Skip to main content

Over 150 LLM Providers · Over 5,300 Models The most extensible AI-powered pentesting platform. Open source. Star on GitHub

22,671 of 57,566 · Page 220/454
7.8
CVE-2026-50318

Stack-based buffer overflow in Windows Resilient File System (ReFS) allows an authorized attacker to elevate privileges

7.8
CVE-2026-50333

Missing authentication for critical function in Windows Spaceport.sys allows an authorized attacker to elevate privilege

7.8
CVE-2026-50351

Improper access control in Windows Audio Compression Manager (ACM) allows an authorized attacker to elevate privileges l

7.8
CVE-2026-50675

Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

7.8
CVE-2026-50697

Exposure of sensitive information to an unauthorized actor in Windows Common Log File System Driver allows an authorized

7.8
CVE-2026-54109

Integer overflow or wraparound in Windows Resilient File System (ReFS) allows an authorized attacker to execute code loc

7.8
CVE-2026-54112

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Win32K allows an

7.8
CVE-2026-54114

Use after free in Windows Win32K allows an authorized attacker to elevate privileges locally.

7.8
CVE-2026-54986

Heap-based buffer overflow in Windows Win32K allows an authorized attacker to elevate privileges locally.

7.8
CVE-2026-54987

Heap-based buffer overflow in Windows Overlay Filter allows an authorized attacker to elevate privileges locally.

7.8
CVE-2026-54991

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows USB Print Driver

7.8
CVE-2026-54993

Heap-based buffer overflow in Microsoft Windows Media Foundation allows an unauthorized attacker to execute code locally

7.8
CVE-2026-55001

Improper certificate validation in Windows Active Directory allows an authorized attacker to elevate privileges locally.

7.8
CVE-2026-55004

Double free in Microsoft Printer Drivers allows an authorized attacker to elevate privileges locally.

7.8
CVE-2026-55006

Insufficient granularity of access control in Microsoft Exchange Server allows an authorized attacker to elevate privile

7.8
CVE-2026-55009

Deserialization of untrusted data in Microsoft Exchange Server allows an authorized attacker to elevate privileges local

7.8
CVE-2026-55011

Integer underflow (wrap or wraparound) in Microsoft Defender allows an unauthorized attacker to execute code locally.

7.8
CVE-2026-55012

Integer overflow or wraparound in Microsoft Defender allows an unauthorized attacker to execute code locally.

7.8
CVE-2026-55014

Improper access control in Windows Remote Help Defense allows an authorized attacker to elevate privileges locally.

7.8
CVE-2026-55899

Stack-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

7.8
CVE-2026-55948

Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

7.8
CVE-2026-56155 KEV

Insufficient granularity of access control in Active Directory Federation Services (AD FS) allows an authorized attacker

7.8
CVE-2026-57107

Improper authentication in Windows Admin Center allows an authorized attacker to elevate privileges locally.

7.8
CVE-2026-58601

Heap-based buffer overflow in Virtual Hard Disk (VHD) Miniport Driver allows an authorized attacker to elevate privilege

7.8
CVE-2026-58602

Use after free in Windows Kernel Mode Driver allows an authorized attacker to elevate privileges locally.

7.8
CVE-2026-58609

Out-of-bounds read in Microsoft Graphics Component allows an unauthorized attacker to execute code locally.

7.8
CVE-2026-58610

Heap-based buffer overflow in Microsoft Windows Media Foundation allows an unauthorized attacker to execute code locally

7.8
CVE-2026-58618

Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

7.8
CVE-2026-58631

Improper authorization in Windows Admin Center allows an authorized attacker to execute code locally.

7.8
CVE-2026-58635

Improper neutralization of special elements used in a command ('command injection') in Windows Narrator Braille allows a

7.8
CVE-2026-58636

Improper link resolution before file access ('link following') in Window PC Manager allows an authorized attacker to ele

7.8
CVE-2026-47290

Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.

7.8
CVE-2026-47642

Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

7.8
CVE-2026-47967

Audition is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the contex

7.8
CVE-2026-47968

Audition is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the contex

7.8
CVE-2026-48309

Audition is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the contex

7.8
CVE-2026-48365

Audition is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the contex

7.8
CVE-2026-48368

Audition is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the contex

7.8
CVE-2026-50301

Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally.

7.8
CVE-2026-50305

Use after free in Microsoft Brokering File System allows an authorized attacker to elevate privileges locally.

7.8
CVE-2026-50306

Use after free in Windows TCP/IP allows an authorized attacker to elevate privileges locally.

7.8
CVE-2026-50309

Heap-based buffer overflow in Windows NTFS allows an authorized attacker to execute code locally.

7.8
CVE-2026-50313

Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to execute code locally.

7.8
CVE-2026-50314

Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.

7.8
CVE-2026-50315

Null pointer dereference in Windows Image Acquisition allows an authorized attacker to elevate privileges locally.

7.8
CVE-2026-50317

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Operating Systems

7.8
CVE-2026-50321

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows USB Driver allows

7.8
CVE-2026-50326

Use after free in Windows Unified Consent System allows an authorized attacker to elevate privileges locally.

7.8
CVE-2026-50327

Heap-based buffer overflow in Windows Media allows an authorized attacker to execute code locally.

7.8
CVE-2026-50329

Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally.

Scan for 2026 Vulnerabilities

CyberStrike detects these CVEs across your infrastructure automatically.

Get Started