2026 CVE Vulnerabilities
43,308 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-62733 | HIGH | 7.8 | — | Aug 11, 2026 | Out-of-bounds read in Windows Win32K allows an authorized attacker to elevate privileges locally. |
| CVE-2026-62732 | HIGH | 7.8 | — | Aug 11, 2026 | Heap-based buffer overflow in Windows Telephony Service allows an authorized attacker to elevate privileges locally. |
| CVE-2026-62730 | MEDIUM | 5.5 | — | Aug 11, 2026 | Buffer over-read in Windows Wired AutoConfig Service allows an authorized attacker to disclose information locally. |
| CVE-2026-62729 | HIGH | 7 | — | Aug 11, 2026 | Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Telephony Service... |
| CVE-2026-62728 | HIGH | 7 | — | Aug 11, 2026 | Time-of-check time-of-use (toctou) race condition in Windows Common Log File System Driver allows an authorized attacker... |
| CVE-2026-62726 | HIGH | 7 | — | Aug 11, 2026 | Use after free in Windows Telephony Service allows an authorized attacker to elevate privileges locally. |
| CVE-2026-62725 | HIGH | 7 | — | Aug 11, 2026 | Use after free in Windows Telephony Service allows an authorized attacker to elevate privileges locally. |
| CVE-2026-62724 | HIGH | 7 | — | Aug 11, 2026 | Use after free in Windows Telephony Service allows an authorized attacker to elevate privileges locally. |
| CVE-2026-62723 | HIGH | 7 | — | Aug 11, 2026 | Use after free in Windows Telephony Service allows an authorized attacker to elevate privileges locally. |
| CVE-2026-62722 | HIGH | 7.8 | — | Aug 11, 2026 | Heap-based buffer overflow in Windows Bind Filter Driver allows an authorized attacker to elevate privileges locally. |
| CVE-2026-62721 | HIGH | 7.8 | — | Aug 11, 2026 | Insufficient granularity of access control in User-Mode Power Service (UMPS) allows an authorized attacker to elevate pr... |
| CVE-2026-62720 | MEDIUM | 6.5 | 0.5% | Aug 11, 2026 | Integer underflow (wrap or wraparound) in Windows DHCP Server allows an unauthorized attacker to disclose information ov... |
| CVE-2026-62719 | HIGH | 7.8 | — | Aug 11, 2026 | Heap-based buffer overflow in Windows Message Queuing allows an authorized attacker to elevate privileges locally. |
| CVE-2026-62718 | MEDIUM | 6.5 | — | Aug 11, 2026 | Integer underflow (wrap or wraparound) in Windows DHCP Server allows an unauthorized attacker to disclose information ov... |
| CVE-2026-62717 | HIGH | 7.8 | — | Aug 11, 2026 | Heap-based buffer overflow in Windows Message Queuing allows an authorized attacker to elevate privileges locally. |
| CVE-2026-62716 | MEDIUM | 6.5 | — | Aug 11, 2026 | Integer underflow (wrap or wraparound) in Windows DHCP Server allows an unauthorized attacker to disclose information ov... |
| CVE-2026-62715 | MEDIUM | 6.5 | 0.5% | Aug 11, 2026 | Integer underflow (wrap or wraparound) in Windows DHCP Server allows an unauthorized attacker to disclose information ov... |
| CVE-2026-62714 | MEDIUM | 6.5 | — | Aug 11, 2026 | Integer underflow (wrap or wraparound) in Windows DHCP Server allows an unauthorized attacker to disclose information ov... |
| CVE-2026-62713 | HIGH | 7.8 | — | Aug 11, 2026 | Heap-based buffer overflow in Windows Cloud Files Mini Filter Driver allows an authorized attacker to elevate privileges... |
| CVE-2026-62712 | HIGH | 7.8 | — | Aug 11, 2026 | Heap-based buffer overflow in Windows Win32K allows an authorized attacker to elevate privileges locally. |
| CVE-2026-62711 | HIGH | 7.8 | — | Aug 11, 2026 | Use after free in Windows Win32K allows an authorized attacker to elevate privileges locally. |
| CVE-2026-62710 | HIGH | 7.8 | — | Aug 11, 2026 | Heap-based buffer overflow in Windows Device Association Service allows an authorized attacker to elevate privileges loc... |
| CVE-2026-62709 | MEDIUM | 5.5 | — | Aug 11, 2026 | Use of uninitialized resource in Windows GDI+ allows an authorized attacker to disclose information locally. |
| CVE-2026-62708 | MEDIUM | 6.4 | — | Aug 11, 2026 | Use after free in Windows Kernel allows an unauthorized attacker to elevate privileges with a physical attack. |
| CVE-2026-62707 | HIGH | 7.8 | — | Aug 11, 2026 | Use after free in Windows Modern Device Management (MDM) allows an authorized attacker to elevate privileges locally. |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now