Common Vulnerabilities and Exposures (CVE)

CVE-2026-50679

Aug 7, 2026 18:19:54 UTC

Heap-based buffer overflow in Microsoft Windows Search Component allows an authorized attacker to elevate privileges locally.

CVE-2026-50684

Aug 7, 2026 18:19:54 UTC

Improper neutralization of input during web page generation ('cross-site scripting') in Active Directory Federation Services (AD FS) allows an authorized attacker to perform spoofing over a network.

CVE-2026-54115

Aug 7, 2026 18:19:53 UTC

Integer overflow or wraparound in Windows Active Directory allows an authorized attacker to elevate privileges locally.

CVE-2026-50677

Aug 7, 2026 18:19:53 UTC

Use after free in Windows Media allows an authorized attacker to elevate privileges locally.

CVE-2026-50676

Aug 7, 2026 18:19:52 UTC

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Media allows an authorized attacker to elevate privileges locally.

CVE-2026-50674

Aug 7, 2026 18:19:51 UTC

Use after free in Windows USB Print Driver allows an authorized attacker to elevate privileges locally.

CVE-2026-50673

Aug 7, 2026 18:19:51 UTC

Null pointer dereference in Windows Kernel allows an authorized attacker to elevate privileges locally.

CVE-2026-50672

Aug 7, 2026 18:19:50 UTC

Use after free in Windows NTFS allows an authorized attacker to elevate privileges locally.

CVE-2026-50670

Aug 7, 2026 18:19:50 UTC

Out-of-bounds read in Windows Kernel allows an authorized attacker to elevate privileges locally.

CVE-2026-50669

Aug 7, 2026 18:19:49 UTC

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Telephony Service allows an authorized attacker to elevate privileges locally.

CVE-2026-50668

Aug 7, 2026 18:19:49 UTC

Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to elevate privileges with a physical attack.

CVE-2026-50667

Aug 7, 2026 18:19:48 UTC

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows NTFS allows an authorized attacker to elevate privileges locally.

CVE-2026-50666

Aug 7, 2026 18:19:47 UTC

Use after free in Windows Remote Access Connection Manager allows an authorized attacker to elevate privileges over a network.

CVE-2026-50661

Aug 7, 2026 18:19:47 UTC

Protection mechanism failure in Windows BitLocker allows an unauthorized attacker to bypass a security feature with a physical attack.

CVE-2026-50658

Aug 7, 2026 18:19:46 UTC

Time-of-check time-of-use (toctou) race condition in Microsoft Defender allows an authorized attacker to elevate privileges locally.