CVE Database

45217+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2026-69603
8.8 HIGH

Heap-based buffer overflow in Windows Hyper-V allows an authorized attacker to execute code locally.

Sep 8, 2026
CVE-2026-69602
7.1 HIGH

Use after free in Windows PrintWorkflowUserSvc allows an authorized attacker to elevate privileges over a network.

Sep 8, 2026
CVE-2026-69601
8.8 HIGH

Heap-based buffer overflow in Microsoft Windows Media Foundation allows an unauthorized attacker to execute code over a network.

Sep 8, 2026
CVE-2026-69600
7.0 HIGH

Use after free in Microsoft Windows Search Component allows an authorized attacker to elevate privileges locally.

Sep 8, 2026
CVE-2026-69599
7.5 HIGH

Use after free in Windows Remote Desktop Services allows an authorized attacker to execute code over a network.

Sep 8, 2026
CVE-2026-69598
8.8 HIGH

Incorrect calculation of buffer size in Windows iSCSI allows an unauthorized attacker to execute code over a network.

Sep 8, 2026
CVE-2026-69597
7.1 HIGH

Use after free in Windows HTTP.sys allows an authorized attacker to elevate privileges over a network.

Sep 8, 2026
CVE-2026-69594
7.8 HIGH

Heap-based buffer overflow in Microsoft Local Security Authority Server (lsasrv) allows an authorized attacker to elevate privileges locally.

Sep 8, 2026
CVE-2026-69593
7.8 HIGH

Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally.

Sep 8, 2026
CVE-2026-69592
7.8 HIGH

Heap-based buffer overflow in Windows Universal Disk Format File System Driver (UDFS) allows an authorized attacker to elevate privileges locally.

Sep 8, 2026
CVE-2026-69589
7.8 HIGH

Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally.

Sep 8, 2026
CVE-2026-69588
7.5 HIGH

Missing release of memory after effective lifetime in Windows TCP/IP allows an unauthorized attacker to deny service over a network.

Sep 8, 2026
CVE-2026-69587
7.5 HIGH

Null pointer dereference in Windows IKE Extension allows an unauthorized attacker to deny service over a network.

Sep 8, 2026
CVE-2026-69585
7.8 HIGH

Incorrect type conversion or cast in Microsoft Windows Search Component allows an authorized attacker to elevate privileges locally.

Sep 8, 2026
CVE-2026-69584
7.8 HIGH

Integer overflow or wraparound in Windows USB Video Driver allows an authorized attacker to elevate privileges locally.

Sep 8, 2026
CVE-2026-69583
7.8 HIGH

Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally.

Sep 8, 2026
CVE-2026-69582
7.8 HIGH

Buffer over-read in Windows Volume Manager Extension Driver allows an authorized attacker to elevate privileges locally.

Sep 8, 2026
CVE-2026-69581
7.0 HIGH

Use after free in Windows Device Association Service allows an authorized attacker to elevate privileges locally.

Sep 8, 2026
CVE-2026-69580
7.8 HIGH

Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally.

Sep 8, 2026
CVE-2026-69578
7.0 HIGH

Numeric truncation error in Windows Kernel allows an authorized attacker to elevate privileges locally.

Sep 8, 2026
CVE-2026-69576
7.8 HIGH

Use after free in Graphic Fonts allows an authorized attacker to elevate privileges locally.

Sep 8, 2026
CVE-2026-69575
7.0 HIGH

Use after free in Windows Storage Spaces Controller allows an authorized attacker to elevate privileges locally.

Sep 8, 2026
CVE-2026-69574
7.0 HIGH

Use after free in Windows Device Association Service allows an authorized attacker to elevate privileges locally.

Sep 8, 2026
CVE-2026-69573
7.0 HIGH

Use after free in Windows Universal Disk Format File System Driver (UDFS) allows an authorized attacker to elevate privileges locally.

Sep 8, 2026
CVE-2026-69571
7.8 HIGH

Heap-based buffer overflow in Windows USB Audio Class driver (usbaudio.sys) allows an authorized attacker to elevate privileges locally.

Sep 8, 2026
CVE-2026-69567
7.0 HIGH

Use after free in Windows NTFS allows an authorized attacker to elevate privileges locally.

Sep 8, 2026
CVE-2026-69564
7.0 HIGH

Heap-based buffer overflow in Windows Online Certificate Status Protocol (OCSP) allows an authorized attacker to elevate privileges locally.

Sep 8, 2026
CVE-2026-69563
7.0 HIGH

Heap-based buffer overflow in Windows Program Compatibility Assistant Service allows an authorized attacker to elevate privileges locally.

Sep 8, 2026
CVE-2026-69561
7.8 HIGH

Out-of-bounds read in Windows CD-ROM Driver allows an authorized attacker to elevate privileges locally.

Sep 8, 2026
CVE-2026-69560
7.0 HIGH

Use after free in Windows Work Folder Service allows an authorized attacker to elevate privileges locally.

Sep 8, 2026
CVE-2026-69556
8.8 HIGH

Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code over a network.

Sep 8, 2026
CVE-2026-69553
7.1 HIGH

Missing authorization in Windows Hyper-V allows an authorized attacker to elevate privileges over a network.

Sep 8, 2026
CVE-2026-69551
8.8 HIGH

Use after free in Windows DNS allows an authorized attacker to execute code over a network.

Sep 8, 2026
CVE-2026-69549
7.0 HIGH

Out-of-bounds read in Virtual Hard Disk (VHD) Miniport Driver allows an authorized attacker to elevate privileges locally.

Sep 8, 2026
CVE-2026-69547
8.8 HIGH

Heap-based buffer overflow in Windows DHCP Server allows an authorized attacker to execute code over a network.

Sep 8, 2026
CVE-2026-69546
8.1 HIGH

Use after free in Active Directory Domain Services allows an unauthorized attacker to execute code over a network.

Sep 8, 2026
CVE-2026-69544
7.8 HIGH

Heap-based buffer overflow in Windows SMB Client allows an authorized attacker to elevate privileges locally.

Sep 8, 2026
CVE-2026-69542
7.8 HIGH

Heap-based buffer overflow in Windows Camera Frame Server Monitor allows an authorized attacker to elevate privileges locally.

Sep 8, 2026
CVE-2026-69541
7.8 HIGH

Heap-based buffer overflow in Virtual Hard Disk (VHD) Miniport Driver allows an authorized attacker to elevate privileges locally.

Sep 8, 2026
CVE-2026-69540
7.0 HIGH

Use after free in Windows Audio Service allows an authorized attacker to elevate privileges locally.

Sep 8, 2026
CVE-2026-69539
7.5 HIGH

Use after free in Windows Remote Desktop Services allows an authorized attacker to execute code over a network.

Sep 8, 2026
CVE-2026-69538
7.8 HIGH

Out-of-bounds read in Windows Spaceport.sys allows an authorized attacker to execute code locally.

Sep 8, 2026
CVE-2026-69536
7.1 HIGH

Use after free in Windows Remote Desktop Services allows an authorized attacker to execute code over a network.

Sep 8, 2026
CVE-2026-69535
7.8 HIGH

Numeric truncation error in Windows Spaceport.sys allows an authorized attacker to elevate privileges locally.

Sep 8, 2026
CVE-2026-69534
7.8 HIGH

Improper neutralization of special elements used in a command ('command injection') in Windows Program Compatibility Assistant Service allows an authorized attacker to elevate privileges locally.

Sep 8, 2026
CVE-2026-69532
7.8 HIGH

Out-of-bounds read in Windows NTFS allows an authorized attacker to elevate privileges locally.

Sep 8, 2026
CVE-2026-69530
8.1 HIGH

Use after free in Reliable Multicast Transport Driver (RMCAST) allows an unauthorized attacker to execute code over a network.

Sep 8, 2026
CVE-2026-69529
8.8 HIGH

Heap-based buffer overflow in Microsoft Office Access allows an unauthorized attacker to execute code over a network.

Sep 8, 2026
CVE-2026-69528
7.8 HIGH

Missing authentication for critical function in Windows Shell allows an authorized attacker to elevate privileges locally.

Sep 8, 2026
CVE-2026-69524
8.1 HIGH

Use after free in Active Directory Domain Services allows an unauthorized attacker to execute code over a network.

Sep 8, 2026

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.