CVE Vulnerability Database

Search and browse 375,889 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.

CVE IDSeverityCVSSDescription
CVE-2026-65794MEDIUM6.5Buffer over-read in Windows SMB Client allows an unauthorized attacker to disclose information over a network.
CVE-2026-65791CRITICAL9.8Heap-based buffer overflow in Windows iSCSI Target Service allows an unauthorized attacker to execute code over a networ...
CVE-2026-65790HIGH7.8Heap-based buffer overflow in Windows Message Queuing allows an authorized attacker to elevate privileges locally.
CVE-2026-65789HIGH8.1Use after free in Windows DNS allows an unauthorized attacker to execute code over a network.
CVE-2026-65788HIGH7Use after free in Desktop Window Manager allows an authorized attacker to elevate privileges locally.
CVE-2026-65787HIGH7.8Heap-based buffer overflow in Desktop Window Manager allows an authorized attacker to elevate privileges locally.
CVE-2026-65786HIGH7.8Heap-based buffer overflow in Desktop Window Manager allows an authorized attacker to elevate privileges locally.
CVE-2026-65785MEDIUM6.5Uncontrolled resource consumption in Windows DHCP Client allows an unauthorized attacker to deny service over an adjacen...
CVE-2026-65784MEDIUM5.5Out-of-bounds read in Windows NTFS allows an authorized attacker to disclose information locally.
CVE-2026-65783HIGH7Use after free in Windows Autopilot allows an authorized attacker to elevate privileges locally.
CVE-2026-65782HIGH7Use after free in Windows Autopilot allows an authorized attacker to elevate privileges locally.
CVE-2026-65781HIGH7Use after free in Windows Autopilot allows an authorized attacker to elevate privileges locally.
CVE-2026-65780HIGH7Double free in Windows Autopilot allows an authorized attacker to elevate privileges locally.
CVE-2026-65779HIGH7Use after free in Windows Autopilot allows an authorized attacker to elevate privileges locally.
CVE-2026-65778HIGH7Use after free in Windows Autopilot allows an authorized attacker to elevate privileges locally.
CVE-2026-65777MEDIUM5.3Inadequate encryption strength in Windows Active Directory allows an authorized attacker to bypass a security feature ov...
CVE-2026-65776HIGH7Use after free in Windows Win32K allows an authorized attacker to elevate privileges locally.
CVE-2026-65775HIGH7.8Use after free in Windows Win32K allows an authorized attacker to elevate privileges locally.
CVE-2026-65774HIGH7.8Heap-based buffer overflow in Windows Installer allows an authorized attacker to elevate privileges locally.
CVE-2026-65773HIGH7.8Improper access control in Windows Kernel allows an authorized attacker to elevate privileges locally.
CVE-2026-65769MEDIUM6.5Exposure of sensitive information to an unauthorized actor in Microsoft Teams Mobile allows an unauthorized attacker to ...
CVE-2026-65768HIGH8.8Improper limitation of a pathname to a restricted directory ('path traversal') in Microsoft Teams for Android allows an ...
CVE-2026-65767HIGH8.8Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Teams for Android allo...
CVE-2026-65681HIGH7.5Null pointer dereference in Windows iSCSI Target Service allows an unauthorized attacker to deny service over a network.
CVE-2026-65679HIGH8.1Heap-based buffer overflow in Windows iSCSI Target Service allows an unauthorized attacker to execute code over a networ...