AUGUST 31, 2026
Live Feed
Vulnerability Register

CVE Database

Synced from NVD, cross-referenced against CISA KEV and EPSS · ordered by last update

143,462 records on file
Page 389 of 4,783
CVE ID Score Description
26d ago
7

Heap-based buffer overflow in Windows Kernel allows an authorized attacker to elevate privileges locally.

26d ago
7.1

Improper access control in Office for Android allows an unauthorized attacker to perform spoofing locally.

26d ago
8.8

Stack-based buffer overflow in Active Directory Domain Services allows an authorized attacker to execute code over a network.

26d ago
7.8

Untrusted pointer dereference in Microsoft Office allows an unauthorized attacker to execute code locally.

26d ago
8

Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Live Share Canvas SDK allows an authorized attacker to elevate privileges over a network.

26d ago
7.8

Untrusted pointer dereference in Microsoft Office Word allows an unauthorized attacker to execute code locally.

26d ago
8.4

Access of resource using incompatible type ('type confusion') in Windows Hyper-V allows an unauthorized attacker to execute code locally.

26d ago
7

Use after free in Windows Bluetooth Port Driver allows an authorized attacker to elevate privileges locally.

26d ago
7.5

Out-of-bounds read in Windows RDP allows an unauthorized attacker to disclose information over a network.

26d ago
7.8

Heap-based buffer overflow in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.

26d ago
7.8

Use after free in Windows DWM Core Library allows an authorized attacker to elevate privileges locally.

26d ago
7.8

Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to execute code locally.

26d ago
8.1

Access of resource using incompatible type ('type confusion') in Universal Plug and Play (upnp.dll) allows an unauthorized attacker to execute code over a network.

26d ago
8.4

Out-of-bounds read in Windows Hyper-V allows an unauthorized attacker to execute code locally.

26d ago
7.8

Use after free in Windows Bluetooth Service allows an authorized attacker to elevate privileges locally.

26d ago
7

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.

26d ago
7

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.

26d ago
7.8

Access of resource using incompatible type ('type confusion') in Windows Kernel-Mode Drivers allows an authorized attacker to elevate privileges locally.

26d ago
8.1

Use after free in Universal Plug and Play (upnp.dll) allows an unauthorized attacker to execute code over a network.

26d ago
7

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.

26d ago
7

Concurrent execution using shared resource with improper synchronization ('race condition') in UI Automation Manager (uiamanager.dll) allows an authorized attacker to elevate privileges locally.

26d ago
7

Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.

26d ago
7.8

Use after free in Windows SDK allows an authorized attacker to elevate privileges locally.

26d ago
7.8

Integer overflow or wraparound in Windows Internet (wininet.dll) allows an authorized attacker to elevate privileges locally.

26d ago
7.5

Uncontrolled resource consumption in ASP.NET Core allows an unauthorized attacker to deny service over a network.

26d ago
7.9

Protection mechanism failure in Windows Secure Boot allows an authorized attacker to bypass a security feature locally.

26d ago
7.8

Improper link resolution before file access ('link following') in Windows Collaborative Translation Framework allows an authorized attacker to elevate privileges locally.

26d ago
7.5

Improper control of generation of code ('code injection') in Microsoft Exchange Server allows an unauthorized attacker to execute code over a network.

26d ago
8.8

Server-side request forgery (ssrf) in Microsoft Exchange Server allows an authorized attacker to elevate privileges over a network.

26d ago
8.1

Improper authorization in Microsoft Exchange Server allows an authorized attacker to disclose information over a network.