CVE Database

48241+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2026-69564
7.0 HIGH

Heap-based buffer overflow in Windows Online Certificate Status Protocol (OCSP) allows an authorized attacker to elevate privileges locally.

Sep 8, 2026
CVE-2026-69563
7.0 HIGH

Heap-based buffer overflow in Windows Program Compatibility Assistant Service allows an authorized attacker to elevate privileges locally.

Sep 8, 2026
CVE-2026-69561
7.8 HIGH

Out-of-bounds read in Windows CD-ROM Driver allows an authorized attacker to elevate privileges locally.

Sep 8, 2026
CVE-2026-69560
7.0 HIGH

Use after free in Windows Work Folder Service allows an authorized attacker to elevate privileges locally.

Sep 8, 2026
CVE-2026-69556
8.8 HIGH

Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code over a network.

Sep 8, 2026
CVE-2026-69553
7.1 HIGH

Missing authorization in Windows Hyper-V allows an authorized attacker to elevate privileges over a network.

Sep 8, 2026
CVE-2026-69551
8.8 HIGH

Use after free in Windows DNS allows an authorized attacker to execute code over a network.

Sep 8, 2026
CVE-2026-69549
7.0 HIGH

Out-of-bounds read in Virtual Hard Disk (VHD) Miniport Driver allows an authorized attacker to elevate privileges locally.

Sep 8, 2026
CVE-2026-69547
8.8 HIGH

Heap-based buffer overflow in Windows DHCP Server allows an authorized attacker to execute code over a network.

Sep 8, 2026
CVE-2026-69546
8.1 HIGH

Use after free in Active Directory Domain Services allows an unauthorized attacker to execute code over a network.

Sep 8, 2026
CVE-2026-69544
7.8 HIGH

Heap-based buffer overflow in Windows SMB Client allows an authorized attacker to elevate privileges locally.

Sep 8, 2026
CVE-2026-69542
7.8 HIGH

Heap-based buffer overflow in Windows Camera Frame Server Monitor allows an authorized attacker to elevate privileges locally.

Sep 8, 2026
CVE-2026-69541
7.8 HIGH

Heap-based buffer overflow in Virtual Hard Disk (VHD) Miniport Driver allows an authorized attacker to elevate privileges locally.

Sep 8, 2026
CVE-2026-69540
7.0 HIGH

Use after free in Windows Audio Service allows an authorized attacker to elevate privileges locally.

Sep 8, 2026
CVE-2026-69539
7.5 HIGH

Use after free in Windows Remote Desktop Services allows an authorized attacker to execute code over a network.

Sep 8, 2026
CVE-2026-69538
7.8 HIGH

Out-of-bounds read in Windows Spaceport.sys allows an authorized attacker to execute code locally.

Sep 8, 2026
CVE-2026-69536
7.1 HIGH

Use after free in Windows Remote Desktop Services allows an authorized attacker to execute code over a network.

Sep 8, 2026
CVE-2026-69535
7.8 HIGH

Numeric truncation error in Windows Spaceport.sys allows an authorized attacker to elevate privileges locally.

Sep 8, 2026
CVE-2026-69534
7.8 HIGH

Improper neutralization of special elements used in a command ('command injection') in Windows Program Compatibility Assistant Service allows an authorized attacker to elevate privileges locally.

Sep 8, 2026
CVE-2026-69532
7.8 HIGH

Out-of-bounds read in Windows NTFS allows an authorized attacker to elevate privileges locally.

Sep 8, 2026
CVE-2026-69530
8.1 HIGH

Use after free in Reliable Multicast Transport Driver (RMCAST) allows an unauthorized attacker to execute code over a network.

Sep 8, 2026
CVE-2026-69529
8.8 HIGH

Heap-based buffer overflow in Microsoft Office Access allows an unauthorized attacker to execute code over a network.

Sep 8, 2026
CVE-2026-69528
7.8 HIGH

Missing authentication for critical function in Windows Shell allows an authorized attacker to elevate privileges locally.

Sep 8, 2026
CVE-2026-69524
8.1 HIGH

Use after free in Active Directory Domain Services allows an unauthorized attacker to execute code over a network.

Sep 8, 2026
CVE-2026-69522
8.8 HIGH

Heap-based buffer overflow in Visual Studio allows an unauthorized attacker to execute code over a network.

Sep 8, 2026
CVE-2026-69518
8.8 HIGH

Heap-based buffer overflow in Windows Remote Desktop allows an unauthorized attacker to execute code over a network.

Sep 8, 2026
CVE-2026-69517
7.0 HIGH

Use after free in Windows Wireless Networking allows an authorized attacker to elevate privileges locally.

Sep 8, 2026
CVE-2026-69516
7.0 HIGH

Use after free in Connected Devices Platform Service (Cdpsvc) allows an authorized attacker to elevate privileges locally.

Sep 8, 2026
CVE-2026-69514
7.5 HIGH

Heap-based buffer overflow in Windows Remote Desktop Services allows an authorized attacker to execute code over a network.

Sep 8, 2026
CVE-2026-69513
7.8 HIGH

Heap-based buffer overflow in Windows Error Reporting allows an authorized attacker to elevate privileges locally.

Sep 8, 2026
CVE-2026-69512
8.0 HIGH

Heap-based buffer overflow in Windows Spaceport.sys allows an authorized attacker to elevate privileges over a network.

Sep 8, 2026
CVE-2026-69511
8.8 HIGH

Heap-based buffer overflow in Microsoft Windows Media Foundation allows an unauthorized attacker to execute code over a network.

Sep 8, 2026
CVE-2026-69510
8.1 HIGH

Stack-based buffer overflow in Windows DHCP Server allows an unauthorized attacker to execute code over a network.

Sep 8, 2026
CVE-2026-69509
7.8 HIGH

Heap-based buffer overflow in Windows Fax Service allows an authorized attacker to elevate privileges locally.

Sep 8, 2026
CVE-2026-69508
7.8 HIGH

Stack-based buffer overflow in Windows MIDI Service Module allows an authorized attacker to elevate privileges locally.

Sep 8, 2026
CVE-2026-69505
8.0 HIGH

Out-of-bounds read in Windows NTFS allows an authorized attacker to elevate privileges over a network.

Sep 8, 2026
CVE-2026-69503
8.0 HIGH

Stack-based buffer overflow in Windows USB Driver allows an authorized attacker to elevate privileges over a network.

Sep 8, 2026
CVE-2026-69501
7.0 HIGH

Untrusted pointer dereference in Windows Secure Kernel Mode allows an authorized attacker to elevate privileges locally.

Sep 8, 2026
CVE-2026-69500
7.0 HIGH

Use after free in Windows Image Acquisition allows an authorized attacker to elevate privileges locally.

Sep 8, 2026
CVE-2026-69499
8.8 HIGH

Integer overflow or wraparound in Windows Imaging Component allows an unauthorized attacker to execute code over a network.

Sep 8, 2026
CVE-2026-69498
7.0 HIGH

Use after free in Windows Win32K allows an authorized attacker to elevate privileges locally.

Sep 8, 2026
CVE-2026-69495
8.8 HIGH

Heap-based buffer overflow in Windows Event Logging Service allows an unauthorized attacker to execute code over a network.

Sep 8, 2026
CVE-2026-69494
8.8 HIGH

Out-of-bounds read in Windows Event Logging Service allows an unauthorized attacker to execute code over a network.

Sep 8, 2026
CVE-2026-69492
7.0 HIGH

Heap-based buffer overflow in Windows Partition Management Driver allows an authorized attacker to elevate privileges locally.

Sep 8, 2026
CVE-2026-69489
7.8 HIGH

Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally.

Sep 8, 2026
CVE-2026-69488
7.0 HIGH

Use after free in Windows Device Association Service allows an authorized attacker to elevate privileges locally.

Sep 8, 2026
CVE-2026-69485
8.8 HIGH

Use of uninitialized resource in Remote Desktop Client allows an authorized attacker to execute code over a network.

Sep 8, 2026
CVE-2026-69482
7.1 HIGH

Creation of temporary file in directory with insecure permissions in Windows Error Reporting allows an authorized attacker to perform tampering locally.

Sep 8, 2026
CVE-2026-69481
8.0 HIGH

Heap-based buffer overflow in Windows Enterprise App Management allows an authorized attacker to elevate privileges over a network.

Sep 8, 2026
CVE-2026-69480
7.8 HIGH

Heap-based buffer overflow in Windows Partition Management Driver allows an authorized attacker to elevate privileges locally.

Sep 8, 2026

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.