Common Vulnerabilities and Exposures (CVE)

CVE-2026-85893

Sep 25, 2026 21:39:18 UTC

Use after free in Microsoft Edge (Chromium-based) allows an unauthorized attacker to elevate privileges over a network.

CVE-2026-84003

Sep 25, 2026 21:39:18 UTC

Authentication bypass by capture-replay in Microsoft Authentication Library (MSAL) for Node.js allows an unauthorized attacker to perform spoofing over a network.

CVE-2026-83498

Sep 25, 2026 21:39:17 UTC

Untrusted pointer dereference in Windows Virtualization-Based Security (VBS) Enclave allows an authorized attacker to elevate privileges locally.

CVE-2026-83501

Sep 25, 2026 21:39:17 UTC

Out-of-bounds read in Windows Virtualization-Based Security (VBS) Enclave allows an authorized attacker to disclose information locally.

CVE-2026-85875

Sep 25, 2026 21:39:16 UTC

Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.

CVE-2026-69806

Sep 25, 2026 21:39:16 UTC

Exposure of sensitive information to an unauthorized actor in .NET allows an authorized attacker to elevate privileges locally.

CVE-2026-84000

Sep 25, 2026 21:39:15 UTC

Heap-based buffer overflow in Microsoft Graphics Component allows an authorized attacker to execute code locally.

CVE-2026-83997

Sep 25, 2026 21:39:15 UTC

Use after free in Windows Message Queuing allows an unauthorized attacker to execute code over a network.

CVE-2026-83995

Sep 25, 2026 21:39:14 UTC

Heap-based buffer overflow in Windows NTFS allows an authorized attacker to elevate privileges locally.

CVE-2026-83992

Sep 25, 2026 21:39:14 UTC

Heap-based buffer overflow in Windows Imaging Component allows an unauthorized attacker to execute code over a network.

CVE-2026-83990

Sep 25, 2026 21:39:13 UTC

Stack-based buffer overflow in Microsoft Graphics Component allows an authorized attacker to elevate privileges locally.

CVE-2026-83989

Sep 25, 2026 21:39:13 UTC

Out-of-bounds read in Windows Services for NFS ONCRPC XDR Driver allows an unauthorized attacker to deny service over a network.

CVE-2026-83985

Sep 25, 2026 21:39:12 UTC

Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally.

CVE-2026-83983

Sep 25, 2026 21:39:12 UTC

Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally.

CVE-2026-83987

Sep 25, 2026 21:39:11 UTC

Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally.