Common Vulnerabilities and Exposures (CVE)

CVE-2026-20824

Feb 13, 2026 20:40:09 UTC

Protection mechanism failure in Windows Remote Assistance allows an unauthorized attacker to bypass a security feature locally.

CVE-2026-20823

Feb 13, 2026 20:40:09 UTC

Exposure of sensitive information to an unauthorized actor in Windows File Explorer allows an authorized attacker to disclose information locally.

CVE-2026-20822

Feb 13, 2026 20:40:08 UTC

Use after free in Microsoft Graphics Component allows an authorized attacker to elevate privileges locally.

CVE-2026-20821

Feb 13, 2026 20:40:08 UTC

Exposure of sensitive information to an unauthorized actor in Windows Remote Procedure Call allows an unauthorized attacker to disclose information locally.

CVE-2026-20820

Feb 13, 2026 20:40:07 UTC

Heap-based buffer overflow in Windows Common Log File System Driver allows an authorized attacker to elevate privileges locally.

CVE-2026-20819

Feb 13, 2026 20:40:07 UTC

Untrusted pointer dereference in Windows Virtualization-Based Security (VBS) Enclave allows an authorized attacker to disclose information locally.

CVE-2026-20818

Feb 13, 2026 20:40:06 UTC

Insertion of sensitive information into log file in Windows Kernel allows an unauthorized attacker to disclose information locally.

CVE-2026-20817

Feb 13, 2026 20:40:06 UTC

Improper handling of insufficient permissions or privileges in Windows Error Reporting allows an authorized attacker to elevate privileges locally.

CVE-2026-20816

Feb 13, 2026 20:40:05 UTC

Time-of-check time-of-use (toctou) race condition in Windows Installer allows an authorized attacker to elevate privileges locally.

CVE-2026-20815

Feb 13, 2026 20:40:04 UTC

Concurrent execution using shared resource with improper synchronization ('race condition') in Capability Access Management Service (camsvc) allows an authorized attacker to elevate privileges locally.

CVE-2026-20814

Feb 13, 2026 20:40:04 UTC

Concurrent execution using shared resource with improper synchronization ('race condition') in Graphics Kernel allows an authorized attacker to elevate privileges locally.

CVE-2026-20812

Feb 13, 2026 20:40:03 UTC

Improper input validation in Windows LDAP - Lightweight Directory Access Protocol allows an authorized attacker to perform tampering over a network.

CVE-2026-20811

Feb 13, 2026 20:40:03 UTC

Access of resource using incompatible type ('type confusion') in Windows Win32K - ICOMP allows an authorized attacker to elevate privileges locally.

CVE-2026-20810

Feb 13, 2026 20:40:02 UTC

Free of memory not on the heap in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.

CVE-2026-20809

Feb 13, 2026 20:40:01 UTC

Time-of-check time-of-use (toctou) race condition in Windows Kernel Memory allows an authorized attacker to elevate privileges locally.