CVE-2026-49180
- EPSS 0.33%
- Veröffentlicht 14.07.2026 17:05:48
- Zuletzt bearbeitet 22.07.2026 16:17:29
Improper link resolution before file access ('link following') in Universal Plug and Play (upnp.dll) allows an authorized attacker to disclose information locally.
CVE-2026-49178
- EPSS 0.62%
- Veröffentlicht 14.07.2026 17:05:47
- Zuletzt bearbeitet 22.07.2026 16:17:29
Heap-based buffer overflow in Active Directory Domain Services allows an authorized attacker to execute code over a network.
CVE-2026-44800
- EPSS 0.15%
- Veröffentlicht 14.07.2026 17:05:45
- Zuletzt bearbeitet 22.07.2026 16:17:22
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Push Notifications allows an authorized attacker to elevate privileges locally.
CVE-2026-40378
- EPSS 0.82%
- Veröffentlicht 14.07.2026 17:05:44
- Zuletzt bearbeitet 22.07.2026 16:17:18
Memory allocation with excessive size value in Windows Local Security Authority Subsystem Service (LSASS) allows an unauthorized attacker to deny service over a network.
CVE-2026-34348
- EPSS 0.91%
- Veröffentlicht 14.07.2026 17:05:43
- Zuletzt bearbeitet 22.07.2026 16:17:17
Protection mechanism failure in Windows Event Logging Service allows an authorized attacker to disclose information over a network.
CVE-2026-44806
- EPSS 0.82%
- Veröffentlicht 14.07.2026 17:05:43
- Zuletzt bearbeitet 22.07.2026 16:17:22
Missing release of memory after effective lifetime in Windows Cryptographic Services allows an unauthorized attacker to deny service over a network.
- EPSS 0.7%
- Veröffentlicht 14.07.2026 17:05:42
- Zuletzt bearbeitet 22.07.2026 16:17:18
Relative path traversal in Windows PowerShell allows an authorized attacker to execute code over a network.
CVE-2026-40422
- EPSS 0.3%
- Veröffentlicht 14.07.2026 17:05:41
- Zuletzt bearbeitet 22.07.2026 16:17:19
Use of uninitialized resource in Windows File Explorer allows an authorized attacker to disclose information locally.
CVE-2026-41087
- EPSS 0.35%
- Veröffentlicht 14.07.2026 17:05:41
- Zuletzt bearbeitet 22.07.2026 16:17:19
Exposure of sensitive information to an unauthorized actor in Windows File Explorer allows an authorized attacker to disclose information locally.
CVE-2026-33842
- EPSS 0.35%
- Veröffentlicht 14.07.2026 17:05:40
- Zuletzt bearbeitet 22.07.2026 16:17:17
Exposure of sensitive information to an unauthorized actor in Windows File Explorer allows an authorized attacker to disclose information locally.