CVE Vulnerability Database
Search and browse 375,909 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-62688 | HIGH | 7.8 | — | Aug 11, 2026 | Heap-based buffer overflow in Windows MIDI Service Module allows an authorized attacker to elevate privileges locally. |
| CVE-2026-61939 | HIGH | 7 | — | Aug 11, 2026 | Use after free in Winlogon allows an authorized attacker to elevate privileges locally. |
| CVE-2026-61938 | HIGH | 7 | — | Aug 11, 2026 | Use after free in Windows Installer allows an authorized attacker to elevate privileges locally. |
| CVE-2026-61937 | HIGH | 7.8 | — | Aug 11, 2026 | Integer overflow or wraparound in Windows HTTP.sys allows an authorized attacker to elevate privileges locally. |
| CVE-2026-61936 | MEDIUM | 5.5 | 0.3% | Aug 11, 2026 | Missing authorization in Windows Defender Firewall Service allows an authorized attacker to bypass a security feature lo... |
| CVE-2026-61934 | HIGH | 7.8 | — | Aug 11, 2026 | Use after free in Windows Bind Filter Driver allows an authorized attacker to elevate privileges locally. |
| CVE-2026-61933 | MEDIUM | 5.5 | — | Aug 11, 2026 | Out-of-bounds read in Windows DWM Core Library allows an authorized attacker to disclose information locally. |
| CVE-2026-61932 | HIGH | 7.8 | — | Aug 11, 2026 | Access of resource using incompatible type ('type confusion') in Windows DWM Core Library allows an authorized attacker ... |
| CVE-2026-61930 | HIGH | 7.8 | — | Aug 11, 2026 | Heap-based buffer overflow in Windows Kernel allows an authorized attacker to elevate privileges locally. |
| CVE-2026-61929 | HIGH | 7 | — | Aug 11, 2026 | Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally. |
| CVE-2026-61928 | MEDIUM | 5.5 | — | Aug 11, 2026 | Cleartext storage of sensitive information in Windows Hello allows an authorized attacker to perform tampering locally. |
| CVE-2026-61927 | HIGH | 7 | — | Aug 11, 2026 | Use after free in Windows Bind Filter Driver allows an authorized attacker to elevate privileges locally. |
| CVE-2026-61926 | HIGH | 7.8 | — | Aug 11, 2026 | Heap-based buffer overflow in Windows USB Driver allows an authorized attacker to elevate privileges locally. |
| CVE-2026-61925 | HIGH | 7.8 | — | Aug 11, 2026 | Incorrect authorization in Windows Installer allows an authorized attacker to elevate privileges locally. |
| CVE-2026-61924 | MEDIUM | 6.5 | 0.8% | Aug 11, 2026 | Out-of-bounds read in Remote Desktop Client allows an unauthorized attacker to disclose information over a network. |
| CVE-2026-61923 | HIGH | 7.8 | — | Aug 11, 2026 | Heap-based buffer overflow in Windows Display Enhancement Service allows an authorized attacker to elevate privileges lo... |
| CVE-2026-61921 | MEDIUM | 6.5 | — | Aug 11, 2026 | Out-of-bounds read in Remote Desktop Client allows an unauthorized attacker to disclose information over a network. |
| CVE-2026-61920 | MEDIUM | 6.6 | — | Aug 11, 2026 | Concurrent execution using shared resource with improper synchronization ('race condition') in Windows DNS allows an aut... |
| CVE-2026-61918 | MEDIUM | 6.5 | — | Aug 11, 2026 | Out-of-bounds read in Remote Desktop Client allows an unauthorized attacker to disclose information over a network. |
| CVE-2026-61368 | MEDIUM | 5 | 0.5% | Aug 11, 2026 | Heap-based buffer overflow in Windows Hyper-V allows an authorized attacker to disclose information locally. |
| CVE-2026-61367 | HIGH | 7.8 | — | Aug 11, 2026 | Missing authentication for critical function in Windows Remote Desktop Services allows an authorized attacker to elevate... |
| CVE-2026-61366 | HIGH | 7 | — | Aug 11, 2026 | Double free in Windows Network Connection Broker allows an authorized attacker to elevate privileges locally. |
| CVE-2026-61365 | HIGH | 7.8 | — | Aug 11, 2026 | Missing authentication for critical function in Windows Remote Desktop Services allows an authorized attacker to elevate... |
| CVE-2026-61364 | HIGH | 7.8 | — | Aug 11, 2026 | Missing authentication for critical function in Windows Remote Desktop Services allows an authorized attacker to elevate... |
| CVE-2026-61363 | HIGH | 7.5 | — | Aug 11, 2026 | Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code over a network. |
