Vulnerability index

Browse CVEs

211 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Integer OverflowCWE-190 × clear
HIGH 7.8 CVE-2026-54115 Integer overflow or wraparound in Windows Active Directory allows an authorized attacker to elevate privileges locally. Windows 10 1607 10.0.14393.9339 / 10.0.17763.9020+ Fix from $1,9502026-07-14 HIGH 7.8 CVE-2026-50435 Buffer over-read in Windows Overlay Filter allows an authorized attacker to elevate privileges locally. Windows 10 1607 10.0.14393.9339 / 10.0.17763.9020+ Fix from $1,9502026-07-14 HIGH 7.8 CVE-2026-50347 Heap-based buffer overflow in Windows Data dll allows an unauthorized attacker to execute code locally. Windows 10 1607 10.0.14393.9339 / 10.0.17763.9020+ Fix from $1,9502026-07-14 HIGH 7.8 CVE-2026-50306 Use after free in Windows TCP/IP allows an authorized attacker to elevate privileges locally. Windows 10 1607 10.0.14393.9339 / 10.0.17763.9020+ Fix from $1,9502026-07-14 HIGH 7.8 CVE-2026-55012 Integer overflow or wraparound in Microsoft Defender allows an unauthorized attacker to execute code locally. Malware Protection Engine 1.1.26060.3008+ Fix from $1,9502026-07-14 HIGH 7.8 CVE-2026-54109 Integer overflow or wraparound in Windows Resilient File System (ReFS) allows an authorized attacker to execute code locally. Windows 10 1607 10.0.14393.9339 / 10.0.17763.9020+ Fix from $1,9502026-07-14 MEDIUM 6.8 CVE-2026-50298 Integer overflow or wraparound in Windows Spaceport.sys allows an unauthorized attacker to elevate privileges with a physical attack. Windows 10 1607 10.0.14393.9339 / 10.0.17763.9020+ Fix from $1,6002026-07-14 MEDIUM 6.8 CVE-2026-50299 Integer overflow or wraparound in Windows Storage Spaces Direct allows an unauthorized attacker to execute code with a physical attack. Windows 10 1607 10.0.14393.9339 / 10.0.17763.9020+ Fix from $1,6002026-07-14 HIGH 7.8 CVE-2026-49800 Integer overflow or wraparound in Windows Web Proxy Auto-Discovery Protocol (WPAD) allows an authorized attacker to elevate privileges locally. Windows 10 1809 10.0.17763.9020 / 10.0.19044.7548+ Fix from $1,9502026-07-14 MEDIUM 6.8 CVE-2026-49168 Integer overflow or wraparound in Windows Storage Spaces Direct allows an unauthorized attacker to elevate privileges with a physical attack. Windows 10 1607 10.0.14393.9339 / 10.0.17763.9020+ Fix from $1,6002026-07-14 HIGH 8.8 CVE-2026-57974 Integer overflow or wraparound in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network. Edge Chromium 150.0.4078.48+ Fix from $1,9502026-07-03 CRITICAL 9.8 CVE-2026-47291EPSS 23% Integer overflow or wraparound in Windows HTTP.sys allows an unauthorized attacker to execute code over a network. Windows 10 1607 10.0.14393.9234 / 10.0.17763.8880+ Fix from $2,3002026-06-09 HIGH 7.1 CVE-2026-47288 Integer overflow or wraparound in Windows Kerberos allows an authorized attacker to execute code over an adjacent network. Windows Server 2012 10.0.14393.9234 / 10.0.17763.8880+ Fix from $1,9502026-06-09 HIGH 7.8 CVE-2026-45592 Integer overflow or wraparound in Windows Internet (wininet.dll) allows an authorized attacker to elevate privileges locally. Windows 10 1607 10.0.14393.9234 / 10.0.17763.8880+ Fix from $1,9502026-06-09 HIGH 7.8 CVE-2026-45593 Use after free in Windows SDK allows an authorized attacker to elevate privileges locally. Windows 10 1809 10.0.17763.8880 / 10.0.19044.7417+ Fix from $1,9502026-06-09 HIGH 7.8 CVE-2026-44812 Integer overflow or wraparound in Windows Win32K - GRFX allows an unauthorized attacker to execute code locally. Excel 10.0.14393.9234 / 10.0.17763.8880+ Fix from $1,9502026-06-09 HIGH 7.8 CVE-2026-44803 Integer overflow or wraparound in Windows Win32K - GRFX allows an unauthorized attacker to execute code locally. Excel 10.0.14393.9234 / 10.0.17763.8880+ Fix from $1,9502026-06-09 HIGH 8.1 CVE-2026-42974 Integer overflow or wraparound in Windows Performance Monitor allows an unauthorized attacker to execute code over a network. Windows 11 23h2 10.0.20348.5256 / 10.0.22631.7219+ Fix from $1,9502026-06-09 HIGH 7.8 CVE-2026-42916 Integer overflow or wraparound in Windows NT OS Kernel allows an authorized attacker to elevate privileges locally. Windows 10 1607 10.0.14393.9234 / 10.0.17763.8880+ Fix from $1,9502026-06-09 HIGH 7.8 CVE-2026-42896 Integer overflow or wraparound in Windows DWM Core Library allows an authorized attacker to elevate privileges locally. Windows 11 24h2 10.0.26100.8457 / 10.0.26100.32860+ Fix from $1,9502026-05-12 HIGH 7.3 CVE-2026-35433 Improper input validation in .NET allows an unauthorized attacker to elevate privileges locally. .net Framework 8.0.27 / 9.0.16+ Fix from $1,9502026-05-12 HIGH 7.8 CVE-2026-35415 Integer overflow or wraparound in Windows Storage Spaces Controller allows an authorized attacker to elevate privileges locally. Windows 10 1607 10.0.14393.9140 / 10.0.17763.8755+ Fix from $1,9502026-05-12 HIGH 7.8 CVE-2026-34333 Use after free in Windows Win32K - GRFX allows an authorized attacker to elevate privileges locally. Windows 10 1607 10.0.14393.9140 / 10.0.17763.8755+ Fix from $1,9502026-05-12 HIGH 7.8 CVE-2026-34330 Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Win32K - GRFX allows an authorized attacker to… Windows 10 1607 10.0.14393.9140 / 10.0.17763.8755+ Fix from $1,9502026-05-12 HIGH 7.5 CVE-2026-32952 go-ntlmssp is a Go package that provides NTLM/Negotiate authentication over HTTP. Prior to version 0.1.1, a malicious NTLM challenge message can caus… Go Ntlmssp 0.1.1+ Fix from $1,9502026-04-24 HIGH 8.8 CVE-2026-26178 Integer size truncation in Windows Advanced Rasterization Platform (WARP) allows an unauthorized attacker to elevate privileges locally. Windows 10 1607 10.0.14393.9060 / 10.0.17763.8644+ Fix from $1,9502026-04-14 HIGH 7.8 CVE-2026-26134 Integer overflow or wraparound in Microsoft Office allows an authorized attacker to elevate privileges locally. 365 Copilot 16.0.19822.20000+ Fix from $1,9502026-03-10 HIGH 8.0 CVE-2026-26111 Integer overflow or wraparound in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to execute code over a network. Windows Server 2012 6.2.9200.25973 / 10.0.14393.8957+ Fix from $1,9502026-03-10 HIGH 8.0 CVE-2026-25172 Integer overflow or wraparound in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to execute code over a network. Windows Server 2012 10.0.14393.8957 / 10.0.17763.8511+ Fix from $1,9502026-03-10 HIGH 8.0 CVE-2026-25173 Integer overflow or wraparound in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to execute code over a network. Windows 10 1607 10.0.14393.8957 / 10.0.17763.8511+ Fix from $1,9502026-03-10