| CVE-2026-62735 | 7.8 | high | microsoft / windows 10 1607 | Heap-based buffer overflow in Windows HTTP.sys allows an authorized attacker to elevate privileges locally. | 25d ago |
| CVE-2026-62733 | 7.8 | high | microsoft / windows 10 1607 | Out-of-bounds read in Windows Win32K allows an authorized attacker to elevate privileges locally. | 25d ago |
| CVE-2026-62732 | 7.8 | high | microsoft / windows 10 1607 | Heap-based buffer overflow in Windows Telephony Service allows an authorized attacker to elevate privileges locall | 25d ago |
| CVE-2026-62722 | 7.8 | high | microsoft / windows 11 24h2 | Heap-based buffer overflow in Windows Brokering File System allows an authorized attacker to elevate privileges lo | 25d ago |
| CVE-2026-62721 | 7.8 | high | microsoft / windows 10 1607 | Insufficient granularity of access control in User-Mode Power Service (UMPS) allows an authorized attacker to elev | 25d ago |
| CVE-2026-62719 | 7.8 | high | microsoft / windows 10 1607 | Heap-based buffer overflow in Windows Message Queuing allows an authorized attacker to elevate privileges locally. | 25d ago |
| CVE-2026-62717 | 7.8 | high | microsoft / windows 10 1607 | Heap-based buffer overflow in Windows Message Queuing allows an authorized attacker to elevate privileges locally. | 25d ago |
| CVE-2026-62713 | 7.8 | high | microsoft / windows 10 1809 | Heap-based buffer overflow in Windows Cloud Files Mini Filter Driver allows an authorized attacker to elevate priv | 25d ago |
| CVE-2026-62712 | 7.8 | high | microsoft / windows 10 1607 | Heap-based buffer overflow in Windows Win32K allows an authorized attacker to elevate privileges locally. | 25d ago |
| CVE-2026-62711 | 7.8 | high | microsoft / windows 10 1607 | Use after free in Windows Win32K allows an authorized attacker to elevate privileges locally. | 25d ago |
| CVE-2026-62710 | 7.8 | high | microsoft / windows 10 1607 | Heap-based buffer overflow in Windows Device Association Service allows an authorized attacker to elevate privileg | 25d ago |
| CVE-2026-62707 | 7.8 | high | microsoft / windows 10 1607 | Use after free in Windows Modern Device Management (MDM) allows an authorized attacker to elevate privileges local | 25d ago |
| CVE-2026-62701 | 7.8 | high | microsoft / windows 10 1607 | Use after free in Windows Telephony Service allows an authorized attacker to elevate privileges locally. | 25d ago |
| CVE-2026-62700 | 7.8 | high | microsoft / windows 10 1607 | Heap-based buffer overflow in Windows NTFS allows an authorized attacker to elevate privileges locally. | 25d ago |
| CVE-2026-62698 | 7.8 | high | microsoft / windows 10 1607 | Numeric truncation error in Microsoft Digest Authentication allows an authorized attacker to elevate privileges lo | 25d ago |
| CVE-2026-62696 | 7.8 | high | microsoft / windows 10 1607 | Integer underflow (wrap or wraparound) in Windows Program Compatibility Assistant Service allows an authorized att | 25d ago |
| CVE-2026-62695 | 7.8 | high | microsoft / windows 11 23h2 | Heap-based buffer overflow in Windows Storage allows an authorized attacker to elevate privileges locally. | 25d ago |
| CVE-2026-62692 | 7.8 | high | microsoft / windows 10 1607 | Heap-based buffer overflow in Windows Remote Desktop Services allows an authorized attacker to elevate privileges | 25d ago |
| CVE-2026-62688 | 7.8 | high | microsoft / windows 11 24h2 | Heap-based buffer overflow in Windows MIDI Service Module allows an authorized attacker to elevate privileges loca | 25d ago |
| CVE-2026-61937 | 7.8 | high | microsoft / windows 10 1607 | Integer overflow or wraparound in Windows HTTP.sys allows an authorized attacker to elevate privileges locally. | 25d ago |
| CVE-2026-61934 | 7.8 | high | microsoft / windows 11 23h2 | Use after free in Windows Bind Filter Driver allows an authorized attacker to elevate privileges locally. | 25d ago |
| CVE-2026-61932 | 7.8 | high | microsoft / windows 10 1607 | Access of resource using incompatible type ('type confusion') in Windows DWM Core Library allows an authorized att | 25d ago |
| CVE-2026-61930 | 7.8 | high | microsoft / windows 10 1607 | Heap-based buffer overflow in Windows Kernel allows an authorized attacker to elevate privileges locally. | 25d ago |
| CVE-2026-61926 | 7.8 | high | microsoft / windows 10 1607 | Heap-based buffer overflow in Windows USB Driver allows an authorized attacker to elevate privileges locally. | 25d ago |
| CVE-2026-61925 | 7.8 | high | microsoft / windows 10 1607 | Incorrect authorization in Windows Installer allows an authorized attacker to elevate privileges locally. | 25d ago |
| CVE-2026-61923 | 7.8 | high | microsoft / windows 10 1809 | Heap-based buffer overflow in Windows Display Enhancement Service allows an authorized attacker to elevate privile | 25d ago |
| CVE-2026-61367 | 7.8 | high | microsoft / windows 10 1607 | Missing authentication for critical function in Windows Remote Desktop Services allows an authorized attacker to e | 25d ago |
| CVE-2026-61365 | 7.8 | high | microsoft / windows 10 1607 | Missing authentication for critical function in Windows Remote Desktop Services allows an authorized attacker to e | 25d ago |
| CVE-2026-61364 | 7.8 | high | microsoft / windows 10 1607 | Missing authentication for critical function in Windows Remote Desktop Services allows an authorized attacker to e | 25d ago |
| CVE-2026-61359 | 7.8 | high | microsoft / windows 11 23h2 | Heap-based buffer overflow in Windows Storage allows an authorized attacker to elevate privileges locally. | 25d ago |
| CVE-2026-61358 | 7.8 | high | microsoft / windows 10 1809 | Improper link resolution before file access ('link following') in Windows Accessibility Infrastructure (ATBroker.e | 25d ago |
| CVE-2026-61357 | 7.8 | high | microsoft / windows 11 24h2 | Use after free in Application Information Services allows an authorized attacker to elevate privileges locally. | 25d ago |
| CVE-2026-61356 | 7.8 | high | microsoft / windows 10 1809 | Missing authentication for critical function in Windows Remote Desktop Services allows an authorized attacker to e | 25d ago |
| CVE-2026-61355 | 7.8 | high | microsoft / windows 10 21h2 | Heap-based buffer overflow in Windows Sensor Data Service allows an authorized attacker to elevate privileges loca | 25d ago |
| CVE-2026-61353 | 7.8 | high | microsoft / windows 10 1607 | Heap-based buffer overflow in Windows Telephony Service allows an authorized attacker to elevate privileges locall | 25d ago |
| CVE-2026-61349 | 7.8 | high | microsoft / windows 10 1607 | Use after free in Windows Work Folder Service allows an authorized attacker to elevate privileges locally. | 25d ago |
| CVE-2026-59127 | 7.8 | high | microsoft / windows 10 1607 | Integer overflow or wraparound in Windows Installer allows an authorized attacker to elevate privileges locally. | 25d ago |
| CVE-2026-58651 | 7.8 | high | microsoft / 365 apps | Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code locally. | 25d ago |
| CVE-2026-58650 | 7.8 | high | microsoft / visual studio code | Authorization bypass through user-controlled key in Visual Studio Code allows an unauthorized attacker to bypass a | 25d ago |
| CVE-2026-58641 | 7.8 | high | microsoft / .net | Integer overflow or wraparound in .NET allows an unauthorized attacker to elevate privileges locally. | 25d ago |
| CVE-2026-56174 | 7.8 | high | microsoft / windows 10 1809 | Untrusted search path in Windows Narrator Braille allows an authorized attacker to elevate privileges locally. | 25d ago |
| CVE-2026-54984 | 7.8 | high | microsoft / windows 10 1607 | Heap-based buffer overflow in Windows Imaging Component allows an unauthorized attacker to execute code locally. | 25d ago |
| CVE-2026-54981 | 7.8 | high | microsoft / python | Inclusion of functionality from untrusted control sphere in Visual Studio Code - Python extension allows an unauth | 25d ago |
| CVE-2026-42976 | 7.8 | high | microsoft / windows 10 1607 | Missing authentication for critical function in Windows RPC API allows an authorized attacker to elevate privilege | 25d ago |
| CVE-2026-50650 | 7.8 | high | microsoft / .net framework | Improper control of generation of code ('code injection') in .NET Framework allows an unauthorized attacker to ele | 53d ago |
| CVE-2026-50649 | 7.8 | high | microsoft / .net framework | Deserialization of untrusted data in .NET allows an unauthorized attacker to execute code locally. | 53d ago |
| CVE-2026-50646 | 7.8 | high | microsoft / .net framework | Protection mechanism failure in .NET Framework allows an unauthorized attacker to execute code locally. | 53d ago |
| CVE-2026-47305 | 7.8 | high | microsoft / visual studio 2022 | Protection mechanism failure in Visual Studio allows an unauthorized attacker to execute code locally. | 53d ago |
| CVE-2026-58634 | 7.8 | high | microsoft / windows 11 26h1 | Use after free in Desktop Window Manager allows an authorized attacker to elevate privileges locally. | 53d ago |
| CVE-2026-58633 | 7.8 | high | microsoft / windows 11 26h1 | Use after free in Desktop Window Manager allows an authorized attacker to elevate privileges locally. | 53d ago |
| CVE-2026-58632 | 7.8 | high | microsoft / windows 10 1607 | Use after free in Windows Win32K allows an authorized attacker to elevate privileges locally. | 53d ago |
| CVE-2026-58628 | 7.8 | high | microsoft / windows 10 1809 | Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Wireless Ne | 53d ago |
| CVE-2026-58613 | 7.8 | high | microsoft / windows 10 1809 | Use after free in Windows Cloud Files Mini Filter Driver allows an authorized attacker to elevate privileges local | 53d ago |
| CVE-2026-58542 | 7.8 | high | microsoft / windows 11 24h2 | Heap-based buffer overflow in Windows Media allows an unauthorized attacker to execute code locally. | 53d ago |
| CVE-2026-58541 | 7.8 | high | microsoft / windows 10 1607 | Access of resource using incompatible type ('type confusion') in Windows DWM allows an authorized attacker to elev | 53d ago |
| CVE-2026-58540 | 7.8 | high | microsoft / windows 10 1607 | Improper authorization in Windows Installer allows an authorized attacker to elevate privileges locally. | 53d ago |
| CVE-2026-58538 | 7.8 | high | microsoft / windows 10 1809 | Heap-based buffer overflow in Windows Bluetooth Service allows an authorized attacker to elevate privileges locall | 53d ago |
| CVE-2026-58537 | 7.8 | high | microsoft / windows 11 24h2 | Use after free in Microsoft NAT Helper Components (ipnathlp.dll) allows an authorized attacker to elevate privileg | 53d ago |
| CVE-2026-58536 | 7.8 | high | microsoft / windows 10 1809 | Use after free in Windows Cloud Files Mini Filter Driver allows an authorized attacker to elevate privileges local | 53d ago |
| CVE-2026-58532 | 7.8 | high | microsoft / windows 10 1607 | Integer overflow or wraparound in Windows Kernel allows an authorized attacker to elevate privileges locally. | 53d ago |