SEPTEMBER 7, 2026
Live Feed
Vulnerability Register

CVE Database

Synced from NVD, cross-referenced against CISA KEV and EPSS · ordered by last update

144,364 records on file
Page 577 of 4,813
CVE ID Score Description
1mo ago
7

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows TCP/IP allows an authorized attacker to elevate privileges locally.

1mo ago
7.8

Untrusted pointer dereference in Windows Universal Plug and Play (UPnP) Device Host allows an authorized attacker to elevate privileges locally.

1mo ago
7.8

Untrusted pointer dereference in Windows Universal Plug and Play (UPnP) Device Host allows an authorized attacker to elevate privileges locally.

1mo ago
7.8

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Shell allows an authorized attacker to elevate privileges locally.

1mo ago
7

Use after free in Windows WFP NDIS Lightweight Filter Driver (wfplwfs.sys) allows an authorized attacker to elevate privileges locally.

1mo ago
7.8

Use after free in Windows Universal Plug and Play (UPnP) Device Host allows an authorized attacker to elevate privileges locally.

1mo ago
7.8

Use after free in Windows Universal Plug and Play (UPnP) Device Host allows an authorized attacker to elevate privileges locally.

1mo ago
7.8

Improper access control in Microsoft Management Console allows an authorized attacker to elevate privileges locally.

1mo ago
7.7

Improper input validation in Windows BitLocker allows an unauthorized attacker to bypass a security feature locally.

1mo ago
8

Improper authorization in Windows Kerberos allows an authorized attacker to elevate privileges over an adjacent network.

1mo ago
7.8

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows User Interface Core allows an authorized attacker to elevate privileges locally.

1mo ago
7.8

Improper handling of insufficient permissions or privileges in Windows Installer allows an authorized attacker to elevate privileges locally.

1mo ago
7.8

Use after free in Microsoft Windows Search Component allows an authorized attacker to elevate privileges locally.

1mo ago
7

Use after free in Windows TDI Translation Driver (tdx.sys) allows an authorized attacker to elevate privileges locally.

1mo ago
7.8

Integer underflow (wrap or wraparound) in Windows Storage Spaces Controller allows an authorized attacker to elevate privileges locally.

1mo ago
7.8

Buffer over-read in Windows Projected File System allows an authorized attacker to elevate privileges locally.

1mo ago
7.8

Improper access control in Windows RPC API allows an authorized attacker to elevate privileges locally.

1mo ago
7

Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.

1mo ago
7.8

Use after free in Microsoft Brokering File System allows an authorized attacker to elevate privileges locally.

1mo ago
7.8

Heap-based buffer overflow in Windows Kernel allows an authorized attacker to elevate privileges locally.

1mo ago
7.8

Double free in Windows Kernel allows an authorized attacker to elevate privileges locally.

1mo ago
8.8

Integer size truncation in Windows Advanced Rasterization Platform (WARP) allows an unauthorized attacker to elevate privileges locally.

1mo ago
7

Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.

1mo ago
7.8

Heap-based buffer overflow in Windows Client Side Caching driver (csc.sys) allows an authorized attacker to elevate privileges locally.

1mo ago
7

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Server Update Service allows an authorized attacker to elevate privileges locally.

1mo ago
7

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.

1mo ago
7.8

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Push Notifications allows an authorized attacker to elevate privileges locally.

1mo ago
7.5

Uncontrolled resource consumption in .NET allows an unauthorized attacker to deny service over a network.

1mo ago
7.8

Improper input validation in Microsoft PowerShell allows an authorized attacker to elevate privileges locally.

1mo ago
7.8

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.