2026 CVE Vulnerabilities
43,090 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-62798 | MEDIUM | 5.5 | — | Aug 11, 2026 | Untrusted pointer dereference in Windows Win32K allows an authorized attacker to disclose information locally. |
| CVE-2026-62796 | MEDIUM | 5.5 | — | Aug 11, 2026 | Out-of-bounds read in Windows NTFS allows an authorized attacker to disclose information locally. |
| CVE-2026-62793 | MEDIUM | 5.5 | 0.3% | Aug 11, 2026 | Buffer over-read in Windows NTFS allows an authorized attacker to disclose information locally. |
| CVE-2026-62786 | MEDIUM | 5.5 | 0.3% | Aug 11, 2026 | Out-of-bounds read in Windows Win32K allows an authorized attacker to disclose information locally. |
| CVE-2026-62782 | MEDIUM | 6.5 | — | Aug 11, 2026 | Out-of-bounds read in Windows SMB Client allows an unauthorized attacker to disclose information over a network. |
| CVE-2026-62775 | MEDIUM | 5.5 | — | Aug 11, 2026 | Incorrect authorization in Windows Container Isolation FS Filter Driver (unionfs.sys) allows an authorized attacker to d... |
| CVE-2026-62769 | MEDIUM | 6.7 | — | Aug 11, 2026 | Numeric truncation error in Windows DNS allows an authorized attacker to elevate privileges locally. |
| CVE-2026-62757 | MEDIUM | 5.3 | 0.2% | Aug 11, 2026 | Improper verification of cryptographic signature in Windows Schannel allows an unauthorized attacker to bypass a securit... |
| CVE-2026-62750 | MEDIUM | 6.5 | — | Aug 11, 2026 | Partial string comparison in Windows HTTP Protocol Stack allows an unauthorized attacker to perform tampering over an ad... |
| CVE-2026-62746 | MEDIUM | 5.5 | — | Aug 11, 2026 | Buffer over-read in Windows Win32K allows an authorized attacker to disclose information locally. |
| CVE-2026-62745 | MEDIUM | 6.5 | — | Aug 11, 2026 | Integer underflow (wrap or wraparound) in Windows DHCP Server allows an unauthorized attacker to disclose information ov... |
| CVE-2026-62743 | MEDIUM | 5.5 | — | Aug 11, 2026 | Out-of-bounds read in Windows Win32K allows an authorized attacker to disclose information locally. |
| CVE-2026-62742 | MEDIUM | 6.5 | 0.5% | Aug 11, 2026 | Integer underflow (wrap or wraparound) in Windows DHCP Server allows an unauthorized attacker to disclose information ov... |
| CVE-2026-62740 | MEDIUM | 5.5 | — | Aug 11, 2026 | Use of uninitialized resource in Windows Imaging Component allows an authorized attacker to disclose information locally... |
| CVE-2026-62738 | MEDIUM | 5.5 | — | Aug 11, 2026 | Out-of-bounds read in Windows Management Instrumentation allows an authorized attacker to disclose information locally. |
| CVE-2026-62730 | MEDIUM | 5.5 | — | Aug 11, 2026 | Buffer over-read in Windows Wired AutoConfig Service allows an authorized attacker to disclose information locally. |
| CVE-2026-62720 | MEDIUM | 6.5 | 0.5% | Aug 11, 2026 | Integer underflow (wrap or wraparound) in Windows DHCP Server allows an unauthorized attacker to disclose information ov... |
| CVE-2026-62718 | MEDIUM | 6.5 | — | Aug 11, 2026 | Integer underflow (wrap or wraparound) in Windows DHCP Server allows an unauthorized attacker to disclose information ov... |
| CVE-2026-62716 | MEDIUM | 6.5 | — | Aug 11, 2026 | Integer underflow (wrap or wraparound) in Windows DHCP Server allows an unauthorized attacker to disclose information ov... |
| CVE-2026-62715 | MEDIUM | 6.5 | 0.5% | Aug 11, 2026 | Integer underflow (wrap or wraparound) in Windows DHCP Server allows an unauthorized attacker to disclose information ov... |
| CVE-2026-62714 | MEDIUM | 6.5 | — | Aug 11, 2026 | Integer underflow (wrap or wraparound) in Windows DHCP Server allows an unauthorized attacker to disclose information ov... |
| CVE-2026-62709 | MEDIUM | 5.5 | — | Aug 11, 2026 | Use of uninitialized resource in Windows GDI+ allows an authorized attacker to disclose information locally. |
| CVE-2026-62708 | MEDIUM | 6.4 | — | Aug 11, 2026 | Use after free in Windows Kernel allows an unauthorized attacker to elevate privileges with a physical attack. |
| CVE-2026-62703 | MEDIUM | 5.5 | 0.4% | Aug 11, 2026 | Out-of-bounds read in Windows DWM Core Library allows an authorized attacker to disclose information locally. |
| CVE-2026-62702 | MEDIUM | 6.8 | — | Aug 11, 2026 | Null pointer dereference in Windows Graphics Kernel allows an unauthorized attacker to deny service over a network. |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now