Ad

CVE Vulnerability Database

Complete database of CVE vulnerabilities. Track critical security threats, exploits and patches. Updated daily from NVD NIST.

CVE-2026-26166

7.0

Double free in Windows Shell allows an authorized attacker to elevate privileges locally.

Double
Details

CVE-2026-26165

7.0

Use after free in Windows Shell allows an authorized attacker to elevate privileges locally.

Details

CVE-2026-26163

7.8

Double free in Windows Kernel allows an authorized attacker to elevate privileges locally.

Double
Details

CVE-2026-26162

7.8

Access of resource using incompatible type ('type confusion') in Windows OLE allows an authorized attacker to elevate privileges locally.

Access
Details

CVE-2026-26161

7.8

Untrusted pointer dereference in Windows Sensor Data Service allows an authorized attacker to elevate privileges locally.

Untrusted
Details

CVE-2026-26160

7.8

Missing authentication for critical function in Windows Remote Desktop Licensing Service allows an authorized attacker to elevate privileges locally.

Details

CVE-2026-26159

7.8

Missing authentication for critical function in Windows Remote Desktop Licensing Service allows an authorized attacker to elevate privileges locally.

Details

CVE-2026-26156

7.8

Heap-based buffer overflow in Windows Hyper-V allows an unauthorized attacker to execute code locally.

Heap-based
Details

CVE-2026-26155

6.5

Microsoft Local Security Authority Subsystem Service Information Disclosure Vulnerability

Microsoft
Details

CVE-2026-26154

7.5

Improper input validation in Windows Server Update Service allows an unauthorized attacker to perform tampering over a network.

Details
51/3864