CVE Database

45217+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2026-77494
7.5 HIGH

Access of resource using incompatible type ('type confusion') in Windows DHCP Server allows an unauthorized attacker to deny service over a network.

Sep 8, 2026
CVE-2026-77489
7.8 HIGH

Null pointer dereference in Windows Biometric Service allows an authorized attacker to elevate privileges locally.

Sep 8, 2026
CVE-2026-77487
8.8 HIGH

Improper access control in SQL Server allows an authorized attacker to elevate privileges over a network.

Sep 8, 2026
CVE-2026-77486
8.8 HIGH

Integer overflow or wraparound in SQL Server allows an unauthorized attacker to execute code over a network.

Sep 8, 2026
CVE-2026-77485
7.0 HIGH

Use after free in SQL Server allows an authorized attacker to elevate privileges locally.

Sep 8, 2026
CVE-2026-77484
8.8 HIGH

Deserialization of untrusted data in SQL Server allows an authorized attacker to execute code over a network.

Sep 8, 2026
CVE-2026-77483
8.8 HIGH

Weak authentication in SQL Server allows an authorized attacker to elevate privileges over a network.

Sep 8, 2026
CVE-2026-77482
8.8 HIGH

Heap-based buffer overflow in SQL Server allows an unauthorized attacker to execute code over a network.

Sep 8, 2026
CVE-2026-77481
8.8 HIGH

Heap-based buffer overflow in SQL Server allows an authorized attacker to execute code over a network.

Sep 8, 2026
CVE-2026-77480
8.8 HIGH

Insufficient granularity of access control in SQL Server allows an authorized attacker to elevate privileges over a network.

Sep 8, 2026
CVE-2026-76196
7.4 HIGH

Photoshop Mobile is affected by a Session Fixation vulnerability that could result in privilege escalation. An attacker could leverage this vulnerability to gain access to …

Sep 8, 2026
CVE-2026-76191
8.2 HIGH

Animate is affected by an Improper Control of Generation of Code ('Code Injection') vulnerability that could result in arbitrary code execution in the context of …

Sep 8, 2026
CVE-2026-73028
8.8 HIGH

Improper access control in SQL Server allows an authorized attacker to elevate privileges over a network.

Sep 8, 2026
CVE-2026-73026
7.8 HIGH

Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally.

Sep 8, 2026
CVE-2026-73024
7.8 HIGH

Heap-based buffer overflow in Windows Services for NFS ONCRPC XDR Driver allows an authorized attacker to elevate privileges locally.

Sep 8, 2026
CVE-2026-73023
8.8 HIGH

Heap-based buffer overflow in Windows Imaging Component allows an unauthorized attacker to execute code over a network.

Sep 8, 2026
CVE-2026-73022
7.0 HIGH

Use after free in Windows Modern Device Management (MDM) allows an authorized attacker to elevate privileges locally.

Sep 8, 2026
CVE-2026-73021
7.8 HIGH

Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally.

Sep 8, 2026
CVE-2026-73020
7.8 HIGH

Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally.

Sep 8, 2026
CVE-2026-73018
8.8 HIGH

Heap-based buffer overflow in Graphic Fonts allows an unauthorized attacker to execute code over a network.

Sep 8, 2026
CVE-2026-73017
7.5 HIGH

Heap-based buffer overflow in Windows Graphics Kernel allows an authorized attacker to execute code locally.

Sep 8, 2026
CVE-2026-73016
8.8 HIGH

Heap-based buffer overflow in Microsoft Graphics Component allows an unauthorized attacker to execute code over a network.

Sep 8, 2026
CVE-2026-73015
7.8 HIGH

Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally.

Sep 8, 2026
CVE-2026-73014
7.8 HIGH

Missing authorization in Data Sharing Service Client allows an authorized attacker to elevate privileges locally.

Sep 8, 2026
CVE-2026-73013
8.8 HIGH

Heap-based buffer overflow in Windows Imaging Component allows an unauthorized attacker to execute code over a network.

Sep 8, 2026
CVE-2026-73012
8.8 HIGH

Heap-based buffer overflow in Windows Management Services allows an authorized attacker to elevate privileges over a network.

Sep 8, 2026
CVE-2026-73011
7.8 HIGH

Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally.

Sep 8, 2026
CVE-2026-73007
7.8 HIGH

Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally.

Sep 8, 2026
CVE-2026-73006
8.8 HIGH

Stack-based buffer overflow in Microsoft Graphics Component allows an unauthorized attacker to execute code over a network.

Sep 8, 2026
CVE-2026-73005
7.0 HIGH

Use after free in Windows Authentication Methods allows an authorized attacker to elevate privileges locally.

Sep 8, 2026
CVE-2026-73003
7.0 HIGH

Use after free in Windows Modern Device Management (MDM) allows an authorized attacker to elevate privileges locally.

Sep 8, 2026
CVE-2026-73002
7.8 HIGH

Integer overflow or wraparound in Windows Biometric Service allows an authorized attacker to elevate privileges locally.

Sep 8, 2026
CVE-2026-73001
7.8 HIGH

Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally.

Sep 8, 2026
CVE-2026-73000
7.8 HIGH

Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally.

Sep 8, 2026
CVE-2026-72997
7.8 HIGH

Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally.

Sep 8, 2026
CVE-2026-72996
7.8 HIGH

Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally.

Sep 8, 2026
CVE-2026-72995
7.8 HIGH

Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally.

Sep 8, 2026
CVE-2026-72994
7.8 HIGH

Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally.

Sep 8, 2026
CVE-2026-72993
7.8 HIGH

Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally.

Sep 8, 2026
CVE-2026-72992
7.8 HIGH

Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally.

Sep 8, 2026
CVE-2026-72991
7.8 HIGH

Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally.

Sep 8, 2026
CVE-2026-72990
7.8 HIGH

Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally.

Sep 8, 2026
CVE-2026-72989
7.5 HIGH

Use of uninitialized resource in Windows Failover Cluster allows an unauthorized attacker to disclose information over a network.

Sep 8, 2026
CVE-2026-72988
7.8 HIGH

Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally.

Sep 8, 2026
CVE-2026-72987
8.1 HIGH

Use after free in Windows DNS allows an unauthorized attacker to execute code over a network.

Sep 8, 2026
CVE-2026-72986
8.8 HIGH

Heap-based buffer overflow in Graphic Fonts allows an unauthorized attacker to execute code over a network.

Sep 8, 2026
CVE-2026-72981
8.1 HIGH

Use after free in IP Helper allows an unauthorized attacker to execute code over a network.

Sep 8, 2026
CVE-2026-72973
8.8 HIGH

Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code over a network.

Sep 8, 2026
CVE-2026-72972
8.8 HIGH

Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code over a network.

Sep 8, 2026
CVE-2026-72967
7.8 HIGH

Heap-based buffer overflow in Windows Network Connection Broker allows an authorized attacker to elevate privileges locally.

Sep 8, 2026

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.