58.273 CVE tracked
789 Exploited now
188 Used by ransomware
Last sync
CVE Tracker
58.273 CVE
Ten vendors followed by CPE identifier, not by keyword: a CVE appears here once NVD says which products it affects — usually a few days after it is published.
| Identifier | Severity, sort descending | Product and flaw | EPSS, sorted ascending | In KEV since, sort descending |
|---|---|---|---|---|
| CVE-2026-80093 | HIGH 7.0 | microsoft windows_10_1809 Use after free in Windows Cloud Files Mini Filter Driver allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-70574 | HIGH 7.8 | microsoft windows_10_1607 Out-of-bounds read in Virtual Hard Disk (VHD) Miniport Driver allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-69821 | HIGH 7.8 | microsoft windows_10_1607 Improper encoding or escaping of output in Active Directory Certificate Services (AD CS) allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-69801 | HIGH 7.8 | microsoft windows_10_1809 Heap-based buffer overflow in Windows Audio Service allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-69608 | HIGH 7.8 | microsoft windows_10_1607 Integer overflow or wraparound in Microsoft Windows Search Component allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-69561 | HIGH 7.8 | microsoft windows_10_1607 Out-of-bounds read in Windows CD-ROM Driver allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-69544 | HIGH 7.8 | microsoft windows_11_26h1 Heap-based buffer overflow in Windows SMB Client allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-69542 | HIGH 7.8 | microsoft windows_11_24h2 Heap-based buffer overflow in Windows Camera Frame Server Monitor allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-69538 | HIGH 7.8 | microsoft windows_10_1607 Out-of-bounds read in Windows Spaceport.sys allows an authorized attacker to execute code locally. | 0.3% | — |
| CVE-2026-69535 | HIGH 7.8 | microsoft windows_10_21h2 Numeric truncation error in Windows Spaceport.sys allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-69426 | HIGH 7.8 | microsoft windows_10_1607 Heap-based buffer overflow in Windows VOLSNAP.SYS allows an authorized attacker to execute code locally. | 0.3% | — |
| CVE-2026-69424 | HIGH 7.8 | microsoft windows_10_1607 Heap-based buffer overflow in Windows Distributed File System (DFS) allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-69420 | HIGH 7.8 | microsoft windows_10_1607 Heap-based buffer overflow in Windows VOLSNAP.SYS allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-69368 | HIGH 7.8 | microsoft windows_10_1607 Heap-based buffer overflow in Windows Overlay Filter allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-69324 | HIGH 7.8 | microsoft windows_10_1607 Access of resource using incompatible type ('type confusion') in Windows Performance Monitor allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-69290 | HIGH 7.8 | microsoft windows_10_1607 Stack-based buffer overflow in Windows Storage Spaces Controller allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-69284 | HIGH 7.8 | microsoft windows_10_1607 Heap-based buffer overflow in Windows DCOM Server allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-69283 | HIGH 7.8 | microsoft windows_10_1607 Heap-based buffer overflow in Windows CD-ROM Driver allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-68877 | HIGH 7.8 | microsoft windows_10_1607 Heap-based buffer overflow in Windows Storage Spaces Controller allows an authorized attacker to execute code locally. | 0.3% | — |
| CVE-2026-68844 | HIGH 7.8 | microsoft windows_10_1607 Heap-based buffer overflow in Windows Storage Spaces Controller allows an authorized attacker to execute code locally. | 0.3% | — |
| CVE-2026-6317 | HIGH 8.8 | google chrome Use after free in Cast in Google Chrome prior to 147.0.7727.101 allowed a remote attacker to execute arbitrary code via a crafted HTML page. (Chromium security severity: High) | 0.3% | — |
| CVE-2026-6316 | HIGH 8.8 | google chrome Use after free in Forms in Google Chrome prior to 147.0.7727.101 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High) | 0.3% | — |
| CVE-2026-6300 | HIGH 8.8 | google chrome Use after free in CSS in Google Chrome prior to 147.0.7727.101 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High) | 0.3% | — |
| CVE-2026-6299 | HIGH 8.8 | google chrome Use after free in Prerender in Google Chrome prior to 147.0.7727.101 allowed a remote attacker to execute arbitrary code via a crafted HTML page. (Chromium security severity: Critical) | 0.3% | — |
| CVE-2026-47652 | HIGH 8.2 | microsoft windows_11_23h2 Heap-based buffer overflow in Windows Hyper-V allows an authorized attacker to execute code locally. | 0.3% | — |