Vulnerability index

Browse CVEs

3,135 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Windows 10 1607 HIGH 7.8
CVE-2026-62812

Improper link resolution before file access ('link following') in Windows DHCP Server allows an authorized attacker to elevate privileges locally.

No fix yet
Fix from $4,900 2026-08-11
Windows 10 1607 HIGH 7.8
CVE-2026-62807

Improper link resolution before file access ('link following') in Windows DHCP Server allows an authorized attacker to elevate privileges locally.

No fix yet
Fix from $4,900 2026-08-11
Windows 10 1607 HIGH 7.5
CVE-2026-62787

Use after free in Windows DNS allows an authorized attacker to execute code over a network.

No fix yet
Fix from $4,900 2026-08-11
Windows 10 1607 HIGH 8.1
CVE-2026-62778

Use after free in Windows DNS allows an unauthorized attacker to elevate privileges over a network.

No fix yet
Fix from $4,900 2026-08-11
Windows 10 1607 HIGH 7.8
CVE-2026-62776

Improper link resolution before file access ('link following') in Windows DHCP Server allows an authorized attacker to elevate privileges locally.

No fix yet
Fix from $4,900 2026-08-11
Windows 10 1607 HIGH 7.8
CVE-2026-62768

Stack-based buffer overflow in Windows Installer allows an authorized attacker to elevate privileges locally.

No fix yet
Fix from $4,900 2026-08-11
Windows 10 1607 MEDIUM 6.7
CVE-2026-62769

Numeric truncation error in Windows DNS allows an authorized attacker to elevate privileges locally.

No fix yet
Fix from $4,000 2026-08-11
Windows 10 1607 HIGH 7.8
CVE-2026-62761

Improper link resolution before file access ('link following') in Windows DHCP Server allows an authorized attacker to elevate privileges locally.

No fix yet
Fix from $4,900 2026-08-11
Windows 10 1607 HIGH 7.0
CVE-2026-62748

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Telephony Service allows an authorized attacke…

No fix yet
Fix from $4,900 2026-08-11
Windows 10 1607 HIGH 7.8
CVE-2026-62732

Heap-based buffer overflow in Windows Telephony Service allows an authorized attacker to elevate privileges locally.

No fix yet
Fix from $4,900 2026-08-11
Windows 10 1607 HIGH 7.0
CVE-2026-62729

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Telephony Service allows an authorized attacke…

No fix yet
Fix from $4,900 2026-08-11
Windows 10 1607 HIGH 7.0
CVE-2026-62734

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Telephony Service allows an authorized attacke…

No fix yet
Fix from $4,900 2026-08-11
Windows 10 1607 HIGH 7.0
CVE-2026-62723

Use after free in Windows Telephony Service allows an authorized attacker to elevate privileges locally.

No fix yet
Fix from $4,900 2026-08-11
Windows 10 1607 HIGH 7.0
CVE-2026-62724

Use after free in Windows Telephony Service allows an authorized attacker to elevate privileges locally.

No fix yet
Fix from $4,900 2026-08-11
Windows 10 1607 HIGH 7.0
CVE-2026-62725

Use after free in Windows Telephony Service allows an authorized attacker to elevate privileges locally.

No fix yet
Fix from $4,900 2026-08-11
Windows 10 1607 HIGH 7.0
CVE-2026-62726

Use after free in Windows Telephony Service allows an authorized attacker to elevate privileges locally.

No fix yet
Fix from $4,900 2026-08-11
Windows 11 24h2 HIGH 7.0
CVE-2026-61938

Use after free in Windows Installer allows an authorized attacker to elevate privileges locally.

No fix yet
Fix from $4,900 2026-08-11
Windows 10 1607 HIGH 7.8
CVE-2026-61925

Incorrect authorization in Windows Installer allows an authorized attacker to elevate privileges locally.

No fix yet
Fix from $4,900 2026-08-11
Windows 10 1607 MEDIUM 6.6
CVE-2026-61920

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows DNS allows an authorized attacker to execute c…

No fix yet
Fix from $4,000 2026-08-11
Windows 10 1607 HIGH 7.8
CVE-2026-59127

Integer overflow or wraparound in Windows Installer allows an authorized attacker to elevate privileges locally.

No fix yet
Fix from $4,900 2026-08-11
Visual Studio Code HIGH 8.8
CVE-2026-59113

Missing authorization in Visual Studio Code allows an unauthorized attacker to execute code over a network.

No fix yet
Fix from $4,900 2026-08-11
Visual Studio Code HIGH 7.8
CVE-2026-58650

Authorization bypass through user-controlled key in Visual Studio Code allows an unauthorized attacker to bypass a security feature locally.

No fix yet
Fix from $4,900 2026-08-11
365 Apps HIGH 7.8
CVE-2026-58651

Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code locally.

No fix yet
Fix from $4,900 2026-08-11
Powershell HIGH 7.3
CVE-2026-59119

Incorrect default permissions in Microsoft PowerShell allows an authorized attacker to elevate privileges locally.

No fix yet
Fix from $4,900 2026-08-11
Azure Storage Explorer CRITICAL 9.6
CVE-2026-57104

Improper neutralization of input during web page generation ('cross-site scripting') in Azure Storage Explorer allows an unauthorized attacker to ele…

No fix yet
Fix from $5,750 2026-08-11
Powershell HIGH 7.5
CVE-2026-58612

Server-side request forgery (ssrf) in Microsoft PowerShell Core allows an unauthorized attacker to disclose information over a network.

No fix yet
Fix from $4,900 2026-08-11
Python HIGH 7.8
CVE-2026-54981

Inclusion of functionality from untrusted control sphere in Visual Studio Code - Python extension allows an unauthorized attacker to bypass a securit…

No fix yet
Fix from $4,900 2026-08-11
Defender For Endpoint MEDIUM 5.5
CVE-2026-54123

Exposure of sensitive information to an unauthorized actor in Microsoft Defender for Endpoint allows an authorized attacker to disclose information l…

No fix yet
Fix from $4,000 2026-08-11
Azure Kubernetes Service CRITICAL 9.4
CVE-2026-50516

Missing authentication for critical function in Microsoft Azure Kubernetes Service allows an unauthorized attacker to elevate privileges over a netwo…

No fix yet
Fix from $5,750 2026-08-11
Visual Studio Code MEDIUM 6.5
CVE-2026-47285

Improper neutralization of special elements used in a command ('command injection') in Visual Studio Code allows an unauthorized attacker to disclose…

No fix yet
Fix from $4,000 2026-08-11