Ad

CVE Vulnerability Database

Complete database of CVE vulnerabilities. Track critical security threats, exploits and patches. Updated daily from NVD NIST.

CVE-2026-27927

7.8

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Projected File System allows an authorized attacker to elevate privileges locally.

Concurrent
Details

CVE-2026-27926

7.0

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Cloud Files Mini Filter Driver allows an authorized attacker to elevate privileges locally.

Concurrent
Details

CVE-2026-27925

6.5

Use after free in Windows Universal Plug and Play (UPnP) Device Host allows an unauthorized attacker to disclose information over an adjacent network.

Details

CVE-2026-27924

7.8

Use after free in Desktop Window Manager allows an authorized attacker to elevate privileges locally.

Details

CVE-2026-27923

7.8

Use after free in Desktop Window Manager allows an authorized attacker to elevate privileges locally.

Details

CVE-2026-27922

7.0

Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.

Details

CVE-2026-27921

7.0

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows TCP/IP allows an authorized attacker to elevate privileges locally.

Concurrent
Details

CVE-2026-27920

7.8

Untrusted pointer dereference in Windows Universal Plug and Play (UPnP) Device Host allows an authorized attacker to elevate privileges locally.

Untrusted
Details

CVE-2026-27919

7.8

Untrusted pointer dereference in Windows Universal Plug and Play (UPnP) Device Host allows an authorized attacker to elevate privileges locally.

Untrusted
Details

CVE-2026-27918

7.8

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Shell allows an authorized attacker to elevate privileges locally.

Concurrent
Details
47/3864