microsoft / windows_11_26h1
1,009 known vulnerabilities in microsoft windows_11_26h1.
| CVE | Priority | EPSS | CVSS | KEV | What |
|---|---|---|---|---|---|
| CVE-2026-50448 | Medium | 0.5% | 7.8 | Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to ex… | |
| CVE-2026-50461 | Medium | 0.5% | 7.8 | Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to ex… | |
| CVE-2026-50471 | Medium | 0.5% | 7.8 | Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to ex… | |
| CVE-2026-50655 | Medium | 0.5% | 7.8 | Heap-based buffer overflow in Windows Media allows an unauthorized attacker to e… | |
| CVE-2026-54124 | Medium | 0.5% | 7.8 | Integer overflow or wraparound in Windows Terminal allows an unauthorized attack… | |
| CVE-2026-58609 | Medium | 0.5% | 7.8 | Out-of-bounds read in Microsoft Graphics Component allows an unauthorized attack… | |
| CVE-2026-58610 | Medium | 0.5% | 7.8 | Heap-based buffer overflow in Microsoft Windows Media Foundation allows an unaut… | |
| CVE-2026-42992 | Medium | 0.5% | 7.5 | Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attac… | |
| CVE-2026-44799 | Medium | 0.5% | 7.5 | Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attac… | |
| CVE-2026-44801 | Medium | 0.5% | 7.5 | Use after free in Remote Desktop Client allows an unauthorized attacker to execu… | |
| CVE-2026-50462 | Medium | 0.5% | 7.8 | External control of file name or path in Windows Ancillary Function Driver for W… | |
| CVE-2026-48574 | Medium | 0.4% | 7.8 | Heap-based buffer overflow in Windows Media allows an unauthorized attacker to e… | |
| CVE-2026-69536 | Medium | 0.4% | 7.1 | Use after free in Windows Remote Desktop Services allows an authorized attacker … | |
| CVE-2026-42904 | Medium | 0.4% | 9.6 | Heap-based buffer overflow in Windows TCP/IP allows an unauthorized attacker to … | |
| CVE-2026-50347 | Medium | 0.4% | 7.8 | Heap-based buffer overflow in Windows Data dll allows an unauthorized attacker t… | |
| CVE-2026-42993 | Medium | 0.4% | 7.5 | Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attac… | |
| CVE-2026-61352 | Medium | 0.4% | 7.5 | Concurrent execution using shared resource with improper synchronization ('race … | |
| CVE-2026-50428 | Medium | 0.4% | 7.1 | Out-of-bounds read in Windows Container Isolation FS Filter Driver (unionfs.sys)… | |
| CVE-2026-45636 | Medium | 0.4% | 7.8 | Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to ex… | |
| CVE-2026-54999 | Medium | 0.4% | 8.8 | Concurrent execution using shared resource with improper synchronization ('race … | |
| CVE-2026-62721 | Medium | 0.4% | 7.8 | Insufficient granularity of access control in User-Mode Power Service (UMPS) all… | |
| CVE-2026-68827 | Medium | 0.4% | 8.0 | Integer underflow (wrap or wraparound) in Windows GDI+ allows an authorized atta… | |
| CVE-2026-68838 | Medium | 0.4% | 8.0 | Stack-based buffer overflow in Windows NTFS allows an authorized attacker to ele… | |
| CVE-2026-42909 | Medium | 0.4% | 7.5 | Concurrent execution using shared resource with improper synchronization ('race … | |
| CVE-2026-50697 | Medium | 0.4% | 7.8 | Exposure of sensitive information to an unauthorized actor in Windows Common Log… | |
| CVE-2026-56189 | Medium | 0.4% | 7.8 | Heap-based buffer overflow in Microsoft Windows Media Foundation allows an unaut… | |
| CVE-2026-62816 | Medium | 0.4% | 8.8 | Heap-based buffer overflow in Reliable Multicast Transport Driver (RMCAST) allow… | |
| CVE-2026-61925 | Medium | 0.4% | 7.8 | Incorrect authorization in Windows Installer allows an authorized attacker to el… | |
| CVE-2026-49791 | Medium | 0.4% | 7.1 | Improper link resolution before file access ('link following') in Windows Routin… | |
| CVE-2026-62712 | Medium | 0.4% | 7.8 | Heap-based buffer overflow in Windows Win32K allows an authorized attacker to el… | |
| CVE-2026-58613 | Medium | 0.4% | 7.8 | Use after free in Windows Cloud Files Mini Filter Driver allows an authorized at… | |
| CVE-2026-69585 | Medium | 0.4% | 7.8 | Incorrect type conversion or cast in Microsoft Windows Search Component allows a… | |
| CVE-2026-50454 | Medium | 0.4% | 7.8 | Relative path traversal in Windows User Interface Core allows an authorized atta… | |
| CVE-2026-50469 | Medium | 0.4% | 7.8 | Improper link resolution before file access ('link following') in Windows Projec… | |
| CVE-2026-49798 | Medium | 0.4% | 9.3 | Use after free in Windows Kernel allows an unauthorized attacker to elevate priv… | |
| CVE-2026-54128 | Medium | 0.4% | 8.4 | Use after free in Windows DHCP Client allows an unauthorized attacker to execute… | |
| CVE-2026-50498 | Medium | 0.4% | 7.8 | Windows Universal Disk Format File System Driver (UDFS) Elevation of Privilege V… | |
| CVE-2026-50501 | Medium | 0.4% | 7.8 | Stack-based buffer overflow in Windows Resilient File System (ReFS) allows an un… | |
| CVE-2026-58530 | Medium | 0.4% | 7.8 | Heap-based buffer overflow in Windows Resilient File System (ReFS) allows an una… | |
| CVE-2026-58542 | Medium | 0.4% | 7.8 | Heap-based buffer overflow in Windows Media allows an unauthorized attacker to e… | |
| CVE-2026-62688 | Medium | 0.4% | 7.8 | Heap-based buffer overflow in Windows MIDI Service Module allows an authorized a… | |
| CVE-2026-62698 | Medium | 0.4% | 7.8 | Numeric truncation error in Microsoft Digest Authentication allows an authorized… | |
| CVE-2026-50348 | Medium | 0.4% | 7.0 | Concurrent execution using shared resource with improper synchronization ('race … | |
| CVE-2026-50452 | Medium | 0.4% | 7.0 | Concurrent execution using shared resource with improper synchronization ('race … | |
| CVE-2026-66802 | Medium | 0.4% | 8.1 | Concurrent execution using shared resource with improper synchronization ('race … | |
| CVE-2026-49789 | Medium | 0.4% | 7.3 | Stack-based buffer overflow in Windows NTFS allows an authorized attacker to ele… | |
| CVE-2026-50482 | Medium | 0.4% | 7.3 | Heap-based buffer overflow in Windows NTFS allows an authorized attacker to exec… | |
| CVE-2026-58640 | Medium | 0.4% | 7.3 | Heap-based buffer overflow in Windows NTFS allows an authorized attacker to exec… | |
| CVE-2026-45607 | Medium | 0.4% | 8.4 | Out-of-bounds read in Windows Hyper-V allows an unauthorized attacker to execute… | |
| CVE-2026-45658 | Medium | 0.4% | 7.8 | Improper access control in Windows BitLocker allows an authorized attacker to by… |