Common Vulnerabilities and Exposures (CVE)

CVE-2026-61367

Aug 21, 2026 23:06:34 UTC

Missing authentication for critical function in Windows Remote Desktop Services allows an authorized attacker to elevate privileges locally.

CVE-2026-61356

Aug 21, 2026 23:06:34 UTC

Missing authentication for critical function in Windows Remote Desktop Services allows an authorized attacker to elevate privileges locally.

CVE-2026-61350

Aug 21, 2026 23:06:33 UTC

Buffer over-read in Windows NTFS allows an unauthorized attacker to disclose information with a physical attack.

CVE-2026-61348

Aug 21, 2026 23:06:33 UTC

Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.

CVE-2026-61361

Aug 21, 2026 23:06:32 UTC

Use after free in Windows DHCP Client allows an authorized attacker to execute code locally.

CVE-2026-61347

Aug 21, 2026 23:06:32 UTC

Buffer over-read in Windows Event Logging Service allows an authorized attacker to disclose information locally.

CVE-2026-61353

Aug 21, 2026 23:06:31 UTC

Heap-based buffer overflow in Windows Telephony Service allows an authorized attacker to elevate privileges locally.

CVE-2026-61346

Aug 21, 2026 23:06:30 UTC

Use after free in Windows Graphics Kernel allows an authorized attacker to elevate privileges locally.

CVE-2026-61345

Aug 21, 2026 23:06:30 UTC

Null pointer dereference in Microsoft Remote Registry Service allows an authorized attacker to deny service over a network.

CVE-2026-59138

Aug 21, 2026 23:06:29 UTC

Null pointer dereference in Microsoft Remote Registry Service allows an authorized attacker to deny service over a network.

CVE-2026-59137

Aug 21, 2026 23:06:29 UTC

Use of uninitialized resource in Windows Event Logging Service allows an authorized attacker to disclose information locally.

CVE-2026-59136

Aug 21, 2026 23:06:28 UTC

Use of uninitialized resource in Microsoft COM for Windows allows an authorized attacker to disclose information locally.

CVE-2026-59134

Aug 21, 2026 23:06:28 UTC

Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code over a network.

CVE-2026-59135

Aug 21, 2026 23:06:27 UTC

Weak authentication in Microsoft Windows Search Component allows an authorized attacker to disclose information locally.

CVE-2026-59132

Aug 21, 2026 23:06:27 UTC

Null pointer dereference in Windows TCP/IP allows an unauthorized attacker to deny service over a network.