Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 7.0 CVE-2026-35418 Use after free in Windows Cloud Files Mini Filter Driver allows an authorized attacker to elevate privileges locally. Windows 10 1809 10.0.17763.8755 / 10.0.19044.7291+ Fix from $1,9502026-05-12 MEDIUM 6.5 CVE-2026-35422 Authentication bypass using an alternate path or channel in Windows TCP/IP allows an authorized attacker to bypass a security feature over a network. Windows 10 1607 10.0.14393.9140 / 10.0.17763.8755+ Fix from $1,6002026-05-12 MEDIUM 5.5 CVE-2026-35419 Out-of-bounds read in Windows DWM Core Library allows an authorized attacker to disclose information locally. Windows 11 24h2 10.0.26100.8390 / 10.0.26100.32772+ Fix from $1,6002026-05-12 HIGH 7.8 CVE-2026-35415 Integer overflow or wraparound in Windows Storage Spaces Controller allows an authorized attacker to elevate privileges locally. Windows 10 1607 10.0.14393.9140 / 10.0.17763.8755+ Fix from $1,9502026-05-12 HIGH 7.0 CVE-2026-35416 Access of resource using incompatible type ('type confusion') in Windows Ancillary Function Driver for WinSock allows an authorized attacker to eleva… Windows 10 1607 10.0.14393.9140 / 10.0.17763.8755+ Fix from $1,9502026-05-12 HIGH 7.8 CVE-2026-34344 Access of resource using incompatible type ('type confusion') in Windows Ancillary Function Driver for WinSock allows an authorized attacker to eleva… Windows 10 1607 10.0.14393.9140 / 10.0.17763.8755+ Fix from $1,9502026-05-12 HIGH 7.0 CVE-2026-34345 Access of resource using incompatible type ('type confusion') in Windows Ancillary Function Driver for WinSock allows an authorized attacker to eleva… Windows 10 1607 10.0.14393.9140 / 10.0.17763.8755+ Fix from $1,9502026-05-12 HIGH 7.0 CVE-2026-34347 Use after free in Windows Win32K - GRFX allows an authorized attacker to elevate privileges locally. Windows 10 1607 10.0.14393.9140 / 10.0.17763.8755+ Fix from $1,9502026-05-12 HIGH 7.0 CVE-2026-34351 Concurrent execution using shared resource with improper synchronization ('race condition') in Windows TCP/IP allows an authorized attacker to elevat… Windows 10 1607 10.0.14393.9140 / 10.0.17763.8755+ Fix from $1,9502026-05-12 MEDIUM 6.5 CVE-2026-34350 Null pointer dereference in Windows Storport Miniport Driver allows an unauthorized attacker to deny service over a network. Windows Server 2025 10.0.26100.32772+ Fix from $1,6002026-05-12 HIGH 7.8 CVE-2026-34343 Heap-based buffer overflow in Windows Application Identity (AppID) Subsystem allows an authorized attacker to elevate privileges locally. Windows 10 1607 10.0.14393.9140 / 10.0.17763.8755+ Fix from $1,9502026-05-12 HIGH 7.0 CVE-2026-34340 Use after free in Windows Projected File System allows an authorized attacker to elevate privileges locally. Windows 10 1809 10.0.17763.8755 / 10.0.19044.7291+ Fix from $1,9502026-05-12 HIGH 7.0 CVE-2026-34341 Double free in Windows Link-Layer Discovery Protocol (LLDP) allows an authorized attacker to elevate privileges locally. Windows 10 1607 10.0.14393.9140 / 10.0.17763.8755+ Fix from $1,9502026-05-12 HIGH 7.0 CVE-2026-34342 Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Print Spooler Components allows an authorized … Windows 10 1607 10.0.14393.9140 / 10.0.17763.8755+ Fix from $1,9502026-05-12 MEDIUM 5.5 CVE-2026-34339 Null pointer dereference in Windows LDAP - Lightweight Directory Access Protocol allows an authorized attacker to deny service locally. Windows 10 1607 10.0.14393.9140 / 10.0.17763.8755+ Fix from $1,6002026-05-12 HIGH 8.0 CVE-2026-34332 Use after free in Windows Kernel-Mode Drivers allows an authorized attacker to execute code over a network. Windows Server 2025 10.0.26100.32772+ Fix from $1,9502026-05-12 HIGH 7.8 CVE-2026-34333 Use after free in Windows Win32K - GRFX allows an authorized attacker to elevate privileges locally. Windows 10 1607 10.0.14393.9140 / 10.0.17763.8755+ Fix from $1,9502026-05-12 HIGH 7.8 CVE-2026-34336 Integer overflow or wraparound in Windows DWM Core Library allows an authorized attacker to elevate privileges locally. Windows 10 1607 10.0.14393.9140 / 10.0.17763.8755+ Fix from $1,9502026-05-12 HIGH 7.8 CVE-2026-34338 Use after free in Windows Telephony Service allows an authorized attacker to elevate privileges locally. Windows 10 1607 10.0.14393.9140 / 10.0.17763.8755+ Fix from $1,9502026-05-12 HIGH 7.0 CVE-2026-34334 Concurrent execution using shared resource with improper synchronization ('race condition') in Windows TCP/IP allows an authorized attacker to elevat… Windows 10 1607 10.0.14393.9140 / 10.0.17763.8755+ Fix from $1,9502026-05-12 HIGH 7.0 CVE-2026-34337 Use after free in Windows Cloud Files Mini Filter Driver allows an authorized attacker to elevate privileges locally. Windows 10 1809 10.0.17763.8755 / 10.0.19044.7291+ Fix from $1,9502026-05-12 HIGH 8.8 CVE-2026-34329 Heap-based buffer overflow in Windows Message Queuing allows an unauthorized attacker to execute code over an adjacent network. Windows 10 1607 10.0.14393.9140 / 10.0.17763.8755+ Fix from $1,9502026-05-12 HIGH 7.8 CVE-2026-33840 Use after free in Windows Win32K - ICOMP allows an authorized attacker to elevate privileges locally. Windows 11 24h2 10.0.26100.8390 / 10.0.26100.32772+ Fix from $1,9502026-05-12 HIGH 7.8 CVE-2026-33841 Heap-based buffer overflow in Windows Kernel allows an authorized attacker to elevate privileges locally. Windows 10 21h2 10.0.19044.7291 / 10.0.19045.7291+ Fix from $1,9502026-05-12 HIGH 7.8 CVE-2026-34330 Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Win32K - GRFX allows an authorized attacker to… Windows 10 1607 10.0.14393.9140 / 10.0.17763.8755+ Fix from $1,9502026-05-12 HIGH 7.0 CVE-2026-33839 Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Win32K - GRFX allows an authorized attacker to… Windows 10 1809 10.0.17763.8755 / 10.0.19044.7291+ Fix from $1,9502026-05-12 HIGH 7.0 CVE-2026-34331 Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Win32K - GRFX allows an authorized attacker to… Windows 10 1607 10.0.14393.9140 / 10.0.17763.8755+ Fix from $1,9502026-05-12 HIGH 8.2 CVE-2026-33833 Improper neutralization of special elements in output used by a downstream component ('injection') in Azure Machine Learning allows an unauthorized a… Azure Machine Learning Mitigation only Fix from $1,9502026-05-12 HIGH 7.8 CVE-2026-33834 Improper access control in Windows Event Logging Service allows an authorized attacker to elevate privileges locally. Windows 10 1607 10.0.14393.9140 / 10.0.17763.8755+ Fix from $1,9502026-05-12 HIGH 7.8 CVE-2026-33835 Use after free in Windows Cloud Files Mini Filter Driver allows an authorized attacker to elevate privileges locally. Windows 10 1809 10.0.17763.8755 / 10.0.19044.7291+ Fix from $1,9502026-05-12