CVE-2026-42979
- EPSS 0.19%
- Veröffentlicht 09.06.2026 17:17:13
- Zuletzt bearbeitet 23.07.2026 08:10:00
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Push Notifications allows an authorized attacker to elevate privileges locally.
CVE-2026-42968
- EPSS 0.39%
- Veröffentlicht 09.06.2026 17:17:12
- Zuletzt bearbeitet 23.07.2026 08:10:00
Out-of-bounds read in Windows Telephony Service allows an authorized attacker to disclose information locally.
CVE-2026-42972
- EPSS 0.46%
- Veröffentlicht 09.06.2026 17:17:12
- Zuletzt bearbeitet 23.07.2026 08:10:00
Exposure of sensitive information to an unauthorized actor in Windows Hyper-V allows an authorized attacker to disclose information locally.
- EPSS 0.23%
- Veröffentlicht 09.06.2026 17:17:11
- Zuletzt bearbeitet 23.07.2026 08:10:00
Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.
- EPSS 0.21%
- Veröffentlicht 09.06.2026 17:17:11
- Zuletzt bearbeitet 23.07.2026 08:10:00
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Telephony Service allows an authorized attacker to elevate privileges locally.
CVE-2026-42914
- EPSS 0.79%
- Veröffentlicht 09.06.2026 17:17:11
- Zuletzt bearbeitet 23.07.2026 08:10:00
Out-of-bounds read in Windows Kerberos allows an authorized attacker to deny service over a network.
CVE-2026-42916
- EPSS 0.33%
- Veröffentlicht 09.06.2026 17:17:11
- Zuletzt bearbeitet 23.07.2026 08:10:00
Integer overflow or wraparound in Windows NT OS Kernel allows an authorized attacker to elevate privileges locally.
CVE-2026-42905
- EPSS 2%
- Veröffentlicht 09.06.2026 17:17:10
- Zuletzt bearbeitet 23.07.2026 08:10:00
Use after free in Windows DWM Core Library allows an authorized attacker to elevate privileges locally.
CVE-2026-42906
- EPSS 0.4%
- Veröffentlicht 09.06.2026 17:17:10
- Zuletzt bearbeitet 23.07.2026 08:10:00
Exposure of sensitive information to an unauthorized actor in Windows Shell allows an authorized attacker to disclose information locally.
CVE-2026-42907
- EPSS 0.82%
- Veröffentlicht 09.06.2026 17:17:10
- Zuletzt bearbeitet 23.07.2026 08:10:00
Exposure of sensitive information to an unauthorized actor in Windows Shell allows an authorized attacker to disclose information over a network.