Vulnerability index

Browse CVEs

773 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Heap-based Buffer OverflowCWE-122 × clear
HIGH 7.0 CVE-2026-41108 Heap-based buffer overflow in Microsoft Windows DNS allows an authorized attacker to elevate privileges locally. Windows 10 1607 10.0.14393.9234 / 10.0.17763.8880+ Fix from $1,9502026-06-09 HIGH 8.1 CVE-2026-45584 Heap-based buffer overflow in Microsoft Defender allows an unauthorized attacker to execute code over a network. Malware Protection Engine 1.1.26040.8+ Fix from $1,9502026-05-20 HIGH 7.8 CVE-2026-42896 Integer overflow or wraparound in Windows DWM Core Library allows an authorized attacker to elevate privileges locally. Windows 11 24h2 10.0.26100.8457 / 10.0.26100.32860+ Fix from $1,9502026-05-12 HIGH 7.8 CVE-2026-42831 Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally. 365 Copilot 16.0.19822.20190+ Fix from $1,9502026-05-12 CRITICAL 9.8 CVE-2026-41096 Heap-based buffer overflow in Microsoft Windows DNS allows an unauthorized attacker to execute code over a network. Windows 11 23h2 10.0.22631.7079 / 10.0.25398.2330+ Fix from $2,3002026-05-12 HIGH 8.8 CVE-2026-40403 Heap-based buffer overflow in Windows Win32K - GRFX allows an authorized attacker to execute code locally. Windows 10 1607 10.0.14393.9140 / 10.0.17763.8755+ Fix from $1,9502026-05-12 HIGH 7.8 CVE-2026-40407 Heap-based buffer overflow in Windows Common Log File System Driver allows an authorized attacker to elevate privileges locally. Windows 10 1607 10.0.14393.9140 / 10.0.17763.8755+ Fix from $1,9502026-05-12 HIGH 7.8 CVE-2026-40398 Heap-based buffer overflow in Windows Remote Desktop allows an authorized attacker to elevate privileges locally. Windows 10 1607 10.0.14393.9140 / 10.0.17763.8755+ Fix from $1,9502026-05-12 HIGH 7.8 CVE-2026-40377 Heap-based buffer overflow in Windows Cryptographic Services allows an authorized attacker to elevate privileges locally. Windows 10 1607 10.0.14393.9140 / 10.0.17763.8755+ Fix from $1,9502026-05-12 MEDIUM 6.2 CVE-2026-40380 Heap-based buffer overflow in Volume Manager Extension Driver allows an authorized attacker to execute code with a physical attack. Windows 10 1607 10.0.14393.9140 / 10.0.17763.8755+ Fix from $1,6002026-05-12 HIGH 8.4 CVE-2026-40363 Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally. 365 Apps 16.0.19822.20190+ Fix from $1,9502026-05-12 HIGH 8.4 CVE-2026-40364 Access of resource using incompatible type ('type confusion') in Microsoft Office Word allows an unauthorized attacker to execute code locally. 365 Apps Mitigation only Fix from $1,9502026-05-12 HIGH 7.8 CVE-2026-40362 Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally. 365 Apps 16.0.10417.20128+ Fix from $1,9502026-05-12 HIGH 7.8 CVE-2026-35420 Heap-based buffer overflow in Windows Kernel allows an authorized attacker to elevate privileges locally. Windows Server 2012 10.0.14393.9140 / 10.0.17763.8755+ Fix from $1,9502026-05-12 HIGH 7.8 CVE-2026-35421 Heap-based buffer overflow in Windows GDI allows an unauthorized attacker to execute code locally. Windows 10 1607 10.0.14393.9140 / 10.0.17763.8755+ Fix from $1,9502026-05-12 HIGH 7.8 CVE-2026-34343 Heap-based buffer overflow in Windows Application Identity (AppID) Subsystem allows an authorized attacker to elevate privileges locally. Windows 10 1607 10.0.14393.9140 / 10.0.17763.8755+ Fix from $1,9502026-05-12 HIGH 7.8 CVE-2026-34336 Integer overflow or wraparound in Windows DWM Core Library allows an authorized attacker to elevate privileges locally. Windows 10 1607 10.0.14393.9140 / 10.0.17763.8755+ Fix from $1,9502026-05-12 HIGH 8.8 CVE-2026-34329 Heap-based buffer overflow in Windows Message Queuing allows an unauthorized attacker to execute code over an adjacent network. Windows 10 1607 10.0.14393.9140 / 10.0.17763.8755+ Fix from $1,9502026-05-12 HIGH 7.8 CVE-2026-33841 Heap-based buffer overflow in Windows Kernel allows an authorized attacker to elevate privileges locally. Windows 10 21h2 10.0.19044.7291 / 10.0.19045.7291+ Fix from $1,9502026-05-12 HIGH 7.8 CVE-2026-33837 Heap-based buffer overflow in Windows TCP/IP allows an authorized attacker to elevate privileges locally. Windows 10 1607 10.0.14393.9140 / 10.0.17763.8755+ Fix from $1,9502026-05-12 HIGH 7.3 CVE-2026-32177 Heap-based buffer overflow in .NET allows an unauthorized attacker to elevate privileges locally. Visual Studio 2022 8.0.27 / 9.0.16+ Fix from $1,9502026-05-12 HIGH 8.4 CVE-2026-32221 Heap-based buffer overflow in Microsoft Graphics Component allows an unauthorized attacker to execute code locally. Windows 11 24h2 10.0.26100.8246 / 10.0.26100.32690+ Fix from $1,9502026-04-14 MEDIUM 6.8 CVE-2026-32223 Heap-based buffer overflow in Windows USB Print Driver allows an unauthorized attacker to elevate privileges with a physical attack. Windows 11 24h2 10.0.26100.8246 / 10.0.26100.32690+ Fix from $1,6002026-04-14 HIGH 7.3 CVE-2026-32149 Improper input validation in Windows Hyper-V allows an authorized attacker to execute code locally. Windows 10 1607 10.0.14393.9060 / 10.0.17763.8644+ Fix from $1,9502026-04-14 HIGH 7.0 CVE-2026-32093 Concurrent execution using shared resource with improper synchronization ('race condition') in Function Discovery Service (fdwsd.dll) allows an autho… Windows 10 1607 10.0.14393.9060 / 10.0.17763.8644+ Fix from $1,9502026-04-14 HIGH 7.0 CVE-2026-32087 Heap-based buffer overflow in Function Discovery Service (fdwsd.dll) allows an authorized attacker to elevate privileges locally. Windows 10 1607 10.0.14393.9060 / 10.0.17763.8644+ Fix from $1,9502026-04-14 HIGH 7.8 CVE-2026-26180 Heap-based buffer overflow in Windows Kernel allows an authorized attacker to elevate privileges locally. Windows 10 1607 10.0.14393.9060 / 10.0.17763.8644+ Fix from $1,9502026-04-14 HIGH 7.8 CVE-2026-26176 Heap-based buffer overflow in Windows Client Side Caching driver (csc.sys) allows an authorized attacker to elevate privileges locally. Windows 10 1607 10.0.14393.9060 / 10.0.17763.8644+ Fix from $1,9502026-04-14 HIGH 7.8 CVE-2026-26156 Heap-based buffer overflow in Windows Hyper-V allows an unauthorized attacker to execute code locally. Windows 10 1607 10.0.14393.9060 / 10.0.17763.8644+ Fix from $1,9502026-04-14 MEDIUM 6.1 CVE-2026-35199 SymCrypt is the core cryptographic function library currently used by Windows. From 103.5.0 to before 103.11.0, The SymCryptXmssSign function passes … Symcrypt 103.11.0+ Fix from $1,6002026-04-06