Common Vulnerabilities and Exposures (CVE)

CVE-2026-56647

Sep 4, 2026 22:16:46 UTC

Integer overflow or wraparound in Windows Remote Access Service Infrastructure allows an authorized attacker to elevate privileges over a network.

CVE-2026-56194

Sep 4, 2026 22:16:45 UTC

Heap-based buffer overflow in Windows Network File System allows an authorized attacker to elevate privileges over a network.

CVE-2026-54124

Sep 4, 2026 22:16:44 UTC

Integer overflow or wraparound in Windows Terminal allows an unauthorized attacker to execute code locally.

CVE-2026-56644

Sep 4, 2026 22:16:44 UTC

Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally.

CVE-2026-56643

Sep 4, 2026 22:16:43 UTC

Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally.

CVE-2026-56642

Sep 4, 2026 22:16:43 UTC

Stack-based buffer overflow in Microsoft Fabric Data Warehouse allows an authorized attacker to execute code over a network.

CVE-2026-56178

Sep 4, 2026 22:16:42 UTC

Time-of-check time-of-use (toctou) race condition in Microsoft Defender for Endpoint allows an authorized attacker to elevate privileges locally.

CVE-2026-56197

Sep 4, 2026 22:16:42 UTC

Improper neutralization of special elements used in a command ('command injection') in Windows Admin Center allows an authorized attacker to execute code over a network.

CVE-2026-56196

Sep 4, 2026 22:16:41 UTC

Relative path traversal in Windows Admin Center allows an authorized attacker to execute code over a network.

CVE-2026-56195

Sep 4, 2026 22:16:41 UTC

Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally.

CVE-2026-56192

Sep 4, 2026 22:16:40 UTC

Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally.

CVE-2026-50665

Sep 4, 2026 22:16:39 UTC

Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally.

CVE-2026-56189

Sep 4, 2026 22:16:38 UTC

Heap-based buffer overflow in Microsoft Windows Media Foundation allows an unauthorized attacker to execute code locally.

CVE-2026-56188

Sep 4, 2026 22:16:38 UTC

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Server Network driver allows an unauthorized attacker to execute code over a network.

CVE-2026-56186

Sep 4, 2026 22:16:37 UTC

Out-of-bounds read in Windows Schannel allows an authorized attacker to disclose information over a network.