CVE-2026-54125
- EPSS 0.18%
- Veröffentlicht 14.07.2026 17:08:24
- Zuletzt bearbeitet 21.07.2026 19:56:17
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Runtime allows an authorized attacker to elevate privileges locally.
CVE-2026-50686
- EPSS 0.66%
- Veröffentlicht 14.07.2026 17:08:23
- Zuletzt bearbeitet 23.07.2026 05:16:36
Access of resource using incompatible type ('type confusion') in Windows OLE allows an unauthorized attacker to execute code over a network.
- EPSS 0.49%
- Veröffentlicht 14.07.2026 17:08:22
- Zuletzt bearbeitet 21.07.2026 19:55:26
Heap-based buffer overflow in Windows DHCP Server allows an authorized attacker to elevate privileges over an adjacent network.
CVE-2026-50685
- EPSS 0.62%
- Veröffentlicht 14.07.2026 17:08:21
- Zuletzt bearbeitet 21.07.2026 19:55:20
Double free in Windows DHCP Server allows an authorized attacker to execute code over a network.
CVE-2026-50681
- EPSS 0.46%
- Veröffentlicht 14.07.2026 17:08:20
- Zuletzt bearbeitet 22.07.2026 16:18:10
Exposure of sensitive information to an unauthorized actor in Windows Cryptographic Services allows an authorized attacker to disclose information locally.
- EPSS 1.05%
- Veröffentlicht 14.07.2026 17:08:20
- Zuletzt bearbeitet 21.07.2026 19:54:33
Improper authorization in Active Directory Certificate Services (AD CS) allows an authorized attacker to elevate privileges over a network.
CVE-2026-50680
- EPSS 0.34%
- Veröffentlicht 14.07.2026 17:08:19
- Zuletzt bearbeitet 22.07.2026 16:18:10
Heap-based buffer overflow in Windows Hyper-V allows an authorized attacker to elevate privileges locally.
CVE-2026-50688
- EPSS 1.72%
- Veröffentlicht 14.07.2026 17:08:19
- Zuletzt bearbeitet 16.07.2026 19:58:42
Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally.
CVE-2026-50684
- EPSS 0.37%
- Veröffentlicht 14.07.2026 17:08:18
- Zuletzt bearbeitet 21.07.2026 19:55:23
Improper neutralization of input during web page generation ('cross-site scripting') in Active Directory Federation Services (AD FS) allows an authorized attacker to perform spoofing over a network.
CVE-2026-54115
- EPSS 0.31%
- Veröffentlicht 14.07.2026 17:08:17
- Zuletzt bearbeitet 21.07.2026 19:54:45
Integer overflow or wraparound in Windows Active Directory allows an authorized attacker to elevate privileges locally.