Common Vulnerabilities and Exposures (CVE)

CVE-2026-50449

Jul 26, 2026 17:18:33 UTC

Use after free in Windows Runtime allows an authorized attacker to elevate privileges locally.

CVE-2026-50410

Jul 26, 2026 17:18:32 UTC

Use after free in Windows Runtime allows an authorized attacker to elevate privileges locally.

CVE-2026-50388

Jul 26, 2026 17:18:32 UTC

Out-of-bounds read in Windows NTFS allows an unauthorized attacker to execute code locally.

CVE-2026-50353

Jul 26, 2026 17:18:31 UTC

Use after free in Windows DirectX allows an authorized attacker to elevate privileges locally.

CVE-2026-50373

Jul 26, 2026 17:18:30 UTC

Improper access control in Microsoft Windows Search Component allows an authorized attacker to elevate privileges locally.

CVE-2026-50428

Jul 26, 2026 17:18:30 UTC

Out-of-bounds read in Windows Container Isolation FS Filter Driver (unionfs.sys) allows an authorized attacker to disclose information locally.

CVE-2026-50355

Jul 26, 2026 17:18:29 UTC

Stack-based buffer overflow in Active Directory Federation Services allows an unauthorized attacker to deny service over a network.

CVE-2026-50358

Jul 26, 2026 17:18:29 UTC

Use after free in Windows Media allows an authorized attacker to elevate privileges locally.

CVE-2026-50416

Jul 26, 2026 17:18:28 UTC

Exposure of sensitive information to an unauthorized actor in Windows Win32K allows an authorized attacker to disclose information locally.

CVE-2026-50366

Jul 26, 2026 17:18:28 UTC

Null pointer dereference in Active Directory Domain Services allows an authorized attacker to deny service over a network.

CVE-2026-50404

Jul 26, 2026 17:18:27 UTC

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Media allows an authorized attacker to elevate privileges locally.

CVE-2026-50340

Jul 26, 2026 17:18:27 UTC

Use after free in Windows Runtime allows an authorized attacker to elevate privileges over a network.

CVE-2026-50317

Jul 26, 2026 17:18:26 UTC

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Operating Systems allows an authorized attacker to elevate privileges locally.

CVE-2026-50361

Jul 26, 2026 17:18:25 UTC

Double free in Microsoft Brokering File System allows an authorized attacker to elevate privileges locally.

CVE-2026-50375

Jul 26, 2026 17:18:25 UTC

Heap-based buffer overflow in Windows DirectX allows an authorized attacker to elevate privileges locally.