Common Vulnerabilities and Exposures (CVE)

CVE-2026-72936

Sep 15, 2026 22:42:03 UTC

Use after free in Windows SMB Client allows an unauthorized attacker to execute code over a network.

CVE-2026-72931

Sep 15, 2026 22:42:03 UTC

Missing release of resource after effective lifetime in Windows Secure Socket Tunneling Protocol (SSTP) allows an authorized attacker to deny service locally.

CVE-2026-72928

Sep 15, 2026 22:42:02 UTC

Use after free in Windows DNS allows an authorized attacker to execute code over a network.

CVE-2026-72927

Sep 15, 2026 22:42:01 UTC

Heap-based buffer overflow in Winsock allows an authorized attacker to elevate privileges locally.

CVE-2026-71352

Sep 15, 2026 22:42:01 UTC

Integer underflow (wrap or wraparound) in Windows Remote Access Connection Manager allows an authorized attacker to execute code over a network.

CVE-2026-71342

Sep 15, 2026 22:42:00 UTC

Use after free in Windows Remote Access Connection Manager allows an authorized attacker to elevate privileges locally.

CVE-2026-71349

Sep 15, 2026 22:42:00 UTC

Heap-based buffer overflow in Windows Spaceport.sys allows an unauthorized attacker to execute code with a physical attack.

CVE-2026-70583

Sep 15, 2026 22:41:59 UTC

Heap-based buffer overflow in Windows Core Messaging allows an authorized attacker to elevate privileges locally.

CVE-2026-70579

Sep 15, 2026 22:41:59 UTC

Out-of-bounds read in Windows Mobile Broadband allows an unauthorized attacker to disclose information over a network.

CVE-2026-70578

Sep 15, 2026 22:41:58 UTC

Heap-based buffer overflow in Windows Credential Guard allows an authorized attacker to elevate privileges locally.

CVE-2026-70577

Sep 15, 2026 22:41:57 UTC

Use after free in Windows Modern Device Management (MDM) allows an authorized attacker to elevate privileges locally.

CVE-2026-70581

Sep 15, 2026 22:41:57 UTC

Integer overflow or wraparound in Windows Biometric Service allows an authorized attacker to elevate privileges locally.

CVE-2026-70575

Sep 15, 2026 22:41:56 UTC

Null pointer dereference in Windows Schannel allows an authorized attacker to deny service over a network.

CVE-2026-70572

Sep 15, 2026 22:41:56 UTC

Integer overflow or wraparound in Windows Biometric Service allows an authorized attacker to elevate privileges locally.

CVE-2026-70573

Sep 15, 2026 22:41:55 UTC

Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally.