CVE-2025-26670
- EPSS 0.08%
- Published 08.04.2025 17:23:50
- Last modified 09.07.2025 14:12:36
Use after free in Windows LDAP - Lightweight Directory Access Protocol allows an unauthorized attacker to execute code over a network.
CVE-2025-26647
- EPSS 0.14%
- Published 08.04.2025 17:23:49
- Last modified 10.07.2025 15:57:36
Improper input validation in Windows Kerberos allows an unauthorized attacker to elevate privileges over a network.
CVE-2025-26651
- EPSS 18.02%
- Published 08.04.2025 17:23:49
- Last modified 10.07.2025 15:25:45
Exposed dangerous method or function in Windows Local Session Manager (LSM) allows an authorized attacker to deny service over a network.
- EPSS 0.03%
- Published 08.04.2025 17:23:48
- Last modified 10.07.2025 15:25:14
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Secure Channel allows an authorized attacker to elevate privileges locally.
CVE-2025-26644
- EPSS 0.03%
- Published 08.04.2025 17:23:47
- Last modified 10.07.2025 15:56:24
Automated recognition mechanism with inadequate detection or handling of adversarial input perturbations in Windows Hello allows an unauthorized attacker to perform spoofing locally.
CVE-2025-26648
- EPSS 0.05%
- Published 08.04.2025 17:23:47
- Last modified 10.07.2025 15:58:18
Sensitive data storage in improperly locked memory in Windows Kernel allows an authorized attacker to elevate privileges locally.
- EPSS 0.04%
- Published 08.04.2025 17:23:46
- Last modified 10.07.2025 15:55:18
Use after free in Windows Digital Media allows an authorized attacker to elevate privileges locally.
CVE-2025-26641
- EPSS 12.71%
- Published 08.04.2025 17:23:46
- Last modified 10.07.2025 15:55:55
Uncontrolled resource consumption in Windows Cryptographic Services allows an unauthorized attacker to deny service over a network.
CVE-2025-26637
- EPSS 0.09%
- Published 08.04.2025 17:23:44
- Last modified 03.07.2025 13:03:14
Protection mechanism failure in Windows BitLocker allows an unauthorized attacker to bypass a security feature with a physical attack.
CVE-2025-26639
- EPSS 0.09%
- Published 08.04.2025 17:23:43
- Last modified 03.07.2025 12:49:59
Integer overflow or wraparound in Windows USB Print Driver allows an authorized attacker to elevate privileges locally.