Common Vulnerabilities and Exposures (CVE)

CVE-2026-65778

Aug 12, 2026 17:57:19 UTC

Use after free in Windows Autopilot allows an authorized attacker to elevate privileges locally.

CVE-2026-65780

Aug 12, 2026 17:57:19 UTC

Double free in Windows Autopilot allows an authorized attacker to elevate privileges locally.

CVE-2026-65779

Aug 12, 2026 17:57:18 UTC

Use after free in Windows Autopilot allows an authorized attacker to elevate privileges locally.

CVE-2026-65777

Aug 12, 2026 17:57:18 UTC

Inadequate encryption strength in Windows Active Directory allows an authorized attacker to bypass a security feature over a network.

CVE-2026-65776

Aug 12, 2026 17:57:17 UTC

Use after free in Windows Win32K allows an authorized attacker to elevate privileges locally.

CVE-2026-65775

Aug 12, 2026 17:57:16 UTC

Use after free in Windows Win32K allows an authorized attacker to elevate privileges locally.

CVE-2026-65774

Aug 12, 2026 17:57:16 UTC

Heap-based buffer overflow in Windows Installer allows an authorized attacker to elevate privileges locally.

CVE-2026-65773

Aug 12, 2026 17:57:15 UTC

Improper access control in Windows Kernel allows an authorized attacker to elevate privileges locally.

CVE-2026-65679

Aug 12, 2026 17:57:15 UTC

Heap-based buffer overflow in Windows iSCSI Target Service allows an unauthorized attacker to execute code over a network.

CVE-2026-65680

Aug 12, 2026 17:57:14 UTC

Improper link resolution before file access ('link following') in Microsoft OneDrive allows an authorized attacker to elevate privileges locally.

CVE-2026-65681

Aug 12, 2026 17:57:13 UTC

Null pointer dereference in Windows iSCSI Target Service allows an unauthorized attacker to deny service over a network.

CVE-2026-65673

Aug 12, 2026 17:57:13 UTC

Improper neutralization of special elements used in an sql command ('sql injection') in Microsoft Entra Connect Sync allows an authorized attacker to elevate privileges locally.

CVE-2026-62882

Aug 12, 2026 17:57:12 UTC

Insufficiently protected credentials in Microsoft Office Outlook allows an unauthorized attacker to perform spoofing over a network.

CVE-2026-64921

Aug 12, 2026 17:57:12 UTC

Missing authentication for critical function in Microsoft Office SharePoint allows an authorized attacker to elevate privileges over a network.

CVE-2026-64919

Aug 12, 2026 17:57:11 UTC

Stack-based buffer overflow in Microsoft Office Access allows an unauthorized attacker to execute code locally.