Security Box Score — September 8, 2026 — page 2
Edition of September 8, 2026, continued — page 2 of 3. Back to page 1 · page 3
| CVE | CVSS | EPSS %ile | Vendor | Product | CWE | Title |
|---|---|---|---|---|---|---|
| CVE-2026-72936 | 8.1 | — | Microsoft | Windows 11 version 23H2 | CWE-416 | Windows SMB Client Remote Code Execution Vulnerability |
| CVE-2026-72981 | 8.1 | — | Microsoft | Windows 10 Version 1607 | CWE-416 | IP Helper Remote Code Execution Vulnerability |
| CVE-2026-72987 | 8.1 | — | Microsoft | Windows 10 Version 1607 | CWE-416 | Windows DNS Remote Code Execution Vulnerability |
| CVE-2026-75021 | 8.1 | — | fastify-cli | fastify-cli | CWE-1327 | fastify-cli vulnerable to remote code execution via ignored explicit Inspecto… |
| CVE-2026-77505 | 8.1 | — | Microsoft | Windows 10 Version 1607 | CWE-416 | Windows DNS Server Remote Code Execution Vulnerability |
| CVE-2026-78444 | 8.1 | — | Microsoft | Windows 10 Version 1809 | CWE-822 | Microsoft Failover Cluster Remote Code Execution Vulnerability |
| CVE-2026-78449 | 8.1 | — | Microsoft | Windows 10 Version 1607 | CWE-416 | Windows Reliable Multicast Transport Driver (RMCAST) Remote Code Execution Vu… |
| CVE-2026-78450 | 8.1 | — | Microsoft | Windows 10 Version 1809 | CWE-416 | Windows Reliable Multicast Transport Driver (RMCAST) Remote Code Execution Vu… |
| CVE-2026-78626 | 8.1 | — | Okta | Okta Access Gateway | CWE-863 | Improper Input Sanitization in Okta Access Gateway Protected Rules |
| CVE-2026-83527 | 8.1 | — | Ivanti | Sentry | CWE-288 | An Authentication Bypass vulnerability in Sentry before R10.8.2, R10.7.3 and … |
| CVE-2026-83997 | 8.1 | — | Microsoft | Windows 10 Version 21H2 | CWE-416 | Windows Message Queuing Remote Code Execution Vulnerability |
| CVE-2026-84393 | 8.1 | — | Fortinet | FortiOS | CWE-297 | A improper validation of certificate with host mismatch vulnerability in Fort… |
| CVE-2026-55277 | 8.0 | — | Android | CWE-120 | In checkUiccListenConfigNeeded of RoutingManager.cpp, there is a possible out… | |
| CVE-2026-68827 | 8.0 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows GDI+ Elevation of Privilege Vulnerability |
| CVE-2026-68834 | 8.0 | — | Microsoft | Windows 10 Version 1607 | CWE-121 | Windows NTFS Elevation of Privilege Vulnerability |
| CVE-2026-68838 | 8.0 | — | Microsoft | Windows 10 Version 1607 | CWE-121 | Windows NTFS Elevation of Privilege Vulnerability |
| CVE-2026-68876 | 8.0 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows Program Compatibility Assistant Service Elevation of Privilege Vulner… |
| CVE-2026-68878 | 8.0 | — | Microsoft | Windows 10 Version 1607 | CWE-121 | Windows Fast FAT Driver Elevation of Privilege Vulnerability |
| CVE-2026-68880 | 8.0 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows Win32k Elevation of Privilege Vulnerability |
| CVE-2026-68894 | 8.0 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows Error Reporting Elevation of Privilege Vulnerability |
| CVE-2026-69271 | 8.0 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Microsoft Standard XPS Elevation of Privilege Vulnerability |
| CVE-2026-69301 | 8.0 | — | Microsoft | Windows 10 Version 1607 | CWE-121 | Windows Win32k Elevation of Privilege Vulnerability |
| CVE-2026-69322 | 8.0 | — | Microsoft | Windows 11 version 23H2 | CWE-415 | Microsoft Windows Search Component Elevation of Privilege Vulnerability |
| CVE-2026-69332 | 8.0 | — | Microsoft | Windows 10 Version 1607 | CWE-125 | Windows NTFS Elevation of Privilege Vulnerability |
| CVE-2026-69346 | 8.0 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows Print Spooler Components Elevation of Privilege Vulnerability |
| CVE-2026-69365 | 8.0 | — | Microsoft | Windows 10 Version 21H2 | CWE-125 | Microsoft Local Security Authority (LSA) Server Elevation of Privilege Vulner… |
| CVE-2026-69371 | 8.0 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows Overlay Filter Elevation of Privilege Vulnerability |
| CVE-2026-69412 | 8.0 | — | Microsoft | Windows 10 Version 1607 | CWE-121 | Windows DHCP Server Remote Code Execution Vulnerability |
| CVE-2026-69418 | 8.0 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Volume Manager Driver Elevation of Privilege Vulnerability |
| CVE-2026-69423 | 8.0 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows USB Video Driver Elevation of Privilege Vulnerability |
| CVE-2026-69427 | 8.0 | — | Microsoft | Windows 10 Version 1607 | CWE-125 | Microsoft VOLSNAP.SYS Elevation of Privilege Vulnerability |
| CVE-2026-69458 | 8.0 | — | Microsoft | Windows 10 Version 1607 | CWE-125 | Windows BitLocker Elevation of Privilege Vulnerability |
| CVE-2026-69462 | 8.0 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows Error Reporting Elevation of Privilege Vulnerability |
| CVE-2026-69481 | 8.0 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows Enterprise App Management Elevation of Privilege Vulnerability |
| CVE-2026-69503 | 8.0 | — | Microsoft | Windows 10 Version 1809 | CWE-121 | Windows USB Driver Elevation of Privilege Vulnerability |
| CVE-2026-69505 | 8.0 | — | Microsoft | Windows 10 Version 1607 | CWE-125 | Windows NTFS Elevation of Privilege Vulnerability |
| CVE-2026-69512 | 8.0 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows Spaceport.sys Elevation of Privilege Vulnerability |
| CVE-2026-69619 | 8.0 | — | Microsoft | Windows 10 Version 1607 | CWE-125 | Windows exFAT File System Elevation of Privilege Vulnerability |
| CVE-2026-69623 | 8.0 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows HTTP Print Provider Remote Code Execution Vulnerability |
| CVE-2026-69625 | 8.0 | — | Microsoft | Windows 10 Version 1809 | CWE-122 | Connected User Experiences and Telemetry Elevation of Privilege Vulnerability |
| CVE-2026-69643 | 8.0 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows Spaceport.sys Elevation of Privilege Vulnerability |
| CVE-2026-69681 | 8.0 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Virtual Hard Disk (VHD) Miniport Driver Elevation of Privilege Vulernability |
| CVE-2026-69689 | 8.0 | — | Microsoft | Windows 10 Version 1809 | CWE-121 | Windows Win32k Elevation of Privilege Vulnerability |
| CVE-2026-69714 | 8.0 | — | Microsoft | Windows 10 Version 1607 | CWE-121 | Windows Device Association Service Elevation of Privilege Vulnerability |
| CVE-2026-69717 | 8.0 | — | Microsoft | Windows 10 Version 1607 | CWE-125 | Windows Group Policy Elevation of Privilege Vulnerability |
| CVE-2026-69727 | 8.0 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-69762 | 8.0 | — | Microsoft | Windows 10 Version 1809 | CWE-121 | Windows Win32k Elevation of Privilege Vulnerability |
| CVE-2026-69773 | 8.0 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-69777 | 8.0 | — | Microsoft | Windows 11 Version 24H2 | CWE-122 | Windows DHCP Client Elevation of Privilege Vulnerability |
| CVE-2026-69807 | 8.0 | — | Microsoft | Windows 10 Version 1607 | CWE-22 | PowerShell Elevation of Privilege Vulnerability |
| CVE-2026-69826 | 8.0 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-69847 | 8.0 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows DHCP Server Remote Code Execution Vulnerability |
| CVE-2026-69875 | 8.0 | — | Microsoft | Windows 10 Version 1809 | CWE-122 | Windows NTFS Elevation of Privilege Vulnerability |
| CVE-2026-69876 | 8.0 | — | Microsoft | Windows 10 Version 1607 | CWE-415 | Windows DHCP Server Remote Code Execution Vulnerability |
| CVE-2026-83948 | 8.0 | — | Microsoft | Microsoft Azure CLI | CWE-77 | Microsoft Azure CLI Remote Code Execution Vulnerability |
| CVE-2026-28664 | 7.8 | — | Android | CWE-693 | In WriteImageToDisk of runtime_image.cc, there is a possible file tampering d… | |
| CVE-2026-49927 | 7.8 | — | Android | CWE-190 | In multiple locations, there is a possible out of bounds write due to an inte… | |
| CVE-2026-49932 | 7.8 | — | Android | CWE-122 | In parseParts of PduParser.java, there is a possible out of bounds read due t… | |
| CVE-2026-55273 | 7.8 | — | Android | CWE-20 | In AppendCommentLine of AnnotationProcessor.cpp, there is a possible supply c… | |
| CVE-2026-55285 | 7.8 | — | Android | CWE-120 | In openLogicalChannel of multiple files, there is a possible out-of-bounds wr… | |
| CVE-2026-55294 | 7.8 | — | Android | CWE-122 | In ihevcd_get_tu_data_size of ihevcd_utils.c, there is a possible out of boun… | |
| CVE-2026-56172 | 7.8 | — | Microsoft | Windows 10 Version 1809 | CWE-416 | Windows VHD miniport driver Elevation of Privilege Vulnerability |
| CVE-2026-56177 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-416 | Windows Server Elevation of Privilege Vulnerability |
| CVE-2026-56198 | 7.8 | — | Microsoft | Windows 11 Version 24H2 | CWE-125 | Microsoft Trace Data Helper Elevation of Privilege Vulnerability |
| CVE-2026-58599 | 7.8 | — | Microsoft | HEVC Video Extensions | CWE-122 | HEVC Video Extensions Remote Code Execution Vulnerability |
| CVE-2026-58600 | 7.8 | — | Microsoft | HEVC Video Extensions | CWE-122 | HEVC Video Extensions Elevation of Privilege Vulnerability |
| CVE-2026-58611 | 7.8 | — | Microsoft | Xbox Gaming Services | CWE-285 | Xbox Gaming Services Elevation of Privilege Vulnerability |
| CVE-2026-58823 | 7.8 | — | Android | CWE-120 | In stpropnci_process_std of stpropnci_std.cc, there is a possible memory safe… | |
| CVE-2026-58839 | 7.8 | — | Android | CWE-120 | In forEachLine of MountRegistry.cpp, there is a possible out of bounds read d… | |
| CVE-2026-58846 | 7.8 | — | Android | CWE-269 | In kvm_iommu_map_sg of iommu.c, there is a possible use after free due to a m… | |
| CVE-2026-58874 | 7.8 | — | Android | CWE-269 | In multiple functions of SmsController.java, there is a possible escalation o… | |
| CVE-2026-58941 | 7.8 | — | Android | CWE-20 | In multiple functions of iommu.c, there is a possible out of bounds read/writ… | |
| CVE-2026-62697 | 7.8 | — | Microsoft | Windows 10 Version 21H2 | CWE-416 | Windows Push Notifications Elevation of Privilege Vulnerability |
| CVE-2026-62804 | 7.8 | — | Microsoft | Microsoft 365 Apps for Enterprise | CWE-73 | Microsoft Word Remote Code Execution Vulnerability |
| CVE-2026-62810 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Active Directory Certificate Services (AD CS) Elevation of Privilege Vulnerab… |
| CVE-2026-68787 | 7.8 | — | Microsoft | Microsoft SQL Server 2017 (CU 31) | CWE-122 | Microsoft SQL Server Remote Code Execution Vulnerability |
| CVE-2026-68832 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-190 | Windows NTFS Elevation of Privilege Vulnerability |
| CVE-2026-68841 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows NTFS Elevation of Privilege Vulnerability |
| CVE-2026-68844 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows Storage Spaces Controller Remote Code Execution Vulnerability |
| CVE-2026-68845 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows Program Compatibility Assistant Service Elevation of Privilege Vulner… |
| CVE-2026-68848 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows Print Spooler Components Elevation of Privilege Vulnerability |
| CVE-2026-68850 | 7.8 | — | Microsoft | Windows 11 Version 24H2 | CWE-122 | Microsoft Account Elevation of Privilege Vulnerability |
| CVE-2026-68875 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-126 | Windows NTFS Remote Code Execution Vulnerability |
| CVE-2026-68877 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows Storage Spaces Controller Remote Code Execution Vulnerability |
| CVE-2026-68885 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Microsoft Standard XPS Elevation of Privilege Vulnerability |
| CVE-2026-68888 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Microsoft Standard XPS Elevation of Privilege Vulnerability |
| CVE-2026-68890 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Microsoft Standard XPS Elevation of Privilege Vulnerability |
| CVE-2026-68892 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Microsoft Standard XPS Elevation of Privilege Vulnerability |
| CVE-2026-68896 | 7.8 | — | Microsoft | Windows 11 version 23H2 | CWE-36 | Microsoft Windows Search Component Elevation of Privilege Vulnerability |
| CVE-2026-69265 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-125 | Windows NTFS Elevation of Privilege Vulnerability |
| CVE-2026-69269 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-191 | Microsoft Standard XPS Elevation of Privilege Vulnerability |
| CVE-2026-69270 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-20 | Windows USB Audio Class driver (usbaudio.sys) Elevation of Privilege Vulnerab… |
| CVE-2026-69277 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-121 | Microsoft Local Security Authority (LSA) Server Elevation of Privilege Vulner… |
| CVE-2026-69283 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows CD-ROM Driver Elevation of Privilege Vulnerability |
| CVE-2026-69284 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows DCOM Server Elevation of Privilege Vulnerability |
| CVE-2026-69289 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-59 | Windows Setup Files Cleanup Elevation of Privilege Vulnerability |
| CVE-2026-69290 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-121 | Windows Storage Spaces Controller Elevation of Privilege Vulnerability |
| CVE-2026-69293 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-20 | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-69295 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-20 | Windows USB Driver Elevation of Privilege Vulnerability |
| CVE-2026-69298 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-190 | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-69307 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows USB Audio Class driver (usbaudio.sys) Elevation of Privilege Vulnerab… |
| CVE-2026-69312 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-125 | Windows NTFS Elevation of Privilege Vulnerability |
| CVE-2026-69323 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-69324 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-125 | Windows Performance Monitor Elevation of Privilege Vulnerability |
| CVE-2026-69328 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-426 | Windows Storage Elevation of Privilege Vulnerability |
| CVE-2026-69348 | 7.8 | — | Microsoft | Windows 11 Version 24H2 | CWE-122 | Windows Win32k Elevation of Privilege Vulnerability |
| CVE-2026-69352 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-20 | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-69359 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Active Directory Domain Services Elevation of Privilege Vulnerability |
| CVE-2026-69368 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows Overlay Filter Elevation of Privilege Vulnerability |
| CVE-2026-69377 | 7.8 | — | Microsoft | Windows 10 Version 1809 | CWE-862 | Windows Modern Device Management (MDM) Elevation of Privilege Vulnerability |
| CVE-2026-69389 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows Storage Management Provider Elevation of Privilege Vulnerability |
| CVE-2026-69391 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-121 | Windows Broker Infrastructure Service Elevation of Privilege Vulnerability |
| CVE-2026-69392 | 7.8 | — | Microsoft | Windows 11 version 23H2 | CWE-416 | Windows Shell Elevation of Privilege Vulnerability |
| CVE-2026-69407 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-190 | Volume Manager Driver Elevation of Privilege Vulnerability |
| CVE-2026-69420 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Microsoft VOLSNAP.SYS Elevation of Privilege Vulnerability |
| CVE-2026-69421 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows Kernel-Mode Driver Elevation of Privilege Vulnerability |
| CVE-2026-69424 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows Distributed File System (DFS) Elevation of Privilege Vulnerability |
| CVE-2026-69426 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows VOLSNAP.SYS Remote Code Execution Vulnerability |
| CVE-2026-69432 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Volume Manager Driver Elevation of Privilege Vulnerability |
| CVE-2026-69433 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows Error Reporting Elevation of Privilege Vulnerability |
| CVE-2026-69436 | 7.8 | — | Microsoft | Windows 10 Version 1809 | CWE-122 | Windows Error Reporting Elevation of Privilege Vulnerability |
| CVE-2026-69444 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Microsoft Windows Speech Elevation of Privilege Vulnerability |
| CVE-2026-69445 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-22 | Windows Compressed Folder Elevation of Privilege Vulnerability |
| CVE-2026-69447 | 7.8 | — | Microsoft | Windows 11 version 23H2 | CWE-122 | Windows Audio Service Elevation of Privilege Vulnerability |
| CVE-2026-69450 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-125 | Windows Error Reporting Elevation of Privilege Vulnerability |
| CVE-2026-69455 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows Remote Access Connection Manager Elevation of Privilege Vulnerability |
| CVE-2026-69456 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Microsoft Windows Speech Elevation of Privilege Vulnerability |
| CVE-2026-69459 | 7.8 | — | Microsoft | Windows 10 Version 1809 | CWE-122 | Windows Power Dependency Coordinator Elevation of Privilege Vulnerability |
| CVE-2026-69467 | 7.8 | — | Microsoft | Windows 10 Version 21H2 | CWE-121 | Microsoft Graphics Component Elevation of Privilege Vulnerability |
| CVE-2026-69475 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-822 | Windows Remote Desktop Services Elevation of Privilege Vulnerability |
| CVE-2026-69476 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-69478 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows Device Association Service Elevation of Privilege Vulnerability |
| CVE-2026-69480 | 7.8 | — | Microsoft | Windows 10 Version 21H2 | CWE-122 | Windows Partition Management Driver Elevation of Privilege Vulnerability |
| CVE-2026-69489 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-69508 | 7.8 | — | Microsoft | Windows 11 Version 24H2 | CWE-121 | Windows MIDI Service Module Elevation of Privileges Vulnerability |
| CVE-2026-69509 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Role: Windows Fax Service Elevation of Privilege Vulnerability |
| CVE-2026-69513 | 7.8 | — | Microsoft | Windows 10 Version 1809 | CWE-122 | Windows Error Reporting Elevation of Privilege Vulnerability |
| CVE-2026-69528 | 7.8 | — | Microsoft | Windows 11 version 23H2 | CWE-306 | Windows Shell Elevation of Privilege Vulnerability |
| CVE-2026-69532 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-125 | Windows NTFS Elevation of Privilege Vulnerability |
| CVE-2026-69534 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-77 | Windows Program Compatibility Assistant Service Elevation of Privilege Vulner… |
| CVE-2026-69535 | 7.8 | — | Microsoft | Windows 10 Version 21H2 | CWE-122 | Windows Spaceport.sys Elevation of Privilege Vulnerability |
| CVE-2026-69538 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-125 | Windows Spaceport.sys Remote Code Execution Vulnerability |
| CVE-2026-69541 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Virtual Hard Disk (VHD) Miniport Driver Elevation of Privilege Vulernability |
| CVE-2026-69542 | 7.8 | — | Microsoft | Windows 11 Version 24H2 | CWE-122 | Windows Camera Frame Server Monitor Elevation of Privilege Vulnerability |
| CVE-2026-69544 | 7.8 | — | Microsoft | Windows 11 version 26H1 | CWE-122 | Windows SMB Client Elevation of Privilege Vulnerability |
| CVE-2026-69561 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-125 | Windows CD-ROM Driver Elevation of Privilege Vulnerability |
| CVE-2026-69571 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows USB Audio Class driver (usbaudio.sys) Elevation of Privilege Vulnerab… |
| CVE-2026-69576 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-416 | Graphic Fonts Elevation of Privilege Vulnerability |
| CVE-2026-69580 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-69582 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-126 | Windows Volume Manager Extension Driver Elevation of Privilege Vulnerability |
| CVE-2026-69583 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-69584 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-190 | Windows USB Video Driver Elevation of Privilege Vulnerability |
| CVE-2026-69585 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-704 | Microsoft Windows Search Component Elevation of Privilege Vulnerability |
| CVE-2026-69589 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-69592 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows Universal Disk Format File System Driver (UDFS) Elevation of Privileg… |
| CVE-2026-69593 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-69594 | 7.8 | — | Microsoft | Windows 11 Version 24H2 | CWE-122 | Microsoft Local Security Authority (LSA) Server Elevation of Privilege Vulner… |
| CVE-2026-69604 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows Audio Service Elevation of Privilege Vulnerability |
| CVE-2026-69608 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-190 | Microsoft Windows Search Component Elevation of Privilege Vulnerability |
| CVE-2026-69612 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-36 | Windows Error Reporting Elevation of Privilege Vulnerability |
| CVE-2026-69685 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows Kerberos Elevation of Privilege Vulnerability |
| CVE-2026-69687 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-191 | Windows USB Audio Class driver (usbaudio.sys) Elevation of Privilege Vulnerab… |
| CVE-2026-69691 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows Spaceport.sys Elevation of Privilege Vulnerability |
| CVE-2026-69707 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-190 | Windows USB Audio Class driver (usbaudio.sys) Elevation of Privilege Vulnerab… |
| CVE-2026-69709 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows NTFS Remote Code Execution Vulnerability |
| CVE-2026-69720 | 7.8 | — | Microsoft | Windows 11 Version 24H2 | CWE-122 | Windows MIDI Service Module Elevation of Privileges Vulnerability |
| CVE-2026-69725 | 7.8 | — | Microsoft | Windows 10 Version 21H2 | CWE-415 | Windows Hello Elevation of Privilege Vulnerability |
| CVE-2026-69731 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | HID Class Driver Elevation of Privilege Vulnerability |
| CVE-2026-69738 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-69758 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows Universal Disk Format File System Driver (UDFS) Elevation of Privileg… |
| CVE-2026-69785 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-426 | Windows Smart Card Elevation of Privilege Vulnerability |
| CVE-2026-69787 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-69790 | 7.8 | — | Microsoft | Windows 10 Version 1809 | CWE-122 | Windows Credential Providers Elevation of Privilege Vulnerability |
| CVE-2026-69799 | 7.8 | — | Microsoft | Windows 10 Version 21H2 | CWE-362 | Windows Hello Elevation of Privilege Vulnerability |
| CVE-2026-69801 | 7.8 | — | Microsoft | Windows 10 Version 1809 | CWE-122 | Windows Audio Service Elevation of Privilege Vulnerability |
| CVE-2026-69821 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-116 | Active Directory Certificate Services (AD CS) Elevation of Privilege Vulnerab… |
| CVE-2026-69822 | 7.8 | — | Microsoft | Windows 10 Version 1809 | CWE-122 | Windows Kerberos Elevation of Privilege Vulnerability |
| CVE-2026-69841 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows Encrypting File System (EFS) Elevation of Privilege Vulnerability |
| CVE-2026-69844 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-125 | Windows Win32k Elevation of Privilege Vulnerability |
| CVE-2026-69864 | 7.8 | — | Microsoft | Windows 10 Version 21H2 | CWE-416 | Windows Hello Elevation of Privilege Vulnerability |
| CVE-2026-69900 | 7.8 | — | Microsoft | Windows 10 Version 21H2 | CWE-822 | Kernel Streaming WOW Thunk Service Driver Elevation of Privilege Vulnerability |
| CVE-2026-69907 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-280 | Windows Enterprise App Management Elevation of Privilege Vulnerability |
| CVE-2026-69921 | 7.8 | — | Microsoft | Windows 10 Version 21H2 | CWE-122 | Windows Print Spooler Components Elevation of Privilege Vulnerability |
| CVE-2026-70289 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows Win32k Elevation of Privilege Vulnerability |
| CVE-2026-70334 | 7.8 | — | Microsoft | Visual Studio Code | CWE-184 | Visual Studio Code Security Feature Bypass Vulnerability |
| CVE-2026-70564 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows Print Spooler Components Elevation of Privilege Vulnerability |
| CVE-2026-70569 | 7.8 | — | Microsoft | Windows 11 version 23H2 | CWE-125 | Windows Spaceport.sys Elevation of Privilege Vulnerability |
| CVE-2026-70572 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-190 | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-70574 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-125 | Virtual Hard Disk (VHD) Miniport Driver Elevation of Privilege Vulernability |
| CVE-2026-70581 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-20 | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-70583 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows Core Messaging Elevation of Privilege Vulnerability |
| CVE-2026-70584 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-843 | Windows Core Messaging Elevation of Privilege Vulnerability |
| CVE-2026-71334 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows NFS Portmapper Elevation of Privilege Vulnerability |
| CVE-2026-71337 | 7.8 | — | Microsoft | Windows 10 Version 21H2 | CWE-121 | Windows Storage Management Provider Elevation of Privilege Vulnerability |
| CVE-2026-71343 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows Remote Access Connection Manager Remote Code Execution Vulnerability |
| CVE-2026-71345 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-787 | Windows Spaceport.sys Remote Code Execution Vulnerability |
| CVE-2026-72929 | 7.8 | — | Microsoft | Windows 11 version 23H2 | CWE-354 | Windows Installer Elevation of Privilege Vulnerability |
| CVE-2026-72941 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-72944 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Role: Windows Fax Service Elevation of Privilege Vulnerability |
| CVE-2026-72946 | 7.8 | — | Microsoft | Windows 11 Version 24H2 | CWE-122 | Microsoft Storage Port Driver Elevation of Privilege Vulnerability |
| CVE-2026-72953 | 7.8 | — | Microsoft | Windows 10 Version 21H2 | CWE-122 | Windows USB Driver Elevation of Privilege Vulnerability |
| CVE-2026-72957 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows Deployment Services Remote Code Execution Vulnerability |
| CVE-2026-72965 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-416 | Windows WebClient Service Elevation of Privilege Vulnerability |
| CVE-2026-72967 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows Network Connection Broker Elevation of Privilege Vulnerability |
| CVE-2026-72988 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-72990 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-72991 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-72992 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-72993 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-72994 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-20 | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-72995 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-72996 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-20 | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-72997 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-73000 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-73001 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-73002 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-190 | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-73007 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-73011 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-73014 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-862 | Data Sharing Service Client Elevation of Privilege Vulnerability |
| CVE-2026-73015 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-73020 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-73021 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-20 | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-73024 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows Services for NFS ONCRPC XDR Driver Elevation of Privilege Vulnerability |
| CVE-2026-73026 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-75631 | 7.8 | — | Adobe | Photoshop 2026 | CWE-787 | Photoshop Desktop | Out-of-bounds Write (CWE-787) |
| CVE-2026-75771 | 7.8 | — | Adobe | Photoshop 2026 | CWE-190 | Photoshop Desktop | Integer Overflow or Wraparound (CWE-190) |
| CVE-2026-75862 | 7.8 | — | Adobe | Photoshop 2026 | CWE-190 | Photoshop Desktop | Integer Overflow or Wraparound (CWE-190) |
| CVE-2026-75863 | 7.8 | — | Adobe | Photoshop 2026 | CWE-190 | Photoshop Desktop | Integer Overflow or Wraparound (CWE-190) |
| CVE-2026-75992 | 7.8 | — | Adobe | Illustrator Desktop 2026 | CWE-787 | Illustrator | Out-of-bounds Write (CWE-787) |
| CVE-2026-77489 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-476 | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-77500 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-763 | Windows Device Association Service Elevation of Privilege Vulnerability |
| CVE-2026-77904 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows Volume Manager Extension Driver Elevation of Privilege Vulnerability |
| CVE-2026-78447 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-78448 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-79907 | 7.8 | — | Adobe | Adobe Acrobat | CWE-415 | Acrobat Reader | Double Free (CWE-415) |
| CVE-2026-79908 | 7.8 | — | Adobe | Adobe Acrobat | CWE-787 | Acrobat Reader | Out-of-bounds Write (CWE-787) |
| CVE-2026-79909 | 7.8 | — | Adobe | Adobe Acrobat | CWE-416 | Acrobat Reader | Use After Free (CWE-416) |
| CVE-2026-80075 | 7.8 | — | Microsoft | Windows 10 Version 21H2 | CWE-122 | Windows Work Folders Elevation of Privilege Vulnerability |
| CVE-2026-80161 | 7.8 | — | Adobe | Adobe Acrobat | CWE-843 | Acrobat Reader | Access of Resource Using Incompatible Type ('Type Confusion'… |
| CVE-2026-81353 | 7.8 | — | Microsoft | HEIF Image Extension | CWE-122 | HEIF Image Extensions Remote Code Execution Vulnerability |
| CVE-2026-81386 | 7.8 | — | Microsoft | Microsoft 365 Apps for Enterprise | CWE-122 | Microsoft Excel Remote Code Execution Vulnerability |
| CVE-2026-81388 | 7.8 | — | Microsoft | Microsoft 365 Apps for Enterprise | CWE-121 | Microsoft Excel Remote Code Execution Vulnerability |
| CVE-2026-81396 | 7.8 | — | Microsoft | Microsoft 365 Apps for Enterprise | CWE-121 | Microsoft Excel Remote Code Execution Vulnerability |
| CVE-2026-81397 | 7.8 | — | Microsoft | Microsoft 365 Apps for Enterprise | CWE-122 | Microsoft Excel Remote Code Execution Vulnerability |
| CVE-2026-81398 | 7.8 | — | Microsoft | Microsoft 365 Apps for Enterprise | CWE-122 | Microsoft Excel Remote Code Execution Vulnerability |
| CVE-2026-81947 | 7.8 | — | Microsoft | Microsoft 365 Apps for Enterprise | CWE-122 | Microsoft Excel Remote Code Execution Vulnerability |
| CVE-2026-81948 | 7.8 | — | Microsoft | Microsoft 365 Apps for Enterprise | CWE-122 | Microsoft Excel Remote Code Execution Vulnerability |
| CVE-2026-81949 | 7.8 | — | Microsoft | Microsoft 365 Apps for Enterprise | CWE-190 | Microsoft Excel Remote Code Execution Vulnerability |
| CVE-2026-81950 | 7.8 | — | Microsoft | Microsoft 365 Apps for Enterprise | CWE-415 | Microsoft Excel Remote Code Execution Vulnerability |
| CVE-2026-81951 | 7.8 | — | Microsoft | Microsoft 365 Apps for Enterprise | CWE-122 | Microsoft Excel Remote Code Execution Vulnerability |
| CVE-2026-81953 | 7.8 | — | Microsoft | Microsoft 365 Apps for Enterprise | CWE-121 | Microsoft Excel Remote Code Execution Vulnerability |
| CVE-2026-81954 | 7.8 | — | Microsoft | Microsoft 365 Apps for Enterprise | CWE-416 | Microsoft Excel Remote Code Execution Vulnerability |
| CVE-2026-81956 | 7.8 | — | Microsoft | Microsoft 365 Apps for Enterprise | CWE-125 | Microsoft Excel Remote Code Execution Vulnerability |
| CVE-2026-81957 | 7.8 | — | Microsoft | Microsoft 365 Apps for Enterprise | CWE-125 | Microsoft Excel Remote Code Execution Vulnerability |
| CVE-2026-81959 | 7.8 | — | Microsoft | Microsoft 365 Apps for Enterprise | CWE-122 | Microsoft Excel Remote Code Execution Vulnerability |
| CVE-2026-81960 | 7.8 | — | Microsoft | Microsoft 365 Apps for Enterprise | CWE-122 | Microsoft Excel Remote Code Execution Vulnerability |
| CVE-2026-81973 | 7.8 | — | Adobe | Adobe Acrobat | CWE-416 | Acrobat Reader | Use After Free (CWE-416) |
| CVE-2026-81975 | 7.8 | — | Adobe | Adobe Acrobat | CWE-416 | Acrobat Reader | Use After Free (CWE-416) |
| CVE-2026-81976 | 7.8 | — | Adobe | Adobe Acrobat | CWE-416 | Acrobat Reader | Use After Free (CWE-416) |
| CVE-2026-81979 | 7.8 | — | Adobe | Adobe Acrobat | CWE-787 | Acrobat Reader | Out-of-bounds Write (CWE-787) |
| CVE-2026-81980 | 7.8 | — | Adobe | Adobe Acrobat | CWE-787 | Acrobat Reader | Out-of-bounds Write (CWE-787) |
| CVE-2026-81981 | 7.8 | — | Adobe | Adobe Acrobat | CWE-787 | Acrobat Reader | Out-of-bounds Write (CWE-787) |
| CVE-2026-81983 | 7.8 | — | Adobe | Adobe Acrobat | CWE-787 | Acrobat Reader | Out-of-bounds Write (CWE-787) |
| CVE-2026-81985 | 7.8 | — | Adobe | Adobe Acrobat | CWE-416 | Acrobat Reader | Use After Free (CWE-416) |
| CVE-2026-81986 | 7.8 | — | Adobe | Adobe Acrobat | CWE-416 | Acrobat Reader | Use After Free (CWE-416) |
| CVE-2026-81987 | 7.8 | — | Adobe | Adobe Acrobat | CWE-190 | Acrobat Reader | Integer Overflow or Wraparound (CWE-190) |
| CVE-2026-81988 | 7.8 | — | Adobe | Adobe Acrobat | CWE-416 | Acrobat Reader | Use After Free (CWE-416) |
| CVE-2026-81989 | 7.8 | — | Adobe | Adobe Acrobat | CWE-416 | Acrobat Reader | Use After Free (CWE-416) |
| CVE-2026-81990 | 7.8 | — | Adobe | Adobe Acrobat | CWE-416 | Acrobat Reader | Use After Free (CWE-416) |
| CVE-2026-81992 | 7.8 | — | Adobe | Adobe Acrobat | CWE-122 | Acrobat Reader | Heap-based Buffer Overflow (CWE-122) |
| CVE-2026-82005 | 7.8 | — | Adobe | Photoshop 2026 | CWE-787 | Photoshop Desktop | Out-of-bounds Write (CWE-787) |
| CVE-2026-82006 | 7.8 | — | Adobe | Photoshop 2026 | CWE-122 | Photoshop Desktop | Heap-based Buffer Overflow (CWE-122) |
| CVE-2026-82007 | 7.8 | — | Adobe | Photoshop 2026 | CWE-190 | Photoshop Desktop | Integer Overflow or Wraparound (CWE-190) |
| CVE-2026-83498 | 7.8 | — | Microsoft | Windows 11 version 23H2 | CWE-822 | Windows Virtualization-Based Security (VBS) Enclave Elevation of Privilege Vu… |
| CVE-2026-83942 | 7.8 | — | Microsoft | Windows 10 Version 1809 | CWE-862 | Windows Kernel Elevation of Privilege Vulnerability |
| CVE-2026-83952 | 7.8 | — | Microsoft | Windows 11 Version 24H2 | CWE-122 | Windows Resilient File System (ReFS) Elevation of Privilege Vulnerability |
| CVE-2026-83954 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-83955 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-83967 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-83968 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-400 | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-83969 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-83970 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-83971 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-83972 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-83973 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-83974 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-83975 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-83976 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-83977 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-83978 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-83979 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-416 | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-83980 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-83981 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-83982 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-83983 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-83985 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-83986 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-83987 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-83988 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-83990 | 7.8 | — | Microsoft | Windows 11 version 23H2 | CWE-121 | Microsoft Graphics Component Elevation of Privilege Vulnerability |
| CVE-2026-83995 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows NTFS Elevation of Privilege Vulnerability |
| CVE-2026-84000 | 7.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Microsoft Graphics Component Remote Code Execution Vulnerability |
| CVE-2026-85983 | 7.8 | — | Auth0 | Auth0 AD/LDAP Connector | CWE-94 | Local Privilege Escalation in Auth0 AD/LDAP Connector |
| CVE-2026-73315 | 7.7 | — | XenForo | XenForo | CWE-918 | XenForo < 2.3.13 SSRF via PayPal REST Webhook Handler |
| CVE-2026-77106 | 7.7 | — | Commvault | Commvault Cloud | CWE-862 | Cvlaunchd Code Execution |
| CVE-2026-77909 | 7.7 | — | Microsoft | Azure CycleCloud 8.9.2 | CWE-522 | Azure CycleCloud Information Disclosure Vulnerability |
| CVE-2026-78623 | 7.7 | — | Okta | Okta Access Gateway | CWE-89 | Improper Handling of SAML Assertion Attributes in Okta Access Gateway Advance… |
| CVE-2026-82536 | 7.7 | — | RooCodeInc | Roo-Code | CWE-184 | Roo-Code 3.54.0 Auto-Approve Bypass via Shell Command Pipe Operator |
| CVE-2026-82537 | 7.7 | — | RooCodeInc | Roo-Code | CWE-436 | Roo-Code 3.54.0 Auto-Approve Bypass via Shell Parser Word-Boundary Mismatch |
| CVE-2026-86083 | 7.7 | — | n8n-io | n8n | CWE-94 | n8n: Expression Sandbox Escape via Shared Builtin Tampering and Code-Printer … |
| CVE-2026-73313 | 7.6 | — | XenForo | XenForo | CWE-863 | XenForo < 2.3.13 MFA Bypass via Passkey TFA Provider |
| CVE-2026-77110 | 7.6 | — | Adobe | Adobe Commerce | CWE-22 | Adobe Commerce | Improper Limitation of a Pathname to a Restricted Directory … |
| CVE-2026-82053 | 7.6 | — | MongoDB | MongoDB Server | CWE-863 | Improper Session Handling in MongoDB Server LDAP Authorization Integration Le… |
| CVE-2026-3174 | 7.5 | — | stellarwp | Event Tickets and Registration | CWE-862 | Event Tickets and Registration <= 5.27.4 - Missing Authorization to Unauthent… |
| CVE-2026-16025 | 7.5 | — | PayTR Payment and Electronic Money Institution Inc. | PayTR Virtual Pos iFrame API (v9x) WHMCS Module | CWE-1284 | Improper Payment Validation in PayTR's PayTR Virtual Pos iFrame API (v9x) WHM… |
| CVE-2026-16037 | 7.5 | — | PayTR Payment and Electronic Money Institution Inc. | PayTR Virtual Pos iFrame API (v9x) WHMCS Module | CWE-208 | Callback Authentication Bypass via Timing Attack in PayTR's PayTR Virtual Pos… |
| CVE-2026-16497 | 7.5 | — | NVIDIA | Triton Inference Server | CWE-834 | NVIDIA Triton Inference Server for Linux contains a vulnerability where an at… |
| CVE-2026-47625 | 7.5 | — | NVIDIA | Triton Inference Server | CWE-862 | NVIDIA Triton Inference Server for Linux contains a vulnerability where an at… |
| CVE-2026-57098 | 7.5 | — | Microsoft | Remote Desktop client for Windows Desktop | CWE-347 | Microsoft Remote Desktop App for Windows Information Disclosure Vulnerability |
| CVE-2026-57099 | 7.5 | — | Microsoft | AspNetCore.OData | CWE-770 | ASP.NET Core Denial of Service Vulnerability |
| CVE-2026-62759 | 7.5 | — | Microsoft | Windows 10 Version 1607 | CWE-290 | Windows Netlogon Spoofing Vulnerability |
| CVE-2026-62813 | 7.5 | — | Microsoft | Windows 10 Version 1607 | CWE-416 | Windows Active Directory Domain Services Remote Code Execution Vulnerability |
| CVE-2026-66304 | 7.5 | — | Microsoft | Skype for Business Server 2015 CU13 | CWE-918 | Skype for Business Information Disclosure Vulnerability |
| CVE-2026-66307 | 7.5 | — | Microsoft | Skype for Business Server 2015 CU13 | CWE-191 | Skype for Business and Lync Denial of Service Vulnerability |
| CVE-2026-67376 | 7.5 | — | Microsoft | Microsoft SQL Server 2017 (CU 31) | CWE-190 | Microsoft SQL Server Denial of Service Vulnerability |
| CVE-2026-68887 | 7.5 | — | Microsoft | Windows 10 Version 1607 | CWE-125 | Windows Message Queuing Queue Manager Denial of Service Vulnerability |
| CVE-2026-69329 | 7.5 | — | Microsoft | Windows 10 Version 1607 | CWE-125 | BranchCache Denial of Service Vulnerability |
| CVE-2026-69342 | 7.5 | — | Microsoft | Windows 10 Version 1607 | CWE-125 | Windows DHCP Server Denial of Service Vulnerability |
| CVE-2026-69378 | 7.5 | — | Microsoft | Microsoft Exchange Server 2016 Cumulative Update 23 | CWE-674 | Microsoft Exchange Server Denial of Service Vulnerability |
| CVE-2026-69397 | 7.5 | — | Microsoft | Windows 10 Version 1809 | CWE-416 | Microsoft OpenSSH for Windows Remote Code Execution Vulnerability |
| CVE-2026-69428 | 7.5 | — | Microsoft | Windows 10 Version 1607 | CWE-125 | Windows LDAP - Lightweight Directory Access Protocol Denial of Service Vulner… |
| CVE-2026-69429 | 7.5 | — | Microsoft | Windows 10 Version 1809 | CWE-122 | Windows Internet Key Exchange (IKE) Protocol Extensions Remote Code Execution… |
| CVE-2026-69443 | 7.5 | — | Microsoft | Windows 10 Version 1809 | CWE-125 | Windows Device Health Attestation (DHA) Information Disclosure Vulnerability |
| CVE-2026-69514 | 7.5 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Remote Desktop Services Remote Code Execution Vulnerability |
| CVE-2026-69539 | 7.5 | — | Microsoft | Windows 10 Version 1607 | CWE-416 | Remote Desktop Services Remote Code Execution Vulnerability |
| CVE-2026-69587 | 7.5 | — | Microsoft | Windows 11 version 23H2 | CWE-476 | Windows Internet Key Exchange (IKE) Extension Denial of Service Vulnerability |
| CVE-2026-69588 | 7.5 | — | Microsoft | Windows 11 version 23H2 | CWE-401 | Windows TCP/IP Denial of Service Vulnerability |
| CVE-2026-69599 | 7.5 | — | Microsoft | Windows 11 version 23H2 | CWE-416 | Remote Desktop Services Remote Code Execution Vulnerability |
| CVE-2026-69607 | 7.5 | — | Microsoft | Windows 10 Version 1607 | CWE-416 | Windows Deployment Services Remote Code Execution Vulnerability |
| CVE-2026-69631 | 7.5 | — | Microsoft | Windows 10 Version 1607 | CWE-190 | Windows DNS Denial of Service Vulnerability |
| CVE-2026-69710 | 7.5 | — | Microsoft | Windows 10 Version 21H2 | CWE-362 | Windows Hello Elevation of Privilege Vulnerability |
| CVE-2026-69744 | 7.5 | — | Microsoft | Windows 11 Version 24H2 | CWE-476 | Windows Kerberos Denial of Service Vulnerability |
| CVE-2026-69760 | 7.5 | — | Microsoft | Windows 10 Version 1607 | CWE-125 | Windows Kerberos Denial of Service Vulnerability |
| CVE-2026-69793 | 7.5 | — | Microsoft | Windows 10 Version 1607 | CWE-1288 | Windows TCP/IP Security Feature Bypass Vulnerability |
| CVE-2026-69804 | 7.5 | — | Microsoft | Microsoft SharePoint Server Subscription Edition | CWE-367 | Microsoft Office SharePoint Remote Code Execution Vulnerability |
| CVE-2026-69805 | 7.5 | — | Microsoft | Microsoft Visual Studio 2022 version 17.14 | CWE-73 | .NET Elevation of Privilege Vulnerability |
| CVE-2026-69809 | 7.5 | — | Microsoft | Windows 11 version 23H2 | CWE-401 | Windows Active Directory Domain Services Denial of Service Vulnerability |
| CVE-2026-69852 | 7.5 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulner… |
| CVE-2026-69881 | 7.5 | — | Microsoft | Windows 10 Version 1809 | CWE-476 | Windows Internet Key Exchange (IKE) Extension Denial of Service Vulnerability |
| CVE-2026-69890 | 7.5 | — | Microsoft | Windows 10 Version 1809 | CWE-416 | Windows Virtual Trusted Platform Module Elevation of Privilege Vulnerability |
| CVE-2026-70065 | 7.5 | — | Microsoft | Windows 10 Version 1607 | CWE-401 | Windows DHCP Server Denial of Service Vulnerability |
| CVE-2026-70570 | 7.5 | — | Microsoft | Windows 10 Version 1607 | CWE-416 | Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulner… |
| CVE-2026-70579 | 7.5 | — | Microsoft | Windows 10 Version 21H2 | CWE-125 | Windows Mobile Broadband Information Disclosure Vulnerability |
| CVE-2026-70587 | 7.5 | — | Microsoft | Windows 10 Version 1607 | CWE-170 | Windows Remote Desktop Protocol Information Disclosure Vulnerability |
| CVE-2026-71330 | 7.5 | — | Microsoft | Windows 10 Version 1607 | CWE-497 | Windows Services for NFS ONCRPC XDR Driver Information Disclosure Vulnerability |
| CVE-2026-72923 | 7.5 | — | Microsoft | OpenApi.YamlReader | CWE-400 | Microsoft.OpenApi.YamlReader/Readers vulnerable to denial of service via YAML… |
| CVE-2026-72928 | 7.5 | — | Microsoft | Windows Server 2025 | CWE-416 | Windows DNS Server Remote Code Execution Vulnerability |
| CVE-2026-72932 | 7.5 | — | Microsoft | Windows 10 Version 1607 | CWE-126 | Windows Message Queuing Queue Manager Information Disclosure Vulnerability |
| CVE-2026-72943 | 7.5 | — | Microsoft | Windows 10 Version 1607 | CWE-416 | Windows Deployment Services Remote Code Execution Vulnerability |
| CVE-2026-72949 | 7.5 | — | Microsoft | Windows 11 version 23H2 | CWE-476 | Windows SMB Server Network Transport Driver (srvnet.sys) Denial of Service Vu… |
| CVE-2026-72954 | 7.5 | — | Microsoft | Windows 10 Version 1607 | CWE-416 | Windows Deployment Services Remote Code Execution Vulnerability |
| CVE-2026-72989 | 7.5 | — | Microsoft | Windows 10 Version 1809 | CWE-908 | Windows Failover Cluster Information Disclosure Vulnerability |
| CVE-2026-73017 | 7.5 | — | Microsoft | Windows 10 Version 1809 | CWE-122 | Graphics Kernel Remote Code Execution Vulnerability |
| CVE-2026-75998 | 7.5 | — | Adobe | ColdFusion 2025 | CWE-284 | ColdFusion | Improper Access Control (CWE-284) |
| CVE-2026-77108 | 7.5 | — | Adobe | Adobe Commerce | CWE-863 | Adobe Commerce | Incorrect Authorization (CWE-863) |
| CVE-2026-77494 | 7.5 | — | Microsoft | Windows 10 Version 1607 | CWE-843 | Windows DHCP Server Denial of Service Vulnerability |
| CVE-2026-77498 | 7.5 | — | Microsoft | Windows 10 Version 1607 | CWE-125 | Windows DHCP Server Denial of Service Vulnerability |
| CVE-2026-77499 | 7.5 | — | Microsoft | Windows 10 Version 1607 | CWE-843 | Windows DHCP Server Denial of Service Vulnerability |
| CVE-2026-77501 | 7.5 | — | Microsoft | Windows 10 Version 1607 | CWE-125 | Windows DHCP Server Denial of Service Vulnerability |
| CVE-2026-77502 | 7.5 | — | Microsoft | Windows 10 Version 1607 | CWE-125 | Windows DHCP Server Denial of Service Vulnerability |
| CVE-2026-77886 | 7.5 | — | Microsoft | Windows 10 Version 1607 | CWE-125 | Windows DHCP Server Denial of Service Vulnerability |
| CVE-2026-77888 | 7.5 | — | Microsoft | Windows 10 Version 1607 | CWE-843 | Windows DHCP Server Denial of Service Vulnerability |
| CVE-2026-77889 | 7.5 | — | Microsoft | Windows 10 Version 1607 | CWE-843 | Windows DHCP Server Denial of Service Vulnerability |
| CVE-2026-77890 | 7.5 | — | Microsoft | Windows 10 Version 1607 | CWE-843 | Windows DHCP Server Denial of Service Vulnerability |
| CVE-2026-77893 | 7.5 | — | Microsoft | Windows 10 Version 1607 | CWE-125 | Windows DHCP Server Denial of Service Vulnerability |
| CVE-2026-77895 | 7.5 | — | Microsoft | Windows 10 Version 1607 | CWE-125 | Windows DHCP Server Denial of Service Vulnerability |
| CVE-2026-77898 | 7.5 | — | Microsoft | Microsoft 365 Apps for Enterprise | CWE-122 | Microsoft Office Remote Code Execution Vulnerability |
| CVE-2026-78574 | 7.5 | — | Okta | Okta Hyperdrive Integration Plugin | CWE-426 | Improper Assembly Resolution in Okta Hyperdrive Integration Plugin Registry H… |
| CVE-2026-79377 | 7.5 | — | n/a | n/a | CWE-122 | A heap overflow in the a2dp_decoder_sbc.cpp component of Bestechnic Co., Ltd … |
| CVE-2026-81355 | 7.5 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Virtual Hard Disk (VHD) Miniport Driver Remote Code Execution Vulnerability |
| CVE-2026-83989 | 7.5 | — | Microsoft | Windows 10 Version 1607 | CWE-125 | Windows Services for NFS ONCRPC XDR Driver Denial of Service Vulnerability |
| CVE-2026-84001 | 7.5 | — | Microsoft | Windows 10 Version 1607 | CWE-125 | Windows Key Distribution Center Denial of Service Vulnerability |
| CVE-2026-86711 | 7.5 | — | electerm | electerm | CWE-749 | electerm before 5.3.15 Arbitrary Command Execution via Unvalidated runGlobalA… |
| CVE-2026-19651 | 7.4 | — | IBM | Enterprise Build of Quarkus | CWE-639 | IBM Enterprise Build of Quarkus is affected by multiple vulnerabilities |
| CVE-2026-69347 | 7.4 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows Fast FAT Driver Remote Code Execution Vulnerability |
| CVE-2026-76196 | 7.4 | — | Adobe | Photoshop Android | CWE-384 | Photoshop Mobile | Session Fixation (CWE-384) |
| CVE-2026-78461 | 7.4 | — | Microsoft | Visual Studio Code | CWE-22 | Visual Studio Code Security Feature Bypass Vulnerability |
| CVE-2026-81383 | 7.4 | — | Microsoft | Visual Studio Code | CWE-706 | Visual Studio Code Information Disclosure Vulnerability |
| CVE-2026-84003 | 7.4 | — | Microsoft | Microsoft Authentication Library | CWE-294 | Microsoft Authentication Library (MSAL) for Node.js Spoofing Vulnerability |
| CVE-2026-69402 | 7.3 | — | Microsoft | Microsoft SharePoint Server Subscription Edition | CWE-79 | Microsoft Office SharePoint Spoofing Vulnerability |
| CVE-2026-69417 | 7.3 | — | Microsoft | Microsoft SharePoint Server Subscription Edition | CWE-79 | Microsoft Office SharePoint Spoofing Vulnerability |
| CVE-2026-69477 | 7.3 | — | Microsoft | Microsoft 365 Apps for Enterprise | CWE-122 | Microsoft Office Access Remote Code Execution Vulnerability |
| CVE-2026-77092 | 7.3 | — | Commvault | Commvault Cloud | CWE-502 | Content Extractor Privilege Escalation |
| CVE-2026-78627 | 7.3 | — | Okta | Okta Hyperdrive Integration Plugin | CWE-532 | Improper Credential Protection in Okta Hyperdrive Integration Installer Logging |
| CVE-2026-81349 | 7.2 | — | Microsoft | Azure HDInsight | CWE-78 | Azure HDInsight Ambari Elevation of Privilege Vulnerability |
| CVE-2026-82061 | 7.2 | — | MongoDB | MongoDB Server | CWE-416 | Use-After-Free in MongoDB Server Query Execution Memory Tracking Subsystem Le… |
| CVE-2026-82071 | 7.2 | — | MongoDB | MongoDB Server | CWE-787 | Insufficient Validation of Storage Engine Configuration Options in MongoDB Se… |
| CVE-2026-84387 | 7.2 | — | Fortinet | FortiSandbox | CWE-77 | A improper neutralization of special elements used in a command ('command inj… |
| CVE-2026-11573 | 7.1 | — | qt | qt | CWE-674 | QDomDocument::toByteArray() crashes when parsing svg file |
| CVE-2026-16769 | 7.1 | — | silabs.com | WiseCnnect | CWE-440 | RS9116W/SiWx917 plaintext pause encryption request causes DOS |
| CVE-2026-20293 | 7.1 | — | Cisco | Cisco Enterprise NFV Infrastructure Software | CWE-749 | Cisco UCS and UCS-Based Appliances UEFI Shell Secure Boot Bypass Vulnerability |
| CVE-2026-66305 | 7.1 | — | Microsoft | Skype for Business Server 2015 CU13 | CWE-603 | Skype for Business Spoofing Vulnerability |
| CVE-2026-68835 | 7.1 | — | Microsoft | Windows 10 Version 1607 | CWE-416 | Windows Print Spooler Components Elevation of Privilege Vulnerability |
| CVE-2026-68846 | 7.1 | — | Microsoft | Windows 10 Version 1607 | CWE-416 | Windows Kernel Elevation of Privilege Vulnerability |
| CVE-2026-68889 | 7.1 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Microsoft Standard XPS Elevation of Privilege Vulnerability |
| CVE-2026-68893 | 7.1 | — | Microsoft | Windows 10 Version 1607 | CWE-416 | Remote Desktop Licensing Service Elevation of Privilege Vulnerability |
| CVE-2026-69272 | 7.1 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Microsoft Standard XPS Elevation of Privilege Vulnerability |
| CVE-2026-69274 | 7.1 | — | Microsoft | Windows 10 Version 1607 | CWE-416 | Windows Win32k Elevation of Privilege Vulnerability |
| CVE-2026-69296 | 7.1 | — | Microsoft | Windows 10 Version 1607 | CWE-416 | Windows Device Association Service Elevation of Privilege Vulnerability |
| CVE-2026-69305 | 7.1 | — | Microsoft | Windows 10 Version 1607 | CWE-416 | Microsoft Windows Search Component Elevation of Privilege Vulnerability |
| CVE-2026-69313 | 7.1 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Microsoft Standard XPS Elevation of Privilege Vulnerability |
| CVE-2026-69314 | 7.1 | — | Microsoft | Windows 10 Version 1607 | CWE-416 | Windows Device Association Broker Service Elevation of Privilege Vulnerability |
| CVE-2026-69336 | 7.1 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Microsoft Standard XPS Elevation of Privilege Vulnerability |
| CVE-2026-69337 | 7.1 | — | Microsoft | Windows 10 Version 1607 | CWE-415 | Windows Registry Elevation of Privilege Vulnerability |
| CVE-2026-69338 | 7.1 | — | Microsoft | Windows 10 Version 1607 | CWE-416 | Remote Desktop Gateway Service Elevation of Privilege Vulnerability |
| CVE-2026-69340 | 7.1 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows NTFS Elevation of Privilege Vulnerability |
| CVE-2026-69357 | 7.1 | — | Microsoft | Windows 10 Version 1607 | CWE-416 | Windows NDIS Elevation of Privilege Vulnerability |
| CVE-2026-69358 | 7.1 | — | Microsoft | Windows 10 Version 1607 | CWE-908 | Remote Desktop Client Remote Code Execution Vulnerability |
| CVE-2026-69364 | 7.1 | — | Microsoft | Windows 10 Version 1607 | CWE-362 | Windows Print Spooler Components Elevation of Privilege Vulnerability |
| CVE-2026-69366 | 7.1 | — | Microsoft | Windows 10 Version 1607 | CWE-416 | Windows Kernel Elevation of Privilege Vulnerability |
| CVE-2026-69384 | 7.1 | — | Microsoft | Windows 10 Version 1607 | CWE-476 | Virtual Hard Disk (VHD) Miniport Driver Denial of Service Vulnerability |
| CVE-2026-69396 | 7.1 | — | Microsoft | Windows 10 Version 1607 | CWE-416 | Windows NDIS Elevation of Privilege Vulnerability |
| CVE-2026-69451 | 7.1 | — | Microsoft | Windows 10 Version 1607 | CWE-416 | Windows Management Instrumentation Elevation of Privilege Vulnerability |
| CVE-2026-69460 | 7.1 | — | Microsoft | Windows 10 Version 1809 | CWE-416 | Windows Modern Device Management (MDM) Elevation of Privilege Vulnerability |
| CVE-2026-69482 | 7.1 | — | Microsoft | Windows 10 Version 1607 | CWE-379 | Windows Error Reporting Tampering Vulnerability |
| CVE-2026-69536 | 7.1 | — | Microsoft | Windows 11 version 23H2 | CWE-416 | Remote Desktop Services Remote Code Execution Vulnerability |
| CVE-2026-69553 | 7.1 | — | Microsoft | Windows 10 Version 1809 | CWE-862 | Windows Hyper-V Elevation of Privilege Vulnerability |
| CVE-2026-69597 | 7.1 | — | Microsoft | Windows 11 version 23H2 | CWE-416 | Windows HTTP.sys Elevation of Privilege Vulnerability |
| CVE-2026-69602 | 7.1 | — | Microsoft | Windows 10 Version 1809 | CWE-416 | Windows PrintWorkflowUserSvc Elevation of Privilege Vulnerability |
| CVE-2026-69688 | 7.1 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows Encrypting File System (EFS) Elevation of Privilege Vulnerability |
| CVE-2026-69706 | 7.1 | — | Microsoft | Windows 10 Version 1607 | CWE-416 | Windows Win32k Elevation of Privilege Vulnerability |
| CVE-2026-69757 | 7.1 | — | Microsoft | Windows 10 Version 1809 | CWE-416 | Windows TCP/IP Elevation of Privilege Vulnerability |
| CVE-2026-69761 | 7.1 | — | Microsoft | Windows 10 Version 1607 | CWE-416 | Windows TCP/IP Elevation of Privilege Vulnerability |
| CVE-2026-69775 | 7.1 | — | Microsoft | Windows 11 version 23H2 | CWE-416 | Windows DWM Core Library Elevation of Privilege Vulnerability |
| CVE-2026-73321 | 7.1 | — | XenForo | XenForo | CWE-674 | XenForo < 2.3.13 Uncontrolled Recursion DoS via BBCode Parser |
| CVE-2026-82052 | 7.1 | — | MongoDB | MongoDB Server | CWE-617 | $regexFindAll may crash mongod server when byte-matching multi-byte UTF-8 chars |
| CVE-2026-82054 | 7.1 | — | MongoDB | MongoDB Server | CWE-770 | Uncontrolled Resource Consumption in MongoDB Server JSON Pointer Parser Leads… |
| CVE-2026-82055 | 7.1 | — | MongoDB | MongoDB Server | CWE-476 | Null Pointer Dereference in MongoDB Server 2dsphere Index Key Generation Lead… |
| CVE-2026-82057 | 7.1 | — | MongoDB | MongoDB Server | CWE-843 | Type Confusion in MongoDB Server WiredTiger Storage Engine via Custom Collect… |
| CVE-2026-82058 | 7.1 | — | MongoDB | MongoDB Server | CWE-248 | Unhandled Exception in MongoDB Server JSON Schema Validation Error Generation… |
| CVE-2026-82065 | 7.1 | — | MongoDB | MongoDB Server | CWE-617 | Insufficient Validation of Storage Configuration Options in MongoDB Server Le… |
| CVE-2026-82068 | 7.1 | — | MongoDB | MongoDB Server | CWE-617 | Persistent Fatal Assertion Crash in MongoDB Server via Crafted Retryable Writ… |
| CVE-2026-82070 | 7.1 | — | MongoDB | MongoDB Server | CWE-522 | Insufficiently Protected Credentials in MongoDB Server Diagnostic Reporting I… |
| CVE-2026-82073 | 7.1 | — | MongoDB | MongoDB Server | CWE-863 | Improper Validation in MongoDB Server Aggregation Framework Allows Authorizat… |
| CVE-2026-82074 | 7.1 | — | MongoDB | MongoDB Server | CWE-863 | Incorrect Authorization in MongoDB Server Aggregation Framework Allows Unauth… |
| CVE-2026-82076 | 7.1 | — | MongoDB | MongoDB Server | CWE-190 | Integer Overflow in Query Planner Leads to Unbounded Memory Allocation and De… |
| CVE-2026-86081 | 7.1 | — | n8n-io | n8n | CWE-1333 | n8n: Regular Expression Denial of Service in the Default Blocked-File-Pattern… |
| CVE-2026-86082 | 7.1 | — | n8n-io | n8n | CWE-918 | n8n: Domain-Restriction Bypass via Unguarded Model-Search Endpoint in OpenAI … |
| CVE-2026-86713 | 7.1 | — | PX4 | PX4-Autopilot | CWE-416 | PX4 Autopilot through 1.17.0 Use-After-Free in load_mon |
| CVE-2026-86718 | 7.1 | — | WWBN | AVideo | CWE-352 | WWBN AVideo Cross-Site Request Forgery via deleteHistory.json.php |
| CVE-2026-86724 | 7.1 | — | WWBN | AVideo | CWE-352 | AVideo YPTWallet saveBalance.php Cross-Site Request Forgery |
| CVE-2026-86725 | 7.1 | — | WWBN | AVideo | CWE-639 | AVideo SocialMediaPublisher Missing Authorization via add.json.php |
| CVE-2026-86726 | 7.1 | — | WWBN | AVideo | CWE-522 | AVideo through 29.0 Information Disclosure via restreamsActive.json.php |
| CVE-2026-86731 | 7.1 | — | craftcms | cms | CWE-862 | Craft CMS 5.0.0-RC1 before 5.10.12 Permission Escalation via UsersController |
| CVE-2026-86734 | 7.1 | — | grokability | snipe-it | CWE-400 | Snipe-IT before 8.7.1 Denial of Service via Unbounded Note Field |
| CVE-2026-50349 | 7.0 | — | Microsoft | Windows 10 Version 1607 | CWE-362 | Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerab… |
| CVE-2026-58848 | 7.0 | — | Android | CWE-362 | In multiple functions of alloc.c, there is a possible unauthorized read/write… | |
| CVE-2026-62694 | 7.0 | — | Microsoft | Windows 10 Version 1607 | CWE-416 | Windows Installer Elevation of Privilege Vulnerability |
| CVE-2026-68824 | 7.0 | — | Microsoft | Windows 10 Version 21H2 | CWE-362 | Connected User Experiences and Telemetry Elevation of Privilege Vulnerability |
| CVE-2026-68825 | 7.0 | — | Microsoft | Windows 11 version 23H2 | CWE-416 | Windows Bind Filter Driver Elevation of Privilege Vulnerability |
| CVE-2026-68837 | 7.0 | — | Microsoft | Windows 10 Version 1607 | CWE-416 | Windows File History Service Elevation of Privilege Vulnerability |
| CVE-2026-68840 | 7.0 | — | Microsoft | Windows 10 Version 1607 | CWE-362 | Windows USB Driver Elevation of Privilege Vulnerability |
| CVE-2026-68847 | 7.0 | — | Microsoft | Windows 10 Version 21H2 | CWE-416 | Connected User Experiences and Telemetry Elevation of Privilege Vulnerability |
| CVE-2026-68884 | 7.0 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows Kernel Elevation of Privilege Vulnerability |
| CVE-2026-68897 | 7.0 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Microsoft Standard XPS Elevation of Privilege Vulnerability |
| CVE-2026-69275 | 7.0 | — | Microsoft | Windows 10 Version 1607 | CWE-416 | Kernel Streaming WOW Thunk Service Driver Elevation of Privilege Vulnerability |
| CVE-2026-69279 | 7.0 | — | Microsoft | Windows 10 Version 1809 | CWE-416 | Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability |
| CVE-2026-69280 | 7.0 | — | Microsoft | Windows 10 Version 1607 | CWE-416 | Windows Push Notifications Elevation of Privilege Vulnerability |
| CVE-2026-69281 | 7.0 | — | Microsoft | Windows 10 Version 1809 | CWE-416 | Windows License Manager Elevation of Privilege Vulnerability |
| CVE-2026-69287 | 7.0 | — | Microsoft | Windows 10 Version 1607 | CWE-416 | Windows Remote Desktop Services Elevation of Privilege Vulnerability |
| CVE-2026-69292 | 7.0 | — | Microsoft | Windows 10 Version 1607 | CWE-415 | Remote Desktop Gateway Service Elevation of Privilege Vulnerability |
| CVE-2026-69299 | 7.0 | — | Microsoft | Windows 10 Version 21H2 | CWE-416 | Microsoft COM for Windows Elevation of Privilege Vulnerability |
| CVE-2026-69300 | 7.0 | — | Microsoft | Windows 11 version 23H2 | CWE-416 | Windows Push Notifications Elevation of Privilege Vulnerability |
| CVE-2026-69309 | 7.0 | — | Microsoft | Windows 10 Version 1607 | CWE-415 | Windows Print Spooler Components Elevation of Privilege Vulnerability |
| CVE-2026-69310 | 7.0 | — | Microsoft | Windows 10 Version 1607 | CWE-416 | Windows DNS Elevation of Privilege Vulnerability |
| CVE-2026-69311 | 7.0 | — | Microsoft | Windows 10 Version 1607 | CWE-416 | Windows Audio Service Elevation of Privilege Vulnerability |
| CVE-2026-69319 | 7.0 | — | Microsoft | Windows 10 Version 1607 | CWE-362 | Windows USB Video Driver Elevation of Privilege Vulnerability |
| CVE-2026-69331 | 7.0 | — | Microsoft | Windows 10 Version 1607 | CWE-416 | Windows Remote Access Connection Manager Elevation of Privilege Vulnerability |
| CVE-2026-69333 | 7.0 | — | Microsoft | Windows 11 Version 24H2 | CWE-416 | Windows Win32k Elevation of Privilege Vulnerability |
| CVE-2026-69335 | 7.0 | — | Microsoft | Windows 10 Version 1607 | CWE-416 | Windows Win32k Elevation of Privilege Vulnerability |
| CVE-2026-69341 | 7.0 | — | Microsoft | Windows 10 Version 1607 | CWE-416 | Windows Image Acquisition Elevation of Privilege Vulnerability |
| CVE-2026-69362 | 7.0 | — | Microsoft | Windows 10 Version 1607 | CWE-416 | Windows Error Reporting Elevation of Privilege Vulnerability |
| CVE-2026-69379 | 7.0 | — | Microsoft | Windows 11 version 23H2 | CWE-59 | Windows NTFS Elevation of Privilege Vulnerability |
| CVE-2026-69383 | 7.0 | — | Microsoft | Windows 11 version 23H2 | CWE-73 | Windows Shell Elevation of Privilege Vulnerability |
| CVE-2026-69385 | 7.0 | — | Microsoft | Windows 10 Version 1607 | CWE-362 | Windows TCP/IP Elevation of Privilege Vulnerability |
| CVE-2026-69388 | 7.0 | — | Microsoft | Windows 10 Version 1809 | CWE-416 | Windows Bluetooth Service Elevation of Privilege Vulnerability |
| CVE-2026-69394 | 7.0 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows Audio Service Elevation of Privilege Vulnerability |
| CVE-2026-69398 | 7.0 | — | Microsoft | Windows 10 Version 1809 | CWE-362 | Windows Bluetooth Service Elevation of Privilege Vulnerability |
| CVE-2026-69401 | 7.0 | — | Microsoft | Windows 11 Version 24H2 | CWE-416 | Audio Video Control Transport Protocol Elevation of Privilege Vulnerability |
| CVE-2026-69404 | 7.0 | — | Microsoft | Windows 10 Version 1607 | CWE-362 | Windows TCP/IP Elevation of Privilege Vulnerability |
| CVE-2026-69410 | 7.0 | — | Microsoft | Windows 10 Version 1607 | CWE-416 | Windows Win32k Elevation of Privilege Vulnerability |
| CVE-2026-69413 | 7.0 | — | Microsoft | Windows 10 Version 1607 | CWE-416 | Windows USB Audio Class driver (usbaudio.sys) Elevation of Privilege Vulnerab… |
| CVE-2026-69422 | 7.0 | — | Microsoft | Windows 11 Version 24H2 | CWE-416 | Windows USB Video Driver Elevation of Privilege Vulnerability |
| CVE-2026-69430 | 7.0 | — | Microsoft | Windows 10 Version 1607 | CWE-416 | Windows Embedded Mode Service Elevation of Privilege Vulnerability |
| CVE-2026-69440 | 7.0 | — | Microsoft | Windows 11 Version 24H2 | CWE-367 | Windows MIDI Service Module Elevation of Privileges Vulnerability |
| CVE-2026-69441 | 7.0 | — | Microsoft | Windows 10 Version 1607 | CWE-362 | Windows Installer Elevation of Privilege Vulnerability |
| CVE-2026-69448 | 7.0 | — | Microsoft | Windows 10 Version 21H2 | CWE-362 | Windows Bluetooth Service Elevation of Privilege Vulnerability |
| CVE-2026-69466 | 7.0 | — | Microsoft | Windows 10 Version 1607 | CWE-367 | Windows Kernel Elevation of Privilege Vulnerability |
| CVE-2026-69468 | 7.0 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows Volume Manager Extension Driver Elevation of Privilege Vulnerability |
| CVE-2026-69470 | 7.0 | — | Microsoft | Windows 10 Version 1607 | CWE-416 | Connected User Experiences and Telemetry Elevation of Privilege Vulnerability |
| CVE-2026-69472 | 7.0 | — | Microsoft | Windows 10 Version 1607 | CWE-416 | Windows Devices Human Interface Elevation of Privilege Vulnerability |
| CVE-2026-69473 | 7.0 | — | Microsoft | Windows 10 Version 1607 | CWE-416 | Windows Kernel Elevation of Privilege Vulnerability |
| CVE-2026-69488 | 7.0 | — | Microsoft | Windows 10 Version 1607 | CWE-416 | Windows Device Association Service Elevation of Privilege Vulnerability |
| CVE-2026-69492 | 7.0 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows Partition Management Driver Elevation of Privilege Vulnerability |
| CVE-2026-69498 | 7.0 | — | Microsoft | Windows 10 Version 1809 | CWE-416 | Windows Win32k Elevation of Privilege Vulnerability |
| CVE-2026-69500 | 7.0 | — | Microsoft | Windows 10 Version 1607 | CWE-416 | Windows Image Acquisition Elevation of Privilege Vulnerability |
| CVE-2026-69501 | 7.0 | — | Microsoft | Windows 10 Version 21H2 | CWE-822 | Windows Secure Kernel Mode Elevation of Privilege Vulnerability |
| CVE-2026-69516 | 7.0 | — | Microsoft | Windows 10 Version 1809 | CWE-416 | Connected Devices Platform Service (Cdpsvc) Elevation of Privilege Vulnerability |
| CVE-2026-69517 | 7.0 | — | Microsoft | Windows 10 Version 1809 | CWE-416 | Windows Wireless Networking Elevation of Privilege Vulnerability |
| CVE-2026-69540 | 7.0 | — | Microsoft | Windows 10 Version 1809 | CWE-416 | Windows Audio Service Elevation of Privilege Vulnerability |
| CVE-2026-69549 | 7.0 | — | Microsoft | Windows 10 Version 1809 | CWE-125 | Virtual Hard Disk (VHD) Miniport Driver Elevation of Privilege Vulernability |
| CVE-2026-69560 | 7.0 | — | Microsoft | Windows 10 Version 1607 | CWE-416 | Windows Work Folder Service Elevation of Privilege Vulnerability |
| CVE-2026-69563 | 7.0 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows Program Compatibility Assistant Service Elevation of Privilege Vulner… |
| CVE-2026-69564 | 7.0 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows Online Certificate Status Protocol (OCSP) Elevation of Privilege Vuln… |
| CVE-2026-69567 | 7.0 | — | Microsoft | Windows 10 Version 1607 | CWE-416 | Windows NTFS Elevation of Privilege Vulnerability |
| CVE-2026-69573 | 7.0 | — | Microsoft | Windows 10 Version 1607 | CWE-416 | Windows Universal Disk Format File System Driver (UDFS) Elevation of Privileg… |
| CVE-2026-69574 | 7.0 | — | Microsoft | Windows 10 Version 1809 | CWE-416 | Windows Device Association Service Elevation of Privilege Vulnerability |
| CVE-2026-69575 | 7.0 | — | Microsoft | Windows 10 Version 1607 | CWE-416 | Windows Storage Spaces Controller Elevation of Privilege Vulnerability |
| CVE-2026-69578 | 7.0 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows Kernel Elevation of Privilege Vulnerability |
| CVE-2026-69581 | 7.0 | — | Microsoft | Windows 10 Version 1607 | CWE-362 | Windows Device Association Service Elevation of Privilege Vulnerability |
| CVE-2026-69600 | 7.0 | — | Microsoft | Windows 10 Version 1607 | CWE-416 | Microsoft Windows Search Component Elevation of Privilege Vulnerability |
| CVE-2026-69605 | 7.0 | — | Microsoft | Windows 10 Version 21H2 | CWE-416 | Microsoft Install Service Elevation of Privilege Vulnerability |
| CVE-2026-69606 | 7.0 | — | Microsoft | Windows 11 version 23H2 | CWE-416 | Windows Shell Elevation of Privilege Vulnerability |
| CVE-2026-69610 | 7.0 | — | Microsoft | Windows 10 Version 1607 | CWE-126 | Windows Win32k Elevation of Privilege Vulnerability |
| CVE-2026-69611 | 7.0 | — | Microsoft | Windows 10 Version 1607 | CWE-416 | Virtual Hard Disk (VHD) Miniport Driver Elevation of Privilege Vulernability |
| CVE-2026-69613 | 7.0 | — | Microsoft | Windows 10 Version 1607 | CWE-416 | Windows Image Acquisition Elevation of Privilege Vulnerability |
| CVE-2026-69617 | 7.0 | — | Microsoft | Windows 11 version 26H1 | CWE-125 | Windows Resilient File System (ReFS) Elevation of Privilege Vulnerability |
| CVE-2026-69621 | 7.0 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Role: Windows Fax Service Elevation of Privilege Vulnerability |
| CVE-2026-69630 | 7.0 | — | Microsoft | Windows 10 Version 1607 | CWE-125 | Windows Win32k Elevation of Privilege Vulnerability |
| CVE-2026-69645 | 7.0 | — | Microsoft | Windows 10 Version 1607 | CWE-416 | Windows Message Queuing Elevation of Privilege Vulnerability |
| CVE-2026-69648 | 7.0 | — | Microsoft | Windows 10 Version 21H2 | CWE-416 | Windows Notification Elevation of Privilege Vulnerability |
| CVE-2026-69652 | 7.0 | — | Microsoft | Windows 10 Version 1607 | CWE-416 | Windows Win32k Elevation of Privilege Vulnerability |
| CVE-2026-69654 | 7.0 | — | Microsoft | Windows 10 Version 1607 | CWE-416 | Windows Accounts Control Elevation of Privilege Vulnerability |
| CVE-2026-69682 | 7.0 | — | Microsoft | Windows 10 Version 1809 | CWE-362 | Windows Host Guardian Service Elevation of Privilege Vulnerability |
| CVE-2026-69692 | 7.0 | — | Microsoft | Windows 10 Version 1607 | CWE-416 | Windows Audio Service Elevation of Privilege Vulnerability |
| CVE-2026-69693 | 7.0 | — | Microsoft | Windows 10 Version 1607 | CWE-416 | Windows Device Association Broker Service Elevation of Privilege Vulnerability |
| CVE-2026-69694 | 7.0 | — | Microsoft | Windows 10 Version 1607 | CWE-502 | Windows IP Address Management (IPAM) Service Elevation of Privilege Vulnerabi… |
| CVE-2026-69708 | 7.0 | — | Microsoft | Windows 10 Version 1809 | CWE-416 | Windows Web Platform Storage Elevation of Privilege Vulnerability |
| CVE-2026-69711 | 7.0 | — | Microsoft | Windows 10 Version 1607 | CWE-416 | Windows Device Association Service Elevation of Privilege Vulnerability |
| CVE-2026-69735 | 7.0 | — | Microsoft | Windows 10 Version 1607 | CWE-416 | Windows Broadcast DVR User Service Elevation of Privilege Vulnerability |
| CVE-2026-69779 | 7.0 | — | Microsoft | Windows 10 Version 1607 | CWE-367 | Windows Win32k Elevation of Privilege Vulnerability |
| CVE-2026-69791 | 7.0 | — | Microsoft | Windows 10 Version 1809 | CWE-416 | Windows Device Association Service Elevation of Privilege Vulnerability |
| CVE-2026-69806 | 7.0 | — | Microsoft | .NET 10.0 | CWE-94 | .NET Elevation of Privilege Vulnerability |
| CVE-2026-69814 | 7.0 | — | Microsoft | Windows 11 version 23H2 | CWE-416 | Windows Credential Providers Elevation of Privilege Vulnerability |
| CVE-2026-69816 | 7.0 | — | Microsoft | Windows 10 Version 1607 | CWE-416 | Windows Accounts Control Elevation of Privilege Vulnerability |
| CVE-2026-69817 | 7.0 | — | Microsoft | Windows 10 Version 1607 | CWE-416 | Windows Bluetooth Port Driver Elevation of Privilege Vulnerability |
| CVE-2026-69818 | 7.0 | — | Microsoft | Windows 11 Version 24H2 | CWE-416 | Windows Win32k Elevation of Privilege Vulnerability |
| CVE-2026-69834 | 7.0 | — | Microsoft | Windows 10 Version 1607 | CWE-416 | Windows ALPC Elevation of Privilege Vulnerability |
| CVE-2026-69838 | 7.0 | — | Microsoft | Windows 10 Version 1607 | CWE-416 | Windows Print Spooler Components Elevation of Privilege Vulnerability |
| CVE-2026-69859 | 7.0 | — | Microsoft | Windows 10 Version 1607 | CWE-191 | Windows USB Audio Class driver (usbaudio.sys) Elevation of Privilege Vulnerab… |
| CVE-2026-69866 | 7.0 | — | Microsoft | Windows 10 Version 1809 | CWE-416 | Windows Device Association Service Elevation of Privilege Vulnerability |
| CVE-2026-69889 | 7.0 | — | Microsoft | Windows 10 Version 1809 | CWE-416 | Windows Bluetooth Service Elevation of Privilege Vulnerability |
| CVE-2026-69891 | 7.0 | — | Microsoft | Windows 10 Version 1607 | CWE-416 | Windows Media Elevation of Privilege Vulnerability |
| CVE-2026-69896 | 7.0 | — | Microsoft | Windows 11 Version 24H2 | CWE-416 | Windows Error Reporting Elevation of Privilege Vulnerability |
| CVE-2026-69911 | 7.0 | — | Microsoft | Windows 10 Version 1607 | CWE-416 | Microsoft Windows Search Component Elevation of Privilege Vulnerability |
| CVE-2026-70283 | 7.0 | — | Microsoft | Windows 10 Version 1607 | CWE-863 | Windows Win32k Elevation of Privilege Vulnerability |
| CVE-2026-70562 | 7.0 | — | Microsoft | Windows 10 Version 1607 | CWE-415 | Windows Audio Service Elevation of Privilege Vulnerability |
| CVE-2026-70565 | 7.0 | — | Microsoft | Windows 10 Version 1607 | CWE-416 | Windows AF_UNIX Socket Provider Elevation of Privilege Vulnerability |
| CVE-2026-70567 | 7.0 | — | Microsoft | Windows 11 Version 24H2 | CWE-415 | Windows Display Enhancement Service Elevation of Privilege Vulnerability |
| CVE-2026-70568 | 7.0 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows Defender Firewall Service Elevation of Privilege Vulnerability |
| CVE-2026-70573 | 7.0 | — | Microsoft | Windows 10 Version 1607 | CWE-20 | Windows Biometric Service Elevation of Privilege Vulnerability |
| CVE-2026-70577 | 7.0 | — | Microsoft | Windows 10 Version 1809 | CWE-416 | Windows Modern Device Management (MDM) Elevation of Privilege Vulnerability |
| CVE-2026-70578 | 7.0 | — | Microsoft | Windows 10 Version 21H2 | CWE-122 | Windows Credential Guard Elevation of Privilege Vulnerability |
| CVE-2026-70585 | 7.0 | — | Microsoft | Windows Server 2012 | CWE-416 | Windows Services for NFS ONCRPC XDR Driver Remote Code Execution Vulnerability |
| CVE-2026-71332 | 7.0 | — | Microsoft | Windows 10 Version 1607 | CWE-416 | Windows Secure Socket Tunneling Protocol (SSTP) Elevation of Privilege Vulner… |
| CVE-2026-71333 | 7.0 | — | Microsoft | Windows 10 Version 1607 | CWE-416 | Windows Remote Access Connection Manager Elevation of Privilege Vulnerability |
| CVE-2026-71340 | 7.0 | — | Microsoft | Windows 10 Version 1607 | CWE-416 | Windows File History Service Elevation of Privilege Vulnerability |
| CVE-2026-71342 | 7.0 | — | Microsoft | Windows 10 Version 1607 | CWE-416 | Windows Remote Access Connection Manager Elevation of Privilege Vulnerability |
| CVE-2026-71351 | 7.0 | — | Microsoft | Windows 10 Version 1607 | CWE-415 | Windows Routing and Remote Access Service (RRAS) Elevation of Privilege Vulne… |
| CVE-2026-71353 | 7.0 | — | Microsoft | Windows 10 Version 1607 | CWE-415 | Windows Routing and Remote Access Service (RRAS) Elevation of Privilege Vulne… |
| CVE-2026-72926 | 7.0 | — | Microsoft | Windows 10 Version 1607 | CWE-416 | Windows Internet Connection Sharing (ICS) Elevation of Privilege Vulnerability |
| CVE-2026-72930 | 7.0 | — | Microsoft | Windows 10 Version 1607 | CWE-416 | Windows Secure Socket Tunneling Protocol (SSTP) Remote Code Execution Vulnera… |
| CVE-2026-72952 | 7.0 | — | Microsoft | Windows 10 Version 1809 | CWE-125 | Windows Spaceport.sys Remote Code Execution Vulnerability |
| CVE-2026-72963 | 7.0 | — | Microsoft | Windows 10 Version 1607 | CWE-416 | Windows Modern Execution Server Elevation of Privilege Vulnerability |
| CVE-2026-73003 | 7.0 | — | Microsoft | Windows 10 Version 1809 | CWE-416 | Windows Modern Device Management (MDM) Elevation of Privilege Vulnerability |
| CVE-2026-73005 | 7.0 | — | Microsoft | Windows 10 Version 1607 | CWE-362 | Windows Authentication Methods Elevation of Privilege Vulnerability |
| CVE-2026-73022 | 7.0 | — | Microsoft | Windows 10 Version 1809 | CWE-416 | Windows Modern Device Management (MDM) Elevation of Privilege Vulnerability |
| CVE-2026-77485 | 7.0 | — | Microsoft | Microsoft SQL Server 2017 (CU 31) | CWE-416 | SQL Server Elevation of Privilege Vulnerability |
| CVE-2026-77894 | 7.0 | — | Microsoft | Windows 10 Version 1607 | CWE-362 | Windows Installer Elevation of Privilege Vulnerability |
| CVE-2026-77897 | 7.0 | — | Microsoft | Power Automate agent for virtual desktops | CWE-23 | Microsoft Power Automate Desktop Elevation of Privilege Vulnerability |
| CVE-2026-77899 | 7.0 | — | Microsoft | Windows 11 Version 24H2 | CWE-416 | Windows Security Center Elevation of Privilege Vulnerability |
| CVE-2026-77905 | 7.0 | — | Microsoft | Windows 10 Version 1607 | CWE-416 | Windows Management Instrumentation Elevation of Privilege Vulnerability |
| CVE-2026-78457 | 7.0 | — | Microsoft | Windows 11 Version 24H2 | CWE-416 | Windows Security Health Service Elevation of Privilege Vulnerability |
| CVE-2026-78464 | 7.0 | — | Microsoft | Windows 11 Version 24H2 | CWE-367 | Windows MIDI Service Module Elevation of Privileges Vulnerability |
| CVE-2026-80093 | 7.0 | — | Microsoft | Windows 10 Version 1809 | CWE-416 | Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability |
| CVE-2026-81192 | 7.0 | — | open-telemetry | opentelemetry-dotnet-contrib | CWE-426 | OpenTelemetry.Resources.Host vulnerable to arbitrary code execution via local… |
| CVE-2026-81389 | 7.0 | — | Microsoft | Microsoft 365 Apps for Enterprise | CWE-122 | Microsoft Excel Remote Code Execution Vulnerability |
| CVE-2026-82062 | 7.0 | — | MongoDB | MongoDB Server | CWE-863 | Improper Authorization in MongoDB Server applyOps Command Allows Writes to Ar… |
| CVE-2026-83940 | 7.0 | — | Microsoft | Windows 10 Version 1607 | CWE-416 | Windows Device Association Service Elevation of Privilege Vulnerability |
| CVE-2026-83999 | 7.0 | — | Microsoft | Windows 11 Version 24H2 | CWE-59 | Windows Resilient File System (ReFS) Deduplication Service Elevation of Privi… |
| CVE-2026-85360 | 7.0 | — | Microsoft | Windows 10 Version 1607 | CWE-416 | Windows Kernel Elevation of Privilege Vulnerability |
| CVE-2026-86135 | 7.0 | — | WatchGuard | Dimension | CWE-352 | Dimension CSRF Vulnerability in Database Snapshot Creation Allows Denial of S… |
| CVE-2026-53933 | 6.9 | — | macropay-solutions | maravel-framework | CWE-203 | Maravel-Framework Vulnerable to Side-Channel Information Disclosure (Error Or… |
| CVE-2026-81531 | 6.9 | — | TP-Link System Inc. | Omada Software Controller | CWE-200 | Unauthenticated Account Information Disclosure in Multiple Omada Controllers |
| CVE-2026-81823 | 6.9 | — | AVEVA | Pipeline Integrity Monitor | CWE-862 | AVEVA Pipeline Integrity Monitor Missing Authorization |
| CVE-2026-86804 | 6.9 | — | seakee | CPA-Manager-Plus | CWE-266 | seakee CPA-Manager-Plus HTTP handler.go CPAResource improper authorization |
| CVE-2026-86806 | 6.9 | — | opengeos | GeoLibre | CWE-918 | opengeos GeoLibre _is_within_roots server-side request forgery |
| CVE-2026-86810 | 6.9 | — | n/a | Open-Web-Analytics | CWE-287 | Open-Web-Analytics Controller Controller.php checkCapabilityAndAuthenticateUs… |
| CVE-2026-65812 | 6.8 | — | Microsoft | Microsoft Teams for Android | CWE-201 | Microsoft Teams for Android Information Disclosure Vulnerability |
| CVE-2026-68833 | 6.8 | — | Microsoft | Windows 10 Version 1607 | CWE-122 | Windows NTFS Remote Code Execution Vulnerability |