Common Vulnerabilities and Exposures (CVE)

CVE-2026-56187

Jul 22, 2026 20:33:59 UTC

Use after free in Windows MIDI Service Module allows an authorized attacker to elevate privileges locally.

CVE-2026-56184

Jul 22, 2026 20:33:58 UTC

Exposure of sensitive information to an unauthorized actor in Windows Win32K allows an authorized attacker to disclose information locally.

CVE-2026-56190

Jul 22, 2026 20:33:58 UTC

Use of uninitialized resource in Windows RDP allows an unauthorized attacker to execute code over a network.

CVE-2026-56183

Jul 22, 2026 20:33:57 UTC

Use after free in Windows MIDI Service Module allows an authorized attacker to elevate privileges locally.

CVE-2026-56182

Jul 22, 2026 20:33:57 UTC

Integer overflow or wraparound in Windows NTFS allows an authorized attacker to elevate privileges locally.

CVE-2026-56175

Jul 22, 2026 20:33:56 UTC

Heap-based buffer overflow in Windows NTFS allows an authorized attacker to elevate privileges locally.

CVE-2026-56176

Jul 22, 2026 20:33:56 UTC

Out-of-bounds read in Windows Win32K - GRFX allows an authorized attacker to elevate privileges locally.

CVE-2026-56173

Jul 22, 2026 20:33:55 UTC

Use after free in Windows WebView allows an authorized attacker to elevate privileges locally.

CVE-2026-56168

Jul 22, 2026 20:33:55 UTC

Null pointer dereference in Windows SMB Server allows an authorized attacker to deny service over a network.

CVE-2026-50359

Jul 22, 2026 20:33:54 UTC

Use after free in Microsoft XML Core Services allows an authorized attacker to elevate privileges locally.

CVE-2026-56159

Jul 22, 2026 20:33:53 UTC

Heap-based buffer overflow in Windows DHCP Server allows an unauthorized attacker to execute code over a network.

CVE-2026-41109

Jul 22, 2026 20:33:53 UTC

Improper neutralization of special elements in output used by a downstream component ('injection') in GitHub Copilot and Visual Studio allows an unauthorized attacker to bypass a security feature over a network.

CVE-2026-56157

Jul 22, 2026 20:33:52 UTC

Improper access control in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.

CVE-2026-56156

Jul 22, 2026 20:33:52 UTC

Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

CVE-2026-55949

Jul 22, 2026 20:33:51 UTC

Use of uninitialized resource in Microsoft Office Excel allows an unauthorized attacker to execute code locally.