Common Vulnerabilities and Exposures (CVE)

CVE-2026-62721

Aug 29, 2026 16:23:36 UTC

Insufficient granularity of access control in User-Mode Power Service (UMPS) allows an authorized attacker to elevate privileges locally.

CVE-2026-62717

Aug 29, 2026 16:23:35 UTC

Heap-based buffer overflow in Windows Message Queuing allows an authorized attacker to elevate privileges locally.

CVE-2026-62714

Aug 29, 2026 16:23:34 UTC

Integer underflow (wrap or wraparound) in Windows DHCP Server allows an unauthorized attacker to disclose information over an adjacent network.

CVE-2026-62720

Aug 29, 2026 16:23:34 UTC

Integer underflow (wrap or wraparound) in Windows DHCP Server allows an unauthorized attacker to disclose information over an adjacent network.

CVE-2026-62711

Aug 29, 2026 16:23:33 UTC

Use after free in Windows Win32K allows an authorized attacker to elevate privileges locally.

CVE-2026-62710

Aug 29, 2026 16:23:32 UTC

Heap-based buffer overflow in Windows Device Association Service allows an authorized attacker to elevate privileges locally.

CVE-2026-62709

Aug 29, 2026 16:23:32 UTC

Use of uninitialized resource in Windows GDI+ allows an authorized attacker to disclose information locally.

CVE-2026-62708

Aug 29, 2026 16:23:31 UTC

Use after free in Windows Kernel allows an unauthorized attacker to elevate privileges with a physical attack.

CVE-2026-62701

Aug 29, 2026 16:23:31 UTC

Use after free in Windows Telephony Service allows an authorized attacker to elevate privileges locally.

CVE-2026-62700

Aug 29, 2026 16:23:30 UTC

Heap-based buffer overflow in Windows NTFS allows an authorized attacker to elevate privileges locally.

CVE-2026-62698

Aug 29, 2026 16:23:30 UTC

Numeric truncation error in Microsoft Digest Authentication allows an authorized attacker to elevate privileges locally.

CVE-2026-61938

Aug 29, 2026 16:23:29 UTC

Use after free in Windows Installer allows an authorized attacker to elevate privileges locally.

CVE-2026-61929

Aug 29, 2026 16:23:29 UTC

Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally.

CVE-2026-61921

Aug 29, 2026 16:23:28 UTC

Out-of-bounds read in Remote Desktop Client allows an unauthorized attacker to disclose information over a network.

CVE-2026-61918

Aug 29, 2026 16:23:28 UTC

Out-of-bounds read in Remote Desktop Client allows an unauthorized attacker to disclose information over a network.