Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 7.8 CVE-2026-55014 Improper access control in Windows Remote Help Defense allows an authorized attacker to elevate privileges locally. Remote Help 5.2.1037.0+ Fix from $1,9502026-07-14 HIGH 7.8 CVE-2026-55899 Stack-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally. 365 Apps 16.0.10417.20175+ Fix from $1,9502026-07-14 HIGH 7.8 CVE-2026-55948 Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally. 365 Apps 16.0.10417.20175+ Fix from $1,9502026-07-14 HIGH 7.8 CVE-2026-56155 KEV Insufficient granularity of access control in Active Directory Federation Services (AD FS) allows an authorized attacker to elevate privileges locall… Windows 10 1607 10.0.14393.9339 / 10.0.17763.9020+ Fix from $1,9502026-07-14 HIGH 7.1 CVE-2026-55144 Missing cryptographic step in Windows CryptoAPI allows an authorized attacker to perform tampering locally. Windows 11 24h2 10.0.20348.5386 / 10.0.26100.8875+ Fix from $1,9502026-07-14 CRITICAL 9.6 CVE-2026-55008 Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Exchange Server allows an unauthorized attacker to … Exchange Server 15.02.2562.045+ Fix from $2,3002026-07-14 HIGH 8.8 CVE-2026-55002 External control of file name or path in SQL Server allows an authorized attacker to elevate privileges over a network. Sql Server 2016 13.0.6500.1 / 13.0.7095.1+ Fix from $1,9502026-07-14 HIGH 8.8 CVE-2026-55005 Heap-based buffer overflow in Microsoft Exchange Server allows an authorized attacker to execute code over a network. Exchange Server 15.02.2562.045+ Fix from $1,9502026-07-14 HIGH 7.8 CVE-2026-55004 Double free in Microsoft Printer Drivers allows an authorized attacker to elevate privileges locally. Windows 10 1607 10.0.14393.9339 / 10.0.17763.9020+ Fix from $1,9502026-07-14 HIGH 7.8 CVE-2026-55006 Insufficient granularity of access control in Microsoft Exchange Server allows an authorized attacker to elevate privileges locally. Exchange Server 15.02.2562.045+ Fix from $1,9502026-07-14 HIGH 7.8 CVE-2026-55009 Deserialization of untrusted data in Microsoft Exchange Server allows an authorized attacker to elevate privileges locally. Exchange Server 15.02.2562.045+ Fix from $1,9502026-07-14 HIGH 7.8 CVE-2026-55011 Integer underflow (wrap or wraparound) in Microsoft Defender allows an unauthorized attacker to execute code locally. Malware Protection Engine 1.1.26060.3008+ Fix from $1,9502026-07-14 MEDIUM 6.5 CVE-2026-55003 Use of uninitialized resource in Windows RDP allows an unauthorized attacker to disclose information over a network. Windows 10 1607 10.0.14393.9339 / 10.0.17763.9020+ Fix from $1,6002026-07-14 CRITICAL 9.8 CVE-2026-54995 Use after free in Reliable Multicast Transport Driver (RMCAST) allows an unauthorized attacker to execute code over a network. Windows 10 1607 10.0.14393.9339 / 10.0.17763.9020+ Fix from $2,3002026-07-14 HIGH 8.8 CVE-2026-54999 Concurrent execution using shared resource with improper synchronization ('race condition') in Windows TCP/IP allows an unauthorized attacker to exec… Windows 10 1607 10.0.14393.9339 / 10.0.17763.9020+ Fix from $1,9502026-07-14 HIGH 7.8 CVE-2026-54993 Heap-based buffer overflow in Microsoft Windows Media Foundation allows an unauthorized attacker to execute code locally. Windows 10 1809 10.0.17763.9020 / 10.0.19044.7548+ Fix from $1,9502026-07-14 HIGH 7.8 CVE-2026-55001 Improper certificate validation in Windows Active Directory allows an authorized attacker to elevate privileges locally. Windows 10 1607 10.0.14393.9339 / 10.0.17763.9020+ Fix from $1,9502026-07-14 HIGH 7.0 CVE-2026-54996 Concurrent execution using shared resource with improper synchronization ('race condition') in Windows USB Print Driver allows an authorized attacker… Windows 11 24h2 10.0.26100.8875 / 10.0.26100.33158+ Fix from $1,9502026-07-14 MEDIUM 6.4 CVE-2026-55000 Use after free in Windows USB Print Driver allows an unauthorized attacker to elevate privileges with a physical attack. Windows 11 24h2 10.0.26100.8875 / 10.0.26100.33158+ Fix from $1,6002026-07-14 MEDIUM 5.5 CVE-2026-54997 Use of uninitialized resource in Windows SMB allows an authorized attacker to disclose information locally. Windows 10 1607 10.0.14393.9339 / 10.0.17763.9020+ Fix from $1,6002026-07-14 HIGH 8.8 CVE-2026-54990 Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code over a network. Windows 11 24h2 10.0.26100.8875 / 10.0.26100.33158+ Fix from $1,9502026-07-14 HIGH 7.8 CVE-2026-54986 Heap-based buffer overflow in Windows Win32K allows an authorized attacker to elevate privileges locally. Windows 10 1607 10.0.14393.9339 / 10.0.17763.9020+ Fix from $1,9502026-07-14 HIGH 7.8 CVE-2026-54987 Heap-based buffer overflow in Windows Overlay Filter allows an authorized attacker to elevate privileges locally. Windows 10 1607 10.0.14393.9339 / 10.0.17763.9020+ Fix from $1,9502026-07-14 HIGH 7.8 CVE-2026-54989 Use after free in Quality Windows Audio/Video Experience (QWAVE) service allows an authorized attacker to elevate privileges locally. Windows 10 1607 10.0.14393.9339 / 10.0.17763.9020+ Fix from $1,9502026-07-14 HIGH 7.8 CVE-2026-54992 Heap-based buffer overflow in Windows Message Queuing Queue Manager allows an unauthorized attacker to execute code locally. Windows 10 1607 10.0.14393.9339 / 10.0.17763.9020+ Fix from $1,9502026-07-14 HIGH 7.0 CVE-2026-54991 Concurrent execution using shared resource with improper synchronization ('race condition') in Windows USB Print Driver allows an authorized attacker… Windows 11 24h2 10.0.26100.8875 / 10.0.26100.33158+ Fix from $1,9502026-07-14 MEDIUM 6.1 CVE-2026-54988 Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information locally. 365 Apps 16.0.10417.20175+ Fix from $1,6002026-07-14 HIGH 8.8 CVE-2026-54982 Integer underflow (wrap or wraparound) in Reliable Multicast Transport Driver (RMCAST) allows an unauthorized attacker to execute code over an adjace… Windows 10 1607 10.0.14393.9339 / 10.0.17763.9020+ Fix from $1,9502026-07-14 HIGH 7.8 CVE-2026-54129 Use after free in Windows Hyper-V allows an authorized attacker to elevate privileges locally. Windows 10 1809 10.0.17763.9020 / 10.0.19044.7548+ Fix from $1,9502026-07-14 HIGH 7.5 CVE-2026-54983 Stack-based buffer overflow in Active Directory Federation Services (AD FS) allows an unauthorized attacker to deny service over a network. Windows 10 1607 10.0.14393.9339 / 10.0.17763.9020+ Fix from $1,9502026-07-14