Common Vulnerabilities and Exposures (CVE)

CVE-2026-50406

Jul 26, 2026 17:19:18 UTC

Use after free in Windows Backup Engine allows an authorized attacker to elevate privileges locally.

CVE-2026-50424

Jul 26, 2026 17:19:17 UTC

Untrusted pointer dereference in Windows Domain Controller allows an unauthorized attacker to deny service over a network.

CVE-2026-50450

Jul 26, 2026 17:19:17 UTC

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Wireless Wide Area Network Service allows an authorized attacker to elevate privileges locally.

CVE-2026-50429

Jul 26, 2026 17:19:16 UTC

Out-of-bounds read in Windows Kernel allows an unauthorized attacker to disclose information over a network.

CVE-2026-50476

Jul 26, 2026 17:19:15 UTC

Use after free in Microsoft Windows allows an authorized attacker to elevate privileges locally.

CVE-2026-50475

Jul 26, 2026 17:19:15 UTC

Buffer over-read in Windows Kernel allows an authorized attacker to disclose information locally.

CVE-2026-50458

Jul 26, 2026 17:19:14 UTC

Use after free in Microsoft Brokering File System allows an authorized attacker to elevate privileges locally.

CVE-2026-50415

Jul 26, 2026 17:19:14 UTC

Exposure of sensitive information to an unauthorized actor in Windows Media allows an unauthorized attacker to disclose information over a network.

CVE-2026-50394

Jul 26, 2026 17:19:13 UTC

Exposure of sensitive information to an unauthorized actor in Windows Media allows an authorized attacker to disclose information locally.

CVE-2026-50444

Jul 26, 2026 17:19:13 UTC

Missing authentication for critical function in Windows Server Update Service allows an authorized attacker to elevate privileges over a network.

CVE-2026-50411

Jul 26, 2026 17:19:12 UTC

Stack-based buffer overflow in Active Directory Federation Services (AD FS) allows an unauthorized attacker to deny service over a network.

CVE-2026-50474

Jul 26, 2026 17:19:12 UTC

Use after free in Remote Desktop Client allows an unauthorized attacker to execute code over a network.

CVE-2026-50362

Jul 26, 2026 17:19:11 UTC

Heap-based buffer overflow in Windows Resilient File System (ReFS) allows an unauthorized attacker to execute code locally.

CVE-2026-50420

Jul 26, 2026 17:19:11 UTC

Out-of-bounds read in Windows HTTP.sys allows an unauthorized attacker to disclose information locally.

CVE-2026-50438

Jul 26, 2026 17:19:10 UTC

Improper link resolution before file access ('link following') in Microsoft PC Manager allows an authorized attacker to elevate privileges locally.