SEPTEMBER 22, 2026
Live Feed
Vulnerability Register

CVE Database

Synced from NVD, cross-referenced against CISA KEV and EPSS · ordered by last update

148,339 records on file
Page 1118 of 4,945
CVE ID Score Description
1mo ago
7.8

Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

1mo ago
7.8

Free of memory not on the heap in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

1mo ago
7.8

Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

1mo ago
8.8

Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.

1mo ago
7.8

Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

1mo ago
7.8

Integer overflow or wraparound in Windows SPNEGO Extended Negotiation allows an authorized attacker to elevate privileges locally.

1mo ago
7.8

Local Security Authority Subsystem Service Elevation of Privilege Vulnerability

1mo ago
8.1

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in uxper Sala. This issue affects Sala: from n/a through 1.1.6.

1mo ago
7.7

Adobe Experience Manager versions 6.5.23.0 and earlier are affected by an Improper Input Validation vulnerability that could result in a Security feature bypass. A low-privileged attacker could leverage this vulnerability to bypass security measures and gain unauthorized read access. Scope is changed

1mo ago
7.3

Improper access control in Windows MultiPoint Services allows an authorized attacker to elevate privileges locally.

1mo ago
7

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Hyper-V allows an authorized attacker to elevate privileges locally.

1mo ago
7

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Connected Devices Platform Service allows an authorized attacker to elevate privileges locally.

1mo ago
8.8

Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code over a network.

1mo ago
7

Use after free in Microsoft Virtual Hard Drive allows an authorized attacker to elevate privileges locally.

1mo ago
7.8

Use after free in Windows UI XAML Phone DatePickerFlyout allows an authorized attacker to elevate privileges locally.

1mo ago
8.8

Integer overflow or wraparound in Windows Kernel allows an authorized attacker to elevate privileges locally.

1mo ago
7

Concurrent execution using shared resource with improper synchronization ('race condition') in Capability Access Management Service (camsvc) allows an authorized attacker to elevate privileges locally.

1mo ago
8.8

Integer overflow or wraparound in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code over a network.

1mo ago
7

Concurrent execution using shared resource with improper synchronization ('race condition') in Microsoft Brokering File System allows an authorized attacker to elevate privileges locally.

1mo ago
7.4

Use after free in Windows Management Services allows an unauthorized attacker to elevate privileges locally.

1mo ago
7.8

Use after free in Windows Connected Devices Platform Service allows an authorized attacker to elevate privileges locally.

1mo ago
7

Stack-based buffer overflow in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.

1mo ago
7.8

Improper access control in Windows Hyper-V allows an authorized attacker to elevate privileges locally.

1mo ago
7

Time-of-check time-of-use (toctou) race condition in Windows TCP/IP allows an authorized attacker to elevate privileges locally.

1mo ago
7.8

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Hyper-V allows an authorized attacker to elevate privileges locally.

1mo ago
7.8

Integer overflow or wraparound in Windows Hyper-V allows an authorized attacker to elevate privileges locally.

1mo ago
7

Concurrent execution using shared resource with improper synchronization ('race condition') in Microsoft Graphics Component allows an authorized attacker to elevate privileges locally.

1mo ago
7.5

Out-of-bounds read in Windows Internet Information Services allows an unauthorized attacker to deny service over a network.

1mo ago
7

Use after free in Windows Bluetooth Service allows an authorized attacker to elevate privileges locally.

1mo ago
7.8

Untrusted pointer dereference in Windows DWM allows an authorized attacker to elevate privileges locally.