How to use it Start with "Patch these first" for the fixes attackers are already using. Then filter the list by product or keyword, or tick "Critical only" to narrow it down.
Next Patch Tuesday: Tue 13 Oct 2026 (in 3 days)
September 2026 Patch Tuesday: Microsoft fixed 973 vulnerabilities, 113 of them Critical. 2 were already being exploited. Released Tue 8 Sep 2026.
- 973vulnerabilities fixed
- 113Critical
- 2exploited before the fix
- 0publicly disclosed
- 2now on CISA KEV
By type: 438 elevation of privilege, 259 remote code execution, 173 information disclosure, 55 denial of service, 19 security feature bypass, 16 spoofing, 13 tampering.
Update problems? Ask in Patch Tuesday & Updates. From October 2026 a “what broke for you?” thread opens there at 1 pm Eastern every Patch Tuesday.
Patch these first
Being exploited, already public, or on CISA’s list of vulnerabilities attackers are using. Whatever else waits for testing, these should not.
| CVE | What | Severity | CVSS | Why first |
|---|---|---|---|---|
CVE-2026-81963 | Windows Update Stack Elevation of Privilege | Important | 7.8 | Exploited On CISA KEV federal deadline 22 Sep |
CVE-2026-85880 | Windows Advanced Local Procedure Call (ALPC) Elevation of Privilege | Important | 7.8 | Exploited On CISA KEV federal deadline 22 Sep |
Critical (113)
Microsoft’s top rating: usually code execution with little or no user action.
| CVE | What | Impact | CVSS |
|---|---|---|---|
CVE-2026-70352 | Azure AI Language Elevation of Privilege | Elevation of Privilege | 10.0 |
CVE-2026-83711 | Microsoft Azure Active Directory B2C Elevation of Privilege | Elevation of Privilege | 10.0 |
CVE-2026-83941 | Entra ID Elevation of Privilege | Elevation of Privilege | 9.9 |
CVE-2026-66302 | Skype for Business Remote Code Execution | Remote Code Execution | 9.8 |
CVE-2026-67631 | Microsoft SQL Server Remote Code Execution | Remote Code Execution | 9.8 |
CVE-2026-67643 | Microsoft SQL Server Remote Code Execution | Remote Code Execution | 9.8 |
CVE-2026-69579 | Windows Message Queuing Remote Code Execution | Remote Code Execution | 9.8 |
CVE-2026-69590 | Windows Routing and Remote Access Service (RRAS) Remote Code Execution | Remote Code Execution | 9.8 |
CVE-2026-69595 | Windows Services for NFS ONCRPC XDR Driver Remote Code Execution | Remote Code Execution | 9.8 |
CVE-2026-69730 | Windows DNS Server Remote Code Execution | Remote Code Execution | 9.8 |
CVE-2026-69769 | Windows HTTP Print Provider Remote Code Execution | Remote Code Execution | 9.8 |
CVE-2026-69829 | Windows Shell Remote Code Execution | Remote Code Execution | 9.8 |
CVE-2026-69845 | Windows DHCP Server Remote Code Execution | Remote Code Execution | 9.8 |
CVE-2026-70296 | Windows Imaging Component Remote Code Execution | Remote Code Execution | 9.8 |
CVE-2026-72979 | Windows DHCP Server Remote Code Execution | Remote Code Execution | 9.8 |
CVE-2026-72982 | Windows Netlogon Remote Code Execution | Remote Code Execution | 9.8 |
CVE-2026-72983 | Internet Connection Sharing (ICS) Remote Code Execution | Remote Code Execution | 9.8 |
CVE-2026-73009 | Windows Secure Socket Tunneling Protocol (SSTP) Remote Code Execution | Remote Code Execution | 9.8 |
CVE-2026-73010 | Microsoft Failover Cluster Remote Code Execution | Remote Code Execution | 9.8 |
CVE-2026-77493 | Windows Graphics Component Remote Code Execution | Remote Code Execution | 9.8 |
CVE-2026-78445 | Windows Services for NFS ONCRPC XDR Driver Remote Code Execution | Remote Code Execution | 9.8 |
CVE-2026-78509 | Microsoft Office Outlook Remote Code Execution | Remote Code Execution | 9.8 |
CVE-2026-65669 | Microsoft SQL Server Elevation of Privilege | Elevation of Privilege | 9.6 |
CVE-2026-80098 | Copilot Studio Elevation of Privilege | Elevation of Privilege | 9.3 |
CVE-2026-62916 | Microsoft Entra ID Elevation of Privilege | Elevation of Privilege | 9.1 |
CVE-2026-67378 | Microsoft SQL Server Remote Code Execution | Remote Code Execution | 9.0 |
CVE-2026-67636 | Microsoft SQL Server Remote Code Execution | Remote Code Execution | 9.0 |
CVE-2026-69854 | Spring Cloud Azure Elevation of Privilege | Elevation of Privilege | 9.0 |
CVE-2026-65772 | Microsoft Dynamics 365 On-Premises Remote Code Execution | Remote Code Execution | 8.8 |
CVE-2026-69285 | Microsoft Office Remote Code Execution | Remote Code Execution | 8.8 |
CVE-2026-69499 | Windows Imaging Component Remote Code Execution | Remote Code Execution | 8.8 |
CVE-2026-69518 | Windows Remote Desktop Remote Code Execution | Remote Code Execution | 8.8 |
CVE-2026-69601 | Microsoft Windows Media Foundation Remote Code Execution | Remote Code Execution | 8.8 |
CVE-2026-69603 | Windows Hyper-V Remote Code Execution | Remote Code Execution | 8.8 |
CVE-2026-69632 | Microsoft Office Remote Code Execution | Remote Code Execution | 8.8 |
CVE-2026-69649 | Raw Image Extension Remote Code Execution | Remote Code Execution | 8.8 |
CVE-2026-69676 | Windows Kerberos Remote Code Execution | Remote Code Execution | 8.8 |
CVE-2026-69678 | Microsoft Office PowerPoint Remote Code Execution | Remote Code Execution | 8.8 |
CVE-2026-69712 | Windows Key Distribution Center Remote Code Execution | Remote Code Execution | 8.8 |
CVE-2026-69740 | Windows Hello Elevation of Privilege | Elevation of Privilege | 8.8 |
CVE-2026-69767 | Microsoft Office PowerPoint Remote Code Execution | Remote Code Execution | 8.8 |
CVE-2026-69784 | Windows Hello Elevation of Privilege | Elevation of Privilege | 8.8 |
CVE-2026-69797 | Microsoft Office PowerPoint Remote Code Execution | Remote Code Execution | 8.8 |
CVE-2026-69860 | Windows Imaging Component Remote Code Execution | Remote Code Execution | 8.8 |
CVE-2026-70203 | Windows Media Player Remote Code Execution | Remote Code Execution | 8.8 |
CVE-2026-70351 | Microsoft WebP Image Extension Remote Code Execution | Remote Code Execution | 8.8 |
CVE-2026-70586 | Windows Paint Remote Code Execution | Remote Code Execution | 8.8 |
CVE-2026-72950 | Windows Routing and Remote Access Service (RRAS) Remote Code Execution | Remote Code Execution | 8.8 |
CVE-2026-72959 | Windows Routing and Remote Access Service (RRAS) Remote Code Execution | Remote Code Execution | 8.8 |
CVE-2026-72960 | Windows Media Player Remote Code Execution | Remote Code Execution | 8.8 |
CVE-2026-72986 | Graphic Fonts Remote Code Execution | Remote Code Execution | 8.8 |
CVE-2026-73006 | DirectWrite Remote Code Execution | Remote Code Execution | 8.8 |
CVE-2026-73013 | Windows Imaging Component Remote Code Execution | Remote Code Execution | 8.8 |
CVE-2026-73018 | Graphic Fonts Remote Code Execution | Remote Code Execution | 8.8 |
CVE-2026-73023 | Windows Imaging Component Remote Code Execution | Remote Code Execution | 8.8 |
CVE-2026-77495 | Windows Imaging Component Remote Code Execution | Remote Code Execution | 8.8 |
CVE-2026-77504 | Microsoft Office Word Remote Code Execution | Remote Code Execution | 8.8 |
CVE-2026-78439 | Microsoft Office Graphics Component Remote Code Execution | Remote Code Execution | 8.8 |
CVE-2026-78505 | Microsoft Office Remote Code Execution | Remote Code Execution | 8.8 |
CVE-2026-78519 | Microsoft Office Outlook Remote Code Execution | Remote Code Execution | 8.8 |
CVE-2026-78525 | Microsoft Office Outlook Remote Code Execution | Remote Code Execution | 8.8 |
CVE-2026-80083 | Windows Hyper-V Remote Code Execution | Remote Code Execution | 8.8 |
CVE-2026-81352 | Web Media Extensions Remote Code Execution | Remote Code Execution | 8.8 |
CVE-2026-81952 | Microsoft Word Remote Code Execution | Remote Code Execution | 8.8 |
CVE-2026-81955 | Windows Graphics Component Remote Code Execution | Remote Code Execution | 8.8 |
CVE-2026-65818 | Power Automate Elevation of Privilege | Elevation of Privilege | 8.5 |
CVE-2026-69857 | Azure Cosmos DB Spoofing | Spoofing | 8.5 |
CVE-2026-70178 | Microsoft Fabric Elevation of Privilege | Elevation of Privilege | 8.5 |
CVE-2026-78510 | Microsoft Outlook and Word Remote Code Execution | Remote Code Execution | 8.4 |
CVE-2026-69820 | Windows Hello Elevation of Privilege | Elevation of Privilege | 8.2 |
CVE-2026-69846 | Windows Secure Kernel Mode Elevation of Privilege | Elevation of Privilege | 8.2 |
CVE-2026-69874 | Windows ALPC Elevation of Privilege | Elevation of Privilege | 8.2 |
CVE-2026-69906 | Windows Secure Kernel Mode Elevation of Privilege | Elevation of Privilege | 8.2 |
CVE-2026-72958 | Windows Credential Guard Elevation of Privilege | Elevation of Privilege | 8.2 |
CVE-2026-72961 | Windows Hyper-V Elevation of Privilege | Elevation of Privilege | 8.2 |
CVE-2026-72962 | Windows USB Video Driver Elevation of Privilege | Elevation of Privilege | 8.2 |
CVE-2026-81354 | Windows Hello Elevation of Privilege | Elevation of Privilege | 8.2 |
CVE-2026-83939 | Windows Secure Kernel Mode Elevation of Privilege | Elevation of Privilege | 8.2 |
CVE-2026-69530 | Windows Reliable Multicast Transport Driver (RMCAST) Remote Code Execution | Remote Code Execution | 8.1 |
CVE-2026-69813 | Windows DNS Server Remote Code Execution | Remote Code Execution | 8.1 |
CVE-2026-69827 | Windows DNS Server Remote Code Execution | Remote Code Execution | 8.1 |
CVE-2026-69858 | Windows DNS Server Remote Code Execution | Remote Code Execution | 8.1 |
CVE-2026-72981 | IP Helper Remote Code Execution | Remote Code Execution | 8.1 |
CVE-2026-72987 | Windows DNS Remote Code Execution | Remote Code Execution | 8.1 |
CVE-2026-77505 | Windows DNS Server Remote Code Execution | Remote Code Execution | 8.1 |
CVE-2026-78444 | Microsoft Failover Cluster Remote Code Execution | Remote Code Execution | 8.1 |
CVE-2026-78449 | Windows Reliable Multicast Transport Driver (RMCAST) Remote Code Execution | Remote Code Execution | 8.1 |
CVE-2026-78450 | Windows Reliable Multicast Transport Driver (RMCAST) Remote Code Execution | Remote Code Execution | 8.1 |
CVE-2026-58599 | HEVC Video Extensions Remote Code Execution | Remote Code Execution | 7.8 |
CVE-2026-69725 | Windows Hello Elevation of Privilege | Elevation of Privilege | 7.8 |
CVE-2026-69799 | Windows Hello Elevation of Privilege | Elevation of Privilege | 7.8 |
CVE-2026-69864 | Windows Hello Elevation of Privilege | Elevation of Privilege | 7.8 |
CVE-2026-72957 | Windows Deployment Services Remote Code Execution | Remote Code Execution | 7.8 |
CVE-2026-81948 | Microsoft Excel Remote Code Execution | Remote Code Execution | 7.8 |
CVE-2026-81949 | Microsoft Excel Remote Code Execution | Remote Code Execution | 7.8 |
CVE-2026-81950 | Microsoft Excel Remote Code Execution | Remote Code Execution | 7.8 |
CVE-2026-81951 | Microsoft Excel Remote Code Execution | Remote Code Execution | 7.8 |
CVE-2026-81953 | Microsoft Excel Remote Code Execution | Remote Code Execution | 7.8 |
CVE-2026-81959 | Microsoft Excel Remote Code Execution | Remote Code Execution | 7.8 |
CVE-2026-83498 | Windows Virtualization-Based Security (VBS) Enclave Elevation of Privilege | Elevation of Privilege | 7.8 |
CVE-2026-69710 | Windows Hello Elevation of Privilege | Elevation of Privilege | 7.5 |
CVE-2026-69852 | Windows Routing and Remote Access Service (RRAS) Remote Code Execution | Remote Code Execution | 7.5 |
CVE-2026-69890 | Windows Virtual Trusted Platform Module Elevation of Privilege | Elevation of Privilege | 7.5 |
CVE-2026-72954 | Windows Deployment Services Remote Code Execution | Remote Code Execution | 7.5 |
CVE-2026-73017 | Graphics Kernel Remote Code Execution | Remote Code Execution | 7.5 |
CVE-2026-77898 | Microsoft Office Remote Code Execution | Remote Code Execution | 7.5 |
CVE-2026-81355 | Virtual Hard Disk (VHD) Miniport Driver Remote Code Execution | Remote Code Execution | 7.5 |
CVE-2026-62906 | Microsoft Discovery Studio Information Disclosure | Information Disclosure | 7.4 |
CVE-2026-69501 | Windows Secure Kernel Mode Elevation of Privilege | Elevation of Privilege | 7.0 |
CVE-2026-70585 | Windows Services for NFS ONCRPC XDR Driver Remote Code Execution | Remote Code Execution | 7.0 |
CVE-2026-78520 | Microsoft Office Outlook Information Disclosure | Remote Code Execution | 6.5 |
CVE-2026-83501 | Windows Virtualization-Based Security (VBS) Information Disclosure | Information Disclosure | 5.5 |
CVE-2026-72980 | Windows Hello Security Feature Bypass | Security Feature Bypass | 4.4 |
Added to CISA KEV in September 2026 (43)
Every vendor, not only Microsoft. CISA adds a vulnerability when it has evidence attackers are using it. US federal agencies must fix it by the deadline shown; for everyone else, it is the best free “patch this now” list there is.
| CVE | Vendor and product | What | Added | Federal deadline | Ransomware |
|---|---|---|---|---|---|
CVE-2026-76504 | Cisco Catalyst SD-WAN Manager | Hex Encoding | 30 Sep | 3 Oct 2026 | |
CVE-2026-86950 | Apple Multiple Products | Out-of-Bounds Write | 29 Sep | 13 Oct 2026 | |
CVE-2026-88771 | Citrix NetScaler | Improper Input Validation | 27 Sep | 30 Sep 2026 | |
CVE-2026-88772 | Citrix NetScaler | Improper Restriction of Operations within the Bounds of a Memory Buffer | 27 Sep | 30 Sep 2026 | |
CVE-2026-65660 | Microsoft SharePoint | Code Injection | 25 Sep | 28 Sep 2026 | |
CVE-2026-67279 | MikroTik RouterOS | Mikrotik RouterOS Improper Enforcement of Behavioral Workflow | 25 Sep | 28 Sep 2026 | |
CVE-2026-87902 | WordPress Core | Remote File Inclusion | 25 Sep | 28 Sep 2026 | |
CVE-2026-5430 | WSO2 Multiple Products | Path Traversal Vulnerability | 24 Sep | 27 Sep 2026 | |
CVE-2026-71362 | Adobe Commerce and Magento | Adobe Commerce and Magento Incorrect Authorization Vulnerability | 24 Sep | 27 Sep 2026 | |
CVE-2026-85102 | Check Point Multiple Products | Improper Certificate Validation | 22 Sep | 25 Sep 2026 | |
CVE-2026-93616 | Check Point Multiple Products | Path Traversal | 22 Sep | 25 Sep 2026 | |
CVE-2026-93952 | Arista VeloCloud Orchestrator | Improper Input Validation | 22 Sep | 25 Sep 2026 | |
CVE-2026-94127 | F5 BIG-IP APM | Heap-based Buffer Overflow | 22 Sep | 25 Sep 2026 | |
CVE-2026-7273 | Zyxel GS1900 Series Switches | Stack-Based Buffer Overflow | 21 Sep | 24 Sep 2026 | |
CVE-2025-39682 | Linux Kernel | Improper Check for Unusual or Exceptional Conditions | 18 Sep | 21 Sep 2026 | |
CVE-2025-39964 | Linux Kernel | Race Condition | 18 Sep | 21 Sep 2026 | |
CVE-2026-53266 | Linux Kernel | Out-of-Bounds Write | 18 Sep | 21 Sep 2026 | |
CVE-2026-58704 | Google Pixel | Improper Authorization | 16 Sep | 19 Sep 2026 | |
CVE-2026-76460 | Cisco Identity Services Engine | Incorrect Use of Privileged APIs | 16 Sep | 19 Sep 2026 | |
CVE-2026-87886 | Acronis Backup | Incorrect Default Permissions | 16 Sep | 19 Sep 2026 | |
CVE-2026-76461 | Cisco Secure Email Gateway | SQL Injection | 14 Sep | 17 Sep 2026 | |
CVE-2026-42016 | JFrog Artifactory | Incorrect Authorization | 11 Sep | 25 Sep 2026 | |
CVE-2026-42018 | JFrog Artifactory | Improper Authentication | 11 Sep | 25 Sep 2026 | |
CVE-2026-84869 | ConnectWise ScreenConnect | Improper Privilege Management and Missing Authorization | 11 Sep | 14 Sep 2026 | |
CVE-2026-85706 | GitLab Community Edition and Enterprise Edition | Path Traversal | 11 Sep | 14 Sep 2026 | |
CVE-2026-67277 | MikroTik RouterOS | Missing Authentication for Critical Function | 10 Sep | 13 Sep 2026 | |
CVE-2026-86060 | MikroTik RouterOS | Improper Neutralization of Argument Delimiters in a Command | 10 Sep | 13 Sep 2026 | |
CVE-2025-25249 | Fortinet Multiple Products | Heap-based Buffer Overflow | 9 Sep | 12 Sep 2026 | |
CVE-2026-19490 | Citrix NetScaler | Authentication Bypass Using an Alternate Path or Channel | 9 Sep | 12 Sep 2026 | |
CVE-2026-20079 | Cisco Secure Firewall Management Center (FMC) and Security Cloud Control (SCC) Firewall Management | Cisco Firewall Management Center Authentication Bypass Using an Alternate Path or Channel | 9 Sep | 12 Sep 2026 | |
CVE-2026-87491 | Google Chromium V8 | Out of Bounds Write | 9 Sep | 23 Sep 2026 | |
CVE-2026-75650 | Adobe Commerce and Magento | Improper Neutralization of Special Elements Used in a Template Engine | 8 Sep | 11 Sep 2026 | |
CVE-2026-81963 | Microsoft Windows | Link Following | 8 Sep | 22 Sep 2026 | |
CVE-2026-85880 | Microsoft Windows | Heap-Based Buffer Overflow | 8 Sep | 22 Sep 2026 | |
CVE-2026-86218 | N-able N-central | Static Code Injection | 8 Sep | 11 Sep 2026 | |
CVE-2026-85046 | Google Chromium V8 | Type Confusion | 4 Sep | 18 Sep 2026 | |
CVE-2026-48710 | Kludex Starlette | HTTP Request/Response Smuggling | 2 Sep | 16 Sep 2026 | |
CVE-2026-49869 | Kestra Kestra OSS | Kestra OSS OS Command Injection | 2 Sep | 5 Sep 2026 | |
CVE-2026-59822 | BerriAI LiteLLM | Improper Authentication | 2 Sep | 16 Sep 2026 | |
CVE-2026-82329 | JFrog Artifactory | Improper Authentication | 2 Sep | 5 Sep 2026 | |
CVE-2026-83548 | SonicWall SMA1000 Appliances | Server-Side Request Forgery | 2 Sep | 5 Sep 2026 | |
CVE-2026-83549 | SonicWall SMA1000 Appliances | OS Command Injection | 2 Sep | 5 Sep 2026 | |
CVE-2026-9586 | Sangoma Switchvox | SQL Injection | 2 Sep | 5 Sep 2026 |
All 973 fixes
Show the full list, with a filter
| CVE | Product | What | Severity | CVSS |
|---|---|---|---|---|
CVE-2026-70352 | Azure AI Language | Azure AI Language Elevation of Privilege | Critical | 10.0 |
CVE-2026-83711 | Microsoft Azure Active Directory B2C | Microsoft Azure Active Directory B2C Elevation of Privilege | Critical | 10.0 |
CVE-2026-83941 | Entra ID | Entra ID Elevation of Privilege | Critical | 9.9 |
CVE-2026-66302 | Skype for Business | Skype for Business Remote Code Execution | Critical | 9.8 |
CVE-2026-67631 | SQL Server | Microsoft SQL Server Remote Code Execution | Critical | 9.8 |
CVE-2026-67643 | SQL Server | Microsoft SQL Server Remote Code Execution | Critical | 9.8 |
CVE-2026-69579 | Windows Message Queuing | Windows Message Queuing Remote Code Execution | Critical | 9.8 |
CVE-2026-69590 | Windows Routing and Remote Access Service (RRAS) | Windows Routing and Remote Access Service (RRAS) Remote Code Execution | Critical | 9.8 |
CVE-2026-69595 | Windows Services for NFS ONCRPC XDR Driver | Windows Services for NFS ONCRPC XDR Driver Remote Code Execution | Critical | 9.8 |
CVE-2026-69730 | Windows DNS | Windows DNS Server Remote Code Execution | Critical | 9.8 |
CVE-2026-69769 | Windows HTTP Print Provider | Windows HTTP Print Provider Remote Code Execution | Critical | 9.8 |
CVE-2026-69829 | Windows Shell | Windows Shell Remote Code Execution | Critical | 9.8 |
CVE-2026-69845 | Windows DHCP Server | Windows DHCP Server Remote Code Execution | Critical | 9.8 |
CVE-2026-70296 | Windows Imaging Component | Windows Imaging Component Remote Code Execution | Critical | 9.8 |
CVE-2026-72979 | Windows DHCP Server | Windows DHCP Server Remote Code Execution | Critical | 9.8 |
CVE-2026-72982 | Windows Netlogon | Windows Netlogon Remote Code Execution | Critical | 9.8 |
CVE-2026-72983 | Windows Internet Connection Sharing (ICS) | Internet Connection Sharing (ICS) Remote Code Execution | Critical | 9.8 |
CVE-2026-73009 | Windows Secure Socket Tunneling Protocol (SSTP) | Windows Secure Socket Tunneling Protocol (SSTP) Remote Code Execution | Critical | 9.8 |
CVE-2026-73010 | Windows Failover Cluster | Microsoft Failover Cluster Remote Code Execution | Critical | 9.8 |
CVE-2026-77493 | Microsoft Graphics Component | Windows Graphics Component Remote Code Execution | Critical | 9.8 |
CVE-2026-78445 | Windows Services for NFS ONCRPC XDR Driver | Windows Services for NFS ONCRPC XDR Driver Remote Code Execution | Critical | 9.8 |
CVE-2026-78509 | Microsoft Office Outlook | Microsoft Office Outlook Remote Code Execution | Critical | 9.8 |
CVE-2026-65669 | SQL Server | Microsoft SQL Server Elevation of Privilege | Critical | 9.6 |
CVE-2026-80098 | Copilot Studio | Copilot Studio Elevation of Privilege | Critical | 9.3 |
CVE-2026-62916 | Microsoft Entra ID | Microsoft Entra ID Elevation of Privilege | Critical | 9.1 |
CVE-2026-67378 | SQL Server | Microsoft SQL Server Remote Code Execution | Critical | 9.0 |
CVE-2026-67636 | SQL Server | Microsoft SQL Server Remote Code Execution | Critical | 9.0 |
CVE-2026-69854 | Spring Cloud Azure | Spring Cloud Azure Elevation of Privilege | Critical | 9.0 |
CVE-2026-65772 | Microsoft Dynamics 365 | Microsoft Dynamics 365 On-Premises Remote Code Execution | Critical | 8.8 |
CVE-2026-69285 | Microsoft Office | Microsoft Office Remote Code Execution | Critical | 8.8 |
CVE-2026-69499 | Windows Imaging Component | Windows Imaging Component Remote Code Execution | Critical | 8.8 |
CVE-2026-69518 | Windows Remote Desktop | Windows Remote Desktop Remote Code Execution | Critical | 8.8 |
CVE-2026-69601 | Microsoft Windows Media Foundation | Microsoft Windows Media Foundation Remote Code Execution | Critical | 8.8 |
CVE-2026-69603 | Windows Hyper-V | Windows Hyper-V Remote Code Execution | Critical | 8.8 |
CVE-2026-69632 | Microsoft Office | Microsoft Office Remote Code Execution | Critical | 8.8 |
CVE-2026-69649 | Windows Raw Image Extension | Raw Image Extension Remote Code Execution | Critical | 8.8 |
CVE-2026-69676 | Windows Kerberos | Windows Kerberos Remote Code Execution | Critical | 8.8 |
CVE-2026-69678 | Microsoft Office PowerPoint | Microsoft Office PowerPoint Remote Code Execution | Critical | 8.8 |
CVE-2026-69712 | Windows Key Distribution Center | Windows Key Distribution Center Remote Code Execution | Critical | 8.8 |
CVE-2026-69740 | Windows Hello | Windows Hello Elevation of Privilege | Critical | 8.8 |
CVE-2026-69767 | Microsoft Office PowerPoint | Microsoft Office PowerPoint Remote Code Execution | Critical | 8.8 |
CVE-2026-69784 | Windows Hello | Windows Hello Elevation of Privilege | Critical | 8.8 |
CVE-2026-69797 | Microsoft Office PowerPoint | Microsoft Office PowerPoint Remote Code Execution | Critical | 8.8 |
CVE-2026-69860 | Windows Imaging Component | Windows Imaging Component Remote Code Execution | Critical | 8.8 |
CVE-2026-70203 | Windows Media Player | Windows Media Player Remote Code Execution | Critical | 8.8 |
CVE-2026-70351 | Microsoft WebP Image Extension | Microsoft WebP Image Extension Remote Code Execution | Critical | 8.8 |
CVE-2026-70586 | Windows Paint | Windows Paint Remote Code Execution | Critical | 8.8 |
CVE-2026-72950 | Windows Routing and Remote Access Service (RRAS) | Windows Routing and Remote Access Service (RRAS) Remote Code Execution | Critical | 8.8 |
CVE-2026-72959 | Windows Routing and Remote Access Service (RRAS) | Windows Routing and Remote Access Service (RRAS) Remote Code Execution | Critical | 8.8 |
CVE-2026-72960 | Windows Media Player | Windows Media Player Remote Code Execution | Critical | 8.8 |
CVE-2026-72986 | Graphic Fonts | Graphic Fonts Remote Code Execution | Critical | 8.8 |
CVE-2026-73006 | Microsoft Graphics Component | DirectWrite Remote Code Execution | Critical | 8.8 |
CVE-2026-73013 | Windows Imaging Component | Windows Imaging Component Remote Code Execution | Critical | 8.8 |
CVE-2026-73018 | Graphic Fonts | Graphic Fonts Remote Code Execution | Critical | 8.8 |
CVE-2026-73023 | Windows Imaging Component | Windows Imaging Component Remote Code Execution | Critical | 8.8 |
CVE-2026-77495 | Windows Imaging Component | Windows Imaging Component Remote Code Execution | Critical | 8.8 |
CVE-2026-77504 | Microsoft Office Word | Microsoft Office Word Remote Code Execution | Critical | 8.8 |
CVE-2026-78439 | Microsoft Graphics Component | Microsoft Office Graphics Component Remote Code Execution | Critical | 8.8 |
CVE-2026-78505 | Microsoft Office | Microsoft Office Remote Code Execution | Critical | 8.8 |
CVE-2026-78519 | Microsoft Office Outlook | Microsoft Office Outlook Remote Code Execution | Critical | 8.8 |
CVE-2026-78525 | Microsoft Office Outlook | Microsoft Office Outlook Remote Code Execution | Critical | 8.8 |
CVE-2026-80083 | Windows Hyper-V | Windows Hyper-V Remote Code Execution | Critical | 8.8 |
CVE-2026-81352 | Microsoft Windows Codecs Library | Web Media Extensions Remote Code Execution | Critical | 8.8 |
CVE-2026-81952 | Microsoft Office Word | Microsoft Word Remote Code Execution | Critical | 8.8 |
CVE-2026-81955 | Microsoft Graphics Component | Windows Graphics Component Remote Code Execution | Critical | 8.8 |
CVE-2026-65818 | Power Automate | Power Automate Elevation of Privilege | Critical | 8.5 |
CVE-2026-69857 | Azure Cosmos DB | Azure Cosmos DB Spoofing | Critical | 8.5 |
CVE-2026-70178 | Microsoft Fabric | Microsoft Fabric Elevation of Privilege | Critical | 8.5 |
CVE-2026-78510 | Microsoft Office | Microsoft Outlook and Word Remote Code Execution | Critical | 8.4 |
CVE-2026-69820 | Windows Hello | Windows Hello Elevation of Privilege | Critical | 8.2 |
CVE-2026-69846 | Windows Secure Kernel Mode | Windows Secure Kernel Mode Elevation of Privilege | Critical | 8.2 |
CVE-2026-69874 | Windows ALPC | Windows ALPC Elevation of Privilege | Critical | 8.2 |
CVE-2026-69906 | Windows Secure Kernel Mode | Windows Secure Kernel Mode Elevation of Privilege | Critical | 8.2 |
CVE-2026-72958 | Windows Credential Guard | Windows Credential Guard Elevation of Privilege | Critical | 8.2 |
CVE-2026-72961 | Windows Hyper-V | Windows Hyper-V Elevation of Privilege | Critical | 8.2 |
CVE-2026-72962 | Windows USB Video Driver | Windows USB Video Driver Elevation of Privilege | Critical | 8.2 |
CVE-2026-81354 | Windows Hello | Windows Hello Elevation of Privilege | Critical | 8.2 |
CVE-2026-83939 | Windows Secure Kernel Mode | Windows Secure Kernel Mode Elevation of Privilege | Critical | 8.2 |
CVE-2026-69530 | Reliable Multicast Transport Driver (RMCAST) | Windows Reliable Multicast Transport Driver (RMCAST) Remote Code Execution | Critical | 8.1 |
CVE-2026-69813 | Windows DNS | Windows DNS Server Remote Code Execution | Critical | 8.1 |
CVE-2026-69827 | Role: DNS Server | Windows DNS Server Remote Code Execution | Critical | 8.1 |
CVE-2026-69858 | Windows DNS | Windows DNS Server Remote Code Execution | Critical | 8.1 |
CVE-2026-72981 | IP Helper | IP Helper Remote Code Execution | Critical | 8.1 |
CVE-2026-72987 | Windows DNS | Windows DNS Remote Code Execution | Critical | 8.1 |
CVE-2026-77505 | Role: DNS Server | Windows DNS Server Remote Code Execution | Critical | 8.1 |
CVE-2026-78444 | Windows Failover Cluster | Microsoft Failover Cluster Remote Code Execution | Critical | 8.1 |
CVE-2026-78449 | Reliable Multicast Transport Driver (RMCAST) | Windows Reliable Multicast Transport Driver (RMCAST) Remote Code Execution | Critical | 8.1 |
CVE-2026-78450 | Reliable Multicast Transport Driver (RMCAST) | Windows Reliable Multicast Transport Driver (RMCAST) Remote Code Execution | Critical | 8.1 |
CVE-2026-58599 | Microsoft Windows Codecs Library | HEVC Video Extensions Remote Code Execution | Critical | 7.8 |
CVE-2026-69725 | Windows Hello | Windows Hello Elevation of Privilege | Critical | 7.8 |
CVE-2026-69799 | Windows Hello | Windows Hello Elevation of Privilege | Critical | 7.8 |
CVE-2026-69864 | Windows Hello | Windows Hello Elevation of Privilege | Critical | 7.8 |
CVE-2026-72957 | Windows Deployment Services | Windows Deployment Services Remote Code Execution | Critical | 7.8 |
CVE-2026-81948 | Microsoft Office Excel | Microsoft Excel Remote Code Execution | Critical | 7.8 |
CVE-2026-81949 | Microsoft Office Excel | Microsoft Excel Remote Code Execution | Critical | 7.8 |
CVE-2026-81950 | Microsoft Office Excel | Microsoft Excel Remote Code Execution | Critical | 7.8 |
CVE-2026-81951 | Microsoft Office Excel | Microsoft Excel Remote Code Execution | Critical | 7.8 |
CVE-2026-81953 | Microsoft Office Excel | Microsoft Excel Remote Code Execution | Critical | 7.8 |
CVE-2026-81959 | Microsoft Office Excel | Microsoft Excel Remote Code Execution | Critical | 7.8 |
CVE-2026-83498 | Windows Virtualization-Based Security (VBS) Enclave | Windows Virtualization-Based Security (VBS) Enclave Elevation of Privilege | Critical | 7.8 |
CVE-2026-69710 | Windows Hello | Windows Hello Elevation of Privilege | Critical | 7.5 |
CVE-2026-69852 | Windows Routing and Remote Access Service (RRAS) | Windows Routing and Remote Access Service (RRAS) Remote Code Execution | Critical | 7.5 |
CVE-2026-69890 | Windows Virtual Trusted Platform Module | Windows Virtual Trusted Platform Module Elevation of Privilege | Critical | 7.5 |
CVE-2026-72954 | Windows Deployment Services | Windows Deployment Services Remote Code Execution | Critical | 7.5 |
CVE-2026-73017 | Windows Graphics Kernel | Graphics Kernel Remote Code Execution | Critical | 7.5 |
CVE-2026-77898 | Microsoft Office | Microsoft Office Remote Code Execution | Critical | 7.5 |
CVE-2026-81355 | Virtual Hard Disk (VHD) Miniport Driver | Virtual Hard Disk (VHD) Miniport Driver Remote Code Execution | Critical | 7.5 |
CVE-2026-62906 | Microsoft Discovery Studio | Microsoft Discovery Studio Information Disclosure | Critical | 7.4 |
CVE-2026-69501 | Windows Secure Kernel Mode | Windows Secure Kernel Mode Elevation of Privilege | Critical | 7.0 |
CVE-2026-70585 | Windows Services for NFS ONCRPC XDR Driver | Windows Services for NFS ONCRPC XDR Driver Remote Code Execution | Critical | 7.0 |
CVE-2026-78520 | Microsoft Office Outlook | Microsoft Office Outlook Information Disclosure | Critical | 6.5 |
CVE-2026-83501 | Windows Virtualization-Based Security (VBS) Enclave | Windows Virtualization-Based Security (VBS) Information Disclosure | Critical | 5.5 |
CVE-2026-72980 | Windows Hello | Windows Hello Security Feature Bypass | Critical | 4.4 |
CVE-2026-68839 | Windows USB Mass Storage Class Driver | Windows USB Mass Storage Class Driver Remote Code Execution | Important | 9.8 |
CVE-2026-69276 | Microsoft UxTheme Library (uxtheme.dll) | Microsoft UxTheme Library (uxtheme.dll) Remote Code Execution | Important | 9.8 |
CVE-2026-69408 | Microsoft Windows Media Foundation | Microsoft Windows Media Foundation Remote Code Execution | Important | 9.8 |
CVE-2026-69431 | Telnet Client | Telnet Client Remote Code Execution | Important | 9.8 |
CVE-2026-69463 | Windows NTFS | Windows NTFS Remote Code Execution | Important | 9.8 |
CVE-2026-69491 | Windows Microsoft DirectMusic | Microsoft DirectMusic Remote Code Execution | Important | 9.8 |
CVE-2026-69493 | Windows Event Logging Service | Windows Event Logging Service Remote Code Execution | Important | 9.8 |
CVE-2026-69496 | Windows Compressed Folder | Windows Compressed Folder Remote Code Execution | Important | 9.8 |
CVE-2026-69525 | Windows Remote Desktop Services | Remote Desktop Services Remote Code Execution | Important | 9.8 |
CVE-2026-69586 | Microsoft Windows PDF | Microsoft Windows PDF Remote Code Execution | Important | 9.8 |
CVE-2026-69715 | Windows Direct Show | Windows Direct Show Remote Code Execution | Important | 9.8 |
CVE-2026-69768 | Windows RNDIS | Windows RNDIS Remote Code Execution | Important | 9.8 |
CVE-2026-69819 | RPC Runtime | RPC Runtime Library Remote Code Execution | Important | 9.8 |
CVE-2026-69824 | Microsoft Standard XPS | Microsoft Standard XPS Remote Code Execution | Important | 9.8 |
CVE-2026-69910 | Windows Hyper-V | Windows Hyper-V Remote Code Execution | Important | 9.8 |
CVE-2026-73025 | Windows iSCSI | Windows iSCSI Security Feature Bypass | Important | 9.8 |
CVE-2026-81376 | Visual Studio Code | Visual Studio Code Security Feature Bypass | Important | 9.6 |
CVE-2026-69356 | Microsoft Exchange Server | Microsoft Exchange Server Spoofing | Important | 9.3 |
CVE-2026-69641 | Microsoft Exchange Server | Microsoft Exchange Server Elevation of Privilege | Important | 9.1 |
CVE-2026-62706 | Microsoft Windows Media Foundation | Microsoft Windows Media Foundation Remote Code Execution | Important | 8.8 |
CVE-2026-62744 | Microsoft Windows Media Foundation | Microsoft Windows Media Foundation Remote Code Execution | Important | 8.8 |
CVE-2026-62895 | Azure Arc | Azure Arc SQL Server Extension Elevation of Privilege | Important | 8.8 |
CVE-2026-66814 | SQL Server | Microsoft SQL Server Elevation of Privilege | Important | 8.8 |
CVE-2026-66818 | SQL Server | Microsoft SQL Server Elevation of Privilege | Important | 8.8 |
CVE-2026-66819 | SQL Server | Microsoft SQL Server Elevation of Privilege | Important | 8.8 |
CVE-2026-66820 | SQL Server | SQL Server Elevation of Privilege | Important | 8.8 |
CVE-2026-67368 | SQL Server | Microsoft SQL Server Elevation of Privilege | Important | 8.8 |
CVE-2026-67370 | SQL Server | Microsoft SQL Server Elevation of Privilege | Important | 8.8 |
CVE-2026-67373 | SQL Server | Microsoft SQL Server Remote Code Execution | Important | 8.8 |
CVE-2026-67380 | SQL Server | Microsoft SQL Server Remote Code Execution | Important | 8.8 |
CVE-2026-67381 | SQL Server | Microsoft SQL Server Elevation of Privilege | Important | 8.8 |
CVE-2026-67384 | SQL Server | Microsoft SQL Server Remote Code Execution | Important | 8.8 |
CVE-2026-67385 | SQL Server | Microsoft SQL Server Remote Code Execution | Important | 8.8 |
CVE-2026-67388 | SQL Server | Microsoft SQL Server Remote Code Execution | Important | 8.8 |
CVE-2026-67638 | SQL Server | Microsoft SQL Server Remote Code Execution | Important | 8.8 |
CVE-2026-67639 | SQL Server | Microsoft SQL Server Remote Code Execution | Important | 8.8 |
CVE-2026-67642 | SQL Server | Microsoft SQL Server Remote Code Execution | Important | 8.8 |
CVE-2026-68775 | SQL Server | Microsoft SQL Server Remote Code Execution | Important | 8.8 |
CVE-2026-68786 | SQL Server | Microsoft SQL Server Remote Code Execution | Important | 8.8 |
CVE-2026-68828 | Remote Desktop Client | Remote Desktop Client Remote Code Execution | Important | 8.8 |
CVE-2026-69266 | Windows DHCP Server | Windows DHCP Server Remote Code Execution | Important | 8.8 |
CVE-2026-69268 | Microsoft Office SharePoint | Microsoft Office SharePoint Remote Code Execution | Important | 8.8 |
CVE-2026-69273 | Microsoft Office SharePoint | Microsoft Office SharePoint Remote Code Execution | Important | 8.8 |
CVE-2026-69282 | Microsoft Office SharePoint | Microsoft Office SharePoint Remote Code Execution | Important | 8.8 |
CVE-2026-69291 | Windows Volume Manager Extension Driver | Windows Volume Manager Extension Driver Remote Code Execution | Important | 8.8 |
CVE-2026-69334 | Windows Volume Manager Extension Driver | Windows Volume Manager Extension Driver Remote Code Execution | Important | 8.8 |
CVE-2026-69355 | Microsoft Exchange Server | Microsoft Exchange Server Remote Code Execution | Important | 8.8 |
CVE-2026-69360 | Microsoft Office Word | Microsoft Office Word Remote Code Execution | Important | 8.8 |
CVE-2026-69386 | Microsoft Windows Media Foundation | Microsoft Windows Media Foundation Remote Code Execution | Important | 8.8 |
CVE-2026-69434 | Windows URL Moniker | Windows URL Moniker Remote Code Execution | Important | 8.8 |
CVE-2026-69439 | .NET and Visual Studio | .NET and Visual Studio Elevation of Privilege | Important | 8.8 |
CVE-2026-69442 | Microsoft Office | Microsoft Office Remote Code Execution | Important | 8.8 |
CVE-2026-69461 | Windows NTFS | Windows NTFS Remote Code Execution | Important | 8.8 |
CVE-2026-69464 | Microsoft Office SharePoint | Microsoft Office SharePoint Elevation of Privilege | Important | 8.8 |
CVE-2026-69465 | Microsoft Office SharePoint | Microsoft Office SharePoint Remote Code Execution | Important | 8.8 |
CVE-2026-69485 | Remote Desktop Client | Remote Desktop Client Remote Code Execution | Important | 8.8 |
CVE-2026-69494 | Windows Event Logging Service | Windows Event Logging Service Remote Code Execution | Important | 8.8 |
CVE-2026-69495 | Windows Event Logging Service | Windows Event Logging Service Remote Code Execution | Important | 8.8 |
CVE-2026-69511 | Microsoft Windows Media Foundation | Microsoft Windows Media Foundation Remote Code Execution | Important | 8.8 |
CVE-2026-69522 | Visual Studio | .NET and Visual Studio Remote Code Execution | Important | 8.8 |
CVE-2026-69529 | Microsoft Office Access | Microsoft Office Access Remote Code Execution | Important | 8.8 |
CVE-2026-69547 | Windows DHCP Server | Windows DHCP Server Remote Code Execution | Important | 8.8 |
CVE-2026-69551 | Windows DNS | Windows DNS Server Remote Code Execution | Important | 8.8 |
CVE-2026-69556 | Microsoft Office Word | Microsoft Office Word Remote Code Execution | Important | 8.8 |
CVE-2026-69598 | Windows iSCSI | Windows iSCSI Remote Code Execution | Important | 8.8 |
CVE-2026-69614 | Microsoft Office Access | Microsoft Office Access Remote Code Execution | Important | 8.8 |
CVE-2026-69628 | Windows iSCSI | Windows iSCSI Remote Code Execution | Important | 8.8 |
CVE-2026-69629 | Microsoft Office Outlook | Microsoft Office Outlook Remote Code Execution | Important | 8.8 |
CVE-2026-69669 | Windows Kernel | Windows Kernel Remote Code Execution | Important | 8.8 |
CVE-2026-69671 | Microsoft Office Word | Microsoft Office Word Remote Code Execution | Important | 8.8 |
CVE-2026-69686 | Microsoft Office Word | Microsoft Office Word Remote Code Execution | Important | 8.8 |
CVE-2026-69716 | Microsoft Office SharePoint | Microsoft Office SharePoint Elevation of Privilege | Important | 8.8 |
CVE-2026-69722 | Microsoft Office Word | Microsoft Office Word Remote Code Execution | Important | 8.8 |
CVE-2026-69724 | Microsoft Office SharePoint | Microsoft Office SharePoint Remote Code Execution | Important | 8.8 |
CVE-2026-69729 | Windows Credential Providers | Windows Credential Providers Remote Code Execution | Important | 8.8 |
CVE-2026-69742 | Microsoft Office Publisher | Microsoft Office Publisher Remote Code Execution | Important | 8.8 |
CVE-2026-69759 | Microsoft Office Word | Microsoft Office Word Remote Code Execution | Important | 8.8 |
CVE-2026-69764 | Microsoft Office Word | Microsoft Office Word Remote Code Execution | Important | 8.8 |
CVE-2026-69772 | Windows Network File System | Windows Network File System Remote Code Execution | Important | 8.8 |
CVE-2026-69778 | Microsoft Office Access | Microsoft Office Access Remote Code Execution | Important | 8.8 |
CVE-2026-71328 | Visual Studio | .NET and Visual Studio Remote Code Execution | Important | 8.8 |
CVE-2026-71336 | Windows Work Folder Service | Windows Work Folder Service Remote Code Execution | Important | 8.8 |
CVE-2026-71352 | Windows Remote Access Connection Manager | Windows Remote Access Connection Manager Remote Code Execution | Important | 8.8 |
CVE-2026-72933 | Microsoft WDAC OLE DB provider for SQL | Microsoft WDAC OLE DB provider for SQL Remote Code Execution | Important | 8.8 |
CVE-2026-72940 | Windows Schannel | Windows Schannel Remote Code Execution | Important | 8.8 |
CVE-2026-72972 | Microsoft Office Word | Microsoft Office Word Remote Code Execution | Important | 8.8 |
CVE-2026-72973 | Microsoft Office Word | Microsoft Office Word Remote Code Execution | Important | 8.8 |
CVE-2026-73012 | Windows Management Services | Windows Management Services Elevation of Privilege | Important | 8.8 |
CVE-2026-73016 | Microsoft Graphics Component | DirectWrite Remote Code Execution | Important | 8.8 |
CVE-2026-73028 | SQL Server | SQL Server Elevation of Privilege | Important | 8.8 |
CVE-2026-77480 | SQL Server | SQL Server Elevation of Privilege | Important | 8.8 |
CVE-2026-77481 | SQL Server | Microsoft SQL Server Remote Code Execution | Important | 8.8 |
CVE-2026-77482 | SQL Server | Microsoft SQL Server Remote Code Execution | Important | 8.8 |
CVE-2026-77483 | SQL Server | SQL Server Elevation of Privilege | Important | 8.8 |
CVE-2026-77484 | SQL Server | Microsoft SQL Server Remote Code Execution | Important | 8.8 |
CVE-2026-77486 | SQL Server | Microsoft SQL Server Remote Code Execution | Important | 8.8 |
CVE-2026-77487 | SQL Server | SQL Server Elevation of Privilege | Important | 8.8 |
CVE-2026-77901 | Microsoft Office Word | Microsoft Office Word Remote Code Execution | Important | 8.8 |
CVE-2026-77906 | Visual Studio | Visual Studio Remote Code Execution | Important | 8.8 |
CVE-2026-77907 | Visual Studio | Visual Studio Remote Code Execution | Important | 8.8 |
CVE-2026-77908 | Microsoft Dynamics 365 | Microsoft Dynamics 365 On-Premises Remote Code Execution | Important | 8.8 |
CVE-2026-78442 | Windows OLE DB | Windows OLE DB Remote Code Execution | Important | 8.8 |
CVE-2026-78456 | SQL Server | SQL Server Remote Code Execution | Important | 8.8 |
CVE-2026-78462 | Visual Studio Code | Visual Studio Code Security Feature Bypass | Important | 8.8 |
CVE-2026-78463 | Remote Desktop Client | Remote Desktop Client Remote Code Execution | Important | 8.8 |
CVE-2026-78504 | Microsoft Office Word | Microsoft Office Word Remote Code Execution | Important | 8.8 |
CVE-2026-78507 | Microsoft Office Word | Microsoft Office Word Remote Code Execution | Important | 8.8 |
CVE-2026-78511 | Microsoft Office Word | Microsoft Office Word Remote Code Execution | Important | 8.8 |
CVE-2026-78512 | Microsoft Office Word | Microsoft Office Word Remote Code Execution | Important | 8.8 |
CVE-2026-78514 | Microsoft Office Word | Microsoft Office Word Remote Code Execution | Important | 8.8 |
CVE-2026-78517 | Microsoft Office Word | Microsoft Office Word Remote Code Execution | Important | 8.8 |
CVE-2026-78518 | Microsoft Office Excel | Microsoft Office Excel Remote Code Execution | Important | 8.8 |
CVE-2026-78521 | Microsoft Office Word | Microsoft Office Word Remote Code Execution | Important | 8.8 |
CVE-2026-78524 | Microsoft Office | Microsoft Office Remote Code Execution | Important | 8.8 |
CVE-2026-78526 | Microsoft Office Word | Microsoft Office Word Remote Code Execution | Important | 8.8 |
CVE-2026-80074 | Remote Desktop Client | Remote Desktop Client Remote Code Execution | Important | 8.8 |
CVE-2026-80077 | Remote Desktop Client | Remote Desktop Client Remote Code Execution | Important | 8.8 |
CVE-2026-80080 | Microsoft Office Word | Microsoft Office Word Remote Code Execution | Important | 8.8 |
CVE-2026-80081 | Microsoft Office PowerPoint | Microsoft Office PowerPoint Remote Code Execution | Important | 8.8 |
CVE-2026-80085 | Microsoft Office Word | Microsoft Office Word Remote Code Execution | Important | 8.8 |
CVE-2026-80096 | Windows Remote Desktop Services | Windows Remote Desktop Services Elevation of Privilege | Important | 8.8 |
CVE-2026-81385 | Microsoft Office Publisher | Microsoft Office Publisher Remote Code Execution | Important | 8.8 |
CVE-2026-83992 | Windows Imaging Component | Windows Imaging Component Remote Code Execution | Important | 8.8 |
CVE-2026-83996 | Windows Error Reporting | Windows Error Reporting Elevation of Privilege | Important | 8.8 |
CVE-2026-83998 | Remote Desktop Client | Remote Desktop Client Remote Code Execution | Important | 8.8 |
CVE-2026-85877 | Windows Print Spooler Components | Windows Print Spooler Remote Code Execution | Important | 8.8 |
CVE-2026-80097 | Microsoft Authenticator | Microsoft Authenticator Elevation of Privilege | Important | 8.6 |
CVE-2026-67379 | SQL Server | Microsoft SQL Server Remote Code Execution | Important | 8.5 |
CVE-2026-69479 | Windows NTFS | Windows NTFS Remote Code Execution | Important | 8.4 |
CVE-2026-69638 | Windows NTFS | Windows NTFS Remote Code Execution | Important | 8.4 |
CVE-2026-77503 | Windows NTFS | Windows NTFS Elevation of Privilege | Important | 8.4 |
CVE-2026-69646 | Skype for Business | Skype for Business Spoofing | Important | 8.3 |
CVE-2026-81356 | Visual Studio Code | Visual Studio Code Security Feature Bypass | Important | 8.2 |
CVE-2026-81357 | Visual Studio Code | Visual Studio Code Security Feature Bypass | Important | 8.2 |
CVE-2026-81378 | Visual Studio Code | Visual Studio Code Security Feature Bypass | Important | 8.2 |
CVE-2026-81379 | Visual Studio Code | Visual Studio Code Security Feature Bypass | Important | 8.2 |
CVE-2026-47297 | SQL Server | Microsoft SQL Server Remote Code Execution | Important | 8.1 |
CVE-2026-55007 | Microsoft Exchange Server | Microsoft Exchange Server Remote Code Execution | Important | 8.1 |
CVE-2026-69325 | Microsoft JScript | Microsoft JScript Remote Code Execution | Important | 8.1 |
CVE-2026-69380 | Microsoft Exchange Server | Microsoft Exchange Server Elevation of Privilege | Important | 8.1 |
CVE-2026-69438 | Microsoft JScript | Microsoft JScript Remote Code Execution | Important | 8.1 |
CVE-2026-69510 | Windows DHCP Server | Windows DHCP Server Remote Code Execution | Important | 8.1 |
CVE-2026-69524 | Active Directory Domain Services | Windows Active Directory Domain Services Remote Code Execution | Important | 8.1 |
CVE-2026-69546 | Active Directory Domain Services | Windows Active Directory Domain Services Remote Code Execution | Important | 8.1 |
CVE-2026-69620 | Windows DHCP Server | Windows DHCP Server Remote Code Execution | Important | 8.1 |
CVE-2026-69680 | Windows DNS | Windows DNS Spoofing | Important | 8.1 |
CVE-2026-69732 | Windows Link Layer Topology Discovery Protocol | Windows Link Layer Topology Discovery Protocol Remote Code Execution | Important | 8.1 |
CVE-2026-69782 | Role: DNS Server | Windows DNS Server Remote Code Execution | Important | 8.1 |
CVE-2026-69786 | Windows Text Shaping | Windows Text Shaping Remote Code Execution | Important | 8.1 |
CVE-2026-69989 | Role: DNS Server | Windows DNS Server Remote Code Execution | Important | 8.1 |
CVE-2026-70342 | Windows Ancillary Function Driver for WinSock | Windows Ancillary Function Driver for WinSock Elevation of Privilege | Important | 8.1 |
CVE-2026-70563 | Windows Shell | Windows Shell Spoofing | Important | 8.1 |
CVE-2026-72936 | Windows SMB Client | Windows SMB Client Remote Code Execution | Important | 8.1 |
CVE-2026-83997 | Windows Message Queuing | Windows Message Queuing Remote Code Execution | Important | 8.1 |
CVE-2026-68827 | Windows GDI+ | Windows GDI+ Elevation of Privilege | Important | 8.0 |
CVE-2026-68834 | Windows NTFS | Windows NTFS Elevation of Privilege | Important | 8.0 |
CVE-2026-68838 | Windows NTFS | Windows NTFS Elevation of Privilege | Important | 8.0 |
CVE-2026-68876 | Windows Program Compatibility Assistant Service | Windows Program Compatibility Assistant Service Elevation of Privilege | Important | 8.0 |
CVE-2026-68878 | Windows Fast FAT Driver | Windows Fast FAT Driver Elevation of Privilege | Important | 8.0 |
CVE-2026-68880 | Windows Win32K | Windows Win32k Elevation of Privilege | Important | 8.0 |
CVE-2026-68894 | Windows Error Reporting | Windows Error Reporting Elevation of Privilege | Important | 8.0 |
CVE-2026-69271 | Microsoft Standard XPS | Microsoft Standard XPS Elevation of Privilege | Important | 8.0 |
CVE-2026-69301 | Windows Win32K | Windows Win32k Elevation of Privilege | Important | 8.0 |
CVE-2026-69322 | Microsoft Windows Search Component | Microsoft Windows Search Component Elevation of Privilege | Important | 8.0 |
CVE-2026-69332 | Windows NTFS | Windows NTFS Elevation of Privilege | Important | 8.0 |
CVE-2026-69346 | Windows Print Spooler Components | Windows Print Spooler Components Elevation of Privilege | Important | 8.0 |
CVE-2026-69365 | Microsoft Local Security Authority Server (lsasrv) | Microsoft Local Security Authority (LSA) Server Elevation of Privilege | Important | 8.0 |
CVE-2026-69371 | Windows Overlay Filter | Windows Overlay Filter Elevation of Privilege | Important | 8.0 |
CVE-2026-69412 | Windows DHCP Server | Windows DHCP Server Remote Code Execution | Important | 8.0 |
CVE-2026-69418 | Volume Manager Driver | Volume Manager Driver Elevation of Privilege | Important | 8.0 |
CVE-2026-69423 | Windows USB Video Driver | Windows USB Video Driver Elevation of Privilege | Important | 8.0 |
CVE-2026-69427 | Windows VOLSNAP.SYS | Microsoft VOLSNAP.SYS Elevation of Privilege | Important | 8.0 |
CVE-2026-69458 | Windows BitLocker | Windows BitLocker Elevation of Privilege | Important | 8.0 |
CVE-2026-69462 | Windows Error Reporting | Windows Error Reporting Elevation of Privilege | Important | 8.0 |
CVE-2026-69481 | Windows Enterprise App Management | Windows Enterprise App Management Elevation of Privilege | Important | 8.0 |
CVE-2026-69503 | Windows USB Driver | Windows USB Driver Elevation of Privilege | Important | 8.0 |
CVE-2026-69505 | Windows NTFS | Windows NTFS Elevation of Privilege | Important | 8.0 |
CVE-2026-69512 | Windows Spaceport.sys | Windows Spaceport.sys Elevation of Privilege | Important | 8.0 |
CVE-2026-69619 | Windows exFAT File System | Windows exFAT File System Elevation of Privilege | Important | 8.0 |
CVE-2026-69623 | Windows HTTP Print Provider | Windows HTTP Print Provider Remote Code Execution | Important | 8.0 |
CVE-2026-69625 | Windows Connected User Experiences and Telemetry | Connected User Experiences and Telemetry Elevation of Privilege | Important | 8.0 |
CVE-2026-69643 | Windows Spaceport.sys | Windows Spaceport.sys Elevation of Privilege | Important | 8.0 |
CVE-2026-69681 | Virtual Hard Disk (VHD) Miniport Driver | Virtual Hard Disk (VHD) Miniport Driver Elevation of Privilege Vulernability | Important | 8.0 |
CVE-2026-69689 | Windows Win32K | Windows Win32k Elevation of Privilege | Important | 8.0 |
CVE-2026-69714 | Windows Device Association Service | Windows Device Association Service Elevation of Privilege | Important | 8.0 |
CVE-2026-69717 | Windows Group Policy | Windows Group Policy Elevation of Privilege | Important | 8.0 |
CVE-2026-69727 | Windows Biometric Service | Windows Biometric Service Elevation of Privilege | Important | 8.0 |
CVE-2026-69762 | Windows Win32K | Windows Win32k Elevation of Privilege | Important | 8.0 |
CVE-2026-69773 | Windows Biometric Service | Windows Biometric Service Elevation of Privilege | Important | 8.0 |
CVE-2026-69777 | Windows DHCP Client | Windows DHCP Client Elevation of Privilege | Important | 8.0 |
CVE-2026-69807 | Windows PowerShell | PowerShell Elevation of Privilege | Important | 8.0 |
CVE-2026-69826 | Windows Biometric Service | Windows Biometric Service Elevation of Privilege | Important | 8.0 |
CVE-2026-69847 | Windows DHCP Server | Windows DHCP Server Remote Code Execution | Important | 8.0 |
CVE-2026-69875 | Windows NTFS | Windows NTFS Elevation of Privilege | Important | 8.0 |
CVE-2026-69876 | Windows DHCP Server | Windows DHCP Server Remote Code Execution | Important | 8.0 |
CVE-2026-83948 | Microsoft Azure CLI | Microsoft Azure CLI Remote Code Execution | Important | 8.0 |
CVE-2026-56172 | Windows VHD miniport driver | Windows VHD miniport driver Elevation of Privilege | Important | 7.8 |
CVE-2026-56177 | Windows Server | Windows Server Elevation of Privilege | Important | 7.8 |
CVE-2026-56198 | Microsoft Trace Data Helper | Microsoft Trace Data Helper Elevation of Privilege | Important | 7.8 |
CVE-2026-58600 | Microsoft Windows Codecs Library | HEVC Video Extensions Elevation of Privilege | Important | 7.8 |
CVE-2026-58611 | XBox Gaming Services | Xbox Gaming Services Elevation of Privilege | Important | 7.8 |
CVE-2026-62697 | Windows Push Notifications | Windows Push Notifications Elevation of Privilege | Important | 7.8 |
CVE-2026-62804 | Microsoft Office Word | Microsoft Word Remote Code Execution | Important | 7.8 |
CVE-2026-62810 | Active Directory Certificate Services (AD CS) | Active Directory Certificate Services (AD CS) Elevation of Privilege | Important | 7.8 |
CVE-2026-68787 | SQL Server | Microsoft SQL Server Remote Code Execution | Important | 7.8 |
CVE-2026-68832 | Windows NTFS | Windows NTFS Elevation of Privilege | Important | 7.8 |
CVE-2026-68841 | Windows NTFS | Windows NTFS Elevation of Privilege | Important | 7.8 |
CVE-2026-68844 | Windows Storage Spaces Controller | Windows Storage Spaces Controller Remote Code Execution | Important | 7.8 |
CVE-2026-68845 | Windows Program Compatibility Assistant Service | Windows Program Compatibility Assistant Service Elevation of Privilege | Important | 7.8 |
CVE-2026-68848 | Windows Print Spooler Components | Windows Print Spooler Components Elevation of Privilege | Important | 7.8 |
CVE-2026-68850 | Microsoft Account | Microsoft Account Elevation of Privilege | Important | 7.8 |
CVE-2026-68875 | Windows NTFS | Windows NTFS Remote Code Execution | Important | 7.8 |
CVE-2026-68877 | Windows Storage Spaces Controller | Windows Storage Spaces Controller Remote Code Execution | Important | 7.8 |
CVE-2026-68885 | Microsoft Standard XPS | Microsoft Standard XPS Elevation of Privilege | Important | 7.8 |
CVE-2026-68888 | Microsoft Standard XPS | Microsoft Standard XPS Elevation of Privilege | Important | 7.8 |
CVE-2026-68890 | Microsoft Standard XPS | Microsoft Standard XPS Elevation of Privilege | Important | 7.8 |
CVE-2026-68892 | Microsoft Standard XPS | Microsoft Standard XPS Elevation of Privilege | Important | 7.8 |
CVE-2026-68896 | Microsoft Windows Search Component | Microsoft Windows Search Component Elevation of Privilege | Important | 7.8 |
CVE-2026-69265 | Windows NTFS | Windows NTFS Elevation of Privilege | Important | 7.8 |
CVE-2026-69269 | Microsoft Standard XPS | Microsoft Standard XPS Elevation of Privilege | Important | 7.8 |
CVE-2026-69270 | Windows USB Audio Class driver (usbaudio.sys) | Windows USB Audio Class driver (usbaudio.sys) Elevation of Privilege | Important | 7.8 |
CVE-2026-69277 | Microsoft Local Security Authority Server (lsasrv) | Microsoft Local Security Authority (LSA) Server Elevation of Privilege | Important | 7.8 |
CVE-2026-69283 | Windows CD-ROM Driver | Windows CD-ROM Driver Elevation of Privilege | Important | 7.8 |
CVE-2026-69284 | Windows DCOM Server | Windows DCOM Server Elevation of Privilege | Important | 7.8 |
CVE-2026-69289 | Windows Setup Files Cleanup | Windows Setup Files Cleanup Elevation of Privilege | Important | 7.8 |
CVE-2026-69290 | Windows Storage Spaces Controller | Windows Storage Spaces Controller Elevation of Privilege | Important | 7.8 |
CVE-2026-69293 | Windows Biometric Service | Windows Biometric Service Elevation of Privilege | Important | 7.8 |
CVE-2026-69295 | Windows USB Driver | Windows USB Driver Elevation of Privilege | Important | 7.8 |
CVE-2026-69298 | Windows Biometric Service | Windows Biometric Service Elevation of Privilege | Important | 7.8 |
CVE-2026-69307 | Windows USB Audio Class driver (usbaudio.sys) | Windows USB Audio Class driver (usbaudio.sys) Elevation of Privilege | Important | 7.8 |
CVE-2026-69312 | Windows NTFS | Windows NTFS Elevation of Privilege | Important | 7.8 |
CVE-2026-69323 | Windows Biometric Service | Windows Biometric Service Elevation of Privilege | Important | 7.8 |
CVE-2026-69324 | Windows Performance Monitor | Windows Performance Monitor Elevation of Privilege | Important | 7.8 |
CVE-2026-69328 | Windows Storage | Windows Storage Elevation of Privilege | Important | 7.8 |
CVE-2026-69348 | Windows Win32K | Windows Win32k Elevation of Privilege | Important | 7.8 |
CVE-2026-69352 | Windows Biometric Service | Windows Biometric Service Elevation of Privilege | Important | 7.8 |
CVE-2026-69359 | Active Directory Domain Services | Active Directory Domain Services Elevation of Privilege | Important | 7.8 |
CVE-2026-69368 | Windows Overlay Filter | Windows Overlay Filter Elevation of Privilege | Important | 7.8 |
CVE-2026-69377 | Windows Modern Device Management (MDM) | Windows Modern Device Management (MDM) Elevation of Privilege | Important | 7.8 |
CVE-2026-69389 | Windows Storage Management Provider | Windows Storage Management Provider Elevation of Privilege | Important | 7.8 |
CVE-2026-69391 | Windows Broker Infrastructure Service | Windows Broker Infrastructure Service Elevation of Privilege | Important | 7.8 |
CVE-2026-69392 | Windows Shell | Windows Shell Elevation of Privilege | Important | 7.8 |
CVE-2026-69407 | Volume Manager Driver | Volume Manager Driver Elevation of Privilege | Important | 7.8 |
CVE-2026-69420 | Windows VOLSNAP.SYS | Microsoft VOLSNAP.SYS Elevation of Privilege | Important | 7.8 |
CVE-2026-69421 | Windows Kernel Mode Driver | Windows Kernel-Mode Driver Elevation of Privilege | Important | 7.8 |
CVE-2026-69424 | Windows Distributed File System (DFS) | Windows Distributed File System (DFS) Elevation of Privilege | Important | 7.8 |
CVE-2026-69426 | Windows VOLSNAP.SYS | Windows VOLSNAP.SYS Remote Code Execution | Important | 7.8 |
CVE-2026-69432 | Volume Manager Driver | Volume Manager Driver Elevation of Privilege | Important | 7.8 |
CVE-2026-69433 | Windows Error Reporting | Windows Error Reporting Elevation of Privilege | Important | 7.8 |
CVE-2026-69436 | Windows State Repository Service | Windows State Repository Service Elevation of Privilege | Important | 7.8 |
CVE-2026-69444 | Microsoft Windows Speech | Microsoft Windows Speech Elevation of Privilege | Important | 7.8 |
CVE-2026-69445 | Windows Compressed Folder | Windows Compressed Folder Elevation of Privilege | Important | 7.8 |
CVE-2026-69447 | Windows Audio Service | Windows Audio Service Elevation of Privilege | Important | 7.8 |
CVE-2026-69450 | Windows Error Reporting | Windows Error Reporting Elevation of Privilege | Important | 7.8 |
CVE-2026-69455 | Windows Remote Access Connection Manager | Windows Remote Access Connection Manager Elevation of Privilege | Important | 7.8 |
CVE-2026-69456 | Microsoft Windows Speech | Microsoft Windows Speech Elevation of Privilege | Important | 7.8 |
CVE-2026-69459 | Windows Power Dependency Coordinator | Windows Power Dependency Coordinator Elevation of Privilege | Important | 7.8 |
CVE-2026-69467 | Microsoft Graphics Component | Microsoft Graphics Component Elevation of Privilege | Important | 7.8 |
CVE-2026-69475 | Windows Remote Desktop Services | Windows Remote Desktop Services Elevation of Privilege | Important | 7.8 |
CVE-2026-69476 | Windows Biometric Service | Windows Biometric Service Elevation of Privilege | Important | 7.8 |
CVE-2026-69478 | Windows Device Association Service | Windows Device Association Service Elevation of Privilege | Important | 7.8 |
CVE-2026-69480 | Windows Partition Management Driver | Windows Partition Management Driver Elevation of Privilege | Important | 7.8 |
CVE-2026-69489 | Windows Biometric Service | Windows Biometric Service Elevation of Privilege | Important | 7.8 |
CVE-2026-69508 | Windows MIDI Service Module | Windows MIDI Service Module Elevation of Privileges | Important | 7.8 |
CVE-2026-69509 | Role: Windows Fax Service | Role: Windows Fax Service Elevation of Privilege | Important | 7.8 |
CVE-2026-69513 | Windows Error Reporting | Windows Error Reporting Elevation of Privilege | Important | 7.8 |
CVE-2026-69528 | Windows Shell | Windows Shell Elevation of Privilege | Important | 7.8 |
CVE-2026-69532 | Windows NTFS | Windows NTFS Elevation of Privilege | Important | 7.8 |
CVE-2026-69534 | Windows Program Compatibility Assistant Service | Windows Program Compatibility Assistant Service Elevation of Privilege | Important | 7.8 |
CVE-2026-69535 | Windows Spaceport.sys | Windows Spaceport.sys Elevation of Privilege | Important | 7.8 |
CVE-2026-69538 | Windows Spaceport.sys | Windows Spaceport.sys Remote Code Execution | Important | 7.8 |
CVE-2026-69541 | Virtual Hard Disk (VHD) Miniport Driver | Virtual Hard Disk (VHD) Miniport Driver Elevation of Privilege Vulernability | Important | 7.8 |
CVE-2026-69542 | Windows Camera Frame Server Monitor | Windows Camera Frame Server Monitor Elevation of Privilege | Important | 7.8 |
CVE-2026-69544 | Windows SMB Client | Windows SMB Client Elevation of Privilege | Important | 7.8 |
CVE-2026-69561 | Windows CD-ROM Driver | Windows CD-ROM Driver Elevation of Privilege | Important | 7.8 |
CVE-2026-69571 | Windows USB Audio Class driver (usbaudio.sys) | Windows USB Audio Class driver (usbaudio.sys) Elevation of Privilege | Important | 7.8 |
CVE-2026-69576 | Graphic Fonts | Graphic Fonts Elevation of Privilege | Important | 7.8 |
CVE-2026-69580 | Windows Biometric Service | Windows Biometric Service Elevation of Privilege | Important | 7.8 |
CVE-2026-69582 | Windows Volume Manager Extension Driver | Windows Volume Manager Extension Driver Elevation of Privilege | Important | 7.8 |
CVE-2026-69583 | Windows Biometric Service | Windows Biometric Service Elevation of Privilege | Important | 7.8 |
CVE-2026-69584 | Windows USB Video Driver | Windows USB Video Driver Elevation of Privilege | Important | 7.8 |
CVE-2026-69585 | Microsoft Windows Search Component | Microsoft Windows Search Component Elevation of Privilege | Important | 7.8 |
CVE-2026-69589 | Windows Biometric Service | Windows Biometric Service Elevation of Privilege | Important | 7.8 |
CVE-2026-69592 | Windows Universal Disk Format File System Driver (UDFS) | Windows Universal Disk Format File System Driver (UDFS) Elevation of Privilege | Important | 7.8 |
CVE-2026-69593 | Windows Biometric Service | Windows Biometric Service Elevation of Privilege | Important | 7.8 |
CVE-2026-69594 | Microsoft Local Security Authority Server (lsasrv) | Microsoft Local Security Authority (LSA) Server Elevation of Privilege | Important | 7.8 |
CVE-2026-69604 | Windows Audio Service | Windows Audio Service Elevation of Privilege | Important | 7.8 |
CVE-2026-69608 | Microsoft Windows Search Component | Microsoft Windows Search Component Elevation of Privilege | Important | 7.8 |
CVE-2026-69612 | Windows Error Reporting | Windows Error Reporting Elevation of Privilege | Important | 7.8 |
CVE-2026-69685 | Windows Kerberos | Windows Kerberos Elevation of Privilege | Important | 7.8 |
CVE-2026-69687 | Windows USB Audio Class driver (usbaudio.sys) | Windows USB Audio Class driver (usbaudio.sys) Elevation of Privilege | Important | 7.8 |
CVE-2026-69691 | Windows Spaceport.sys | Windows Spaceport.sys Elevation of Privilege | Important | 7.8 |
CVE-2026-69707 | Windows USB Audio Class driver (usbaudio.sys) | Windows USB Audio Class driver (usbaudio.sys) Elevation of Privilege | Important | 7.8 |
CVE-2026-69709 | Windows NTFS | Windows NTFS Remote Code Execution | Important | 7.8 |
CVE-2026-69720 | Windows MIDI Service Module | Windows MIDI Service Module Elevation of Privileges | Important | 7.8 |
CVE-2026-69731 | HID class driver | HID Class Driver Elevation of Privilege | Important | 7.8 |
CVE-2026-69738 | Windows Biometric Service | Windows Biometric Service Elevation of Privilege | Important | 7.8 |
CVE-2026-69758 | Windows Universal Disk Format File System Driver (UDFS) | Windows Universal Disk Format File System Driver (UDFS) Elevation of Privilege | Important | 7.8 |
CVE-2026-69785 | Windows Smart Card | Windows Smart Card Elevation of Privilege | Important | 7.8 |
CVE-2026-69787 | Windows Biometric Service | Windows Biometric Service Elevation of Privilege | Important | 7.8 |
CVE-2026-69790 | Windows Credential Providers | Windows Credential Providers Elevation of Privilege | Important | 7.8 |
CVE-2026-69801 | Windows Audio Service | Windows Audio Service Elevation of Privilege | Important | 7.8 |
CVE-2026-69821 | Active Directory Certificate Services (AD CS) | Active Directory Certificate Services (AD CS) Elevation of Privilege | Important | 7.8 |
CVE-2026-69822 | Windows Kerberos | Windows Kerberos Elevation of Privilege | Important | 7.8 |
CVE-2026-69841 | Windows Encrypting File System (EFS) | Windows Encrypting File System (EFS) Elevation of Privilege | Important | 7.8 |
CVE-2026-69844 | Windows Win32K | Windows Win32k Elevation of Privilege | Important | 7.8 |
CVE-2026-69900 | Kernel Streaming WOW Thunk Service Driver | Kernel Streaming WOW Thunk Service Driver Elevation of Privilege | Important | 7.8 |
CVE-2026-69907 | Windows Enterprise App Management | Windows Enterprise App Management Elevation of Privilege | Important | 7.8 |
CVE-2026-69921 | Windows Print Spooler Components | Windows Print Spooler Components Elevation of Privilege | Important | 7.8 |
CVE-2026-70289 | Windows Win32 Kernel Subsystem | Windows Win32k Elevation of Privilege | Important | 7.8 |
CVE-2026-70334 | Visual Studio Code | Visual Studio Code Security Feature Bypass | Important | 7.8 |
CVE-2026-70564 | Windows Print Spooler Components | Windows Print Spooler Components Elevation of Privilege | Important | 7.8 |
CVE-2026-70569 | Windows Spaceport.sys | Windows Spaceport.sys Elevation of Privilege | Important | 7.8 |
CVE-2026-70572 | Windows Biometric Service | Windows Biometric Service Elevation of Privilege | Important | 7.8 |
CVE-2026-70574 | Virtual Hard Disk (VHD) Miniport Driver | Virtual Hard Disk (VHD) Miniport Driver Elevation of Privilege Vulernability | Important | 7.8 |
CVE-2026-70581 | Windows Biometric Service | Windows Biometric Service Elevation of Privilege | Important | 7.8 |
CVE-2026-70583 | Windows Core Messaging | Windows Core Messaging Elevation of Privilege | Important | 7.8 |
CVE-2026-70584 | Windows Core Messaging | Windows Core Messaging Elevation of Privilege | Important | 7.8 |
CVE-2026-71334 | Windows NFS Portmapper | Windows NFS Portmapper Elevation of Privilege | Important | 7.8 |
CVE-2026-71337 | Windows Storage Management Provider | Windows Storage Management Provider Elevation of Privilege | Important | 7.8 |
CVE-2026-71343 | Windows Remote Access Connection Manager | Windows Remote Access Connection Manager Remote Code Execution | Important | 7.8 |
CVE-2026-71345 | Windows Spaceport.sys | Windows Spaceport.sys Remote Code Execution | Important | 7.8 |
CVE-2026-72929 | Windows Installer | Windows Installer Elevation of Privilege | Important | 7.8 |
CVE-2026-72941 | Windows Biometric Service | Windows Biometric Service Elevation of Privilege | Important | 7.8 |
CVE-2026-72944 | Role: Windows Fax Service | Role: Windows Fax Service Elevation of Privilege | Important | 7.8 |
CVE-2026-72946 | Storage Port Driver | Microsoft Storage Port Driver Elevation of Privilege | Important | 7.8 |
CVE-2026-72953 | Windows USB Driver | Windows USB Driver Elevation of Privilege | Important | 7.8 |
CVE-2026-72965 | Windows WebClient Service | Windows WebClient Service Elevation of Privilege | Important | 7.8 |
CVE-2026-72967 | Windows Network Connection Broker | Windows Network Connection Broker Elevation of Privilege | Important | 7.8 |
CVE-2026-72988 | Windows Biometric Service | Windows Biometric Service Elevation of Privilege | Important | 7.8 |
CVE-2026-72990 | Windows Biometric Service | Windows Biometric Service Elevation of Privilege | Important | 7.8 |
CVE-2026-72991 | Windows Biometric Service | Windows Biometric Service Elevation of Privilege | Important | 7.8 |
CVE-2026-72992 | Windows Biometric Service | Windows Biometric Service Elevation of Privilege | Important | 7.8 |
CVE-2026-72993 | Windows Biometric Service | Windows Biometric Service Elevation of Privilege | Important | 7.8 |
CVE-2026-72994 | Windows Biometric Service | Windows Biometric Service Elevation of Privilege | Important | 7.8 |
CVE-2026-72995 | Windows Biometric Service | Windows Biometric Service Elevation of Privilege | Important | 7.8 |
CVE-2026-72996 | Windows Biometric Service | Windows Biometric Service Elevation of Privilege | Important | 7.8 |
CVE-2026-72997 | Windows Biometric Service | Windows Biometric Service Elevation of Privilege | Important | 7.8 |
CVE-2026-73000 | Windows Biometric Service | Windows Biometric Service Elevation of Privilege | Important | 7.8 |
CVE-2026-73001 | Windows Biometric Service | Windows Biometric Service Elevation of Privilege | Important | 7.8 |
CVE-2026-73002 | Windows Biometric Service | Windows Biometric Service Elevation of Privilege | Important | 7.8 |
CVE-2026-73007 | Windows Biometric Service | Windows Biometric Service Elevation of Privilege | Important | 7.8 |
CVE-2026-73011 | Windows Biometric Service | Windows Biometric Service Elevation of Privilege | Important | 7.8 |
CVE-2026-73014 | Data Sharing Service Client | Data Sharing Service Client Elevation of Privilege | Important | 7.8 |
CVE-2026-73015 | Windows Biometric Service | Windows Biometric Service Elevation of Privilege | Important | 7.8 |
CVE-2026-73020 | Windows Biometric Service | Windows Biometric Service Elevation of Privilege | Important | 7.8 |
CVE-2026-73021 | Windows Biometric Service | Windows Biometric Service Elevation of Privilege | Important | 7.8 |
CVE-2026-73024 | Windows Services for NFS ONCRPC XDR Driver | Windows Services for NFS ONCRPC XDR Driver Elevation of Privilege | Important | 7.8 |
CVE-2026-73026 | Windows Biometric Service | Windows Biometric Service Elevation of Privilege | Important | 7.8 |
CVE-2026-77489 | Windows Biometric Service | Windows Biometric Service Elevation of Privilege | Important | 7.8 |
CVE-2026-77500 | Windows Device Association Service | Windows Device Association Service Elevation of Privilege | Important | 7.8 |
CVE-2026-77904 | Windows Volume Manager Extension Driver | Windows Volume Manager Extension Driver Elevation of Privilege | Important | 7.8 |
CVE-2026-78447 | Windows Biometric Service | Windows Biometric Service Elevation of Privilege | Important | 7.8 |
CVE-2026-78448 | Windows Biometric Service | Windows Biometric Service Elevation of Privilege | Important | 7.8 |
CVE-2026-80075 | Windows Work Folders | Windows Work Folders Elevation of Privilege | Important | 7.8 |
CVE-2026-81353 | Microsoft Windows Codecs Library | HEIF Image Extensions Remote Code Execution | Important | 7.8 |
CVE-2026-81386 | Microsoft Office Excel | Microsoft Excel Remote Code Execution | Important | 7.8 |
CVE-2026-81388 | Microsoft Office Excel | Microsoft Excel Remote Code Execution | Important | 7.8 |
CVE-2026-81396 | Microsoft Office Excel | Microsoft Excel Remote Code Execution | Important | 7.8 |
CVE-2026-81397 | Microsoft Office Excel | Microsoft Excel Remote Code Execution | Important | 7.8 |
CVE-2026-81398 | Microsoft Office Excel | Microsoft Excel Remote Code Execution | Important | 7.8 |
CVE-2026-81947 | Microsoft Office Excel | Microsoft Excel Remote Code Execution | Important | 7.8 |
CVE-2026-81954 | Microsoft Office Excel | Microsoft Excel Remote Code Execution | Important | 7.8 |
CVE-2026-81956 | Microsoft Office Excel | Microsoft Excel Remote Code Execution | Important | 7.8 |
CVE-2026-81957 | Microsoft Office Excel | Microsoft Excel Remote Code Execution | Important | 7.8 |
CVE-2026-81960 | Microsoft Office Excel | Microsoft Excel Remote Code Execution | Important | 7.8 |
CVE-2026-81963 | Windows Update Stack | Windows Update Stack Elevation of Privilege | Important | 7.8 |
CVE-2026-83942 | Windows Kernel | Windows Kernel Elevation of Privilege | Important | 7.8 |
CVE-2026-83952 | Windows Resilient File System (ReFS) | Windows Resilient File System (ReFS) Elevation of Privilege | Important | 7.8 |
CVE-2026-83954 | Windows Biometric Service | Windows Biometric Service Elevation of Privilege | Important | 7.8 |
CVE-2026-83955 | Windows Biometric Service | Windows Biometric Service Elevation of Privilege | Important | 7.8 |
CVE-2026-83967 | Windows Biometric Service | Windows Biometric Service Elevation of Privilege | Important | 7.8 |
CVE-2026-83968 | Windows Biometric Service | Windows Biometric Service Elevation of Privilege | Important | 7.8 |
CVE-2026-83969 | Windows Biometric Service | Windows Biometric Service Elevation of Privilege | Important | 7.8 |
CVE-2026-83970 | Windows Biometric Service | Windows Biometric Service Elevation of Privilege | Important | 7.8 |
CVE-2026-83971 | Windows Biometric Service | Windows Biometric Service Elevation of Privilege | Important | 7.8 |
CVE-2026-83972 | Windows Biometric Service | Windows Biometric Service Elevation of Privilege | Important | 7.8 |
CVE-2026-83973 | Windows Biometric Service | Windows Biometric Service Elevation of Privilege | Important | 7.8 |
CVE-2026-83974 | Windows Biometric Service | Windows Biometric Service Elevation of Privilege | Important | 7.8 |
CVE-2026-83975 | Windows Biometric Service | Windows Biometric Service Elevation of Privilege | Important | 7.8 |
CVE-2026-83976 | Windows Biometric Service | Windows Biometric Service Elevation of Privilege | Important | 7.8 |
CVE-2026-83977 | Windows Biometric Service | Windows Biometric Service Elevation of Privilege | Important | 7.8 |
CVE-2026-83978 | Windows Biometric Service | Windows Biometric Service Elevation of Privilege | Important | 7.8 |
CVE-2026-83979 | Windows Biometric Service | Windows Biometric Service Elevation of Privilege | Important | 7.8 |
CVE-2026-83980 | Windows Biometric Service | Windows Biometric Service Elevation of Privilege | Important | 7.8 |
CVE-2026-83981 | Windows Biometric Service | Windows Biometric Service Elevation of Privilege | Important | 7.8 |
CVE-2026-83982 | Windows Biometric Service | Windows Biometric Service Elevation of Privilege | Important | 7.8 |
CVE-2026-83983 | Windows Biometric Service | Windows Biometric Service Elevation of Privilege | Important | 7.8 |
CVE-2026-83985 | Windows Biometric Service | Windows Biometric Service Elevation of Privilege | Important | 7.8 |
CVE-2026-83986 | Windows Biometric Service | Windows Biometric Service Elevation of Privilege | Important | 7.8 |
CVE-2026-83987 | Windows Biometric Service | Windows Biometric Service Elevation of Privilege | Important | 7.8 |
CVE-2026-83988 | Windows Biometric Service | Windows Biometric Service Elevation of Privilege | Important | 7.8 |
CVE-2026-83990 | Microsoft Graphics Component | Microsoft Graphics Component Elevation of Privilege | Important | 7.8 |
CVE-2026-83995 | Windows NTFS | Windows NTFS Elevation of Privilege | Important | 7.8 |
CVE-2026-84000 | Microsoft Graphics Component | Microsoft Graphics Component Remote Code Execution | Important | 7.8 |
CVE-2026-85880 | Windows ALPC | Windows Advanced Local Procedure Call (ALPC) Elevation of Privilege | Important | 7.8 |
CVE-2026-77909 | Azure CycleCloud | Azure CycleCloud Information Disclosure | Important | 7.7 |
CVE-2026-57098 | Windows RDP Client | Microsoft Remote Desktop App for Windows Information Disclosure | Important | 7.5 |
CVE-2026-57099 | ASP.NET Core | ASP.NET Core Denial of Service | Important | 7.5 |
CVE-2026-62759 | Windows Netlogon | Windows Netlogon Spoofing | Important | 7.5 |
CVE-2026-62813 | Active Directory Domain Services | Windows Active Directory Domain Services Remote Code Execution | Important | 7.5 |
CVE-2026-66304 | Skype for Business | Skype for Business Information Disclosure | Important | 7.5 |
CVE-2026-66307 | Skype for Business | Skype for Business and Lync Denial of Service | Important | 7.5 |
CVE-2026-67376 | SQL Server | Microsoft SQL Server Denial of Service | Important | 7.5 |
CVE-2026-68887 | Windows Message Queuing Queue Manager | Windows Message Queuing Queue Manager Denial of Service | Important | 7.5 |
CVE-2026-69329 | BranchCache | BranchCache Denial of Service | Important | 7.5 |
CVE-2026-69342 | Windows DHCP Server | Windows DHCP Server Denial of Service | Important | 7.5 |
CVE-2026-69378 | Microsoft Exchange Server | Microsoft Exchange Server Denial of Service | Important | 7.5 |
CVE-2026-69397 | OpenSSH for Windows | Microsoft OpenSSH for Windows Remote Code Execution | Important | 7.5 |
CVE-2026-69428 | Windows LDAP – Lightweight Directory Access Protocol | Windows LDAP – Lightweight Directory Access Protocol Denial of Service | Important | 7.5 |
CVE-2026-69429 | Windows IKE Extension | Windows Internet Key Exchange (IKE) Protocol Extensions Remote Code Execution | Important | 7.5 |
CVE-2026-69443 | Windows Device Health Attestation (DHA) | Windows Device Health Attestation (DHA) Information Disclosure | Important | 7.5 |
CVE-2026-69514 | Windows Remote Desktop Services | Remote Desktop Services Remote Code Execution | Important | 7.5 |
CVE-2026-69539 | Windows Remote Desktop Services | Remote Desktop Services Remote Code Execution | Important | 7.5 |
CVE-2026-69587 | Windows IKE Extension | Windows Internet Key Exchange (IKE) Extension Denial of Service | Important | 7.5 |
CVE-2026-69588 | Windows TCP/IP | Windows TCP/IP Denial of Service | Important | 7.5 |
CVE-2026-69599 | Windows Remote Desktop Services | Remote Desktop Services Remote Code Execution | Important | 7.5 |
CVE-2026-69607 | Windows Deployment Services | Windows Deployment Services Remote Code Execution | Important | 7.5 |
CVE-2026-69631 | Windows DNS | Windows DNS Denial of Service | Important | 7.5 |
CVE-2026-69744 | Windows Kerberos | Windows Kerberos Denial of Service | Important | 7.5 |
CVE-2026-69760 | Windows Kerberos | Windows Kerberos Denial of Service | Important | 7.5 |
CVE-2026-69793 | Windows TCP/IP | Windows TCP/IP Security Feature Bypass | Important | 7.5 |
CVE-2026-69804 | Microsoft Office SharePoint | Microsoft Office SharePoint Remote Code Execution | Important | 7.5 |
CVE-2026-69805 | .NET | .NET Elevation of Privilege | Important | 7.5 |
CVE-2026-69809 | Active Directory Domain Services | Windows Active Directory Domain Services Denial of Service | Important | 7.5 |
CVE-2026-69881 | Windows IKE Extension | Windows Internet Key Exchange (IKE) Extension Denial of Service | Important | 7.5 |
CVE-2026-70065 | Windows DHCP Server | Windows DHCP Server Denial of Service | Important | 7.5 |
CVE-2026-70570 | Windows Routing and Remote Access Service (RRAS) | Windows Routing and Remote Access Service (RRAS) Remote Code Execution | Important | 7.5 |
CVE-2026-70579 | Windows Mobile Broadband | Windows Mobile Broadband Information Disclosure | Important | 7.5 |
CVE-2026-70587 | Windows Remote Desktop Protocol | Windows Remote Desktop Protocol Information Disclosure | Important | 7.5 |
CVE-2026-71330 | Windows Services for NFS ONCRPC XDR Driver | Windows Services for NFS ONCRPC XDR Driver Information Disclosure | Important | 7.5 |
CVE-2026-72928 | Windows DNS | Windows DNS Server Remote Code Execution | Important | 7.5 |
CVE-2026-72932 | Windows Message Queuing Queue Manager | Windows Message Queuing Queue Manager Information Disclosure | Important | 7.5 |
CVE-2026-72943 | Windows Deployment Services | Windows Deployment Services Remote Code Execution | Important | 7.5 |
CVE-2026-72949 | Windows SMB Server Network Transport Driver (srvnet.sys) | Windows SMB Server Network Transport Driver (srvnet.sys) Denial of Service | Important | 7.5 |
CVE-2026-72989 | Windows Failover Cluster | Windows Failover Cluster Information Disclosure | Important | 7.5 |
CVE-2026-77494 | Windows DHCP Server | Windows DHCP Server Denial of Service | Important | 7.5 |
CVE-2026-77498 | Windows DHCP Server | Windows DHCP Server Denial of Service | Important | 7.5 |
CVE-2026-77499 | Windows DHCP Server | Windows DHCP Server Denial of Service | Important | 7.5 |
CVE-2026-77501 | Windows DHCP Server | Windows DHCP Server Denial of Service | Important | 7.5 |
CVE-2026-77502 | Windows DHCP Server | Windows DHCP Server Denial of Service | Important | 7.5 |
CVE-2026-77886 | Windows DHCP Server | Windows DHCP Server Denial of Service | Important | 7.5 |
CVE-2026-77888 | Windows DHCP Server | Windows DHCP Server Denial of Service | Important | 7.5 |
CVE-2026-77889 | Windows DHCP Server | Windows DHCP Server Denial of Service | Important | 7.5 |
CVE-2026-77890 | Windows DHCP Server | Windows DHCP Server Denial of Service | Important | 7.5 |
CVE-2026-77893 | Windows DHCP Server | Windows DHCP Server Denial of Service | Important | 7.5 |
CVE-2026-77895 | Windows DHCP Server | Windows DHCP Server Denial of Service | Important | 7.5 |
CVE-2026-78446 | Windows Distributed File System (DFS) | Windows Distributed File System (DFS) Remote Code Execution | Important | 7.5 |
CVE-2026-83989 | Windows Services for NFS ONCRPC XDR Driver | Windows Services for NFS ONCRPC XDR Driver Denial of Service | Important | 7.5 |
CVE-2026-84001 | Windows Key Distribution Center | Windows Key Distribution Center Denial of Service | Important | 7.5 |
CVE-2026-69347 | Windows Fast FAT Driver | Windows Fast FAT Driver Remote Code Execution | Important | 7.4 |
CVE-2026-78461 | Visual Studio Code | Visual Studio Code Security Feature Bypass | Important | 7.4 |
CVE-2026-81383 | Visual Studio Code | Visual Studio Code Information Disclosure | Important | 7.4 |
CVE-2026-84003 | Microsoft Authentication Library (MSAL) for Node.js | Microsoft Authentication Library (MSAL) for Node.js Spoofing | Important | 7.4 |
CVE-2026-69402 | Microsoft Office SharePoint | Microsoft Office SharePoint Spoofing | Important | 7.3 |
CVE-2026-69417 | Microsoft Office SharePoint | Microsoft Office SharePoint Spoofing | Important | 7.3 |
CVE-2026-69477 | Microsoft Office Access | Microsoft Office Access Remote Code Execution | Important | 7.3 |
CVE-2026-81349 | Azure HDInsights | Azure HDInsight Ambari Elevation of Privilege | Important | 7.2 |
CVE-2026-66305 | Skype for Business | Skype for Business Spoofing | Important | 7.1 |
CVE-2026-68835 | Windows Print Spooler Components | Windows Print Spooler Components Elevation of Privilege | Important | 7.1 |
CVE-2026-68846 | Windows Kernel | Windows Kernel Elevation of Privilege | Important | 7.1 |
CVE-2026-68889 | Microsoft Standard XPS | Microsoft Standard XPS Elevation of Privilege | Important | 7.1 |
CVE-2026-68893 | Windows Remote Desktop Licensing Service | Remote Desktop Licensing Service Elevation of Privilege | Important | 7.1 |
CVE-2026-69272 | Microsoft Standard XPS | Microsoft Standard XPS Elevation of Privilege | Important | 7.1 |
CVE-2026-69274 | Windows Win32K | Windows Win32k Elevation of Privilege | Important | 7.1 |
CVE-2026-69296 | Windows Device Association Service | Windows Device Association Service Elevation of Privilege | Important | 7.1 |
CVE-2026-69305 | Microsoft Windows Search Component | Microsoft Windows Search Component Elevation of Privilege | Important | 7.1 |
CVE-2026-69313 | Microsoft Standard XPS | Microsoft Standard XPS Elevation of Privilege | Important | 7.1 |
CVE-2026-69314 | Windows Device Association Broker service | Windows Device Association Broker Service Elevation of Privilege | Important | 7.1 |
CVE-2026-69336 | Microsoft Standard XPS | Microsoft Standard XPS Elevation of Privilege | Important | 7.1 |
CVE-2026-69337 | Windows Registry | Windows Registry Elevation of Privilege | Important | 7.1 |
CVE-2026-69338 | Remote Desktop Gateway Service | Remote Desktop Gateway Service Elevation of Privilege | Important | 7.1 |
CVE-2026-69340 | Windows NTFS | Windows NTFS Elevation of Privilege | Important | 7.1 |
CVE-2026-69357 | Windows NDIS | Windows NDIS Elevation of Privilege | Important | 7.1 |
CVE-2026-69358 | Remote Desktop Client | Remote Desktop Client Remote Code Execution | Important | 7.1 |
CVE-2026-69364 | Windows Print Spooler Components | Windows Print Spooler Components Elevation of Privilege | Important | 7.1 |
CVE-2026-69366 | Windows Kernel | Windows Kernel Elevation of Privilege | Important | 7.1 |
CVE-2026-69384 | Virtual Hard Disk (VHD) Miniport Driver | Virtual Hard Disk (VHD) Miniport Driver Denial of Service | Important | 7.1 |
CVE-2026-69396 | Windows NDIS | Windows NDIS Elevation of Privilege | Important | 7.1 |
CVE-2026-69451 | Windows Management Instrumentation | Windows Management Instrumentation Elevation of Privilege | Important | 7.1 |
CVE-2026-69460 | Windows Modern Device Management (MDM) | Windows Modern Device Management (MDM) Elevation of Privilege | Important | 7.1 |
CVE-2026-69482 | Windows Error Reporting | Windows Error Reporting Tampering | Important | 7.1 |
CVE-2026-69536 | Windows Remote Desktop Services | Remote Desktop Services Remote Code Execution | Important | 7.1 |
CVE-2026-69553 | Windows Hyper-V | Windows Hyper-V Elevation of Privilege | Important | 7.1 |
CVE-2026-69597 | Windows HTTP.sys | Windows HTTP.sys Elevation of Privilege | Important | 7.1 |
CVE-2026-69602 | Windows PrintWorkflowUserSvc | Windows PrintWorkflowUserSvc Elevation of Privilege | Important | 7.1 |
CVE-2026-69688 | Windows Encrypting File System (EFS) | Windows Encrypting File System (EFS) Elevation of Privilege | Important | 7.1 |
CVE-2026-69706 | Windows Win32K | Windows Win32k Elevation of Privilege | Important | 7.1 |
CVE-2026-69757 | Windows TCP/IP | Windows TCP/IP Elevation of Privilege | Important | 7.1 |
CVE-2026-69761 | Windows TCP/IP | Windows TCP/IP Elevation of Privilege | Important | 7.1 |
CVE-2026-69775 | Windows DWM Core Library | Windows DWM Core Library Elevation of Privilege | Important | 7.1 |
CVE-2026-50349 | Windows Ancillary Function Driver for WinSock | Windows Ancillary Function Driver for WinSock Elevation of Privilege | Important | 7.0 |
CVE-2026-62694 | Windows Installer | Windows Installer Elevation of Privilege | Important | 7.0 |
CVE-2026-68824 | Windows Connected User Experiences and Telemetry | Connected User Experiences and Telemetry Elevation of Privilege | Important | 7.0 |
CVE-2026-68825 | Windows Bind Filter Driver | Windows Bind Filter Driver Elevation of Privilege | Important | 7.0 |
CVE-2026-68837 | Windows File History Service | Windows File History Service Elevation of Privilege | Important | 7.0 |
CVE-2026-68840 | Windows USB Driver | Windows USB Driver Elevation of Privilege | Important | 7.0 |
CVE-2026-68847 | Windows Connected User Experiences and Telemetry | Connected User Experiences and Telemetry Elevation of Privilege | Important | 7.0 |
CVE-2026-68884 | Windows Kernel | Windows Kernel Elevation of Privilege | Important | 7.0 |
CVE-2026-68897 | Microsoft Standard XPS | Microsoft Standard XPS Elevation of Privilege | Important | 7.0 |
CVE-2026-69275 | Kernel Streaming WOW Thunk Service Driver | Kernel Streaming WOW Thunk Service Driver Elevation of Privilege | Important | 7.0 |
CVE-2026-69279 | Windows Cloud Files Mini Filter Driver | Windows Cloud Files Mini Filter Driver Elevation of Privilege | Important | 7.0 |
CVE-2026-69280 | Windows Push Notifications | Windows Push Notifications Elevation of Privilege | Important | 7.0 |
CVE-2026-69281 | Windows License Manager | Windows License Manager Elevation of Privilege | Important | 7.0 |
CVE-2026-69287 | Windows Remote Desktop Services | Windows Remote Desktop Services Elevation of Privilege | Important | 7.0 |
CVE-2026-69292 | Remote Desktop Gateway Service | Remote Desktop Gateway Service Elevation of Privilege | Important | 7.0 |
CVE-2026-69299 | Microsoft COM for Windows | Microsoft COM for Windows Elevation of Privilege | Important | 7.0 |
CVE-2026-69300 | Windows Push Notifications | Windows Push Notifications Elevation of Privilege | Important | 7.0 |
CVE-2026-69309 | Windows Print Spooler Components | Windows Print Spooler Components Elevation of Privilege | Important | 7.0 |
CVE-2026-69310 | Windows DNS | Windows DNS Elevation of Privilege | Important | 7.0 |
CVE-2026-69311 | Windows Audio Service | Windows Audio Service Elevation of Privilege | Important | 7.0 |
CVE-2026-69319 | Windows USB Video Driver | Windows USB Video Driver Elevation of Privilege | Important | 7.0 |
CVE-2026-69331 | Windows Remote Access Connection Manager | Windows Remote Access Connection Manager Elevation of Privilege | Important | 7.0 |
CVE-2026-69333 | Windows Win32K | Windows Win32k Elevation of Privilege | Important | 7.0 |
CVE-2026-69335 | Windows Win32K | Windows Win32k Elevation of Privilege | Important | 7.0 |
CVE-2026-69341 | Windows Image Acquisition | Windows Image Acquisition Elevation of Privilege | Important | 7.0 |
CVE-2026-69362 | Windows Error Reporting | Windows Error Reporting Elevation of Privilege | Important | 7.0 |
CVE-2026-69379 | Windows NTFS | Windows NTFS Elevation of Privilege | Important | 7.0 |
CVE-2026-69383 | Windows Shell | Windows Shell Elevation of Privilege | Important | 7.0 |
CVE-2026-69385 | Windows TCP/IP | Windows TCP/IP Elevation of Privilege | Important | 7.0 |
CVE-2026-69388 | Windows Bluetooth Service | Windows Bluetooth Service Elevation of Privilege | Important | 7.0 |
CVE-2026-69394 | Windows Audio Service | Windows Audio Service Elevation of Privilege | Important | 7.0 |
CVE-2026-69398 | Windows Bluetooth Service | Windows Bluetooth Service Elevation of Privilege | Important | 7.0 |
CVE-2026-69401 | Audio Video Control Transport Protocol | Audio Video Control Transport Protocol Elevation of Privilege | Important | 7.0 |
CVE-2026-69404 | Windows TCP/IP | Windows TCP/IP Elevation of Privilege | Important | 7.0 |
CVE-2026-69410 | Windows Win32K | Windows Win32k Elevation of Privilege | Important | 7.0 |
CVE-2026-69413 | Windows USB Audio Class driver (usbaudio.sys) | Windows USB Audio Class driver (usbaudio.sys) Elevation of Privilege | Important | 7.0 |
CVE-2026-69422 | Windows USB Video Driver | Windows USB Video Driver Elevation of Privilege | Important | 7.0 |
CVE-2026-69430 | Windows Embedded Mode Service | Windows Embedded Mode Service Elevation of Privilege | Important | 7.0 |
CVE-2026-69440 | Windows MIDI Service Module | Windows MIDI Service Module Elevation of Privileges | Important | 7.0 |
CVE-2026-69441 | Windows Installer | Windows Installer Elevation of Privilege | Important | 7.0 |
CVE-2026-69448 | Windows Bluetooth Service | Windows Bluetooth Service Elevation of Privilege | Important | 7.0 |
CVE-2026-69466 | Windows Kernel | Windows Kernel Elevation of Privilege | Important | 7.0 |
CVE-2026-69468 | Windows Volume Manager Extension Driver | Windows Volume Manager Extension Driver Elevation of Privilege | Important | 7.0 |
CVE-2026-69470 | Windows Connected User Experiences and Telemetry | Connected User Experiences and Telemetry Elevation of Privilege | Important | 7.0 |
CVE-2026-69472 | Windows Devices Human Interface | Windows Devices Human Interface Elevation of Privilege | Important | 7.0 |
CVE-2026-69473 | Windows Kernel | Windows Kernel Elevation of Privilege | Important | 7.0 |
CVE-2026-69488 | Windows Device Association Service | Windows Device Association Service Elevation of Privilege | Important | 7.0 |
CVE-2026-69492 | Windows Partition Management Driver | Windows Partition Management Driver Elevation of Privilege | Important | 7.0 |
CVE-2026-69498 | Windows Win32K | Windows Win32k Elevation of Privilege | Important | 7.0 |
CVE-2026-69500 | Windows Image Acquisition | Windows Image Acquisition Elevation of Privilege | Important | 7.0 |
CVE-2026-69516 | Connected Devices Platform Service (Cdpsvc) | Connected Devices Platform Service (Cdpsvc) Elevation of Privilege | Important | 7.0 |
CVE-2026-69517 | Windows Wireless Networking | Windows Wireless Networking Elevation of Privilege | Important | 7.0 |
CVE-2026-69540 | Windows Audio Service | Windows Audio Service Elevation of Privilege | Important | 7.0 |
CVE-2026-69549 | Virtual Hard Disk (VHD) Miniport Driver | Virtual Hard Disk (VHD) Miniport Driver Elevation of Privilege Vulernability | Important | 7.0 |
CVE-2026-69560 | Windows Work Folder Service | Windows Work Folder Service Elevation of Privilege | Important | 7.0 |
CVE-2026-69563 | Windows Program Compatibility Assistant Service | Windows Program Compatibility Assistant Service Elevation of Privilege | Important | 7.0 |
CVE-2026-69564 | Windows Online Certificate Status Protocol (OCSP) | Windows Online Certificate Status Protocol (OCSP) Elevation of Privilege | Important | 7.0 |
CVE-2026-69567 | Windows NTFS | Windows NTFS Elevation of Privilege | Important | 7.0 |
CVE-2026-69573 | Windows Universal Disk Format File System Driver (UDFS) | Windows Universal Disk Format File System Driver (UDFS) Elevation of Privilege | Important | 7.0 |
CVE-2026-69574 | Windows Device Association Service | Windows Device Association Service Elevation of Privilege | Important | 7.0 |
CVE-2026-69575 | Windows Storage Spaces Controller | Windows Storage Spaces Controller Elevation of Privilege | Important | 7.0 |
CVE-2026-69578 | Windows Kernel | Windows Kernel Elevation of Privilege | Important | 7.0 |
CVE-2026-69581 | Windows Device Association Service | Windows Device Association Service Elevation of Privilege | Important | 7.0 |
CVE-2026-69600 | Microsoft Windows Search Component | Microsoft Windows Search Component Elevation of Privilege | Important | 7.0 |
CVE-2026-69605 | Microsoft Install Service | Microsoft Install Service Elevation of Privilege | Important | 7.0 |
CVE-2026-69606 | Windows Shell | Windows Shell Elevation of Privilege | Important | 7.0 |
CVE-2026-69610 | Windows Win32K | Windows Win32k Elevation of Privilege | Important | 7.0 |
CVE-2026-69611 | Virtual Hard Disk (VHD) Miniport Driver | Virtual Hard Disk (VHD) Miniport Driver Elevation of Privilege Vulernability | Important | 7.0 |
CVE-2026-69613 | Windows Image Acquisition | Windows Image Acquisition Elevation of Privilege | Important | 7.0 |
CVE-2026-69617 | Windows Resilient File System (ReFS) | Windows Resilient File System (ReFS) Elevation of Privilege | Important | 7.0 |
CVE-2026-69621 | Role: Windows Fax Service | Role: Windows Fax Service Elevation of Privilege | Important | 7.0 |
CVE-2026-69630 | Windows Win32K | Windows Win32k Elevation of Privilege | Important | 7.0 |
CVE-2026-69645 | Windows Message Queuing | Windows Message Queuing Elevation of Privilege | Important | 7.0 |
CVE-2026-69648 | Windows Notification | Windows Notification Elevation of Privilege | Important | 7.0 |
CVE-2026-69652 | Windows Win32K | Windows Win32k Elevation of Privilege | Important | 7.0 |
CVE-2026-69654 | Windows Accounts Control | Windows Accounts Control Elevation of Privilege | Important | 7.0 |
CVE-2026-69682 | Windows Host Guardian Service | Windows Host Guardian Service Elevation of Privilege | Important | 7.0 |
CVE-2026-69692 | Windows Audio Service | Windows Audio Service Elevation of Privilege | Important | 7.0 |
CVE-2026-69693 | Windows Device Association Broker service | Windows Device Association Broker Service Elevation of Privilege | Important | 7.0 |
CVE-2026-69694 | Windows IP Address Management (IPAM) Service | Windows IP Address Management (IPAM) Service Elevation of Privilege | Important | 7.0 |
CVE-2026-69708 | Windows Web Platform Storage | Windows Web Platform Storage Elevation of Privilege | Important | 7.0 |
CVE-2026-69711 | Windows Device Association Service | Windows Device Association Service Elevation of Privilege | Important | 7.0 |
CVE-2026-69735 | Windows Broadcast DVR User Service | Windows Broadcast DVR User Service Elevation of Privilege | Important | 7.0 |
CVE-2026-69779 | Windows Win32K | Windows Win32k Elevation of Privilege | Important | 7.0 |
CVE-2026-69791 | Windows Device Association Service | Windows Device Association Service Elevation of Privilege | Important | 7.0 |
CVE-2026-69806 | .NET | .NET Elevation of Privilege | Important | 7.0 |
CVE-2026-69814 | Windows Credential Providers | Windows Credential Providers Elevation of Privilege | Important | 7.0 |
CVE-2026-69816 | Windows Accounts Control | Windows Accounts Control Elevation of Privilege | Important | 7.0 |
CVE-2026-69817 | Windows Bluetooth Port Driver | Windows Bluetooth Port Driver Elevation of Privilege | Important | 7.0 |
CVE-2026-69818 | Windows Win32K | Windows Win32k Elevation of Privilege | Important | 7.0 |
CVE-2026-69834 | Windows ALPC | Windows ALPC Elevation of Privilege | Important | 7.0 |
CVE-2026-69838 | Windows Print Spooler Components | Windows Print Spooler Components Elevation of Privilege | Important | 7.0 |
CVE-2026-69859 | Windows USB Audio Class driver (usbaudio.sys) | Windows USB Audio Class driver (usbaudio.sys) Elevation of Privilege | Important | 7.0 |
CVE-2026-69866 | Windows Device Association Service | Windows Device Association Service Elevation of Privilege | Important | 7.0 |
CVE-2026-69889 | Windows Bluetooth Service | Windows Bluetooth Service Elevation of Privilege | Important | 7.0 |
CVE-2026-69891 | Windows Media | Windows Media Elevation of Privilege | Important | 7.0 |
CVE-2026-69896 | Windows Error Reporting | Windows Error Reporting Elevation of Privilege | Important | 7.0 |
CVE-2026-69911 | Microsoft Windows Search Component | Microsoft Windows Search Component Elevation of Privilege | Important | 7.0 |
CVE-2026-70283 | Windows Win32K | Windows Win32k Elevation of Privilege | Important | 7.0 |
CVE-2026-70562 | Windows Audio Service | Windows Audio Service Elevation of Privilege | Important | 7.0 |
CVE-2026-70565 | Windows AF_UNIX Socket Provider | Windows AF_UNIX Socket Provider Elevation of Privilege | Important | 7.0 |
CVE-2026-70567 | Windows Display Enhancement Service | Windows Display Enhancement Service Elevation of Privilege | Important | 7.0 |
CVE-2026-70568 | Windows Defender Firewall Service | Windows Defender Firewall Service Elevation of Privilege | Important | 7.0 |
CVE-2026-70573 | Windows Biometric Service | Windows Biometric Service Elevation of Privilege | Important | 7.0 |
CVE-2026-70577 | Windows Modern Device Management (MDM) | Windows Modern Device Management (MDM) Elevation of Privilege | Important | 7.0 |
CVE-2026-70578 | Windows Credential Guard | Windows Credential Guard Elevation of Privilege | Important | 7.0 |
CVE-2026-71332 | Windows Secure Socket Tunneling Protocol (SSTP) | Windows Secure Socket Tunneling Protocol (SSTP) Elevation of Privilege | Important | 7.0 |
CVE-2026-71333 | Windows Remote Access Connection Manager | Windows Remote Access Connection Manager Elevation of Privilege | Important | 7.0 |
CVE-2026-71340 | Windows File History Service | Windows File History Service Elevation of Privilege | Important | 7.0 |
CVE-2026-71342 | Windows Remote Access Connection Manager | Windows Remote Access Connection Manager Elevation of Privilege | Important | 7.0 |
CVE-2026-71351 | Windows Routing and Remote Access Service (RRAS) | Windows Routing and Remote Access Service (RRAS) Elevation of Privilege | Important | 7.0 |
CVE-2026-71353 | Windows Routing and Remote Access Service (RRAS) | Windows Routing and Remote Access Service (RRAS) Elevation of Privilege | Important | 7.0 |
CVE-2026-72926 | Windows Internet Connection Sharing (ICS) | Windows Internet Connection Sharing (ICS) Elevation of Privilege | Important | 7.0 |
CVE-2026-72930 | Windows Secure Socket Tunneling Protocol (SSTP) | Windows Secure Socket Tunneling Protocol (SSTP) Remote Code Execution | Important | 7.0 |
CVE-2026-72952 | Windows Spaceport.sys | Windows Spaceport.sys Remote Code Execution | Important | 7.0 |
CVE-2026-72963 | Windows Modern Execution Server | Windows Modern Execution Server Elevation of Privilege | Important | 7.0 |
CVE-2026-73003 | Windows Modern Device Management (MDM) | Windows Modern Device Management (MDM) Elevation of Privilege | Important | 7.0 |
CVE-2026-73005 | Windows Authentication Methods | Windows Authentication Methods Elevation of Privilege | Important | 7.0 |
CVE-2026-73022 | Windows Modern Device Management (MDM) | Windows Modern Device Management (MDM) Elevation of Privilege | Important | 7.0 |
CVE-2026-77485 | SQL Server | SQL Server Elevation of Privilege | Important | 7.0 |
CVE-2026-77894 | Windows Installer | Windows Installer Elevation of Privilege | Important | 7.0 |
CVE-2026-77897 | Power Automate | Microsoft Power Automate Desktop Elevation of Privilege | Important | 7.0 |
CVE-2026-77899 | Windows Security Center | Windows Security Center Elevation of Privilege | Important | 7.0 |
CVE-2026-77905 | Windows Management Instrumentation | Windows Management Instrumentation Elevation of Privilege | Important | 7.0 |
CVE-2026-78457 | Windows Security Health Service | Windows Security Health Service Elevation of Privilege | Important | 7.0 |
CVE-2026-78464 | Windows MIDI Service Module | Windows MIDI Service Module Elevation of Privileges | Important | 7.0 |
CVE-2026-80093 | Windows Cloud Files Mini Filter Driver | Windows Cloud Files Mini Filter Driver Elevation of Privilege | Important | 7.0 |
CVE-2026-81389 | Microsoft Office Excel | Microsoft Excel Remote Code Execution | Important | 7.0 |
CVE-2026-83940 | Windows Device Association Service | Windows Device Association Service Elevation of Privilege | Important | 7.0 |
CVE-2026-83999 | Windows Resilient File System (ReFS) Deduplication Service | Windows Resilient File System (ReFS) Deduplication Service Elevation of Privilege | Important | 7.0 |
CVE-2026-85360 | Windows Kernel | Windows Kernel Elevation of Privilege | Important | 7.0 |
CVE-2026-65812 | Microsoft Teams for Android | Microsoft Teams for Android Information Disclosure | Important | 6.8 |
CVE-2026-68833 | Windows NTFS | Windows NTFS Remote Code Execution | Important | 6.8 |
CVE-2026-69415 | Windows DHCP Server | Windows DHCP Server Elevation of Privilege | Important | 6.8 |
CVE-2026-69490 | Windows USB Mass Storage Class Driver | Windows USB Mass Storage Class Driver Elevation of Privilege | Important | 6.8 |
CVE-2026-69566 | Windows NTFS | Windows NTFS Remote Code Execution | Important | 6.8 |
CVE-2026-71329 | Windows NTFS | Windows NTFS Remote Code Execution | Important | 6.8 |
CVE-2026-71348 | Windows Spaceport.sys | Windows Spaceport.sys Remote Code Execution | Important | 6.8 |
CVE-2026-71349 | Windows Spaceport.sys | Windows Spaceport.sys Remote Code Execution | Important | 6.8 |
CVE-2026-71350 | Windows Spaceport.sys | Windows Spaceport.sys Remote Code Execution | Important | 6.8 |
CVE-2026-72985 | Windows Volume Shadow Copy | Volume Shadow Copy Elevation of Privilege | Important | 6.8 |
CVE-2026-72999 | Windows USB Hub Driver | Windows USB Hub Driver Elevation of Privilege | Important | 6.8 |
CVE-2026-77892 | Windows Boot Manager | Windows Boot Manager Elevation of Privilege | Important | 6.8 |
CVE-2026-78451 | Microsoft Windows SCSI Class System File | Microsoft Windows SCSI Class System File Elevation of Privilege | Important | 6.8 |
CVE-2026-69350 | Windows Overlay Filter | Windows Overlay Filter Elevation of Privilege | Important | 6.7 |
CVE-2026-69373 | Windows Overlay Filter | Windows Overlay Filter Elevation of Privilege | Important | 6.7 |
CVE-2026-69449 | Windows BitLocker | Windows BitLocker Remote Code Execution | Important | 6.7 |
CVE-2026-71339 | Windows Installer | Windows Installer Elevation of Privilege | Important | 6.7 |
CVE-2026-72927 | Winsock | Winsock Elevation of Privilege | Important | 6.7 |
CVE-2026-72935 | Windows NTFS | Windows NTFS Elevation of Privilege | Important | 6.7 |
CVE-2026-72948 | Windows DNS | Windows DNS Elevation of Privilege | Important | 6.7 |
CVE-2026-69469 | Windows USB Audio Class driver (usbaudio.sys) | Windows USB Audio Class driver (usbaudio.sys) Elevation of Privilege | Important | 6.6 |
CVE-2026-58649 | .NET | .NET Information Disclosure | Important | 6.5 |
CVE-2026-62762 | Active Directory Domain Services | Windows Active Directory Domain Services Denial of Service | Important | 6.5 |
CVE-2026-62801 | Windows PowerShell | Microsoft PowerShell Security Feature Bypass | Important | 6.5 |
CVE-2026-63523 | Skype for Business | Skype for Business Spoofing | Important | 6.5 |
CVE-2026-64918 | Microsoft Office | Microsoft Office Spoofing | Important | 6.5 |
CVE-2026-66303 | Skype for Business | Skype for Business and Lync Denial of Service | Important | 6.5 |
CVE-2026-66306 | Skype for Business | Skype for Business Information Disclosure | Important | 6.5 |
CVE-2026-66308 | Skype for Business | Skype for Business and Lync Denial of Service | Important | 6.5 |
CVE-2026-66816 | SQL Server | Microsoft SQL Server Security Feature Bypass | Important | 6.5 |
CVE-2026-67369 | SQL Server | Microsoft SQL Server Information Disclosure | Important | 6.5 |
CVE-2026-67383 | SQL Server | Microsoft SQL Server Information Disclosure | Important | 6.5 |
CVE-2026-67386 | SQL Server | Microsoft SQL Server Information Disclosure | Important | 6.5 |
CVE-2026-67389 | SQL Server | Microsoft SQL Server Information Disclosure | Important | 6.5 |
CVE-2026-67390 | SQL Server | Microsoft SQL Server Information Disclosure | Important | 6.5 |
CVE-2026-67393 | SQL Server | Microsoft SQL Server Information Disclosure | Important | 6.5 |
CVE-2026-67624 | SQL Server | Microsoft SQL Server Information Disclosure | Important | 6.5 |
CVE-2026-67629 | SQL Server | Microsoft SQL Server Information Disclosure | Important | 6.5 |
CVE-2026-67630 | SQL Server | Microsoft SQL Server Information Disclosure | Important | 6.5 |
CVE-2026-67633 | SQL Server | Microsoft SQL Server Denial of Service | Important | 6.5 |
CVE-2026-67641 | SQL Server | Microsoft SQL Server Denial of Service | Important | 6.5 |
CVE-2026-67645 | SQL Server | Microsoft SQL Server Information Disclosure | Important | 6.5 |
CVE-2026-67648 | SQL Server | Microsoft SQL Server Information Disclosure | Important | 6.5 |
CVE-2026-68776 | SQL Server | Microsoft SQL Server Information Disclosure | Important | 6.5 |
CVE-2026-68777 | SQL Server | Microsoft SQL Server Information Disclosure | Important | 6.5 |
CVE-2026-68778 | SQL Server | Microsoft SQL Server Information Disclosure | Important | 6.5 |
CVE-2026-68779 | SQL Server | Microsoft SQL Server Information Disclosure | Important | 6.5 |
CVE-2026-68780 | SQL Server | Microsoft SQL Server Information Disclosure | Important | 6.5 |
CVE-2026-68781 | SQL Server | Microsoft SQL Server Information Disclosure | Important | 6.5 |
CVE-2026-68784 | SQL Server | Microsoft SQL Server Information Disclosure | Important | 6.5 |
CVE-2026-68898 | Windows iSCSI | Windows iSCSI Denial of Service | Important | 6.5 |
CVE-2026-69267 | Windows Connected User Experiences and Telemetry | Windows Connected User Experiences and Telemetry Information Disclosure | Important | 6.5 |
CVE-2026-69297 | Windows DHCP Server | Windows DHCP Server Information Disclosure | Important | 6.5 |
CVE-2026-69361 | Microsoft Exchange Server | Microsoft Exchange Server Spoofing | Important | 6.5 |
CVE-2026-69374 | Windows SMB Server | Windows SMB Server Denial of Service | Important | 6.5 |
CVE-2026-69375 | Microsoft Exchange Server | Microsoft Exchange Server Tampering | Important | 6.5 |
CVE-2026-69395 | Active Directory Certificate Services (AD CS) | Active Directory Certificate Services (AD CS) Information Disclosure | Important | 6.5 |
CVE-2026-69409 | Microsoft Office SharePoint | Microsoft Office SharePoint Information Disclosure | Important | 6.5 |
CVE-2026-69497 | Windows DHCP Server | Windows DHCP Server Denial of Service | Important | 6.5 |
CVE-2026-69562 | SQL Server | Microsoft SQL Server Information Disclosure | Important | 6.5 |
CVE-2026-69624 | Active Directory Certificate Services (AD CS) | Active Directory Certificate Services (AD CS) Tampering | Important | 6.5 |
CVE-2026-69626 | Microsoft Office | Microsoft Office Information Disclosure | Important | 6.5 |
CVE-2026-69636 | Microsoft Office SharePoint | Microsoft Office SharePoint Information Disclosure | Important | 6.5 |
CVE-2026-69642 | Skype for Business | Skype for Business Spoofing | Important | 6.5 |
CVE-2026-69683 | Microsoft Office SharePoint | Microsoft Office SharePoint Information Disclosure | Important | 6.5 |
CVE-2026-69719 | Microsoft Office Word | Microsoft Office Word Information Disclosure | Important | 6.5 |
CVE-2026-69734 | Microsoft Office Word | Microsoft Office Word Information Disclosure | Important | 6.5 |
CVE-2026-69739 | Microsoft Office | Microsoft Office Information Disclosure | Important | 6.5 |
CVE-2026-69781 | Windows DHCP Client | Windows DHCP Client Denial of Service | Important | 6.5 |
CVE-2026-69839 | Windows iSCSI Target Service | Windows iSCSI Target Service Denial of Service | Important | 6.5 |
CVE-2026-70019 | Windows Compressed Folder | Windows Compressed Folder Information Disclosure | Important | 6.5 |
CVE-2026-72938 | Microsoft Office PowerPoint | Microsoft Office PowerPoint Information Disclosure | Important | 6.5 |
CVE-2026-72939 | Windows Routing and Remote Access Service (RRAS) | Windows Routing and Remote Access Service (RRAS) Denial of Service | Important | 6.5 |
CVE-2026-72942 | Windows Spaceport.sys | Windows Spaceport.sys Information Disclosure | Important | 6.5 |
CVE-2026-72956 | Microsoft Office PowerPoint | Microsoft Office PowerPoint Information Disclosure | Important | 6.5 |
CVE-2026-72974 | Microsoft Office Excel | Microsoft Office Excel Information Disclosure | Important | 6.5 |
CVE-2026-72975 | Microsoft Office PowerPoint | Microsoft Office PowerPoint Information Disclosure | Important | 6.5 |
CVE-2026-72977 | Microsoft Office PowerPoint | Microsoft Office PowerPoint Information Disclosure | Important | 6.5 |
CVE-2026-73029 | SQL Server | Microsoft SQL Server Information Disclosure | Important | 6.5 |
CVE-2026-77896 | Remote Desktop Client | Windows Remote Desktop Client Denial of Service | Important | 6.5 |
CVE-2026-77911 | Microsoft Office Word | Microsoft Office Word Information Disclosure | Important | 6.5 |
CVE-2026-78441 | Windows OLE DB | Windows OLE DB Information Disclosure | Important | 6.5 |
CVE-2026-78453 | Microsoft Windows SCSI Class System File | Microsoft Windows SCSI Class System File Information Disclosure | Important | 6.5 |
CVE-2026-78502 | Microsoft Office Word | Microsoft Office Word Information Disclosure | Important | 6.5 |
CVE-2026-78503 | Microsoft Office Word | Microsoft Office Word Information Disclosure | Important | 6.5 |
CVE-2026-78515 | Microsoft Office Excel | Microsoft Office Excel Information Disclosure | Important | 6.5 |
CVE-2026-78522 | Microsoft Office Word | Microsoft Office Word Information Disclosure | Important | 6.5 |
CVE-2026-80073 | Microsoft Office Outlook | Microsoft Office Outlook Information Disclosure | Important | 6.5 |
CVE-2026-80076 | Microsoft Office | Microsoft Office Information Disclosure | Important | 6.5 |
CVE-2026-80078 | Microsoft Office | Microsoft Office Information Disclosure | Important | 6.5 |
CVE-2026-80079 | Microsoft Office Word | Microsoft Office Word Information Disclosure | Important | 6.5 |
CVE-2026-80082 | Microsoft Office | Microsoft Office Information Disclosure | Important | 6.5 |
CVE-2026-80084 | Microsoft Office Outlook | Microsoft Office Outlook Information Disclosure | Important | 6.5 |
CVE-2026-80086 | Microsoft Office PowerPoint | Microsoft Office PowerPoint Information Disclosure | Important | 6.5 |
CVE-2026-80087 | Microsoft Office | Microsoft Office Information Disclosure | Important | 6.5 |
CVE-2026-80088 | Microsoft Office Word | Microsoft Office Word Information Disclosure | Important | 6.5 |
CVE-2026-80089 | Microsoft Office | Microsoft Office Information Disclosure | Important | 6.5 |
CVE-2026-80090 | Microsoft Office Word | Microsoft Office Word Information Disclosure | Important | 6.5 |
CVE-2026-80091 | Microsoft Office | Microsoft Office Information Disclosure | Important | 6.5 |
CVE-2026-81377 | Visual Studio Code | Visual Studio Code Tampering | Important | 6.5 |
CVE-2026-81381 | GitHub Copilot and Visual Studio Code | GitHub Copilot and Visual Studio Code Information Disclosure | Important | 6.5 |
CVE-2026-69878 | Windows DHCP Server | Windows DHCP Server Remote Code Execution | Important | 6.4 |
CVE-2026-70582 | Windows Management Instrumentation | Windows Management Instrumentation Elevation of Privilege | Important | 6.4 |
CVE-2026-71338 | Windows Failover Cluster | Windows Failover Cluster Elevation of Privilege | Important | 6.4 |
CVE-2026-72947 | Windows File History Service | Windows File History Service Elevation of Privilege | Important | 6.4 |
CVE-2026-77887 | Windows DHCP Server | Windows DHCP Server Remote Code Execution | Important | 6.4 |
CVE-2026-77891 | Windows DHCP Server | Windows DHCP Server Remote Code Execution | Important | 6.4 |
CVE-2026-69304 | ASP.NET Core | ASP.NET Core Denial of Service | Important | 5.9 |
CVE-2026-69382 | Microsoft Exchange Server | Microsoft Exchange Server Information Disclosure | Important | 5.9 |
CVE-2026-69803 | Windows DHCP Server | Windows DHCP Server Information Disclosure | Important | 5.9 |
CVE-2026-69929 | Windows DHCP Server | Windows DHCP Server Information Disclosure | Important | 5.9 |
CVE-2026-69930 | Windows DHCP Server | Windows DHCP Server Information Disclosure | Important | 5.9 |
CVE-2026-70091 | Windows DNS | Windows DNS Denial of Service | Important | 5.9 |
CVE-2026-70124 | Windows DHCP Server | Windows DHCP Server Information Disclosure | Important | 5.9 |
CVE-2026-72978 | Active Directory Federation Services (AD FS) | Active Directory Federation Services (AD FS) Denial of Service | Important | 5.9 |
CVE-2026-78523 | Windows DNS | Windows DNS Server Denial of Service | Important | 5.9 |
CVE-2026-69559 | Microsoft Teams for Android | Microsoft Teams for Android Information Disclosure | Important | 5.8 |
CVE-2026-68874 | Windows Program Compatibility Assistant Service | Windows Program Compatibility Assistant Service Information Disclosure | Important | 5.7 |
CVE-2026-69317 | Remote Desktop Client | Windows Remote Desktop Client Information Disclosure | Important | 5.7 |
CVE-2026-69349 | Windows Management Instrumentation | Windows Management Instrumentation Information Disclosure | Important | 5.7 |
CVE-2026-69372 | Windows Network File System | Windows Network File System Denial of Service | Important | 5.7 |
CVE-2026-69393 | Windows Spaceport.sys | Windows Spaceport.sys Information Disclosure | Important | 5.7 |
CVE-2026-69405 | Windows DHCP Server | Windows DHCP Server Denial of Service | Important | 5.7 |
CVE-2026-69416 | Windows DHCP Server | Windows DHCP Server Denial of Service | Important | 5.7 |
CVE-2026-69507 | Microsoft Windows Search Component | Microsoft Windows Search Component Information Disclosure | Important | 5.7 |
CVE-2026-69552 | Windows Print Spooler Components | Windows Print Spooler Components Information Disclosure | Important | 5.7 |
CVE-2026-69569 | Windows Print Spooler Components | Windows Print Spooler Components Denial of Service | Important | 5.7 |
CVE-2026-69572 | Windows SMB Client | Windows SMB Client Information Disclosure | Important | 5.7 |
CVE-2026-69591 | Windows NTFS | Windows NTFS Information Disclosure | Important | 5.7 |
CVE-2026-69637 | Windows DHCP Server | Windows DHCP Server Denial of Service | Important | 5.7 |
CVE-2026-69679 | Windows DHCP Server | Windows DHCP Server Denial of Service | Important | 5.7 |
CVE-2026-69723 | Windows Kernel | Windows Kernel Information Disclosure | Important | 5.7 |
CVE-2026-69832 | Windows Win32K | Win32k Information Disclosure | Important | 5.6 |
CVE-2026-68830 | Windows Universal Plug and Play (UPnP) Device Host | Windows Universal Plug and Play (UPnP) Device Host Information Disclosure | Important | 5.5 |
CVE-2026-68831 | Windows Defender Firewall Service | Windows Defender Firewall Service Information Disclosure | Important | 5.5 |
CVE-2026-68842 | Windows MIDI Service Module | Windows MIDI Service Module Information Disclosure | Important | 5.5 |
CVE-2026-68843 | Microsoft Office Word | Microsoft Office Word Information Disclosure | Important | 5.5 |
CVE-2026-68851 | Windows NTFS | Windows NTFS Information Disclosure | Important | 5.5 |
CVE-2026-68852 | Microsoft Account | Microsoft Account Information Disclosure | Important | 5.5 |
CVE-2026-68873 | Windows Program Compatibility Assistant Service | Windows Program Compatibility Assistant Service Information Disclosure | Important | 5.5 |
CVE-2026-68881 | Microsoft Standard XPS | Microsoft Standard XPS Information Disclosure | Important | 5.5 |
CVE-2026-68886 | Windows Network Connection Broker | Windows Network Connection Broker Information Disclosure | Important | 5.5 |
CVE-2026-68895 | Internet Storage Name Service | Internet Storage Name Service Information Disclosure | Important | 5.5 |
CVE-2026-69286 | Windows USB Audio Class driver (usbaudio.sys) | Windows USB Audio Class Driver Information Disclosure | Important | 5.5 |
CVE-2026-69288 | Windows GDI+ | Windows GDI+ Information Disclosure | Important | 5.5 |
CVE-2026-69294 | Microsoft COM for Windows | Microsoft COM for Windows Information Disclosure | Important | 5.5 |
CVE-2026-69303 | Push Message Routing Service | Push Message Routing Service Information Disclosure | Important | 5.5 |
CVE-2026-69308 | Microsoft Standard XPS | Microsoft Standard XPS Information Disclosure | Important | 5.5 |
CVE-2026-69315 | Windows License Manager | Windows License Manager Information Disclosure | Important | 5.5 |
CVE-2026-69318 | Windows Imaging Component | Windows Imaging Component Information Disclosure | Important | 5.5 |
CVE-2026-69321 | Windows Power Dependency Coordinator | Windows Power Dependency Coordinator Tampering | Important | 5.5 |
CVE-2026-69339 | Windows MIDI Service Module | Windows MIDI Service Module Information Disclosure | Important | 5.5 |
CVE-2026-69343 | Windows Overlay Filter | Windows Overlay Filter Information Disclosure | Important | 5.5 |
CVE-2026-69344 | Windows Print Spooler Components | Windows Print Spooler Components Information Disclosure | Important | 5.5 |
CVE-2026-69345 | Microsoft Standard XPS | Microsoft Standard XPS Information Disclosure | Important | 5.5 |
CVE-2026-69351 | Windows Universal Plug and Play (UPnP) Device Host | Windows Universal Plug and Play (UPnP) Device Host Information Disclosure | Important | 5.5 |
CVE-2026-69353 | Windows Text Shaping | Windows Text Shaping Information Disclosure | Important | 5.5 |
CVE-2026-69367 | Microsoft Standard XPS | Microsoft Standard XPS Information Disclosure | Important | 5.5 |
CVE-2026-69369 | Windows DNS | Windows DNS Information Disclosure | Important | 5.5 |
CVE-2026-69376 | Microsoft Standard XPS | Microsoft Standard XPS Information Disclosure | Important | 5.5 |
CVE-2026-69390 | Windows Spaceport.sys | Windows Spaceport.sys Information Disclosure | Important | 5.5 |
CVE-2026-69403 | Windows SMB Server | Windows SMB Server Information Disclosure | Important | 5.5 |
CVE-2026-69406 | Windows Kernel | Windows Kernel Information Disclosure | Important | 5.5 |
CVE-2026-69453 | Microsoft Windows Search Component | Microsoft Windows Search Component Tampering | Important | 5.5 |
CVE-2026-69457 | Windows USB Driver | Windows USB Driver Information Disclosure | Important | 5.5 |
CVE-2026-69504 | Windows NTFS | Windows NTFS Information Disclosure | Important | 5.5 |
CVE-2026-69527 | Windows USB Mass Storage Class Driver | Windows USB Mass Storage Class Driver Information Disclosure | Important | 5.5 |
CVE-2026-69531 | Microsoft Windows Speech | Microsoft Windows Speech Tampering | Important | 5.5 |
CVE-2026-69554 | Microsoft Windows Search Component | Microsoft Windows Search Component Tampering | Important | 5.5 |
CVE-2026-69568 | Windows Storage Spaces Controller | Storage Spaces Controller Information Disclosure | Important | 5.5 |
CVE-2026-69609 | Windows Win32K | Win32k Information Disclosure | Important | 5.5 |
CVE-2026-69616 | Windows Remote Desktop Services | Windows Remote Desktop Services Information Disclosure | Important | 5.5 |
CVE-2026-69618 | Windows SMB Client | Windows SMB Client Information Disclosure | Important | 5.5 |
CVE-2026-69627 | Windows Remote Desktop Licensing Service | Windows Remote Desktop Licensing Service Information Disclosure | Important | 5.5 |
CVE-2026-69672 | Windows DNS | Windows DNS Information Disclosure | Important | 5.5 |
CVE-2026-69674 | Windows Modern Device Management (MDM) | Windows Modern Device Management (MDM) Security Feature Bypass | Important | 5.5 |
CVE-2026-69684 | Windows Error Reporting | Windows Error Reporting Information Disclosure | Important | 5.5 |
CVE-2026-69741 | Windows Spaceport.sys | Windows Spaceport.sys Information Disclosure | Important | 5.5 |
CVE-2026-69770 | Windows Spaceport.sys | Windows Spaceport.sys Information Disclosure | Important | 5.5 |
CVE-2026-69794 | Windows Encrypting File System (EFS) | Windows Encrypting File System (EFS) Information Disclosure | Important | 5.5 |
CVE-2026-69808 | Windows Win32K | Win32k Information Disclosure | Important | 5.5 |
CVE-2026-69862 | Windows Wireless Wide Area Network Service | Windows Wireless Wide Area Network Service Information Disclosure | Important | 5.5 |
CVE-2026-70145 | Microsoft Windows Search Component | Microsoft Windows Search Component Information Disclosure | Important | 5.5 |
CVE-2026-70290 | Windows Win32 Kernel Subsystem | Win32k Information Disclosure | Important | 5.5 |
CVE-2026-71341 | Windows Partition Management Driver | Windows Partition Management Driver Information Disclosure | Important | 5.5 |
CVE-2026-72937 | Storage Port Driver | Windows Storage Port Driver Information Disclosure | Important | 5.5 |
CVE-2026-72945 | Windows Task Scheduler | Windows Task Scheduler Information Disclosure | Important | 5.5 |
CVE-2026-72964 | Windows Internet Connection Sharing (ICS) | Windows Internet Connection Sharing (ICS) Tampering | Important | 5.5 |
CVE-2026-72966 | Windows Remote Access Connection Manager | Windows Remote Access Connection Manager Tampering | Important | 5.5 |
CVE-2026-73004 | Windows Autopilot | Windows Autopilot Tampering | Important | 5.5 |
CVE-2026-73008 | Windows Biometric Service | Windows Biometric Service Information Disclosure | Important | 5.5 |
CVE-2026-77488 | SQL Server | Microsoft SQL Server Information Disclosure | Important | 5.5 |
CVE-2026-77491 | Windows GDI | Windows GDI Information Disclosure | Important | 5.5 |
CVE-2026-77492 | Storage Port Driver | Windows Storage Port Driver Information Disclosure | Important | 5.5 |
CVE-2026-78454 | Windows CD-ROM Driver | Windows CD-ROM Driver Information Disclosure | Important | 5.5 |
CVE-2026-78506 | Microsoft Office Word | Microsoft Office Word Information Disclosure | Important | 5.5 |
CVE-2026-78513 | Microsoft Office PowerPoint | Microsoft Office PowerPoint Information Disclosure | Important | 5.5 |
CVE-2026-81387 | Microsoft Office Excel | Microsoft Excel Information Disclosure | Important | 5.5 |
CVE-2026-81390 | Microsoft Office Excel | Microsoft Excel Information Disclosure | Important | 5.5 |
CVE-2026-81391 | Microsoft Office Excel | Microsoft Excel Information Disclosure | Important | 5.5 |
CVE-2026-81392 | Microsoft Office Excel | Microsoft Excel Information Disclosure | Important | 5.5 |
CVE-2026-81393 | Microsoft Office Excel | Microsoft Excel Information Disclosure | Important | 5.5 |
CVE-2026-81394 | Microsoft Office Excel | Microsoft Excel Information Disclosure | Important | 5.5 |
CVE-2026-81395 | Microsoft Office Excel | Microsoft Excel Information Disclosure | Important | 5.5 |
CVE-2026-81399 | Microsoft Office Excel | Microsoft Excel Information Disclosure | Important | 5.5 |
CVE-2026-81400 | Microsoft Office Excel | Microsoft Excel Information Disclosure | Important | 5.5 |
CVE-2026-81401 | Microsoft Office Excel | Microsoft Excel Information Disclosure | Important | 5.5 |
CVE-2026-81958 | Microsoft Office Excel | Microsoft Excel Information Disclosure | Important | 5.5 |
CVE-2026-83949 | Microsoft Office Word | Microsoft Office Word Information Disclosure | Important | 5.5 |
CVE-2026-83951 | Microsoft Office Word | Microsoft Office Word Information Disclosure | Important | 5.5 |
CVE-2026-83991 | Windows Cloud Files Mini Filter Driver | Windows Cloud Files Mini Filter Driver Tampering | Important | 5.5 |
CVE-2026-85875 | Microsoft Office Excel | Microsoft Office Excel Information Disclosure | Important | 5.5 |
CVE-2026-70575 | Windows Schannel | Windows Schannel Denial of Service | Important | 5.3 |
CVE-2026-81380 | GitHub Copilot and Visual Studio Code | GitHub Copilot and Visual Studio Code Information Disclosure | Important | 5.3 |
CVE-2026-72976 | Microsoft Office Word | Microsoft Office Word Information Disclosure | Important | 5.0 |
CVE-2026-68785 | SQL Server | Microsoft SQL Server Remote Code Execution | Important | 4.9 |
CVE-2026-69474 | Windows Overlay Filter | Windows Overlay Filter Information Disclosure | Important | 4.8 |
CVE-2026-68849 | Windows Bluetooth Port Driver | Windows Bluetooth Port Driver Information Disclosure | Important | 4.7 |
CVE-2026-68891 | Microsoft Standard XPS | Microsoft Standard XPS Information Disclosure | Important | 4.7 |
CVE-2026-69316 | Windows Overlay Filter | Windows Overlay Filter Information Disclosure | Important | 4.7 |
CVE-2026-69425 | Windows NTFS | Windows NTFS Tampering | Important | 4.7 |
CVE-2026-69483 | Windows Image Acquisition | Windows Image Acquisition Information Disclosure | Important | 4.7 |
CVE-2026-69771 | Windows Container Manager Service | Windows Container Manager Service Security Feature Bypass | Important | 4.7 |
CVE-2026-69792 | Windows Win32K | Windows Win32K Security Feature Bypass | Important | 4.7 |
CVE-2026-69853 | Windows Win32K | Win32k Information Disclosure | Important | 4.7 |
CVE-2026-69895 | Windows Spaceport.sys | Windows Spaceport.sys Information Disclosure | Important | 4.7 |
CVE-2026-72931 | Windows Secure Socket Tunneling Protocol (SSTP) | Windows Secure Socket Tunneling Protocol (SSTP) Denial of Service | Important | 4.7 |
CVE-2026-69381 | Windows Storage Port Driver | Windows Storage Port Driver Information Disclosure | Important | 4.6 |
CVE-2026-69548 | Windows RNDIS | Windows RNDIS Information Disclosure | Important | 4.6 |
CVE-2026-69690 | Microsoft Office SharePoint | Microsoft Office SharePoint Spoofing | Important | 4.6 |
CVE-2026-78452 | Microsoft Windows SCSI Class System File | Microsoft Windows SCSI Class System File Information Disclosure | Important | 4.6 |
CVE-2026-78508 | Windows CD-ROM Driver | Windows CD-ROM Driver Information Disclosure | Important | 4.6 |
CVE-2026-69713 | Windows Secure Boot | Windows Secure Boot Security Feature Bypass | Important | 4.4 |
CVE-2026-73019 | Windows URL Moniker | Windows URL Moniker Security Feature Bypass | Important | 4.3 |
CVE-2026-78455 | Xbox | Xbox Information Disclosure | Important | 4.3 |
CVE-2026-78516 | Windows Storage | Windows Storage Information Disclosure | Important | 4.3 |
CVE-2026-69615 | Microsoft Office SharePoint | Microsoft Office SharePoint Spoofing | Important | 3.5 |
CVE-2026-69904 | Microsoft Office SharePoint | Microsoft Office SharePoint Information Disclosure | Important | 3.5 |
Published later in the month (25)
Microsoft Edge updates, out-of-band fixes and cloud services. “Fixed by Microsoft” means a cloud service Microsoft has already patched: there is nothing to install.
| Date | CVE | What | Severity | Action |
|---|---|---|---|---|
| 17 Sep | CVE-2026-62874 | Azure Billing Elevation of Privilege | Critical | Fixed by Microsoft |
| 17 Sep | CVE-2026-69399 | Azure Arc Elevation of Privilege | Critical | Fixed by Microsoft |
| 17 Sep | CVE-2026-69843 | Microsoft Fabric Elevation of Privilege | Critical | Fixed by Microsoft |
| 17 Sep | CVE-2026-69865 | Microsoft Container Registry Elevation of Privilege | Critical | Fixed by Microsoft |
| 17 Sep | CVE-2026-70200 | Azure Logic Apps Elevation of Privilege | Critical | Fixed by Microsoft |
| 17 Sep | CVE-2026-83944 | Azure Logic Apps Elevation of Privilege | Critical | Fixed by Microsoft |
| 17 Sep | CVE-2026-85889 | Azure AI Foundry Elevation of Privilege | Critical | Fixed by Microsoft |
| 17 Sep | CVE-2026-85878 | Azure Database for PostgreSQL Elevation of Privilege | Critical | Fixed by Microsoft |
| 17 Sep | CVE-2026-85885 | Microsoft 365 Copilot Elevation of Privilege | Critical | Fixed by Microsoft |
| 17 Sep | CVE-2026-87701 | Azure Cosmos DB Elevation of Privilege | Critical | Fixed by Microsoft |
| 17 Sep | CVE-2026-70009 | Azure Arc Elevation of Privilege | Critical | Fixed by Microsoft |
| 17 Sep | CVE-2026-77903 | Microsoft Dataverse Elevation of Privilege | Critical | Fixed by Microsoft |
| 17 Sep | CVE-2026-68791 | Azure Machine Learning Information Disclosure | Critical | Fixed by Microsoft |
| 17 Sep | CVE-2026-83946 | Azure Portal Spoofing | Critical | Fixed by Microsoft |
| 14 Sep | CVE-2026-85921 | Windows Secure Kernel Mode Elevation of Privilege | Critical | Update |
| 17 Sep | CVE-2026-85887 | M365 Copilot Information Disclosure | Critical | Fixed by Microsoft |
| 17 Sep | CVE-2026-85917 | Azure AI Foundry Elevation of Privilege | Critical | Fixed by Microsoft |
| 17 Sep | CVE-2026-78501 | Microsoft 365 Copilot Business Chat Information Disclosure | Critical | Fixed by Microsoft |
| 17 Sep | CVE-2026-55946 | Microsoft Copilot Information Disclosure | Critical | Fixed by Microsoft |
| 15 Sep | CVE-2026-69486 | Microsoft Edge (Chromium-based) Remote Code Execution | Important | Update |
| 23 Sep | CVE-2026-70125 | Microsoft Office Outlook Remote Code Execution | Important | Update |
| 15 Sep | CVE-2026-85893 | Microsoft Edge (Chromium-based) Elevation of Privilege | Important | Update |
| 18 Sep | CVE-2026-88097 | Microsoft Edge (Chromium-based) Elevation of Privilege | Important | Update |
| 11 Sep | CVE-2026-85892 | Microsoft Edge (Chromium-based) Elevation of Privilege | Important | Update |
| 11 Sep | CVE-2026-77490 | Microsoft Edge (Chromium-based) Spoofing | Moderate | Update |
From Microsoft’s Security Update Guide and CISA’s Known Exploited Vulnerabilities catalog, checked 6 hours ago. Only vulnerabilities Microsoft itself issued are counted; Chromium fixes that Edge inherits are left out. For known problems with the updates themselves, see Windows release health.