Ad

CVE Vulnerability Database

Complete database of CVE vulnerabilities. Track critical security threats, exploits and patches. Updated daily from NVD NIST.

CVE-2026-27907

7.8

Integer underflow (wrap or wraparound) in Windows Storage Spaces Controller allows an authorized attacker to elevate privileges locally.

Details

CVE-2026-27906

4.4

Improper input validation in Windows Hello allows an authorized attacker to bypass a security feature locally.

Details

CVE-2026-26184

7.8

Buffer over-read in Windows Projected File System allows an authorized attacker to elevate privileges locally.

Details

CVE-2026-26183

7.8

Improper access control in Windows RPC API allows an authorized attacker to elevate privileges locally.

Details

CVE-2026-26182

7.0

Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.

Details

CVE-2026-26181

7.8

Use after free in Microsoft Brokering File System allows an authorized attacker to elevate privileges locally.

Microsoft
Details

CVE-2026-26180

7.8

Heap-based buffer overflow in Windows Kernel allows an authorized attacker to elevate privileges locally.

Heap-based
Details

CVE-2026-26179

7.8

Double free in Windows Kernel allows an authorized attacker to elevate privileges locally.

Double
Details

CVE-2026-26178

8.8

Integer size truncation in Windows Advanced Rasterization Platform (WARP) allows an unauthorized attacker to elevate privileges locally.

Details

CVE-2026-26177

7.0

Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.

Details
49/3864