Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6649
Adobe 6383
Ibm 6266
Cisco 5746
Debian 3919
Apache 2864
Mozilla 2857
Redhat 2581
HIGH 7.8
CVE-2026-62812
Improper link resolution before file access ('link following') in Windows DHCP Server allows an authorized attacker to elevate privileges locally.
Windows 10 1607
No fix yet
HIGH 7.8
CVE-2026-62807
Improper link resolution before file access ('link following') in Windows DHCP Server allows an authorized attacker to elevate privileges locally.
Windows 10 1607
No fix yet
HIGH 7.5
CVE-2026-62787
Use after free in Windows DNS allows an authorized attacker to execute code over a network.
Windows 10 1607
No fix yet
HIGH 8.1
CVE-2026-62778
Use after free in Windows DNS allows an unauthorized attacker to elevate privileges over a network.
Windows 10 1607
No fix yet
HIGH 7.8
CVE-2026-62776
Improper link resolution before file access ('link following') in Windows DHCP Server allows an authorized attacker to elevate privileges locally.
Windows 10 1607
No fix yet
HIGH 7.8
CVE-2026-62768
Stack-based buffer overflow in Windows Installer allows an authorized attacker to elevate privileges locally.
Windows 10 1607
No fix yet
MEDIUM 6.7
CVE-2026-62769
Numeric truncation error in Windows DNS allows an authorized attacker to elevate privileges locally.
Windows 10 1607
No fix yet
HIGH 7.8
CVE-2026-62761
Improper link resolution before file access ('link following') in Windows DHCP Server allows an authorized attacker to elevate privileges locally.
Windows 10 1607
No fix yet
HIGH 7.0
CVE-2026-62748
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Telephony Service allows an authorized attacke…
Windows 10 1607
No fix yet
HIGH 7.8
CVE-2026-62732
Heap-based buffer overflow in Windows Telephony Service allows an authorized attacker to elevate privileges locally.
Windows 10 1607
No fix yet
HIGH 7.0
CVE-2026-62729
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Telephony Service allows an authorized attacke…
Windows 10 1607
No fix yet
HIGH 7.0
CVE-2026-62734
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Telephony Service allows an authorized attacke…
Windows 10 1607
No fix yet
HIGH 7.0
CVE-2026-62723
Use after free in Windows Telephony Service allows an authorized attacker to elevate privileges locally.
Windows 10 1607
No fix yet
HIGH 7.0
CVE-2026-62724
Use after free in Windows Telephony Service allows an authorized attacker to elevate privileges locally.
Windows 10 1607
No fix yet
HIGH 7.0
CVE-2026-62725
Use after free in Windows Telephony Service allows an authorized attacker to elevate privileges locally.
Windows 10 1607
No fix yet
HIGH 7.0
CVE-2026-62726
Use after free in Windows Telephony Service allows an authorized attacker to elevate privileges locally.
Windows 10 1607
No fix yet
HIGH 7.0
CVE-2026-61938
Use after free in Windows Installer allows an authorized attacker to elevate privileges locally.
Windows 11 24h2
No fix yet
HIGH 7.8
CVE-2026-61925
Incorrect authorization in Windows Installer allows an authorized attacker to elevate privileges locally.
Windows 10 1607
No fix yet
MEDIUM 6.6
CVE-2026-61920
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows DNS allows an authorized attacker to execute c…
Windows 10 1607
No fix yet
HIGH 7.8
CVE-2026-59127
Integer overflow or wraparound in Windows Installer allows an authorized attacker to elevate privileges locally.
Windows 10 1607
No fix yet
HIGH 8.8
CVE-2026-59113
Missing authorization in Visual Studio Code allows an unauthorized attacker to execute code over a network.
Visual Studio Code
No fix yet
HIGH 7.8
CVE-2026-58650
Authorization bypass through user-controlled key in Visual Studio Code allows an unauthorized attacker to bypass a security feature locally.
Visual Studio Code
No fix yet
HIGH 7.8
CVE-2026-58651
Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code locally.
365 Apps
No fix yet
HIGH 7.3
CVE-2026-59119
Incorrect default permissions in Microsoft PowerShell allows an authorized attacker to elevate privileges locally.
Powershell
No fix yet
CRITICAL 9.6
CVE-2026-57104
Improper neutralization of input during web page generation ('cross-site scripting') in Azure Storage Explorer allows an unauthorized attacker to ele…
Azure Storage Explorer
No fix yet
HIGH 7.5
CVE-2026-58612
Server-side request forgery (ssrf) in Microsoft PowerShell Core allows an unauthorized attacker to disclose information over a network.
Powershell
No fix yet
HIGH 7.8
CVE-2026-54981
Inclusion of functionality from untrusted control sphere in Visual Studio Code - Python extension allows an unauthorized attacker to bypass a securit…
Python
No fix yet
MEDIUM 5.5
CVE-2026-54123
Exposure of sensitive information to an unauthorized actor in Microsoft Defender for Endpoint allows an authorized attacker to disclose information l…
Defender For Endpoint
No fix yet
CRITICAL 9.4
CVE-2026-50516
Missing authentication for critical function in Microsoft Azure Kubernetes Service allows an unauthorized attacker to elevate privileges over a netwo…
Azure Kubernetes Service
No fix yet
MEDIUM 6.5
CVE-2026-47285
Improper neutralization of special elements used in a command ('command injection') in Visual Studio Code allows an unauthorized attacker to disclose…
Visual Studio Code
No fix yet