Vulnerability index

Browse CVEs

872 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Use After FreeCWE-416 × clear
HIGH 8.8 CVE-2026-49795 Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally. Windows 10 1809 10.0.17763.9020 / 10.0.19044.7548+ Fix from $1,9502026-07-14 HIGH 7.0 CVE-2026-49183 Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Clipboard Server allows an authorized attacker… Windows 10 1809 10.0.17763.9020 / 10.0.19044.7548+ Fix from $1,9502026-07-14 HIGH 7.0 CVE-2026-49784 Concurrent execution using shared resource with improper synchronization ('race condition') in Microsoft Windows App Store allows an authorized attac… Windows 10 1607 10.0.14393.9339 / 10.0.17763.9020+ Fix from $1,9502026-07-14 HIGH 7.8 CVE-2026-49171 Use after free in Microsoft Windows Speech allows an authorized attacker to elevate privileges locally. Windows 10 1607 10.0.14393.9339 / 10.0.17763.9020+ Fix from $1,9502026-07-14 HIGH 7.8 CVE-2026-49173 Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally. Windows 11 26h1 10.0.28000.2269 / 10.0.28000.2525+ Fix from $1,9502026-07-14 HIGH 8.8 CVE-2026-49169 Use after free in DNS Server allows an authorized attacker to execute code over a network. Windows Server 2025 10.0.26100.33158+ Fix from $1,9502026-07-14 HIGH 7.8 CVE-2026-49166 Use after free in Microsoft Printer Drivers allows an authorized attacker to elevate privileges locally. Windows 11 24h2 10.0.26100.8875 / 10.0.26100.33158+ Fix from $1,9502026-07-14 HIGH 7.8 CVE-2026-49167 Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally. Windows 10 1809 10.0.17763.9020 / 10.0.19044.7548+ Fix from $1,9502026-07-14 HIGH 7.0 CVE-2026-48571 Use after free in Windows App Installer allows an authorized attacker to elevate privileges locally. Windows 11 23h2 10.0.22631.7376 / 10.0.26100.8875+ Fix from $1,9502026-07-14 HIGH 7.0 CVE-2026-48572 Concurrent execution using shared resource with improper synchronization ('race condition') in Windows App Installer allows an authorized attacker to… Windows 11 23h2 10.0.22631.7376 / 10.0.26100.8875+ Fix from $1,9502026-07-14 HIGH 7.0 CVE-2026-49162 Use after free in Microsoft Brokering File System allows an authorized attacker to elevate privileges locally. Windows 11 24h2 10.0.26100.8875 / 10.0.26100.33158+ Fix from $1,9502026-07-14 HIGH 7.8 CVE-2026-44800 Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Push Notifications allows an authorized attack… Windows 11 23h2 10.0.22631.7376 / 10.0.26100.8875+ Fix from $1,9502026-07-14 HIGH 8.1 CVE-2026-42900 Concurrent execution using shared resource with improper synchronization ('race condition') in Windows App Store allows an unauthorized attacker to e… Windows 10 1607 10.0.14393.9339 / 10.0.17763.9020+ Fix from $1,9502026-07-14 HIGH 7.5 CVE-2026-58294 Use after free in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network. Edge Chromium 150.0.4078.48+ Fix from $1,9502026-07-03 HIGH 8.3 CVE-2026-58287 Use after free in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network. Edge Chromium 150.0.4078.48+ Fix from $1,9502026-07-03 HIGH 8.3 CVE-2026-58288 Use after free in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network. Edge Chromium 150.0.4078.48+ Fix from $1,9502026-07-03 HIGH 7.5 CVE-2026-57992 Use after free in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network. Edge Chromium 150.0.4078.48+ Fix from $1,9502026-07-03 HIGH 7.5 CVE-2026-58276 Use after free in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network. Edge Chromium 150.0.4078.48+ Fix from $1,9502026-07-03 HIGH 8.8 CVE-2026-57981 Use after free in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network. Edge Chromium 150.0.4078.48+ Fix from $1,9502026-07-03 HIGH 7.5 CVE-2026-57984 Use after free in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network. Edge Chromium 150.0.4078.48+ Fix from $1,9502026-07-03 HIGH 7.5 CVE-2026-57986 Use after free in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network. Edge Chromium 150.0.4078.48+ Fix from $1,9502026-07-03 HIGH 8.3 CVE-2026-50521 Use after free in Microsoft Edge (Chromium-based) allows an authorized attacker to execute code over a network. Edge Chromium 149.0.4022.67+ Fix from $1,9502026-07-01 HIGH 7.8 CVE-2026-48583 Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally. Windows 10 1607 10.0.14393.9234 / 10.0.17763.8880+ Fix from $1,9502026-06-09 HIGH 7.5 CVE-2026-48563 Use after free in Remote Desktop Client allows an unauthorized attacker to execute code over a network. Windows 10 1809 10.0.17763.8880 / 10.0.19044.7417+ Fix from $1,9502026-06-09 HIGH 8.8 CVE-2026-47653 Use after free in Remote Desktop Client allows an unauthorized attacker to execute code over a network. Windows 10 1607 10.0.14393.9234 / 10.0.17763.8880+ Fix from $1,9502026-06-09 HIGH 7.5 CVE-2026-47654 Use after free in Remote Desktop Client allows an unauthorized attacker to execute code over a network. Windows Server 2016 10.0.14393.9234 / 10.0.17763.8880+ Fix from $1,9502026-06-09 HIGH 7.0 CVE-2026-47293 Use after free in Microsoft Office Click-To-Run allows an authorized attacker to elevate privileges locally. 365 Apps Mitigation only Fix from $1,9502026-06-09 CRITICAL 9.8 CVE-2026-45657EPSS 15% Use after free in Windows Kernel allows an unauthorized attacker to execute code over a network. Windows 11 23h2 10.0.20348.5256 / 10.0.22631.7219+ Fix from $2,3002026-06-09 HIGH 7.0 CVE-2026-45653 Heap-based buffer overflow in Windows Kernel allows an authorized attacker to elevate privileges locally. Windows 10 1607 10.0.14393.9234 / 10.0.17763.8880+ Fix from $1,9502026-06-09 HIGH 8.1 CVE-2026-45635 Access of resource using incompatible type ('type confusion') in Universal Plug and Play (upnp.dll) allows an unauthorized attacker to execute code o… Windows 10 1607 10.0.14393.9234 / 10.0.17763.8880+ Fix from $1,9502026-06-09