CVE-2026-50688
- EPSS 1.72%
- Veröffentlicht 14.07.2026 17:08:19
- Zuletzt bearbeitet 16.07.2026 19:58:42
Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally.
CVE-2026-50679
- EPSS 0.31%
- Veröffentlicht 14.07.2026 17:08:18
- Zuletzt bearbeitet 22.07.2026 16:20:10
Heap-based buffer overflow in Microsoft Windows Search Component allows an authorized attacker to elevate privileges locally.
CVE-2026-50684
- EPSS 0.37%
- Veröffentlicht 14.07.2026 17:08:18
- Zuletzt bearbeitet 21.07.2026 19:55:23
Improper neutralization of input during web page generation ('cross-site scripting') in Active Directory Federation Services (AD FS) allows an authorized attacker to perform spoofing over a network.
CVE-2026-54115
- EPSS 0.31%
- Veröffentlicht 14.07.2026 17:08:17
- Zuletzt bearbeitet 21.07.2026 19:54:45
Integer overflow or wraparound in Windows Active Directory allows an authorized attacker to elevate privileges locally.
CVE-2026-50673
- EPSS 0.2%
- Veröffentlicht 14.07.2026 17:08:15
- Zuletzt bearbeitet 16.07.2026 19:59:23
Null pointer dereference in Windows Kernel allows an authorized attacker to elevate privileges locally.
CVE-2026-50674
- EPSS 0.26%
- Veröffentlicht 14.07.2026 17:08:15
- Zuletzt bearbeitet 22.07.2026 16:17:18
Use after free in Windows USB Print Driver allows an authorized attacker to elevate privileges locally.
CVE-2026-50670
- EPSS 0.24%
- Veröffentlicht 14.07.2026 17:08:14
- Zuletzt bearbeitet 16.07.2026 20:01:27
Out-of-bounds read in Windows Kernel allows an authorized attacker to elevate privileges locally.
- EPSS 0.15%
- Veröffentlicht 14.07.2026 17:08:14
- Zuletzt bearbeitet 22.07.2026 15:37:02
Use after free in Windows NTFS allows an authorized attacker to elevate privileges locally.
CVE-2026-50668
- EPSS 0.31%
- Veröffentlicht 14.07.2026 17:08:13
- Zuletzt bearbeitet 22.07.2026 15:03:36
Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to elevate privileges with a physical attack.
- EPSS 0.15%
- Veröffentlicht 14.07.2026 17:08:13
- Zuletzt bearbeitet 22.07.2026 15:26:44
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Telephony Service allows an authorized attacker to elevate privileges locally.