CVE Vulnerability Database

Search and browse 389,959 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.

CVE IDSeverityCVSSDescription
CVE-2026-50450HIGH7Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Wireless Wide Are...
CVE-2026-50449HIGH7Use after free in Windows Runtime allows an authorized attacker to elevate privileges locally.
CVE-2026-50448HIGH7.8Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to execute code locally.
CVE-2026-50447CRITICAL9.8Heap-based buffer overflow in Windows Message Queuing allows an unauthorized attacker to execute code over a network.
CVE-2026-50445HIGH7.5Buffer over-read in Windows RDP allows an unauthorized attacker to disclose information over a network.
CVE-2026-50444HIGH8.8Missing authentication for critical function in Windows Server Update Service allows an authorized attacker to elevate p...
CVE-2026-50442MEDIUM5.5Exposure of sensitive information to an unauthorized actor in Windows File Explorer allows an authorized attacker to dis...
CVE-2026-50441HIGH7.8Untrusted pointer dereference in Windows Resilient File System (ReFS) allows an authorized attacker to elevate privilege...
CVE-2026-50440HIGH7Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Audio Service all...
CVE-2026-50439CRITICAL9.8Use after free in Microsoft Message Queuing Queue Manager allows an unauthorized attacker to execute code over a network...
CVE-2026-50438HIGH8.8Improper link resolution before file access ('link following') in Microsoft PC Manager allows an authorized attacker to ...
CVE-2026-50437MEDIUM5.5Out-of-bounds read in Windows DWM Core Library allows an authorized attacker to disclose information locally.
CVE-2026-50436HIGH7.8Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally.
CVE-2026-50435HIGH7.8Buffer over-read in Windows Overlay Filter allows an authorized attacker to elevate privileges locally.
CVE-2026-50434MEDIUM5.5Exposure of sensitive information to an unauthorized actor in Windows Push Notifications allows an authorized attacker t...
CVE-2026-50433HIGH7.8Use after free in Windows Media allows an authorized attacker to elevate privileges locally.
CVE-2026-50432MEDIUM6.5Use after free in Windows Virtual Filtering Platform (VFP) allows an authorized attacker to deny service over a network.
CVE-2026-50431MEDIUM5.5Windows Quality of Service (QoS) Packet Scheduler Information Disclosure Vulnerability
CVE-2026-50430MEDIUM5.5Exposure of sensitive information to an unauthorized actor in Windows Push Notifications allows an authorized attacker t...
CVE-2026-50429HIGH8.2Out-of-bounds read in Windows Kernel allows an unauthorized attacker to disclose information over a network.
CVE-2026-50428MEDIUM5.5Out-of-bounds read in Windows Container Isolation FS Filter Driver (unionfs.sys) allows an authorized attacker to disclo...
CVE-2026-50427HIGH7.8Use after free in Content Delivery Manager allows an authorized attacker to elevate privileges locally.
CVE-2026-50426MEDIUM6.8Relative path traversal in DNS Server allows an authorized attacker to execute code over an adjacent network.
CVE-2026-50425HIGH7.8Use after free in Windows Internal System User Profile allows an authorized attacker to elevate privileges locally.
CVE-2026-50424HIGH7.5Untrusted pointer dereference in Windows Domain Controller allows an unauthorized attacker to deny service over a networ...