CVE Vulnerability Database

Search and browse 375,909 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.

CVE IDSeverityCVSSDescription
CVE-2026-62747HIGH7.8Heap-based buffer overflow in Windows Device Association Service allows an authorized attacker to elevate privileges loc...
CVE-2026-62746MEDIUM5.5Buffer over-read in Windows Win32K allows an authorized attacker to disclose information locally.
CVE-2026-62745MEDIUM6.5Integer underflow (wrap or wraparound) in Windows DHCP Server allows an unauthorized attacker to disclose information ov...
CVE-2026-62743MEDIUM5.5Out-of-bounds read in Windows Win32K allows an authorized attacker to disclose information locally.
CVE-2026-62742MEDIUM6.5Integer underflow (wrap or wraparound) in Windows DHCP Server allows an unauthorized attacker to disclose information ov...
CVE-2026-62741HIGH7.8Integer underflow (wrap or wraparound) in Windows HTTP.sys allows an authorized attacker to elevate privileges locally.
CVE-2026-62740MEDIUM5.5Use of uninitialized resource in Windows Imaging Component allows an authorized attacker to disclose information locally...
CVE-2026-62739HIGH7.8Heap-based buffer overflow in Windows HTTP.sys allows an authorized attacker to elevate privileges locally.
CVE-2026-62738MEDIUM5.5Out-of-bounds read in Windows Management Instrumentation allows an authorized attacker to disclose information locally.
CVE-2026-62737HIGH7.8Untrusted pointer dereference in Windows Kernel allows an authorized attacker to elevate privileges locally.
CVE-2026-62736HIGH7.8Heap-based buffer overflow in Windows DHCP Client allows an authorized attacker to elevate privileges locally.
CVE-2026-62735HIGH7.8Heap-based buffer overflow in Windows HTTP.sys allows an authorized attacker to elevate privileges locally.
CVE-2026-62734HIGH7Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Telephony Service...
CVE-2026-62733HIGH7.8Out-of-bounds read in Windows Win32K allows an authorized attacker to elevate privileges locally.
CVE-2026-62732HIGH7.8Heap-based buffer overflow in Windows Telephony Service allows an authorized attacker to elevate privileges locally.
CVE-2026-62730MEDIUM5.5Buffer over-read in Windows Wired AutoConfig Service allows an authorized attacker to disclose information locally.
CVE-2026-62729HIGH7Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Telephony Service...
CVE-2026-62728HIGH7Time-of-check time-of-use (toctou) race condition in Windows Common Log File System Driver allows an authorized attacker...
CVE-2026-62726HIGH7Use after free in Windows Telephony Service allows an authorized attacker to elevate privileges locally.
CVE-2026-62725HIGH7Use after free in Windows Telephony Service allows an authorized attacker to elevate privileges locally.
CVE-2026-62724HIGH7Use after free in Windows Telephony Service allows an authorized attacker to elevate privileges locally.
CVE-2026-62723HIGH7Use after free in Windows Telephony Service allows an authorized attacker to elevate privileges locally.
CVE-2026-62722HIGH7.8Heap-based buffer overflow in Windows Bind Filter Driver allows an authorized attacker to elevate privileges locally.
CVE-2026-62721HIGH7.8Insufficient granularity of access control in User-Mode Power Service (UMPS) allows an authorized attacker to elevate pr...
CVE-2026-62720MEDIUM6.5Integer underflow (wrap or wraparound) in Windows DHCP Server allows an unauthorized attacker to disclose information ov...