Common Vulnerabilities and Exposures (CVE)

CVE-2026-50458

Aug 31, 2026 15:27:44 UTC

Use after free in Microsoft Brokering File System allows an authorized attacker to elevate privileges locally.

CVE-2026-50415

Aug 31, 2026 15:27:43 UTC

Exposure of sensitive information to an unauthorized actor in Windows Media allows an unauthorized attacker to disclose information over a network.

CVE-2026-50394

Aug 31, 2026 15:27:43 UTC

Exposure of sensitive information to an unauthorized actor in Windows Media allows an authorized attacker to disclose information locally.

CVE-2026-50444

Aug 31, 2026 15:27:42 UTC

Missing authentication for critical function in Windows Server Update Service allows an authorized attacker to elevate privileges over a network.

CVE-2026-50411

Aug 31, 2026 15:27:42 UTC

Stack-based buffer overflow in Active Directory Federation Services (AD FS) allows an unauthorized attacker to deny service over a network.

CVE-2026-50474

Aug 31, 2026 15:27:41 UTC

Use after free in Remote Desktop Client allows an unauthorized attacker to execute code over a network.

CVE-2026-50362

Aug 31, 2026 15:27:41 UTC

Heap-based buffer overflow in Windows Resilient File System (ReFS) allows an unauthorized attacker to execute code locally.

CVE-2026-50420

Aug 31, 2026 15:27:40 UTC

Out-of-bounds read in Windows HTTP.sys allows an unauthorized attacker to disclose information locally.

CVE-2026-50438

Aug 31, 2026 15:27:39 UTC

Improper link resolution before file access ('link following') in Microsoft PC Manager allows an authorized attacker to elevate privileges locally.

CVE-2026-50447

Aug 31, 2026 15:27:39 UTC

Heap-based buffer overflow in Windows Message Queuing allows an unauthorized attacker to execute code over a network.

CVE-2026-51710

Aug 31, 2026 15:27:39 UTC

Incorrect access control in the setParentalRules function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenticated attackers to alter parental-control behavior via sending a crafted POST request to /cgi-bin/cstecgi.cgi.

CVE-2026-50417

Aug 31, 2026 15:27:38 UTC

Heap-based buffer overflow in Windows NTFS allows an authorized attacker to execute code locally.

CVE-2026-50453

Aug 31, 2026 15:27:38 UTC

Out-of-bounds read in Windows USB Audio Class driver (usbaudio.sys) allows an unauthorized attacker to disclose information with a physical attack.

CVE-2026-50431

Aug 31, 2026 15:27:37 UTC

Windows Quality of Service (QoS) Packet Scheduler Information Disclosure Vulnerability

CVE-2026-50461

Aug 31, 2026 15:27:37 UTC

Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to execute code locally.