 | 7 | high | microsoft / windows 10 1607 | Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Telephony S | 88d ago |
| CVE-2026-42911 | 7 | high | microsoft / windows 10 1607 | Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privilege | 88d ago |
| CVE-2026-42836 | 7 | high | microsoft / windows 10 1607 | Concurrent execution using shared resource with improper synchronization ('race condition') in Function Discovery | 88d ago |
| CVE-2026-41108 | 7 | high | microsoft / windows 10 1607 | Heap-based buffer overflow in Microsoft Windows DNS allows an authorized attacker to elevate privileges locally. | 88d ago |
| CVE-2026-34335 | 7 | high | microsoft / windows 10 1607 | Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privilege | 88d ago |
| CVE-2026-42825 | 7 | high | microsoft / windows 10 1607 | Use after free in Windows Telephony Service allows an authorized attacker to elevate privileges locally. | 116d ago |
| CVE-2026-40410 | 7 | high | microsoft / windows 10 1607 | Use after free in Windows SMB Client allows an authorized attacker to elevate privileges locally. | 116d ago |
| CVE-2026-35416 | 7 | high | microsoft / windows 10 1607 | Access of resource using incompatible type ('type confusion') in Windows Ancillary Function Driver for WinSock all | 116d ago |
| CVE-2026-34347 | 7 | high | microsoft / windows 10 1607 | Use after free in Windows Win32K - GRFX allows an authorized attacker to elevate privileges locally. | 116d ago |
| CVE-2026-34345 | 7 | high | microsoft / windows 10 1607 | Access of resource using incompatible type ('type confusion') in Windows Ancillary Function Driver for WinSock all | 116d ago |
| CVE-2026-34342 | 7 | high | microsoft / windows 10 1607 | Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Print Spool | 116d ago |
| CVE-2026-34341 | 7 | high | microsoft / windows 10 1607 | Double free in Windows Link-Layer Discovery Protocol (LLDP) allows an authorized attacker to elevate privileges lo | 116d ago |
| CVE-2026-34340 | 7 | high | microsoft / windows 10 1809 | Use after free in Windows Projected File System allows an authorized attacker to elevate privileges locally. | 116d ago |
| CVE-2026-34331 | 7 | high | microsoft / windows 10 1607 | Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Win32K - GR | 116d ago |
| CVE-2026-33839 | 7 | high | microsoft / windows 10 1809 | Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Win32K - GR | 116d ago |