CVE Notify
19.4K subscribers
4 photos
225K links
Alert on the latest CVEs

Partner channel: @malwr
Download Telegram
🚨 CVE-2026-58609
Out-of-bounds read in Microsoft Graphics Component allows an unauthorized attacker to execute code locally.

🎖@cveNotify
🚨 CVE-2026-58610
Heap-based buffer overflow in Microsoft Windows Media Foundation allows an unauthorized attacker to execute code locally.

🎖@cveNotify
🚨 CVE-2026-58614
Out-of-bounds read in Windows Kernel allows an authorized attacker to bypass a security feature locally.

🎖@cveNotify
🚨 CVE-2026-58635
Improper neutralization of special elements used in a command ('command injection') in Windows Narrator Braille allows an authorized attacker to elevate privileges locally.

🎖@cveNotify
🚨 CVE-2026-58640
Heap-based buffer overflow in Windows NTFS allows an authorized attacker to execute code locally.

🎖@cveNotify
🚨 CVE-2026-49177
Out-of-bounds read in Windows TCP/IP allows an authorized attacker to disclose information locally.

🎖@cveNotify
🚨 CVE-2026-50302
Improper certificate validation in Windows Cryptographic Services allows an unauthorized attacker to bypass a security feature over a network.

🎖@cveNotify
🚨 CVE-2026-50304
Stack-based buffer overflow in Active Directory Federation Services allows an unauthorized attacker to deny service over a network.

🎖@cveNotify
🚨 CVE-2026-50305
Use after free in Microsoft Brokering File System allows an authorized attacker to elevate privileges locally.

🎖@cveNotify
🚨 CVE-2026-50306
Use after free in Windows TCP/IP allows an authorized attacker to elevate privileges locally.

🎖@cveNotify
🚨 CVE-2026-50309
Heap-based buffer overflow in Windows NTFS allows an authorized attacker to execute code locally.

🎖@cveNotify
🚨 CVE-2026-50310
Integer overflow or wraparound in Windows Devices Human Interface allows an authorized attacker to disclose information locally.

🎖@cveNotify
🚨 CVE-2026-50312
Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.

🎖@cveNotify
🚨 CVE-2026-50313
Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to execute code locally.

🎖@cveNotify
🚨 CVE-2026-50315
Null pointer dereference in Windows Image Acquisition allows an authorized attacker to elevate privileges locally.

🎖@cveNotify
🚨 CVE-2026-50317
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Operating Systems allows an authorized attacker to elevate privileges locally.

🎖@cveNotify
🚨 CVE-2026-50321
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows USB Driver allows an authorized attacker to elevate privileges locally.

🎖@cveNotify
🚨 CVE-2026-50322
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Runtime allows an authorized attacker to elevate privileges locally.

🎖@cveNotify
🚨 CVE-2026-50324
Loop with unreachable exit condition ('infinite loop') in Active Directory Federation Services (AD FS) allows an unauthorized attacker to deny service over a network.

🎖@cveNotify
🚨 CVE-2026-50326
Use after free in Windows Unified Consent System allows an authorized attacker to elevate privileges locally.

🎖@cveNotify
🚨 CVE-2026-50327
Heap-based buffer overflow in Windows Media allows an authorized attacker to execute code locally.

🎖@cveNotify