| CVE-2026-64919 | 7.8 | high | microsoft / 365 apps | Stack-based buffer overflow in Microsoft Office Access allows an unauthorized attacker to execute code locally. | 25d ago |
| CVE-2026-64915 | 7.8 | high | microsoft / 365 apps | Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code locally. | 25d ago |
| CVE-2026-64914 | 7.8 | high | microsoft / 365 apps | Heap-based buffer overflow in Microsoft Office Access allows an unauthorized attacker to execute code locally. | 25d ago |
| CVE-2026-64912 | 7.8 | high | microsoft / 365 apps | Stack-based buffer overflow in Microsoft Office Access allows an unauthorized attacker to execute code locally. | 25d ago |
| CVE-2026-64911 | 7.8 | high | microsoft / 365 apps | Integer overflow or wraparound in Microsoft Office allows an unauthorized attacker to execute code locally. | 25d ago |
| CVE-2026-64910 | 7.8 | high | microsoft / 365 apps | Untrusted pointer dereference in Microsoft Office allows an unauthorized attacker to execute code locally. | 25d ago |
| CVE-2026-64909 | 7.8 | high | microsoft / 365 apps | Integer underflow (wrap or wraparound) in Microsoft Office allows an unauthorized attacker to execute code locally | 25d ago |
| CVE-2026-64908 | 7.8 | high | microsoft / 365 apps | Heap-based buffer overflow in Microsoft Office Access allows an unauthorized attacker to execute code locally. | 25d ago |
| CVE-2026-64907 | 7.8 | high | microsoft / 365 apps | Stack-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code locally. | 25d ago |
| CVE-2026-64906 | 7.8 | high | microsoft / 365 apps | Heap-based buffer overflow in Microsoft Office Access allows an unauthorized attacker to execute code locally. | 25d ago |
| CVE-2026-64905 | 7.8 | high | microsoft / 365 apps | Buffer over-read in Microsoft Office Word allows an unauthorized attacker to execute code locally. | 25d ago |
| CVE-2026-64904 | 7.8 | high | microsoft / 365 apps | Access of resource using incompatible type ('type confusion') in Microsoft Office allows an unauthorized attacker | 25d ago |
| CVE-2026-64903 | 7.8 | high | microsoft / 365 apps | Integer overflow or wraparound in Microsoft Office allows an unauthorized attacker to execute code locally. | 25d ago |
| CVE-2026-64898 | 7.8 | high | microsoft / 365 apps | Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally. | 25d ago |
| CVE-2026-63533 | 7.8 | high | microsoft / 365 apps | Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally. | 25d ago |
| CVE-2026-63532 | 7.8 | high | microsoft / 365 apps | Integer overflow or wraparound in Microsoft Office allows an unauthorized attacker to execute code locally. | 25d ago |
| CVE-2026-63527 | 7.8 | high | microsoft / 365 apps | Stack-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code locally. | 25d ago |
| CVE-2026-63526 | 7.8 | high | microsoft / 365 apps | Stack-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally. | 25d ago |
| CVE-2026-63525 | 7.8 | high | microsoft / 365 apps | Numeric truncation error in Microsoft Office Word allows an unauthorized attacker to execute code locally. | 25d ago |
| CVE-2026-63522 | 7.8 | high | microsoft / azure sql database | Incorrect permission assignment for critical resource in Azure SQL Database allows an authorized attacker to eleva | 25d ago |
| CVE-2026-63519 | 7.8 | high | microsoft / 365 apps | Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally. | 25d ago |
| CVE-2026-63518 | 7.8 | high | microsoft / 365 apps | Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code locally. | 25d ago |
| CVE-2026-63515 | 7.8 | high | microsoft / 365 apps | Out-of-bounds read in Microsoft Office allows an unauthorized attacker to execute code locally. | 25d ago |
| CVE-2026-63513 | 7.8 | high | microsoft / 365 apps | Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally. | 25d ago |
| CVE-2026-62909 | 7.8 | high | microsoft / visual studio 2022 | Uncaught exception in .NET allows an authorized attacker to elevate privileges locally. | 25d ago |
| CVE-2026-62894 | 7.8 | high | microsoft / windows 10 1607 | Heap-based buffer overflow in Windows DWM Core Library allows an authorized attacker to elevate privileges locally | 25d ago |
| CVE-2026-62890 | 7.8 | high | microsoft / windows 10 1607 | Heap-based buffer overflow in Windows GDI+ allows an authorized attacker to execute code locally. | 25d ago |
| CVE-2026-62888 | 7.8 | high | microsoft / windows 10 21h2 | Use after free in Windows DWM Core Library allows an authorized attacker to elevate privileges locally. | 25d ago |
| CVE-2026-62886 | 7.8 | high | microsoft / visual studio 2022 | Integer overflow or wraparound in .NET allows an unauthorized attacker to elevate privileges locally. | 25d ago |
| CVE-2026-62885 | 7.8 | high | microsoft / windows 10 1607 | Heap-based buffer overflow in Windows Win32K allows an authorized attacker to elevate privileges locally. | 25d ago |
| CVE-2026-62880 | 7.8 | high | microsoft / windows 10 1607 | Out-of-bounds read in Windows NTFS allows an authorized attacker to elevate privileges locally. | 25d ago |
| CVE-2026-62877 | 7.8 | high | microsoft / windows 10 1607 | Stack-based buffer overflow in Windows Win32K allows an authorized attacker to elevate privileges locally. | 25d ago |
| CVE-2026-62876 | 7.8 | high | microsoft / windows 10 1607 | Out-of-bounds read in Windows Win32K allows an authorized attacker to elevate privileges locally. | 25d ago |
| CVE-2026-62871 | 7.8 | high | microsoft / .net | Out-of-bounds write in .NET allows an unauthorized attacker to execute code locally. | 25d ago |
| CVE-2026-62832 | 7.8 | high | microsoft / windows 10 21h2 | Improper link resolution before file access ('link following') in Windows User Profile Service allows an authorize | 25d ago |
| CVE-2026-62812 | 7.8 | high | microsoft / windows 10 1607 | Improper link resolution before file access ('link following') in Windows DHCP Server allows an authorized attacke | 25d ago |
| CVE-2026-62811 | 7.8 | high | microsoft / windows 11 23h2 | Heap-based buffer overflow in Windows HTTP.sys allows an authorized attacker to elevate privileges locally. | 25d ago |
| CVE-2026-62807 | 7.8 | high | microsoft / windows 10 1607 | Improper link resolution before file access ('link following') in Windows DHCP Server allows an authorized attacke | 25d ago |
| CVE-2026-62803 | 7.8 | high | microsoft / windows 10 1607 | Improper link resolution before file access ('link following') in Windows DHCP Server allows an authorized attacke | 25d ago |
| CVE-2026-62799 | 7.8 | high | microsoft / windows 11 26h1 | Heap-based buffer overflow in Windows SMB Client allows an authorized attacker to elevate privileges locally. | 25d ago |
| CVE-2026-62797 | 7.8 | high | microsoft / windows 10 1607 | Heap-based buffer overflow in Windows NTFS allows an authorized attacker to elevate privileges locally. | 25d ago |
| CVE-2026-62783 | 7.8 | high | microsoft / windows 10 1809 | Heap-based buffer overflow in Windows Remote Access Connection Manager allows an authorized attacker to elevate pr | 25d ago |
| CVE-2026-62779 | 7.8 | high | microsoft / windows 11 24h2 | Use after free in Windows Schannel allows an authorized attacker to elevate privileges locally. | 25d ago |
| CVE-2026-62777 | 7.8 | high | microsoft / windows 10 1607 | Missing authentication for critical function in Windows License Manager allows an authorized attacker to elevate p | 25d ago |
| CVE-2026-62776 | 7.8 | high | microsoft / windows 10 1607 | Improper link resolution before file access ('link following') in Windows DHCP Server allows an authorized attacke | 25d ago |
| CVE-2026-62772 | 7.8 | high | microsoft / windows 11 26h1 | Heap-based buffer overflow in Windows Container Isolation FS Filter Driver (unionfs.sys) allows an authorized atta | 25d ago |
| CVE-2026-62771 | 7.8 | high | microsoft / windows 10 1809 | Heap-based buffer overflow in Windows Cloud Files Mini Filter Driver allows an authorized attacker to elevate priv | 25d ago |
| CVE-2026-62770 | 7.8 | high | microsoft / windows 10 1607 | Heap-based buffer overflow in Windows Shell allows an authorized attacker to elevate privileges locally. | 25d ago |
| CVE-2026-62768 | 7.8 | high | microsoft / windows 10 1607 | Stack-based buffer overflow in Windows Installer allows an authorized attacker to elevate privileges locally. | 25d ago |
| CVE-2026-62761 | 7.8 | high | microsoft / windows 10 1607 | Improper link resolution before file access ('link following') in Windows DHCP Server allows an authorized attacke | 25d ago |
| CVE-2026-62758 | 7.8 | high | microsoft / windows 10 1607 | Heap-based buffer overflow in Windows Remote Access Connection Manager allows an authorized attacker to elevate pr | 25d ago |
| CVE-2026-62755 | 7.8 | high | microsoft / windows 10 1607 | Stack-based buffer overflow in Windows DHCP Client allows an authorized attacker to elevate privileges locally. | 25d ago |
| CVE-2026-62754 | 7.8 | high | microsoft / windows 10 1607 | Heap-based buffer overflow in Windows Kerberos allows an authorized attacker to elevate privileges locally. | 25d ago |
| CVE-2026-62752 | 7.8 | high | microsoft / windows 10 1607 | Heap-based buffer overflow in Windows Kerberos allows an authorized attacker to elevate privileges locally. | 25d ago |
| CVE-2026-62751 | 7.8 | high | microsoft / windows 10 21h2 | Integer overflow or wraparound in Windows Projected File System allows an authorized attacker to elevate privilege | 25d ago |
| CVE-2026-62747 | 7.8 | high | microsoft / windows 10 1607 | Heap-based buffer overflow in Windows Device Association Service allows an authorized attacker to elevate privileg | 25d ago |
| CVE-2026-62741 | 7.8 | high | microsoft / windows 10 1607 | Integer underflow (wrap or wraparound) in Windows HTTP.sys allows an authorized attacker to elevate privileges loc | 25d ago |
| CVE-2026-62739 | 7.8 | high | microsoft / windows 10 1809 | Heap-based buffer overflow in Windows HTTP.sys allows an authorized attacker to elevate privileges locally. | 25d ago |
| CVE-2026-62737 | 7.8 | high | microsoft / windows 11 24h2 | Untrusted pointer dereference in Windows Kernel allows an authorized attacker to elevate privileges locally. | 25d ago |
| CVE-2026-62736 | 7.8 | high | microsoft / windows 11 23h2 | Heap-based buffer overflow in Windows DHCP Client allows an authorized attacker to elevate privileges locally. | 25d ago |