CVE-2026-50385
- EPSS 0.18%
- Veröffentlicht 14.07.2026 17:07:15
- Zuletzt bearbeitet 22.07.2026 16:17:49
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Runtime allows an authorized attacker to elevate privileges locally.
- EPSS 0.46%
- Veröffentlicht 14.07.2026 17:07:14
- Zuletzt bearbeitet 23.07.2026 05:16:34
Improper authentication in Windows RPC API allows an unauthorized attacker to elevate privileges over an adjacent network.
CVE-2026-50454
- EPSS 0.44%
- Veröffentlicht 14.07.2026 17:07:13
- Zuletzt bearbeitet 29.07.2026 20:17:04
Relative path traversal in Windows User Interface Core allows an authorized attacker to elevate privileges locally.
CVE-2026-50469
- EPSS 0.27%
- Veröffentlicht 14.07.2026 17:07:13
- Zuletzt bearbeitet 22.07.2026 16:18:00
Improper link resolution before file access ('link following') in Windows Projected File System allows an authorized attacker to elevate privileges locally.
CVE-2026-50369
- EPSS 0.68%
- Veröffentlicht 14.07.2026 17:07:12
- Zuletzt bearbeitet 22.07.2026 16:17:46
Use after free in Windows Remote Desktop Services allows an authorized attacker to elevate privileges over a network.
CVE-2026-50471
- EPSS 0.3%
- Veröffentlicht 14.07.2026 17:07:12
- Zuletzt bearbeitet 22.07.2026 16:18:01
Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to execute code locally.
CVE-2026-50436
- EPSS 1.78%
- Veröffentlicht 14.07.2026 17:07:11
- Zuletzt bearbeitet 22.07.2026 16:17:56
Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally.
CVE-2026-50437
- EPSS 0.3%
- Veröffentlicht 14.07.2026 17:07:11
- Zuletzt bearbeitet 22.07.2026 16:17:56
Out-of-bounds read in Windows DWM Core Library allows an authorized attacker to disclose information locally.
CVE-2026-50352
- EPSS 0.46%
- Veröffentlicht 14.07.2026 17:07:10
- Zuletzt bearbeitet 22.07.2026 16:17:44
Exposure of sensitive information to an unauthorized actor in Windows Cryptographic Services allows an authorized attacker to disclose information locally.
CVE-2026-50382
- EPSS 0.27%
- Veröffentlicht 14.07.2026 17:07:10
- Zuletzt bearbeitet 22.07.2026 16:17:48
Untrusted pointer dereference in Windows DirectX allows an authorized attacker to execute code locally.