CVE-2026-26166
7.0 HIGH 7.0Double free in Windows Shell allows an authorized attacker to elevate privileges locally.
Complete database of CVE vulnerabilities. Track critical security threats, exploits and patches. Updated daily from NVD NIST.
Double free in Windows Shell allows an authorized attacker to elevate privileges locally.
Use after free in Windows Shell allows an authorized attacker to elevate privileges locally.
Double free in Windows Kernel allows an authorized attacker to elevate privileges locally.
Access of resource using incompatible type ('type confusion') in Windows OLE allows an authorized attacker to elevate privileges locally.
Untrusted pointer dereference in Windows Sensor Data Service allows an authorized attacker to elevate privileges locally.
Missing authentication for critical function in Windows Remote Desktop Licensing Service allows an authorized attacker to elevate privileges locally.
Missing authentication for critical function in Windows Remote Desktop Licensing Service allows an authorized attacker to elevate privileges locally.
Heap-based buffer overflow in Windows Hyper-V allows an unauthorized attacker to execute code locally.
Microsoft Local Security Authority Subsystem Service Information Disclosure Vulnerability
Improper input validation in Windows Server Update Service allows an unauthorized attacker to perform tampering over a network.