CVE Notify
19.7K subscribers
4 photos
286K links
Alert on the latest CVEs

Partner channel: @malwr
Download Telegram
🚨 CVE-2026-62795
Use after free in Windows LDAP - Lightweight Directory Access Protocol allows an unauthorized attacker to execute code over a network.

🎖@cveNotify
🚨 CVE-2026-62797
Heap-based buffer overflow in Windows NTFS allows an authorized attacker to elevate privileges locally.

🎖@cveNotify
🚨 CVE-2026-62799
Heap-based buffer overflow in Windows SMB Client allows an authorized attacker to elevate privileges locally.

🎖@cveNotify
🚨 CVE-2026-62800
Heap-based buffer overflow in Windows SMB Server allows an authorized attacker to execute code over a network.

🎖@cveNotify
🚨 CVE-2026-62803
Improper link resolution before file access ('link following') in Windows DHCP Server allows an authorized attacker to elevate privileges locally.

🎖@cveNotify
🚨 CVE-2026-62807
Improper link resolution before file access ('link following') in Windows DHCP Server allows an authorized attacker to elevate privileges locally.

🎖@cveNotify
🚨 CVE-2026-62811
Heap-based buffer overflow in Windows HTTP.sys allows an authorized attacker to elevate privileges locally.

🎖@cveNotify
🚨 CVE-2026-62812
Improper link resolution before file access ('link following') in Windows DHCP Server allows an authorized attacker to elevate privileges locally.

🎖@cveNotify
🚨 CVE-2026-62815
Use after free in Microsoft QUIC allows an unauthorized attacker to execute code over a network.

🎖@cveNotify
🚨 CVE-2026-62816
Heap-based buffer overflow in Reliable Multicast Transport Driver (RMCAST) allows an unauthorized attacker to execute code over an adjacent network.

🎖@cveNotify
🚨 CVE-2026-62817
Out-of-bounds write in Windows DNS allows an unauthorized attacker to execute code over an adjacent network.

🎖@cveNotify
🚨 CVE-2026-62818
Use after free in Active Directory Certificate Services (AD CS) allows an authorized attacker to execute code over a network.

🎖@cveNotify
🚨 CVE-2026-62819
Remote Code Execution in Windows Routing and Remote Access Service (RRAS) allows attacker to gain an unauthorized access to victim's machine

🎖@cveNotify
🚨 CVE-2026-62820
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows DNS allows an unauthorized attacker to execute code over a network.

🎖@cveNotify
🚨 CVE-2026-62822
Integer overflow or wraparound in Windows GDI+ allows an unauthorized attacker to execute code over a network.

🎖@cveNotify
🚨 CVE-2026-62823
Heap-based buffer overflow in Windows DHCP Server allows an unauthorized attacker to execute code over an adjacent network.

🎖@cveNotify
🚨 CVE-2026-62824
Stack-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code over a network.

🎖@cveNotify
🚨 CVE-2026-62827
Improper authentication in Microsoft Office SharePoint allows an authorized attacker to elevate privileges over a network.

🎖@cveNotify
🚨 CVE-2026-62832
Improper link resolution before file access ('link following') in Windows User Profile Service allows an authorized attacker to elevate privileges locally.

🎖@cveNotify
🚨 CVE-2026-62869
Insufficient verification of data authenticity in Azure Entra ID allows an authorized attacker to perform spoofing over a network.

🎖@cveNotify
🚨 CVE-2026-62872
Incorrect authorization in .NET Framework allows an authorized attacker to elevate privileges over a network.

🎖@cveNotify