Common Vulnerabilities and Exposures (CVE)

CVE-2026-50416

Jul 22, 2026 15:33:16 UTC

Exposure of sensitive information to an unauthorized actor in Windows Win32K allows an authorized attacker to disclose information locally.

CVE-2026-50366

Jul 22, 2026 15:33:16 UTC

Null pointer dereference in Active Directory Domain Services allows an authorized attacker to deny service over a network.

CVE-2026-50404

Jul 22, 2026 15:33:15 UTC

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Media allows an authorized attacker to elevate privileges locally.

CVE-2026-50340

Jul 22, 2026 15:33:14 UTC

Use after free in Windows Runtime allows an authorized attacker to elevate privileges over a network.

CVE-2026-50317

Jul 22, 2026 15:33:13 UTC

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Operating Systems allows an authorized attacker to elevate privileges locally.

CVE-2026-50361

Jul 22, 2026 15:33:12 UTC

Double free in Microsoft Brokering File System allows an authorized attacker to elevate privileges locally.

CVE-2026-50375

Jul 22, 2026 15:33:08 UTC

Heap-based buffer overflow in Windows DirectX allows an authorized attacker to elevate privileges locally.

CVE-2026-50335

Jul 22, 2026 15:33:08 UTC

Improper access control in Windows Operating Systems allows an authorized attacker to elevate privileges locally.

CVE-2026-50322

Jul 22, 2026 15:33:07 UTC

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Runtime allows an authorized attacker to elevate privileges locally.

CVE-2026-50345

Jul 22, 2026 15:33:07 UTC

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Runtime allows an authorized attacker to elevate privileges locally.

CVE-2026-50348

Jul 22, 2026 15:33:06 UTC

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Runtime allows an unauthorized attacker to elevate privileges over a network.

CVE-2026-50452

Jul 22, 2026 15:33:05 UTC

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Runtime allows an unauthorized attacker to elevate privileges over a network.

CVE-2026-50390

Jul 22, 2026 15:33:05 UTC

Access of resource using incompatible type ('type confusion') in Windows Kernel allows an authorized attacker to elevate privileges locally.

CVE-2026-50377

Jul 22, 2026 15:33:04 UTC

Out-of-bounds read in Windows Kernel allows an authorized attacker to elevate privileges locally.

CVE-2026-50357

Jul 22, 2026 15:33:04 UTC

Numeric truncation error in Windows Resilient File System (ReFS) allows an authorized attacker to execute code locally.