Common Vulnerabilities and Exposures (CVE)

CVE-2026-62690

Aug 25, 2026 22:45:53 UTC

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Push Notifications allows an authorized attacker to elevate privileges locally.

CVE-2026-62688

Aug 25, 2026 22:45:53 UTC

Heap-based buffer overflow in Windows MIDI Service Module allows an authorized attacker to elevate privileges locally.

CVE-2026-62695

Aug 25, 2026 22:45:52 UTC

Heap-based buffer overflow in Windows Storage allows an authorized attacker to elevate privileges locally.

CVE-2026-61936

Aug 25, 2026 22:45:52 UTC

Missing authorization in Windows Defender Firewall Service allows an authorized attacker to bypass a security feature locally.

CVE-2026-61934

Aug 25, 2026 22:45:51 UTC

Use after free in Windows Bind Filter Driver allows an authorized attacker to elevate privileges locally.

CVE-2026-61933

Aug 25, 2026 22:45:50 UTC

Out-of-bounds read in Windows DWM Core Library allows an authorized attacker to disclose information locally.

CVE-2026-61932

Aug 25, 2026 22:45:50 UTC

Access of resource using incompatible type ('type confusion') in Windows DWM Core Library allows an authorized attacker to elevate privileges locally.

CVE-2026-62692

Aug 25, 2026 22:45:49 UTC

Heap-based buffer overflow in Windows Remote Desktop Services allows an authorized attacker to elevate privileges locally.

CVE-2026-61937

Aug 25, 2026 22:45:49 UTC

Integer overflow or wraparound in Windows HTTP.sys allows an authorized attacker to elevate privileges locally.

CVE-2026-61930

Aug 25, 2026 22:45:48 UTC

Heap-based buffer overflow in Windows Kernel allows an authorized attacker to elevate privileges locally.

CVE-2026-61928

Aug 25, 2026 22:45:48 UTC

Cleartext storage of sensitive information in Windows Hello allows an authorized attacker to perform tampering locally.

CVE-2026-61927

Aug 25, 2026 22:45:47 UTC

Use after free in Windows Bind Filter Driver allows an authorized attacker to elevate privileges locally.

CVE-2026-61925

Aug 25, 2026 22:45:47 UTC

Incorrect authorization in Windows Installer allows an authorized attacker to elevate privileges locally.

CVE-2026-61924

Aug 25, 2026 22:45:46 UTC

Out-of-bounds read in Remote Desktop Client allows an unauthorized attacker to disclose information over a network.

CVE-2026-61368

Aug 25, 2026 22:45:46 UTC

Heap-based buffer overflow in Windows Hyper-V allows an authorized attacker to disclose information locally.