CVE Vulnerability Database

Search and browse 389,962 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.

CVE IDSeverityCVSSDescription
CVE-2026-50306HIGH7.8Use after free in Windows TCP/IP allows an authorized attacker to elevate privileges locally.
CVE-2026-50305HIGH7.8Use after free in Microsoft Brokering File System allows an authorized attacker to elevate privileges locally.
CVE-2026-50304HIGH7.5Stack-based buffer overflow in Active Directory Federation Services allows an unauthorized attacker to deny service over...
CVE-2026-50302MEDIUM6.5Improper certificate validation in Windows Cryptographic Services allows an unauthorized attacker to bypass a security f...
CVE-2026-50301HIGH7.8Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally.
CVE-2026-4018MEDIUM6.4TOCTOU Race Condition in specific trace commands of the TraceEvent() system call could allow an attacker with local acce...
CVE-2026-4017HIGH7.4Buffer Overflow in the entry handler of the TraceEvent() system call could allow an attacker with local access to cause ...
CVE-2026-49177MEDIUM5.5Out-of-bounds read in Windows TCP/IP allows an authorized attacker to disclose information locally.
CVE-2026-48580MEDIUM5.5Untrusted pointer dereference in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.
CVE-2026-48368HIGH7.8Audition is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the contex...
CVE-2026-48365HIGH7.8Audition is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the contex...
CVE-2026-48309HIGH7.8Audition is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the contex...
CVE-2026-47969MEDIUM5.5Audition is affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attack...
CVE-2026-47968HIGH7.8Audition is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the contex...
CVE-2026-47967HIGH7.8Audition is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the contex...
CVE-2026-47642HIGH7.8Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
CVE-2026-47295HIGH8.8Improper neutralization of special elements used in an sql command ('sql injection') in SQL Server allows an authorized ...
CVE-2026-47290HIGH7.8Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.
CVE-2026-45756HIGH7.5Symfony is a PHP framework for web and console applications and a set of reusable PHP components. From 7.3.0-BETA1 until...
CVE-2026-45077HIGH8.6Symfony is a PHP framework for web and console applications and a set of reusable PHP components. Prior to 5.4.52, 6.4.4...
CVE-2026-45074HIGH8.1Symfony is a PHP framework for web and console applications and a set of reusable PHP components. From 7.1.0 until 7.4.1...
CVE-2026-45067MEDIUM6.3### Description `Symfony\Component\Mime\Address` is the value-object every Symfony Mailer address (to/cc/bcc/from/reply...
CVE-2026-45066MEDIUM6.1Symfony is a PHP framework for web and console applications and a set of reusable PHP components. From 6.1.0-BETA1 until...
CVE-2026-45065MEDIUM6.1Symfony is a PHP framework for web and console applications and a set of reusable PHP components. Prior to 5.4.52, 6.4.4...
CVE-2026-15757MEDIUM6.3A security flaw was discovered in the NETGEAR DGND3700v1 that could allow someone on the same local WiFi network to send...