2026 CVE Vulnerabilities

45,066 CVEs published in 2026.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2026-50399HIGH7.8Out-of-bounds read in Windows Kernel allows an authorized attacker to elevate privileges locally.
CVE-2026-50398HIGH7.5Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Media allows an a...
CVE-2026-50397HIGH7Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally.
CVE-2026-50396HIGH7.8Use after free in Windows Kernel-Mode Drivers allows an authorized attacker to elevate privileges locally.
CVE-2026-50393HIGH7.8Use after free in Windows Kernel-Mode Drivers allows an authorized attacker to elevate privileges locally.
CVE-2026-50392HIGH7Use after free in Windows Secure Kernel Mode allows an authorized attacker to elevate privileges locally.
CVE-2026-50391HIGH7.8Improper privilege management in Windows Group Policy allows an authorized attacker to elevate privileges locally.
CVE-2026-50390HIGH7.8Access of resource using incompatible type ('type confusion') in Windows Kernel allows an authorized attacker to elevate...
CVE-2026-50388HIGH7.8Out-of-bounds read in Windows NTFS allows an unauthorized attacker to execute code locally.
CVE-2026-50387HIGH7.8Stack-based buffer overflow in Windows GDI allows an authorized attacker to elevate privileges locally.
CVE-2026-50386HIGH7.8Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to execute code locally.
CVE-2026-50385HIGH8.8Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Runtime allows an...
CVE-2026-50382HIGH8.8Untrusted pointer dereference in Windows DirectX allows an authorized attacker to execute code locally.
CVE-2026-50379HIGH7.5Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Media allows an a...
CVE-2026-50378HIGH7Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Key Guard allows ...
CVE-2026-50377HIGH7.8Out-of-bounds read in Windows Kernel allows an authorized attacker to elevate privileges locally.
CVE-2026-50375HIGH7.8Heap-based buffer overflow in Windows DirectX allows an authorized attacker to elevate privileges locally.
CVE-2026-50373HIGH7.8Improper access control in Microsoft Windows Search Component allows an authorized attacker to elevate privileges locall...
CVE-2026-50372HIGH7Buffer over-read in Windows Redirected Drive Buffering allows an authorized attacker to elevate privileges locally.
CVE-2026-50371HIGH7Concurrent execution using shared resource with improper synchronization ('race condition') in Windows LUAFV allows an a...
CVE-2026-50370HIGH8.8Heap-based buffer overflow in Windows DHCP Server allows an unauthorized attacker to execute code over an adjacent netwo...
CVE-2026-50369HIGH8.8Use after free in Windows Remote Desktop Services allows an authorized attacker to elevate privileges over a network.
CVE-2026-50368HIGH7.5Stack-based buffer overflow in Active Directory Federation Services allows an unauthorized attacker to deny service over...
CVE-2026-50367HIGH7.8Incorrect access of indexable resource ('range error') in Windows Sensor Data Service allows an authorized attacker to e...
CVE-2026-50365HIGH8Improper authentication in Windows RPC API allows an unauthorized attacker to elevate privileges over an adjacent networ...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now