Ad

CVE Vulnerability Database

Complete database of CVE vulnerabilities. Track critical security threats, exploits and patches. Updated daily from NVD NIST.

CVE-2026-33115

8.4

Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally.

Microsoft
Details

CVE-2026-33114

8.4

Untrusted pointer dereference in Microsoft Office Word allows an unauthorized attacker to execute code locally.

Microsoft
Details

CVE-2026-33104

7.0

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Win32K - GRFX allows an authorized attacker to elevate privileges locally.

Microsoft
Details

CVE-2026-33103

5.5

Improper access control in Microsoft Dynamics 365 (on-premises) allows an authorized attacker to disclose information locally.

Microsoft
Details

CVE-2026-33101

7.8

Use after free in Windows Print Spooler Components allows an authorized attacker to elevate privileges locally.

Microsoft
Details

CVE-2026-33100

7.0

Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.

Microsoft
Details

CVE-2026-33099

7.0

Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.

Microsoft
Details

CVE-2026-33098

7.8

Use after free in Windows Container Isolation FS Filter Driver allows an authorized attacker to elevate privileges locally.

Microsoft
Details

CVE-2026-33096

7.5

Out-of-bounds read in Windows HTTP.sys allows an unauthorized attacker to deny service over a network.

Microsoft
Details

CVE-2026-33095

7.8

Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally.

Microsoft
Details
38/3864