58.639 CVE tracked
797 Exploited now
188 Used by ransomware
Last sync
CVE Tracker
58.639 CVE
Ten vendors followed by CPE identifier, not by keyword: a CVE appears here once NVD says which products it affects — usually a few days after it is published.
| Identifier | Severity, sort descending | Product and flaw | EPSS, sorted descending | In KEV since, sort descending |
|---|---|---|---|---|
| CVE-2020-0685 | HIGH 7.8 | microsoft windows_10 An elevation of privilege vulnerability exists when Windows improperly handles COM object creation, aka 'Windows COM Server Elevation of Privilege Vulnerability'. | 0.9% | — |
| CVE-2020-0682 | HIGH 7.8 | microsoft windows_10 An elevation of privilege vulnerability exists in the way that the Windows Function Discovery Service handles objects in memory, aka 'Windows Function Discovery Service Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-0679, CVE-2020-0 | 0.9% | — |
| CVE-2020-0678 | HIGH 7.8 | microsoft windows_10 An elevation of privilege vulnerability exists when Windows Error Reporting manager improperly handles hard links, aka 'Windows Error Reporting Manager Elevation of Privilege Vulnerability'. | 0.9% | — |
| CVE-2013-3694 | MED 6.8 | blackberry blackberry_link BlackBerry Link before 1.2.1.31 on Windows and before 1.1.1 build 39 on Mac OS X does not require authentication for remote file-access folders, which allows remote attackers to read or create arbitrary files via IPv6 WebDAV requests, as demonstrated by a CSRF | 0.9% | — |
| CVE-2026-80096 | HIGH 8.8 | microsoft windows_10_1607 Out-of-bounds read in Windows Remote Desktop Services allows an authorized attacker to elevate privileges over a network. | 0.9% | — |
| CVE-2026-78456 | HIGH 8.8 | microsoft sql_server_2022 Heap-based buffer overflow in SQL Server allows an authorized attacker to execute code over a network. | 0.9% | — |
| CVE-2026-77481 | HIGH 8.8 | microsoft sql_server_2017 Heap-based buffer overflow in SQL Server allows an authorized attacker to execute code over a network. | 0.9% | — |
| CVE-2026-73012 | HIGH 8.8 | microsoft windows_10_1607 Heap-based buffer overflow in Windows Management Services allows an authorized attacker to elevate privileges over a network. | 0.9% | — |
| CVE-2026-72959 | HIGH 8.8 | microsoft windows_10_1607 Remote Code Execution in Windows Routing and Remote Access Service (RRAS) allows attacker to gain an unauthorized access to victim's machine | 0.9% | — |
| CVE-2026-71352 | HIGH 8.8 | microsoft windows_10_1607 Integer underflow (wrap or wraparound) in Windows Remote Access Connection Manager allows an authorized attacker to execute code over a network. | 0.9% | — |
| CVE-2026-71336 | HIGH 8.8 | microsoft windows_10_1607 Integer overflow or wraparound in Windows Work Folder Service allows an authorized attacker to execute code over a network. | 0.9% | — |
| CVE-2026-69729 | HIGH 8.8 | microsoft windows_11_24h2 Heap-based buffer overflow in Windows Credential Providers allows an authorized attacker to execute code over a network. | 0.9% | — |
| CVE-2026-69712 | HIGH 8.8 | microsoft windows_server_2012 Use after free in Windows Key Distribution Center allows an authorized attacker to execute code over a network. | 0.9% | — |
| CVE-2026-69628 | HIGH 8.8 | microsoft windows_10_1607 Heap-based buffer overflow in Windows iSCSI allows an authorized attacker to execute code over a network. | 0.9% | — |
| CVE-2026-69551 | HIGH 8.8 | microsoft windows_10_1607 Use after free in Windows DNS allows an authorized attacker to execute code over a network. | 0.9% | — |
| CVE-2026-69547 | HIGH 8.8 | microsoft windows_10_1607 Heap-based buffer overflow in Windows DHCP Server allows an authorized attacker to execute code over a network. | 0.9% | — |
| CVE-2026-69485 | HIGH 8.8 | microsoft windows_10_1607 Use of uninitialized resource in Remote Desktop Client allows an authorized attacker to execute code over a network. | 0.9% | — |
| CVE-2026-69464 | HIGH 8.8 | microsoft sharepoint_server Execution with unnecessary privileges in Microsoft Office SharePoint allows an authorized attacker to elevate privileges over a network. | 0.9% | — |
| CVE-2026-69355 | HIGH 8.8 | microsoft exchange_server External control of file name or path in Microsoft Exchange Server allows an authorized attacker to execute code over a network. | 0.9% | — |
| CVE-2026-68786 | HIGH 8.8 | microsoft sql_server_2017 Heap-based buffer overflow in SQL Server allows an authorized attacker to execute code over a network. | 0.9% | — |
| CVE-2026-68775 | HIGH 8.8 | microsoft sql_server_2017 Heap-based buffer overflow in SQL Server allows an authorized attacker to execute code over a network. | 0.9% | — |
| CVE-2026-67642 | HIGH 8.8 | microsoft sql_server_2025 Heap-based buffer overflow in SQL Server allows an authorized attacker to execute code over a network. | 0.9% | — |
| CVE-2026-67639 | HIGH 8.8 | microsoft sql_server_2017 Heap-based buffer overflow in SQL Server allows an authorized attacker to execute code over a network. | 0.9% | — |
| CVE-2026-67638 | HIGH 8.8 | microsoft sql_server_2025 Heap-based buffer overflow in SQL Server allows an authorized attacker to execute code over a network. | 0.9% | — |
| CVE-2026-67388 | HIGH 8.8 | microsoft sql_server_2017 Heap-based buffer overflow in SQL Server allows an authorized attacker to execute code over a network. | 0.9% | — |