microsoft / windows_11_26h1
1,009 known vulnerabilities in microsoft windows_11_26h1.
| CVE | Priority | EPSS | CVSS | KEV | What |
|---|---|---|---|---|---|
| CVE-2026-62727 | Medium | 0.2% | 7.0 | Concurrent execution using shared resource with improper synchronization ('race … | |
| CVE-2026-45596 | Medium | 0.2% | 7.0 | Use after free in Windows Ancillary Function Driver for WinSock allows an author… | |
| CVE-2026-45598 | Medium | 0.2% | 7.0 | Concurrent execution using shared resource with improper synchronization ('race … | |
| CVE-2026-45601 | Medium | 0.2% | 7.0 | Concurrent execution using shared resource with improper synchronization ('race … | |
| CVE-2026-45603 | Medium | 0.2% | 7.0 | Concurrent execution using shared resource with improper synchronization ('race … | |
| CVE-2026-33100 | Medium | 0.2% | 7.0 | Use after free in Windows Ancillary Function Driver for WinSock allows an author… | |
| CVE-2026-42991 | Medium | 0.2% | 7.8 | Concurrent execution using shared resource with improper synchronization ('race … | |
| CVE-2026-62908 | Medium | 0.2% | 7.0 | Concurrent execution using shared resource with improper synchronization ('race … | |
| CVE-2026-68840 | Medium | 0.2% | 7.0 | Concurrent execution using shared resource with improper synchronization ('race … | |
| CVE-2026-77894 | Medium | 0.2% | 7.0 | Concurrent execution using shared resource with improper synchronization ('race … | |
| CVE-2026-50507 | Low | 5.0% | 6.8 | Missing authentication for critical function in Windows BitLocker allows an unau… | |
| CVE-2026-33829 | Low | 3.4% | 4.3 | Exposure of sensitive information to an unauthorized actor in Windows Snipping T… | |
| CVE-2026-45585 | Low | 1.4% | 6.8 | Microsoft is aware of a security feature bypass vulnerability in Windows publicl… | |
| CVE-2026-44806 | Low | 1.2% | 5.3 | Missing release of memory after effective lifetime in Windows Cryptographic Serv… | |
| CVE-2026-49799 | Low | 1.1% | 6.5 | Uncontrolled resource consumption in Windows Local Security Authority Subsystem … | |
| CVE-2026-50366 | Low | 1.1% | 6.5 | Null pointer dereference in Active Directory Domain Services allows an authorize… | |
| CVE-2026-56168 | Low | 1.1% | 6.5 | Null pointer dereference in Windows SMB Server allows an authorized attacker to … | |
| CVE-2026-57976 | Low | 1.1% | 6.5 | Null pointer dereference in Active Directory Domain Services allows an authorize… | |
| CVE-2026-69374 | Low | 1.1% | 6.5 | Allocation of resources without limits or throttling in Windows SMB Server allow… | |
| CVE-2026-59138 | Low | 1.0% | 6.5 | Null pointer dereference in Microsoft Remote Registry Service allows an authoriz… | |
| CVE-2026-61345 | Low | 1.0% | 6.5 | Null pointer dereference in Microsoft Remote Registry Service allows an authoriz… | |
| CVE-2026-70019 | Low | 1.0% | 6.5 | Windows hard link in Windows Compressed Folder allows an unauthorized attacker t… | |
| CVE-2026-57982 | Low | 1.0% | 6.5 | Use of uninitialized resource in Windows RDP allows an authorized attacker to di… | |
| CVE-2026-69723 | Low | 1.0% | 5.7 | Exposure of sensitive system information to an unauthorized control sphere in Wi… | |
| CVE-2026-50432 | Low | 1.0% | 5.3 | Use after free in Windows Virtual Filtering Platform (VFP) allows an authorized … | |
| CVE-2026-62702 | Low | 0.9% | 6.8 | Null pointer dereference in Windows Graphics Kernel allows an unauthorized attac… | |
| CVE-2026-50376 | Low | 0.9% | 6.5 | Use of uninitialized resource in Windows RDP allows an unauthorized attacker to … | |
| CVE-2026-50445 | Low | 0.9% | 6.5 | Buffer over-read in Windows RDP allows an unauthorized attacker to disclose info… | |
| CVE-2026-50497 | Low | 0.9% | 6.5 | Off-by-one error in Windows Remote Desktop Protocol allows an unauthorized attac… | |
| CVE-2026-50504 | Low | 0.9% | 6.5 | Buffer over-read in Remote Desktop Client allows an unauthorized attacker to dis… | |
| CVE-2026-54126 | Low | 0.9% | 6.5 | Out-of-bounds read in Windows RDP allows an unauthorized attacker to disclose in… | |
| CVE-2026-55003 | Low | 0.9% | 6.5 | Use of uninitialized resource in Windows RDP allows an unauthorized attacker to … | |
| CVE-2026-57979 | Low | 0.9% | 6.5 | Out-of-bounds read in Windows RDP allows an unauthorized attacker to disclose in… | |
| CVE-2026-58533 | Low | 0.9% | 6.5 | Use of uninitialized resource in Windows RDP allows an unauthorized attacker to … | |
| CVE-2026-58535 | Low | 0.9% | 6.5 | Use of uninitialized resource in Windows RDP allows an unauthorized attacker to … | |
| CVE-2026-58539 | Low | 0.9% | 6.5 | Out-of-bounds read in Windows RDP allows an unauthorized attacker to disclose in… | |
| CVE-2026-58546 | Low | 0.9% | 6.5 | Use of uninitialized resource in Windows RDP allows an unauthorized attacker to … | |
| CVE-2026-78453 | Low | 0.9% | 6.5 | Integer underflow (wrap or wraparound) in Microsoft Windows SCSI Class System Fi… | |
| CVE-2026-34348 | Low | 0.9% | 6.5 | Protection mechanism failure in Windows Event Logging Service allows an authoriz… | |
| CVE-2026-42903 | Low | 0.9% | 6.5 | Null pointer dereference in Windows Kerberos allows an authorized attacker to de… | |
| CVE-2026-69591 | Low | 0.9% | 5.7 | Out-of-bounds read in Windows NTFS allows an authorized attacker to disclose inf… | |
| CVE-2026-69552 | Low | 0.9% | 5.7 | Generation of error message containing sensitive information in Windows Print Sp… | |
| CVE-2026-69572 | Low | 0.9% | 5.7 | Out-of-bounds read in Windows SMB Client allows an authorized attacker to disclo… | |
| CVE-2026-61918 | Low | 0.9% | 6.5 | Out-of-bounds read in Remote Desktop Client allows an unauthorized attacker to d… | |
| CVE-2026-62782 | Low | 0.9% | 6.5 | Out-of-bounds read in Windows SMB Client allows an unauthorized attacker to disc… | |
| CVE-2026-50415 | Low | 0.9% | 5.3 | Exposure of sensitive information to an unauthorized actor in Windows Media allo… | |
| CVE-2026-69569 | Low | 0.9% | 5.7 | Untrusted pointer dereference in Windows Print Spooler Components allows an auth… | |
| CVE-2026-68874 | Low | 0.8% | 5.7 | Out-of-bounds read in Windows Program Compatibility Assistant Service allows an … | |
| CVE-2026-69349 | Low | 0.8% | 5.7 | Use of uninitialized resource in Windows Management Instrumentation allows an au… | |
| CVE-2026-69507 | Low | 0.8% | 5.7 | Insertion of sensitive information into externally-accessible file or directory … |