2026 CVE Vulnerabilities

56,405 CVEs published in 2026.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2026-20924HIGH7.8Use after free in Windows Management Services allows an authorized attacker to elevate privileges locally.
CVE-2026-20923HIGH7.8Use after free in Windows Management Services allows an authorized attacker to elevate privileges locally.
CVE-2026-20922HIGH7.8Heap-based buffer overflow in Windows NTFS allows an authorized attacker to execute code locally.
CVE-2026-20921HIGH7.5Concurrent execution using shared resource with improper synchronization ('race condition') in Windows SMB Server allows...
CVE-2026-20920HIGH7.8Use after free in Windows Win32K - ICOMP allows an authorized attacker to elevate privileges locally.
CVE-2026-20919HIGH7.5Concurrent execution using shared resource with improper synchronization ('race condition') in Windows SMB Server allows...
CVE-2026-20918HIGH7.8Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Management Servic...
CVE-2026-20877HIGH7.8Use after free in Windows Management Services allows an authorized attacker to elevate privileges locally.
CVE-2026-20875HIGH7.5Null pointer dereference in Windows Local Security Authority Subsystem Service (LSASS) allows an unauthorized attacker t...
CVE-2026-20874HIGH7.8Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Management Servic...
CVE-2026-20873HIGH7.8Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Management Servic...
CVE-2026-20871HIGH7.8Use after free in Desktop Windows Manager allows an authorized attacker to elevate privileges locally.
CVE-2026-20870HIGH7.8Use after free in Windows Win32K - ICOMP allows an authorized attacker to elevate privileges locally.
CVE-2026-20869HIGH7Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Local Session Man...
CVE-2026-20868HIGH8.8Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execut...
CVE-2026-20867HIGH7.8Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Management Servic...
CVE-2026-20866HIGH7.8Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Management Servic...
CVE-2026-20865HIGH7.8Use after free in Windows Management Services allows an authorized attacker to elevate privileges locally.
CVE-2026-20864HIGH7.8Heap-based buffer overflow in Connected Devices Platform Service (Cdpsvc) allows an authorized attacker to elevate privi...
CVE-2026-20863HIGH7Double free in Windows Win32K - ICOMP allows an authorized attacker to elevate privileges locally.
CVE-2026-20861HIGH7.8Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Management Servic...
CVE-2026-20860HIGH7.8Access of resource using incompatible type ('type confusion') in Windows Ancillary Function Driver for WinSock allows an...
CVE-2026-20859HIGH7.8Use after free in Windows Kernel-Mode Drivers allows an authorized attacker to elevate privileges locally.
CVE-2026-20858HIGH7.8Use after free in Windows Management Services allows an authorized attacker to elevate privileges locally.
CVE-2026-20857HIGH7.8Untrusted pointer dereference in Windows Cloud Files Mini Filter Driver allows an authorized attacker to elevate privile...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now