Vulnerability index

Browse CVEs

422 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds ReadCWE-125 × clear
HIGH 7.8 CVE-2026-50377 Out-of-bounds read in Windows Kernel allows an authorized attacker to elevate privileges locally. Windows 10 1607 10.0.14393.9339 / 10.0.17763.9020+ Fix from $1,9502026-07-14 MEDIUM 5.5 CVE-2026-49177 Out-of-bounds read in Windows TCP/IP allows an authorized attacker to disclose information locally. Windows 10 1607 10.0.14393.9339 / 10.0.17763.9020+ Fix from $1,6002026-07-14 HIGH 7.8 CVE-2026-58609 Out-of-bounds read in Microsoft Graphics Component allows an unauthorized attacker to execute code locally. Windows 10 1607 10.0.14393.9339 / 10.0.17763.9020+ Fix from $1,9502026-07-14 MEDIUM 5.5 CVE-2026-58614 Out-of-bounds read in Windows Kernel allows an authorized attacker to bypass a security feature locally. Windows 10 1607 10.0.14393.9339 / 10.0.17763.9020+ Fix from $1,6002026-07-14 HIGH 7.5 CVE-2026-57979 Out-of-bounds read in Windows RDP allows an unauthorized attacker to disclose information over a network. Windows 10 1607 10.0.14393.9339 / 10.0.17763.9020+ Fix from $1,9502026-07-14 HIGH 7.0 CVE-2026-54996 Concurrent execution using shared resource with improper synchronization ('race condition') in Windows USB Print Driver allows an authorized attacker… Windows 11 24h2 10.0.26100.8875 / 10.0.26100.33158+ Fix from $1,9502026-07-14 HIGH 7.0 CVE-2026-54991 Concurrent execution using shared resource with improper synchronization ('race condition') in Windows USB Print Driver allows an authorized attacker… Windows 11 24h2 10.0.26100.8875 / 10.0.26100.33158+ Fix from $1,9502026-07-14 MEDIUM 6.1 CVE-2026-54988 Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information locally. 365 Apps 16.0.10417.20175+ Fix from $1,6002026-07-14 HIGH 7.0 CVE-2026-54111 Concurrent execution using shared resource with improper synchronization ('race condition') in Windows USB Print Driver allows an authorized attacker… Windows 11 24h2 10.0.26100.8875 / 10.0.26100.33158+ Fix from $1,9502026-07-14 MEDIUM 5.5 CVE-2026-50300 Integer underflow (wrap or wraparound) in Windows Kernel allows an authorized attacker to disclose information locally. Windows 10 1607 10.0.14393.9339 / 10.0.17763.9020+ Fix from $1,6002026-07-14 CRITICAL 9.1 CVE-2025-62821 Microsoft HEIF Image Extensions 1.2.22.0 has an out-of-bounds read because CHEIFItemInfoEntry_GetDataSize can return success while leaving the report… Heif Image Extension No fix yet Fix from $2,3002026-06-19 MEDIUM 5.5 CVE-2026-48566 Out-of-bounds read in Windows DWM Core Library allows an authorized attacker to elevate privileges locally. Windows 11 24h2 10.0.26100.8390 / 10.0.26100.32772+ Fix from $1,6002026-06-09 HIGH 7.8 CVE-2026-45641 Access of resource using incompatible type ('type confusion') in Windows Hyper-V allows an unauthorized attacker to execute code locally. Windows 10 21h2 10.0.19044.7417 / 10.0.19045.7417+ Fix from $1,9502026-06-09 HIGH 7.5 CVE-2026-45639 Out-of-bounds read in Windows RDP allows an unauthorized attacker to disclose information over a network. Remote Desktop Client 1.2.7214 / 2.0.1193.0+ Fix from $1,9502026-06-09 HIGH 7.8 CVE-2026-45607 Out-of-bounds read in Windows Hyper-V allows an unauthorized attacker to execute code locally. Windows 10 1607 10.0.14393.9234 / 10.0.17763.8880+ Fix from $1,9502026-06-09 MEDIUM 6.8 CVE-2026-45608 Out-of-bounds read in Windows DHCP Client allows an unauthorized attacker to disclose information locally. Windows 10 1607 10.0.14393.9234 / 10.0.17763.8880+ Fix from $1,6002026-06-09 MEDIUM 5.5 CVE-2026-45604 Out-of-bounds read in Windows Application Identity (AppID) Subsystem allows an authorized attacker to disclose information locally. Windows 11 23h2 10.0.22631.7219 / 10.0.26100.8655+ Fix from $1,6002026-06-09 MEDIUM 5.5 CVE-2026-45606 Out-of-bounds read in Microsoft UxTheme Library (uxtheme.dll) allows an authorized attacker to deny service locally. Windows 10 1607 10.0.14393.9234 / 10.0.17763.8880+ Fix from $1,6002026-06-09 MEDIUM 5.5 CVE-2026-45634 Out-of-bounds read in Windows DHCP Server allows an authorized attacker to disclose information locally. Windows 10 1607 10.0.14393.9234 / 10.0.17763.8880+ Fix from $1,6002026-06-09 HIGH 7.8 CVE-2026-45457 Out-of-bounds read in Microsoft Office Word allows an unauthorized attacker to execute code locally. 365 Apps Mitigation only Fix from $1,9502026-06-09 HIGH 8.2 CVE-2026-44822 Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information over a network. 365 Apps Mitigation only Fix from $1,9502026-06-09 HIGH 7.8 CVE-2026-44820 Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to execute code locally. 365 Apps Mitigation only Fix from $1,9502026-06-09 MEDIUM 5.5 CVE-2026-44821 Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally. 365 Apps 16.0.19725.20384+ Fix from $1,6002026-06-09 MEDIUM 5.5 CVE-2026-44814 Out-of-bounds read in Windows DWM Core Library allows an authorized attacker to disclose information locally. Windows 11 26h1 10.0.28000.2269+ Fix from $1,6002026-06-09 HIGH 7.8 CVE-2026-44808 Heap-based buffer overflow in Windows DWM Core Library allows an authorized attacker to elevate privileges locally. Windows 11 26h1 10.0.28000.2269+ Fix from $1,9502026-06-09 MEDIUM 5.5 CVE-2026-42968 Out-of-bounds read in Windows Telephony Service allows an authorized attacker to disclose information locally. Windows 10 1607 10.0.14393.9234 / 10.0.17763.8880+ Fix from $1,6002026-06-09 MEDIUM 5.3 CVE-2026-42914 Out-of-bounds read in Windows Kerberos allows an authorized attacker to deny service over a network. Windows 10 1607 10.0.14393.9234 / 10.0.17763.8880+ Fix from $1,6002026-06-09 HIGH 7.5 CVE-2026-42908 Out-of-bounds read in Windows RDP allows an unauthorized attacker to disclose information over a network. Windows App 2.0.1193.0 / 10.0.14393.9234+ Fix from $1,9502026-06-09 HIGH 7.8 CVE-2026-42837 Out-of-bounds read in Windows Projected File System Filter Driver allows an authorized attacker to elevate privileges locally. Windows 10 1809 10.0.17763.8880 / 10.0.19044.7417+ Fix from $1,9502026-06-09 MEDIUM 6.2 CVE-2026-40380 Heap-based buffer overflow in Volume Manager Extension Driver allows an authorized attacker to execute code with a physical attack. Windows 10 1607 10.0.14393.9140 / 10.0.17763.8755+ Fix from $1,6002026-05-12