| CVE-2026-62727 | 7 | high | — | Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Telephony S | 17d ago |
| CVE-2026-16838 | 7 | high | ibm / aix | IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a local attacker to overwrite critical files and obtain | 17d ago |
| CVE-2026-48711 | 7 | high | — | SSHFS is a network filesystem client for connecting to SSH servers. | 17d ago |
| CVE-2026-71098 | 7 | high | oracle / business intelligence | Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (component: Platf | 18d ago |
| CVE-2026-71041 | 7 | high | oracle / agile product lifecycle management | Vulnerability in the Oracle Agile PLM product of Oracle Supply Chain (component: Gantt Chart). | 18d ago |
| CVE-2026-70992 | 7 | high | oracle / commerce experience manager | Vulnerability in the Oracle Commerce Guided Search / Oracle Commerce Experience Manager product of Oracle Commerce | 18d ago |
| CVE-2026-70914 | 7 | high | oracle / hyperion financial management | Vulnerability in the Oracle Hyperion Financial Management product of Oracle Hyperion (component: Security). | 18d ago |
| CVE-2026-70697 | 7 | high | oracle / agile engineering data management | Vulnerability in the Oracle Agile Engineering Data Management product of Oracle Supply Chain (component: Engineeri | 18d ago |
| CVE-2026-70676 | 7 | high | oracle / hyperion calculation manager | Vulnerability in the Oracle Hyperion Calculation Manager product of Oracle Hyperion (component: Security). | 18d ago |
| CVE-2026-62449 | 7 | high | oracle / work in process | Vulnerability in the Oracle Work in Process product of Oracle E-Business Suite (component: Internal Operations). | 18d ago |
| CVE-2026-60902 | 7 | high | oracle / peoplesoft enterprise peopletools | Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: Tuxedo). | 18d ago |
| CVE-2026-75857 | 7 | high | — | CodeWhale versions >= 0.8.41 and < 0.8.64 contain a vulnerability in the exec_shell_interact (alias exec_interact) | 18d ago |
| CVE-2026-34789 | 7 | high | — | FreeCAD is a free and open-source multiplatform 3D parametric modeler. | 19d ago |
| CVE-2026-6387 | 7 | high | — | A potential authentication bypass vulnerability was reported in Lenovo System Update that could allow a local authe | 23d ago |
| CVE-2026-15994 | 7 | high | — | During an internal security assessment, an improper link following vulnerability was identified in Lenovo Vantage | 23d ago |
| CVE-2026-53996 | 7 | high | — | NetBSD's hdaudio(4) driver in sys/dev/hdaudio/hdaudio.c contains a missing access control vulnerability that allow | 24d ago |
| CVE-2026-70307 | 7 | high | microsoft / windows 10 1607 | Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privilege | 25d ago |
| CVE-2026-68820exploited | 7 | high | microsoft / windows 10 1607 | Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privilege | 25d ago |
| CVE-2026-65788 | 7 | high | microsoft / windows 11 23h2 | Use after free in Desktop Window Manager allows an authorized attacker to elevate privileges locally. | 25d ago |
| CVE-2026-65783 | 7 | high | microsoft / windows 11 24h2 | Use after free in Windows Autopilot allows an authorized attacker to elevate privileges locally. | 25d ago |
| CVE-2026-65782 | 7 | high | microsoft / windows 11 24h2 | Use after free in Windows Autopilot allows an authorized attacker to elevate privileges locally. | 25d ago |
| CVE-2026-65781 | 7 | high | microsoft / windows 11 24h2 | Use after free in Windows Autopilot allows an authorized attacker to elevate privileges locally. | 25d ago |
| CVE-2026-65780 | 7 | high | microsoft / windows 11 24h2 | Double free in Windows Autopilot allows an authorized attacker to elevate privileges locally. | 25d ago |
| CVE-2026-65779 | 7 | high | microsoft / windows 11 24h2 | Use after free in Windows Autopilot allows an authorized attacker to elevate privileges locally. | 25d ago |
| CVE-2026-65778 | 7 | high | microsoft / windows 11 24h2 | Use after free in Windows Autopilot allows an authorized attacker to elevate privileges locally. | 25d ago |
| CVE-2026-65776 | 7 | high | microsoft / windows 11 24h2 | Use after free in Windows Win32K allows an authorized attacker to elevate privileges locally. | 25d ago |
| CVE-2026-65678 | 7 | high | microsoft / windows 10 1607 | Use after free in Windows Win32K allows an authorized attacker to elevate privileges locally. | 25d ago |
| CVE-2026-62908 | 7 | high | microsoft / windows 10 1607 | Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Backup Engi | 25d ago |
| CVE-2026-62897 | 7 | high | microsoft / .net framework | Integer overflow or wraparound in .NET Framework allows an unauthorized attacker to execute code locally. | 25d ago |
| CVE-2026-62892 | 7 | high | microsoft / windows 10 1809 | Use after free in Capability Access Management Service (camsvc) allows an authorized attacker to elevate privilege | 25d ago |
| CVE-2026-62788 | 7 | high | microsoft / windows 11 23h2 | Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally. | 25d ago |
| CVE-2026-62780 | 7 | high | microsoft / windows 11 23h2 | Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally. | 25d ago |
| CVE-2026-62774 | 7 | high | microsoft / windows 10 1607 | Use after free in Windows Graphics Kernel allows an authorized attacker to elevate privileges locally. | 25d ago |
| CVE-2026-62773 | 7 | high | microsoft / windows 10 1607 | Use after free in Windows Kerberos allows an authorized attacker to elevate privileges locally. | 25d ago |
| CVE-2026-62766 | 7 | high | microsoft / windows 11 24h2 | Double free in Windows Kerberos allows an authorized attacker to elevate privileges locally. | 25d ago |
| CVE-2026-62753 | 7 | high | microsoft / windows 10 1607 | Heap-based buffer overflow in Windows HTTP.sys allows an authorized attacker to elevate privileges locally. | 25d ago |
| CVE-2026-62749 | 7 | high | microsoft / windows 11 24h2 | Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally. | 25d ago |
| CVE-2026-62748 | 7 | high | microsoft / windows 10 1607 | Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Telephony S | 25d ago |
| CVE-2026-62734 | 7 | high | microsoft / windows 10 1607 | Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Telephony S | 25d ago |
| CVE-2026-62729 | 7 | high | microsoft / windows 10 1607 | Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Telephony S | 25d ago |
| CVE-2026-62728 | 7 | high | microsoft / windows 10 1607 | Time-of-check time-of-use (toctou) race condition in Windows Common Log File System Driver allows an authorized at | 25d ago |
| CVE-2026-62726 | 7 | high | microsoft / windows 10 1607 | Use after free in Windows Telephony Service allows an authorized attacker to elevate privileges locally. | 25d ago |
| CVE-2026-62725 | 7 | high | microsoft / windows 10 1607 | Use after free in Windows Telephony Service allows an authorized attacker to elevate privileges locally. | 25d ago |
| CVE-2026-62724 | 7 | high | microsoft / windows 10 1607 | Use after free in Windows Telephony Service allows an authorized attacker to elevate privileges locally. | 25d ago |
| CVE-2026-62723 | 7 | high | microsoft / windows 10 1607 | Use after free in Windows Telephony Service allows an authorized attacker to elevate privileges locally. | 25d ago |
| CVE-2026-62705 | 7 | high | microsoft / windows 11 24h2 | Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Bind Filter | 25d ago |
| CVE-2026-62693 | 7 | high | microsoft / windows 11 24h2 | Concurrent execution using shared resource with improper synchronization ('race condition') in Windows MIDI Servic | 25d ago |
| CVE-2026-62690 | 7 | high | microsoft / windows 10 1809 | Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Push Notifi | 25d ago |
| CVE-2026-61939 | 7 | high | microsoft / windows 10 1607 | Use after free in Winlogon allows an authorized attacker to elevate privileges locally. | 25d ago |
| CVE-2026-61938 | 7 | high | microsoft / windows 11 24h2 | Use after free in Windows Installer allows an authorized attacker to elevate privileges locally. | 25d ago |
| CVE-2026-61929 | 7 | high | microsoft / windows 11 23h2 | Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally. | 25d ago |
| CVE-2026-61927 | 7 | high | microsoft / windows 11 24h2 | Use after free in Windows Bind Filter Driver allows an authorized attacker to elevate privileges locally. | 25d ago |
| CVE-2026-61366 | 7 | high | microsoft / windows 10 1607 | Double free in Windows Network Connection Broker allows an authorized attacker to elevate privileges locally. | 25d ago |
| CVE-2026-61361 | 7 | high | microsoft / windows 11 24h2 | Use after free in Windows DHCP Client allows an authorized attacker to execute code locally. | 25d ago |
| CVE-2026-61348 | 7 | high | microsoft / windows 10 1607 | Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privilege | 25d ago |
| CVE-2026-61346 | 7 | high | microsoft / windows 10 1809 | Use after free in Windows Graphics Kernel allows an authorized attacker to elevate privileges locally. | 25d ago |
| CVE-2026-59126 | 7 | high | microsoft / windows 10 21h2 | Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Event Loggi | 25d ago |
| CVE-2026-59125 | 7 | high | microsoft / windows 10 1607 | Use after free in Virtual Hard Disk (VHD) Miniport Driver allows an authorized attacker to elevate privileges loca | 25d ago |
| CVE-2026-59122 | 7 | high | microsoft / windows 10 1607 | Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Telephony S | 25d ago |
| CVE-2026-50472 | 7 | high | microsoft / windows 10 1607 | Heap-based buffer overflow in Windows LUAFV allows an authorized attacker to elevate privileges locally. | 25d ago |