🚨 CVE-2026-57104
Improper neutralization of input during web page generation ('cross-site scripting') in Azure Storage Explorer allows an unauthorized attacker to elevate privileges over a network.
🎖@cveNotify
Improper neutralization of input during web page generation ('cross-site scripting') in Azure Storage Explorer allows an unauthorized attacker to elevate privileges over a network.
🎖@cveNotify
🚨 CVE-2026-59122
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Telephony Service allows an authorized attacker to elevate privileges locally.
🎖@cveNotify
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Telephony Service allows an authorized attacker to elevate privileges locally.
🎖@cveNotify
🚨 CVE-2026-59124
Deserialization of untrusted data in Microsoft High Performance Computing (HPC) Pack allows an unauthorized attacker to execute code over a network.
🎖@cveNotify
Deserialization of untrusted data in Microsoft High Performance Computing (HPC) Pack allows an unauthorized attacker to execute code over a network.
🎖@cveNotify
🚨 CVE-2026-59125
Use after free in Virtual Hard Disk (VHD) Miniport Driver allows an authorized attacker to elevate privileges locally.
🎖@cveNotify
Use after free in Virtual Hard Disk (VHD) Miniport Driver allows an authorized attacker to elevate privileges locally.
🎖@cveNotify
🚨 CVE-2026-59127
Integer overflow or wraparound in Windows Installer allows an authorized attacker to elevate privileges locally.
🎖@cveNotify
Integer overflow or wraparound in Windows Installer allows an authorized attacker to elevate privileges locally.
🎖@cveNotify
🚨 CVE-2026-59128
Out-of-bounds read in Windows Encrypting File System (EFS) allows an authorized attacker to disclose information locally.
🎖@cveNotify
Out-of-bounds read in Windows Encrypting File System (EFS) allows an authorized attacker to disclose information locally.
🎖@cveNotify
🚨 CVE-2026-59130
No cwe for this issue in AMD Zen allows an authorized attacker to disclose information locally.
🎖@cveNotify
No cwe for this issue in AMD Zen allows an authorized attacker to disclose information locally.
🎖@cveNotify
🚨 CVE-2026-59132
Null pointer dereference in Windows TCP/IP allows an unauthorized attacker to deny service over a network.
🎖@cveNotify
Null pointer dereference in Windows TCP/IP allows an unauthorized attacker to deny service over a network.
🎖@cveNotify
🚨 CVE-2026-59134
Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code over a network.
🎖@cveNotify
Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code over a network.
🎖@cveNotify
🚨 CVE-2026-59135
Weak authentication in Microsoft Windows Search Component allows an authorized attacker to disclose information locally.
🎖@cveNotify
Weak authentication in Microsoft Windows Search Component allows an authorized attacker to disclose information locally.
🎖@cveNotify
🚨 CVE-2026-59136
Use of uninitialized resource in Microsoft COM for Windows allows an authorized attacker to disclose information locally.
🎖@cveNotify
Use of uninitialized resource in Microsoft COM for Windows allows an authorized attacker to disclose information locally.
🎖@cveNotify
🚨 CVE-2026-59137
Use of uninitialized resource in Windows Event Logging Service allows an authorized attacker to disclose information locally.
🎖@cveNotify
Use of uninitialized resource in Windows Event Logging Service allows an authorized attacker to disclose information locally.
🎖@cveNotify
🚨 CVE-2026-59138
Null pointer dereference in Microsoft Remote Registry Service allows an authorized attacker to deny service over a network.
🎖@cveNotify
Null pointer dereference in Microsoft Remote Registry Service allows an authorized attacker to deny service over a network.
🎖@cveNotify
🚨 CVE-2026-61345
Null pointer dereference in Microsoft Remote Registry Service allows an authorized attacker to deny service over a network.
🎖@cveNotify
Null pointer dereference in Microsoft Remote Registry Service allows an authorized attacker to deny service over a network.
🎖@cveNotify
🚨 CVE-2026-61346
Use after free in Windows Graphics Kernel allows an authorized attacker to elevate privileges locally.
🎖@cveNotify
Use after free in Windows Graphics Kernel allows an authorized attacker to elevate privileges locally.
🎖@cveNotify
🚨 CVE-2026-61347
Buffer over-read in Windows Event Logging Service allows an authorized attacker to disclose information locally.
🎖@cveNotify
Buffer over-read in Windows Event Logging Service allows an authorized attacker to disclose information locally.
🎖@cveNotify
🚨 CVE-2026-61348
Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.
🎖@cveNotify
Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.
🎖@cveNotify
🚨 CVE-2026-61349
Use after free in Windows Work Folder Service allows an authorized attacker to elevate privileges locally.
🎖@cveNotify
Use after free in Windows Work Folder Service allows an authorized attacker to elevate privileges locally.
🎖@cveNotify
🚨 CVE-2026-61350
Buffer over-read in Windows NTFS allows an unauthorized attacker to disclose information with a physical attack.
🎖@cveNotify
Buffer over-read in Windows NTFS allows an unauthorized attacker to disclose information with a physical attack.
🎖@cveNotify
🚨 CVE-2026-61352
Concurrent execution using shared resource with improper synchronization ('race condition') in Remote Desktop Client allows an unauthorized attacker to execute code over a network.
🎖@cveNotify
Concurrent execution using shared resource with improper synchronization ('race condition') in Remote Desktop Client allows an unauthorized attacker to execute code over a network.
🎖@cveNotify
🚨 CVE-2026-61353
Heap-based buffer overflow in Windows Telephony Service allows an authorized attacker to elevate privileges locally.
🎖@cveNotify
Heap-based buffer overflow in Windows Telephony Service allows an authorized attacker to elevate privileges locally.
🎖@cveNotify