Ad

CVE Vulnerability Database

Complete database of CVE vulnerabilities. Track critical security threats, exploits and patches. Updated daily from NVD NIST.

CVE-2026-25570

7.5

A vulnerability has been identified in SICAM SIAPP SDK (All versions < V2.1.7). The SICAM SIAPP SDK does not perform checks on input values potentially resulting in stack overflow. This …

Siemens
Details

CVE-2026-25569

7.5

A vulnerability has been identified in SICAM SIAPP SDK (All versions < V2.1.7). An out-of-bounds write vulnerability exists in SICAM SIAPP SDK. This could allow an attacker to write data …

Siemens
Details

CVE-2026-25190

7.8

Untrusted search path in Windows GDI allows an unauthorized attacker to execute code locally.

Microsoft
Details

CVE-2026-25189

7.8

Use after free in Windows DWM Core Library allows an authorized attacker to elevate privileges locally.

Microsoft
Details

CVE-2026-25188

8.8

Heap-based buffer overflow in Windows Telephony Service allows an unauthorized attacker to elevate privileges over an adjacent network.

Microsoft
Details

CVE-2026-25187

7.8

Improper link resolution before file access ('link following') in Winlogon allows an authorized attacker to elevate privileges locally.

Microsoft
Details

CVE-2026-25186

5.5

Exposure of sensitive information to an unauthorized actor in Windows Accessibility Infrastructure (ATBroker.exe) allows an authorized attacker to disclose information locally.

Exposure
Details

CVE-2026-25185

5.3

Exposure of sensitive information to an unauthorized actor in Windows Shell Link Processing allows an unauthorized attacker to perform spoofing over a network.

Exposure
Details

CVE-2026-25181

7.5

Out-of-bounds read in Windows GDI+ allows an unauthorized attacker to disclose information over a network.

Microsoft
Details

CVE-2026-25180

5.5

Out-of-bounds read in Microsoft Graphics Component allows an unauthorized attacker to disclose information locally.

Microsoft
Details
746/3864