CVE Notify
19.7K subscribers
4 photos
301K links
Alert on the latest CVEs

Partner channel: @malwr
Download Telegram
🚨 CVE-2026-69286
Out-of-bounds read in Windows USB Audio Class driver (usbaudio.sys) allows an authorized attacker to disclose information locally.

🎖@cveNotify
🚨 CVE-2026-69288
Use of uninitialized resource in Windows GDI+ allows an authorized attacker to disclose information locally.

🎖@cveNotify
🚨 CVE-2026-69294
Generation of error message containing sensitive information in Microsoft COM for Windows allows an authorized attacker to disclose information locally.

🎖@cveNotify
🚨 CVE-2026-69308
Out-of-bounds read in Microsoft Standard XPS allows an authorized attacker to disclose information locally.

🎖@cveNotify
🚨 CVE-2026-69315
Exposure of sensitive system information to an unauthorized control sphere in Windows License Manager allows an authorized attacker to disclose information locally.

🎖@cveNotify
🚨 CVE-2026-69317
Out-of-bounds read in Remote Desktop Client allows an authorized attacker to disclose information over a network.

🎖@cveNotify
🚨 CVE-2026-69318
Out-of-bounds read in Windows Imaging Component allows an authorized attacker to disclose information locally.

🎖@cveNotify
🚨 CVE-2026-69329
Out-of-bounds read in BranchCache allows an unauthorized attacker to deny service over a network.

🎖@cveNotify
🚨 CVE-2026-69339
Exposure of sensitive system information to an unauthorized control sphere in Windows MIDI Service Module allows an authorized attacker to disclose information locally.

🎖@cveNotify
🚨 CVE-2026-69342
Out-of-bounds read in Windows DHCP Server allows an unauthorized attacker to deny service over a network.

🎖@cveNotify
🚨 CVE-2026-69345
Out-of-bounds read in Microsoft Standard XPS allows an authorized attacker to disclose information locally.

🎖@cveNotify
🚨 CVE-2026-69349
Use of uninitialized resource in Windows Management Instrumentation allows an authorized attacker to disclose information over a network.

🎖@cveNotify
🚨 CVE-2026-69367
Out-of-bounds read in Microsoft Standard XPS allows an authorized attacker to disclose information locally.

🎖@cveNotify
🚨 CVE-2026-69372
Out-of-bounds read in Windows Network File System allows an authorized attacker to deny service over a network.

🎖@cveNotify
🚨 CVE-2026-69374
Allocation of resources without limits or throttling in Windows SMB Server allows an authorized attacker to deny service over a network.

🎖@cveNotify
🚨 CVE-2026-69378
Uncontrolled recursion in Microsoft Exchange Server allows an unauthorized attacker to deny service over a network.

🎖@cveNotify
🚨 CVE-2026-69382
Use of a broken or risky cryptographic algorithm in Microsoft Exchange Server allows an unauthorized attacker to disclose information over a network.

🎖@cveNotify
🚨 CVE-2026-69384
Null pointer dereference in Virtual Hard Disk (VHD) Miniport Driver allows an unauthorized attacker to deny service locally.

🎖@cveNotify
🚨 CVE-2026-69390
Out-of-bounds read in Windows Spaceport.sys allows an authorized attacker to disclose information locally.

🎖@cveNotify
🚨 CVE-2026-69405
Missing release of memory after effective lifetime in Windows DHCP Server allows an authorized attacker to deny service over an adjacent network.

🎖@cveNotify
🚨 CVE-2026-69416
Buffer over-read in Windows DHCP Server allows an authorized attacker to deny service over an adjacent network.

🎖@cveNotify