microsoft / windows
990 known vulnerabilities in microsoft windows.
| CVE | Priority | EPSS | CVSS | KEV | What |
|---|---|---|---|---|---|
| CVE-2026-34687 | Medium | 0.2% | 7.8 | Illustrator versions 29.8.6, 30.3 and earlier are affected by a Heap-based Buffe… | |
| CVE-2026-47916 | Medium | 0.2% | 7.8 | Acrobat Reader versions 24.001.30365, 26.001.21651 and earlier are affected by a… | |
| CVE-2026-81992 | Medium | 0.2% | 7.8 | Acrobat Reader is affected by a Heap-based Buffer Overflow vulnerability that co… | |
| CVE-2026-11058 | Medium | 0.2% | 7.5 | Integer overflow in CredentialProvider in Google Chrome on Windows prior to 149.… | |
| CVE-2026-11154 | Medium | 0.2% | 7.5 | Use after free in Dawn in Google Chrome prior to 149.0.7827.53 allowed a remote … | |
| CVE-2026-76037 | Medium | 0.2% | 8.4 | Link following in CredentialProvider in Google Chrome on on Windows prior to 151… | |
| CVE-2026-9946 | Medium | 0.2% | 8.3 | Use after free in ANGLE in Google Chrome prior to 148.0.7778.216 allowed a remot… | |
| CVE-2026-9974 | Medium | 0.2% | 8.3 | Out of bounds write in GPU in Google Chrome prior to 148.0.7778.216 allowed a re… | |
| CVE-2026-11201 | Medium | 0.2% | 8.8 | Use after free in ServiceWorker in Google Chrome prior to 149.0.7827.53 allowed … | |
| CVE-2026-27287 | Medium | 0.2% | 7.8 | InCopy versions 20.5.2, 21.2 and earlier are affected by an out-of-bounds read v… | |
| CVE-2026-5913 | Medium | 0.2% | 8.1 | Out of bounds read in Blink in Google Chrome prior to 147.0.7727.55 allowed a re… | |
| CVE-2026-11265 | Medium | 0.2% | 7.5 | Inappropriate implementation in Autofill in Google Chrome prior to 149.0.7827.53… | |
| CVE-2026-11697 | Medium | 0.2% | 9.6 | Insufficient validation of untrusted input in UI in Google Chrome prior to 149.0… | |
| CVE-2026-11293 | Medium | 0.2% | 9.6 | Use after free in Input in Google Chrome prior to 149.0.7827.53 allowed a remote… | |
| CVE-2026-11185 | Medium | 0.2% | 8.1 | Use after free in V8 in Google Chrome prior to 149.0.7827.53 allowed an attacker… | |
| CVE-2026-71399 | Medium | 0.2% | 7.8 | Adobe XD is affected by a Buffer Overflow vulnerability that could result in arb… | |
| CVE-2026-81973 | Medium | 0.2% | 7.8 | Acrobat Reader is affected by a Use After Free vulnerability that could result i… | |
| CVE-2026-81976 | Medium | 0.2% | 7.8 | Acrobat Reader is affected by a Use After Free vulnerability that could result i… | |
| CVE-2026-81985 | Medium | 0.2% | 7.8 | Acrobat Reader is affected by a Use After Free vulnerability that could result i… | |
| CVE-2026-81986 | Medium | 0.2% | 7.8 | Acrobat Reader is affected by a Use After Free vulnerability that could result i… | |
| CVE-2026-81988 | Medium | 0.2% | 7.8 | Acrobat Reader is affected by a Use After Free vulnerability that could result i… | |
| CVE-2026-81989 | Medium | 0.2% | 7.8 | Acrobat Reader is affected by a Use After Free vulnerability that could result i… | |
| CVE-2026-8856 | Medium | 0.2% | 7.7 | IBM HTTP Server 8.5, and 9.0 is vulnerable to denial of service in configuration… | |
| CVE-2026-11213 | Medium | 0.2% | 9.6 | Insufficient validation of untrusted input in Reading Mode in Google Chrome prio… | |
| CVE-2026-5908 | Medium | 0.2% | 8.8 | Integer overflow in Media in Google Chrome prior to 147.0.7727.55 allowed a remo… | |
| CVE-2026-5909 | Medium | 0.2% | 8.8 | Integer overflow in Media in Google Chrome prior to 147.0.7727.55 allowed a remo… | |
| CVE-2026-5910 | Medium | 0.2% | 8.8 | Integer overflow in Media in Google Chrome prior to 147.0.7727.55 allowed a remo… | |
| CVE-2026-27293 | Medium | 0.2% | 7.8 | Adobe Framemaker versions 2022.8 and earlier are affected by a Heap-based Buffer… | |
| CVE-2026-34618 | Medium | 0.2% | 7.8 | Illustrator versions 30.2, 29.8.5 and earlier are affected by an out-of-bounds w… | |
| CVE-2026-5915 | Medium | 0.2% | 8.1 | Insufficient validation of untrusted input in WebML in Google Chrome prior to 14… | |
| CVE-2026-48441 | Medium | 0.2% | 8.6 | Lightroom Classic is affected by an Improper Limitation of a Pathname to a Restr… | |
| CVE-2026-21318 | Medium | 0.2% | 7.8 | After Effects versions 25.6 and earlier are affected by an out-of-bounds write v… | |
| CVE-2026-21327 | Medium | 0.2% | 7.8 | After Effects versions 25.6 and earlier are affected by an out-of-bounds write v… | |
| CVE-2026-21328 | Medium | 0.2% | 7.8 | After Effects versions 25.6 and earlier are affected by an out-of-bounds write v… | |
| CVE-2026-10019 | Medium | 0.2% | 8.8 | Integer overflow in ANGLE in Google Chrome prior to 148.0.7778.216 allowed a rem… | |
| CVE-2026-79907 | Medium | 0.2% | 7.8 | Acrobat Reader is affected by a Double Free vulnerability that could result in a… | |
| CVE-2026-80161 | Medium | 0.2% | 7.8 | Acrobat Reader is affected by an Access of Resource Using Incompatible Type ('Ty… | |
| CVE-2026-81987 | Medium | 0.2% | 7.8 | Acrobat Reader is affected by an Integer Overflow or Wraparound vulnerability th… | |
| CVE-2026-5907 | Medium | 0.2% | 8.1 | Insufficient data validation in Media in Google Chrome prior to 147.0.7727.55 al… | |
| CVE-2026-10926 | Medium | 0.2% | 8.8 | Use after free in Cast in Google Chrome prior to 149.0.7827.53 allowed an attack… | |
| CVE-2026-11304 | Medium | 0.2% | 8.8 | Use after free in PDFium in Google Chrome prior to 149.0.7827.53 allowed a remot… | |
| CVE-2026-10000 | Medium | 0.2% | 8.3 | Use after free in Passwords in Google Chrome on Windows prior to 148.0.7778.216 … | |
| CVE-2026-11693 | Medium | 0.2% | 8.1 | Inappropriate implementation in Plugins in Google Chrome prior to 149.0.7827.103… | |
| CVE-2026-27292 | Medium | 0.2% | 7.8 | Adobe Framemaker versions 2022.8 and earlier are affected by a Use After Free vu… | |
| CVE-2026-75631 | Medium | 0.2% | 7.8 | Photoshop Desktop is affected by an out-of-bounds write vulnerability that could… | |
| CVE-2026-82005 | Medium | 0.2% | 7.8 | Photoshop Desktop is affected by an out-of-bounds write vulnerability that could… | |
| CVE-2026-9982 | Medium | 0.2% | 8.3 | Insufficient validation of untrusted input in ANGLE in Google Chrome prior to 14… | |
| CVE-2026-21342 | Medium | 0.2% | 7.8 | Substance3D - Stager versions 3.1.6 and earlier are affected by an out-of-bounds… | |
| CVE-2026-9994 | Medium | 0.2% | 8.3 | Use after free in Core in Google Chrome on Windows prior to 148.0.7778.216 allow… | |
| CVE-2026-11236 | Medium | 0.2% | 8.3 | Insufficient policy enforcement in Web Bluetooth in Google Chrome prior to 149.0… |