CVE-2025-26687
- EPSS 0.05%
- Published 08.04.2025 17:23:13
- Last modified 09.07.2025 16:44:36
Use after free in Windows Win32K - GRFX allows an unauthorized attacker to elevate privileges over a network.
CVE-2025-26686
- EPSS 0.09%
- Published 08.04.2025 17:23:12
- Last modified 09.07.2025 16:32:05
Sensitive data storage in improperly locked memory in Windows TCP/IP allows an unauthorized attacker to execute code over a network.
CVE-2025-26681
- EPSS 0.06%
- Published 08.04.2025 17:23:10
- Last modified 09.07.2025 16:33:19
Use after free in Windows Win32K - GRFX allows an authorized attacker to elevate privileges locally.
CVE-2025-26668
- EPSS 0.05%
- Published 08.04.2025 17:23:09
- Last modified 09.07.2025 14:14:33
Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code over a network.
CVE-2025-26669
- EPSS 0.07%
- Published 08.04.2025 17:23:08
- Last modified 09.07.2025 14:14:09
Out-of-bounds read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to disclose information over a network.
CVE-2025-26666
- EPSS 0.08%
- Published 08.04.2025 17:23:07
- Last modified 09.07.2025 16:38:18
Heap-based buffer overflow in Windows Media allows an authorized attacker to execute code locally.
- EPSS 0.03%
- Published 08.04.2025 17:23:06
- Last modified 09.07.2025 16:38:34
Sensitive data storage in improperly locked memory in Windows upnphost.dll allows an authorized attacker to elevate privileges locally.
CVE-2025-26663
- EPSS 0.08%
- Published 08.04.2025 17:23:04
- Last modified 10.07.2025 15:38:00
Use after free in Windows LDAP - Lightweight Directory Access Protocol allows an unauthorized attacker to execute code over a network.
CVE-2025-26645
- EPSS 0.45%
- Published 11.03.2025 16:59:25
- Last modified 07.07.2025 18:47:48
Relative path traversal in Remote Desktop Client allows an unauthorized attacker to execute code over a network.
- EPSS 4.92%
- Published 11.03.2025 16:59:24
- Last modified 17.04.2025 18:29:29
Improper neutralization in Microsoft Management Console allows an unauthorized attacker to bypass a security feature locally.