IT
57.056 CVE tracked
777 Exploited now
184 Used by ransomware
Last sync

Microsoft vulnerabilities

15.483 CVE

Microsoft vulnerabilities
Identifier Severity, sort descending Product and flaw EPSS, sort descending In KEV since, sort descending
CVE-2026-20861 HIGH 7.8 microsoft windows_10_1809 Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Management Services allows an authorized attacker to elevate privileges locally. 0.3%
CVE-2026-20858 HIGH 7.8 microsoft windows_10_1809 Use after free in Windows Management Services allows an authorized attacker to elevate privileges locally. 0.3%
CVE-2026-20836 HIGH 7.0 microsoft windows_10_1607 Concurrent execution using shared resource with improper synchronization ('race condition') in Graphics Kernel allows an authorized attacker to elevate privileges locally. 0.3%
CVE-2026-20830 HIGH 7.0 microsoft windows_server_2025 Concurrent execution using shared resource with improper synchronization ('race condition') in Capability Access Management Service (camsvc) allows an authorized attacker to elevate privileges locally. 0.3%
CVE-2026-20815 HIGH 7.0 microsoft windows_11_24h2 Concurrent execution using shared resource with improper synchronization ('race condition') in Capability Access Management Service (camsvc) allows an authorized attacker to elevate privileges locally. 0.3%
CVE-2026-20814 HIGH 7.0 microsoft windows_10_1607 Concurrent execution using shared resource with improper synchronization ('race condition') in Graphics Kernel allows an authorized attacker to elevate privileges locally. 0.3%
CVE-2026-20808 HIGH 7.0 microsoft windows_11_24h2 Concurrent execution using shared resource with improper synchronization ('race condition') in Printer Association Object allows an authorized attacker to elevate privileges locally. 0.3%
CVE-2023-35361 HIGH 7.0 microsoft windows_10_1507 Windows Kernel Elevation of Privilege Vulnerability 0.3%
CVE-2023-35360 HIGH 7.0 microsoft windows_10_1507 Windows Kernel Elevation of Privilege Vulnerability 0.3%
CVE-2026-70331 MED 5.4 microsoft edge Improper neutralization of input used for llm prompting in Microsoft Edge for iOS allows an unauthorized attacker to perform spoofing over a network. 0.3%
CVE-2026-62887 MED 5.5 microsoft windows_10_1607 Out-of-bounds read in Windows NTFS allows an authorized attacker to disclose information locally. 0.3%
CVE-2026-58540 HIGH 7.8 microsoft windows_10_1607 Improper authorization in Windows Installer allows an authorized attacker to elevate privileges locally. 0.3%
CVE-2026-57088 HIGH 7.8 microsoft windows_10_1809 Improper access control in Extensible Storage Engine (ESENT) allows an authorized attacker to elevate privileges locally. 0.3%
CVE-2026-50465 HIGH 7.1 microsoft windows_11_24h2 Improper access control in Microsoft Windows DNS allows an authorized attacker to perform tampering locally. 0.3%
CVE-2026-50423 HIGH 7.8 microsoft windows_10_21h2 Improper access control in Windows Kernel allows an authorized attacker to elevate privileges locally. 0.3%
CVE-2026-50405 HIGH 7.8 microsoft windows_10_1607 Insufficient granularity of access control in Windows Filtering Platform (WFP) allows an authorized attacker to elevate privileges locally. 0.3%
CVE-2026-50391 HIGH 7.8 microsoft windows_10_1607 Improper privilege management in Windows Group Policy allows an authorized attacker to elevate privileges locally. 0.3%
CVE-2026-50373 HIGH 7.8 microsoft windows_10_1809 Improper access control in Microsoft Windows Search Component allows an authorized attacker to elevate privileges locally. 0.3%
CVE-2026-50346 HIGH 7.8 microsoft windows_10_1607 Improper authorization in RPC Runtime allows an authorized attacker to elevate privileges locally. 0.3%
CVE-2026-50344 HIGH 7.8 microsoft windows_10_1607 Improper authorization in Windows OLE allows an authorized attacker to elevate privileges locally. 0.3%
CVE-2026-50343 HIGH 7.8 microsoft windows_10_1809 Improper privilege management in Microsoft Install Service allows an authorized attacker to elevate privileges locally. 0.3%
CVE-2026-50335 HIGH 7.8 microsoft windows_10_1809 Improper access control in Windows Operating Systems allows an authorized attacker to elevate privileges locally. 0.3%
CVE-2026-58631 HIGH 7.8 microsoft windows_admin_center Improper authorization in Windows Admin Center allows an authorized attacker to execute code locally. 0.3%
CVE-2026-57107 HIGH 7.8 microsoft windows_admin_center Improper authentication in Windows Admin Center allows an authorized attacker to elevate privileges locally. 0.3%
CVE-2026-55014 HIGH 7.8 microsoft remote_help Improper access control in Windows Remote Help Defense allows an authorized attacker to elevate privileges locally. 0.3%