CVE-2026-50466
- EPSS 0.24%
- Veröffentlicht 14.07.2026 17:07:21
- Zuletzt bearbeitet 22.07.2026 16:18:00
Use after free in Windows Brokering File System allows an authorized attacker to elevate privileges locally.
CVE-2026-50451
- EPSS 0.22%
- Veröffentlicht 14.07.2026 17:07:20
- Zuletzt bearbeitet 22.07.2026 16:17:58
Missing authentication for critical function in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to elevate privileges locally.
CVE-2026-50455
- EPSS 0.3%
- Veröffentlicht 14.07.2026 17:07:20
- Zuletzt bearbeitet 22.07.2026 16:17:59
Use of uninitialized resource in Universal Plug and Play (upnp.dll) allows an authorized attacker to disclose information locally.
CVE-2026-50367
- EPSS 0.24%
- Veröffentlicht 14.07.2026 17:07:19
- Zuletzt bearbeitet 22.07.2026 16:17:46
Incorrect access of indexable resource ('range error') in Windows Sensor Data Service allows an authorized attacker to elevate privileges locally.
CVE-2026-50383
- EPSS 0.3%
- Veröffentlicht 14.07.2026 17:07:19
- Zuletzt bearbeitet 22.07.2026 16:17:48
Buffer over-read in Windows Print Spooler Components allows an authorized attacker to disclose information locally.
CVE-2026-50374
- EPSS 0.32%
- Veröffentlicht 14.07.2026 17:07:18
- Zuletzt bearbeitet 20.07.2026 14:41:16
Use after free in Windows Cloud Files Mini Filter Driver allows an authorized attacker to elevate privileges with a physical attack.
CVE-2026-50421
- EPSS 0.31%
- Veröffentlicht 14.07.2026 17:07:17
- Zuletzt bearbeitet 23.07.2026 05:16:34
Access of resource using incompatible type ('type confusion') in Windows Connected User Experiences and Telemetry allows an authorized attacker to elevate privileges locally.
CVE-2026-50422
- EPSS 0.31%
- Veröffentlicht 14.07.2026 17:07:17
- Zuletzt bearbeitet 20.07.2026 17:33:53
Out-of-bounds read in Windows NTFS allows an authorized attacker to elevate privileges locally.
CVE-2026-50413
- EPSS 0.25%
- Veröffentlicht 14.07.2026 17:07:16
- Zuletzt bearbeitet 22.07.2026 16:17:53
Use after free in Windows Runtime allows an authorized attacker to elevate privileges locally.
CVE-2026-50427
- EPSS 0.18%
- Veröffentlicht 14.07.2026 17:07:16
- Zuletzt bearbeitet 23.07.2026 05:16:35
Use after free in Content Delivery Manager allows an authorized attacker to elevate privileges locally.