Common Vulnerabilities and Exposures (CVE)

CVE-2026-69619

Sep 21, 2026 16:04:47 UTC

Out-of-bounds read in Windows exFAT File System allows an authorized attacker to elevate privileges over a network.

CVE-2026-69817

Sep 21, 2026 16:04:45 UTC

Use after free in Windows Bluetooth Port Driver allows an authorized attacker to elevate privileges locally.

CVE-2026-69680

Sep 21, 2026 16:04:44 UTC

Origin validation error in Windows DNS allows an unauthorized attacker to perform spoofing over a network.

CVE-2026-69881

Sep 21, 2026 16:04:42 UTC

Null pointer dereference in Windows IKE Extension allows an unauthorized attacker to deny service over a network.

CVE-2026-69669

Sep 21, 2026 16:04:41 UTC

Heap-based buffer overflow in Windows Kernel allows an unauthorized attacker to execute code over a network.

CVE-2026-69613

Sep 21, 2026 16:04:41 UTC

Use after free in Windows Image Acquisition allows an authorized attacker to elevate privileges locally.

CVE-2026-69610

Sep 21, 2026 16:04:40 UTC

Buffer over-read in Windows Win32K allows an authorized attacker to elevate privileges locally.

CVE-2026-69630

Sep 21, 2026 16:04:40 UTC

Out-of-bounds read in Windows Win32K allows an authorized attacker to elevate privileges locally.

CVE-2026-69616

Sep 21, 2026 16:04:39 UTC

Out-of-bounds read in Windows Remote Desktop Services allows an authorized attacker to disclose information locally.

CVE-2026-69617

Sep 21, 2026 16:04:39 UTC

Out-of-bounds read in Windows Resilient File System (ReFS) allows an authorized attacker to elevate privileges locally.

CVE-2026-69611

Sep 21, 2026 16:04:38 UTC

Use after free in Virtual Hard Disk (VHD) Miniport Driver allows an authorized attacker to elevate privileges locally.

CVE-2026-69602

Sep 21, 2026 16:04:38 UTC

Use after free in Windows PrintWorkflowUserSvc allows an authorized attacker to elevate privileges over a network.

CVE-2026-69597

Sep 21, 2026 16:04:37 UTC

Use after free in Windows HTTP.sys allows an authorized attacker to elevate privileges over a network.

CVE-2026-69624

Sep 21, 2026 16:04:37 UTC

Incomplete list of disallowed inputs in Active Directory Certificate Services (AD CS) allows an authorized attacker to perform tampering over a network.

CVE-2026-69618

Sep 21, 2026 16:04:36 UTC

Out-of-bounds read in Windows SMB Client allows an authorized attacker to disclose information locally.