5d ago
2026-09-08 18:20Z
HIGH

CVE-2026-71336 — Integer: overflow or wraparound in Windows Work Folder Service allows an authorized attacker to

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-71336

Integer overflow or wraparound in Windows Work Folder Service allows an authorized attacker to execute code over a network. CVSSv3.1 8.8 (HIGH)

CWECWE 190TYPVulnerability
8.8
CVSS v3.1
94
Edit Score
5d ago
2026-09-08 18:20Z
HIGH

CVE-2026-71328 — Heap: Heap-based buffer overflow in Visual Studio allows an unauthorized attacker to execute code over

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-71328

Heap-based buffer overflow in Visual Studio allows an unauthorized attacker to execute code over a network. CVSSv3.1 8.8 (HIGH)

CWECWE 122VNDHeapTYPVulnerability
8.8
CVSS v3.1
94
Edit Score
5d ago
2026-09-08 18:20Z
HIGH

CVE-2026-70586 — Heap: Heap-based buffer overflow in Windows Paint allows an unauthorized attacker to execute code over

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-70586

Heap-based buffer overflow in Windows Paint allows an unauthorized attacker to execute code over a network. CVSSv3.1 8.8 (HIGH)

CWECWE 122VNDHeapTYPVulnerability
8.8
CVSS v3.1
94
Edit Score
5d ago
2026-09-08 18:20Z
HIGH

CVE-2026-70563 — Improper link resolution before file access ('link following') in Windows Shell allows an unauthorized

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-70563

Improper link resolution before file access ('link following') in Windows Shell allows an unauthorized attacker to perform spoofing over a network. CVSSv3.1 8.1 (HIGH)

CWECWE 59TYPVulnerability
8.1
CVSS v3.1
91
Edit Score
5d ago
2026-09-08 18:20Z
HIGH

CVE-2026-70351 — Integer: overflow or wraparound in Microsoft WebP Image Extension allows an unauthorized attacker to

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-70351

Integer overflow or wraparound in Microsoft WebP Image Extension allows an unauthorized attacker to execute code over a network. CVSSv3.1 8.8 (HIGH)

CWECWE 122CWECWE 190TYPVulnerability
8.8
CVSS v3.1
94
Edit Score
5d ago
2026-09-08 18:20Z
HIGH

CVE-2026-70342 — Use: after free in Windows Ancillary Function Driver for WinSock allows an unauthorized attacker

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-70342

Use after free in Windows Ancillary Function Driver for WinSock allows an unauthorized attacker to elevate privileges over a network. CVSSv3.1 8.1 (HIGH)

CWECWE 416TYPVulnerability
8.1
CVSS v3.1
91
Edit Score
5d ago
2026-09-08 18:20Z
CRIT

CVE-2026-70296 — Out: Out-of-bounds write in Windows Imaging Component allows an unauthorized attacker to execute code over

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-70296

Out-of-bounds write in Windows Imaging Component allows an unauthorized attacker to execute code over a network. CVSSv3.1 9.8 (CRITICAL)

CWECWE 787TYPVulnerability
9.8
CVSS v3.1
99
Edit Score
728 × 90 / responsive · programmatic ad slot
5d ago
2026-09-08 18:20Z
HIGH

CVE-2026-70203 — Heap: Heap-based buffer overflow in Windows Media Player allows an unauthorized attacker to execute code

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-70203

Heap-based buffer overflow in Windows Media Player allows an unauthorized attacker to execute code over a network. CVSSv3.1 8.8 (HIGH)

CWECWE 122VNDHeapTYPVulnerability
8.8
CVSS v3.1
94
Edit Score
5d ago
2026-09-08 18:20Z
HIGH

CVE-2026-69989 — Use: after free in DNS Server allows an unauthorized attacker to execute code over

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-69989

Use after free in DNS Server allows an unauthorized attacker to execute code over a network. CVSSv3.1 8.1 (HIGH)

CWECWE 416TYPVulnerability
8.1
CVSS v3.1
91
Edit Score
5d ago
2026-09-08 18:20Z
CRIT

CVE-2026-69910 — Stack: Stack-based buffer overflow in Windows Hyper-V allows an unauthorized attacker to execute code over

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-69910

Stack-based buffer overflow in Windows Hyper-V allows an unauthorized attacker to execute code over a network. CVSSv3.1 9.8 (CRITICAL)

CWECWE 121VNDStackTYPVulnerability
9.8
CVSS v3.1
99
Edit Score
5d ago
2026-09-08 18:20Z
HIGH

CVE-2026-69906 — Heap: Heap-based buffer overflow in Windows Secure Kernel Mode allows an authorized attacker to elevate

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-69906

Heap-based buffer overflow in Windows Secure Kernel Mode allows an authorized attacker to elevate privileges locally. CVSSv3.1 8.2 (HIGH)

CWECWE 122VNDHeapTYPVulnerability
8.2
CVSS v3.1
91
Edit Score
5d ago
2026-09-08 18:19Z
HIGH

CVE-2026-69876 — Use: after free in Windows DHCP Server allows an authorized attacker to execute code

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-69876

Use after free in Windows DHCP Server allows an authorized attacker to execute code over an adjacent network. CVSSv3.1 8.0 (HIGH)

CWECWE 416CWECWE 415TYPVulnerability
8.0
CVSS v3.1
90
Edit Score
5d ago
2026-09-08 18:19Z
HIGH

CVE-2026-69875 — Heap: Heap-based buffer overflow in Windows NTFS allows an authorized attacker to elevate privileges over

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-69875

Heap-based buffer overflow in Windows NTFS allows an authorized attacker to elevate privileges over a network. CVSSv3.1 8.0 (HIGH)

CWECWE 125CWECWE 122VNDHeapTYPVulnerability
8.0
CVSS v3.1
90
Edit Score
5d ago
2026-09-08 18:19Z
HIGH

CVE-2026-69874 — Untrusted: pointer dereference in Windows ALPC allows an authorized attacker to elevate privileges locally.

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-69874

Untrusted pointer dereference in Windows ALPC allows an authorized attacker to elevate privileges locally. CVSSv3.1 8.2 (HIGH)

CWECWE 822VNDUntrustedTYPVulnerability
8.2
CVSS v3.1
91
Edit Score
5d ago
2026-09-08 18:19Z
HIGH

CVE-2026-69860 — Heap: Heap-based buffer overflow in Windows Imaging Component allows an unauthorized attacker to execute code

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-69860

Heap-based buffer overflow in Windows Imaging Component allows an unauthorized attacker to execute code over a network. CVSSv3.1 8.8 (HIGH)

CWECWE 122VNDHeapTYPVulnerability
8.8
CVSS v3.1
94
Edit Score
5d ago
2026-09-08 18:19Z
HIGH

CVE-2026-69858 — Use: after free in Windows DNS allows an unauthorized attacker to execute code over

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-69858

Use after free in Windows DNS allows an unauthorized attacker to execute code over a network. CVSSv3.1 8.1 (HIGH)

CWECWE 416TYPVulnerability
8.1
CVSS v3.1
91
Edit Score
5d ago
2026-09-08 18:19Z
CRIT

CVE-2026-69854 — Spring: Improper authentication in Spring Cloud Azure allows an unauthorized attacker to elevate privileges over

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-69854

Improper authentication in Spring Cloud Azure allows an unauthorized attacker to elevate privileges over a network. CVSSv3.1 9.0 (CRITICAL)

CWECWE 287VNDSpringTYPVulnerability
9.0
CVSS v3.1
95
Edit Score
5d ago
2026-09-08 18:19Z
HIGH

CVE-2026-69847 — Heap: Heap-based buffer overflow in Windows DHCP Server allows an authorized attacker to execute code

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-69847

Heap-based buffer overflow in Windows DHCP Server allows an authorized attacker to execute code over an adjacent network. CVSSv3.1 8.0 (HIGH)

CWECWE 122VNDHeapTYPVulnerability
8.0
CVSS v3.1
90
Edit Score
5d ago
2026-09-08 18:19Z
HIGH

CVE-2026-69846 — Integer: overflow or wraparound in Windows Secure Kernel Mode allows an authorized attacker to

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-69846

Integer overflow or wraparound in Windows Secure Kernel Mode allows an authorized attacker to elevate privileges locally. CVSSv3.1 8.2 (HIGH)

CWECWE 190TYPVulnerability
8.2
CVSS v3.1
91
Edit Score
5d ago
2026-09-08 18:19Z
CRIT

CVE-2026-69845 — Heap: Heap-based buffer overflow in Windows DHCP Server allows an unauthorized attacker to execute code

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-69845

Heap-based buffer overflow in Windows DHCP Server allows an unauthorized attacker to execute code over a network. CVSSv3.1 9.8 (CRITICAL)

CWECWE 20CWECWE 122VNDHeapTYPVulnerability
9.8
CVSS v3.1
99
Edit Score
5d ago
2026-09-08 18:19Z
CRIT

CVE-2026-69829 — Heap: Heap-based buffer overflow in Windows Shell allows an unauthorized attacker to execute code over

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-69829

Heap-based buffer overflow in Windows Shell allows an unauthorized attacker to execute code over a network. CVSSv3.1 9.8 (CRITICAL)

CWECWE 122VNDHeapTYPVulnerability
9.8
CVSS v3.1
99
Edit Score
5d ago
2026-09-08 18:19Z
HIGH

CVE-2026-69827 — Concurrent: execution using shared resource with improper synchronization ('race condition') in DNS Server allows

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-69827

Concurrent execution using shared resource with improper synchronization ('race condition') in DNS Server allows an unauthorized attacker to execute code over a network. CVSSv3.1 8.1 (HIGH)

CWECWE 416CWECWE 362VNDConcurrentTYPVulnerability
8.1
CVSS v3.1
91
Edit Score
5d ago
2026-09-08 18:19Z
HIGH

CVE-2026-69826 — Heap: Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-69826

Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges over a network. CVSSv3.1 8.0 (HIGH)

CWECWE 122VNDHeapTYPVulnerability
8.0
CVSS v3.1
90
Edit Score
5d ago
2026-09-08 18:19Z
CRIT

CVE-2026-69824 — Integer: underflow (wrap or wraparound) in Microsoft Standard XPS allows an unauthorized attacker to

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-69824

Integer underflow (wrap or wraparound) in Microsoft Standard XPS allows an unauthorized attacker to execute code over a network. CVSSv3.1 9.8 (CRITICAL)

CWECWE 122CWECWE 191TYPVulnerability
9.8
CVSS v3.1
99
Edit Score
5d ago
2026-09-08 18:19Z
HIGH

CVE-2026-69820 — Heap: Heap-based buffer overflow in Windows Hello allows an authorized attacker to elevate privileges locally.

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-69820

Heap-based buffer overflow in Windows Hello allows an authorized attacker to elevate privileges locally. CVSSv3.1 8.2 (HIGH)

CWECWE 122VNDHeapTYPVulnerability
8.2
CVSS v3.1
91
Edit Score