Common Vulnerabilities and Exposures (CVE)

CVE-2026-56647

Jul 22, 2026 20:34:08 UTC

Integer overflow or wraparound in Windows Remote Access Service Infrastructure allows an authorized attacker to elevate privileges over a network.

CVE-2026-56194

Jul 22, 2026 20:34:07 UTC

Heap-based buffer overflow in Windows Network File System allows an authorized attacker to elevate privileges over a network.

CVE-2026-54124

Jul 22, 2026 20:34:06 UTC

Integer overflow or wraparound in Windows Terminal allows an unauthorized attacker to execute code locally.

CVE-2026-56644

Jul 22, 2026 20:34:06 UTC

Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally.

CVE-2026-56643

Jul 22, 2026 20:34:05 UTC

Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally.

CVE-2026-56642

Jul 22, 2026 20:34:05 UTC

Stack-based buffer overflow in Microsoft Fabric Data Warehouse allows an authorized attacker to execute code over a network.

CVE-2026-56178

Jul 22, 2026 20:34:04 UTC

Time-of-check time-of-use (toctou) race condition in Microsoft Defender for Endpoint allows an authorized attacker to elevate privileges locally.

CVE-2026-56197

Jul 22, 2026 20:34:04 UTC

Improper neutralization of special elements used in a command ('command injection') in Windows Admin Center allows an authorized attacker to execute code over a network.

CVE-2026-56196

Jul 22, 2026 20:34:03 UTC

Relative path traversal in Windows Admin Center allows an authorized attacker to execute code over a network.

CVE-2026-56195

Jul 22, 2026 20:34:03 UTC

Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally.

CVE-2026-56192

Jul 22, 2026 20:34:02 UTC

Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally.

CVE-2026-50665

Jul 22, 2026 20:34:01 UTC

Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally.

CVE-2026-56189

Jul 22, 2026 20:34:01 UTC

Heap-based buffer overflow in Microsoft Windows Media Foundation allows an unauthorized attacker to execute code locally.

CVE-2026-56188

Jul 22, 2026 20:34:00 UTC

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Server Network driver allows an unauthorized attacker to execute code over a network.

CVE-2026-56186

Jul 22, 2026 20:34:00 UTC

Out-of-bounds read in Windows Schannel allows an authorized attacker to disclose information over a network.