Common Vulnerabilities and Exposures (CVE)

CVE-2025-26629

Feb 13, 2026 19:39:07 UTC

Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.

CVE-2025-26627

Feb 13, 2026 19:39:06 UTC

Improper neutralization of special elements used in a command ('command injection') in Azure Arc allows an authorized attacker to elevate privileges locally.

CVE-2025-24049

Feb 13, 2026 19:39:06 UTC

Improper neutralization of special elements used in a command ('command injection') in Azure Command Line Integration (CLI) allows an unauthorized attacker to elevate privileges locally.

CVE-2025-24994

Feb 13, 2026 19:39:05 UTC

Improper access control in Windows Cross Device Service allows an authorized attacker to elevate privileges locally.

CVE-2025-24993

Feb 13, 2026 19:39:04 UTC

Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to execute code locally.

CVE-2025-24992

Feb 13, 2026 19:39:04 UTC

Buffer over-read in Windows NTFS allows an unauthorized attacker to disclose information locally.

CVE-2025-24991

Feb 13, 2026 19:39:03 UTC

Out-of-bounds read in Windows NTFS allows an authorized attacker to disclose information locally.

CVE-2025-24985

Feb 13, 2026 19:39:03 UTC

Integer overflow or wraparound in Windows Fast FAT Driver allows an unauthorized attacker to execute code locally.

CVE-2025-24984

Feb 13, 2026 19:39:02 UTC

Insertion of sensitive information into log file in Windows NTFS allows an unauthorized attacker to disclose information with a physical attack.

CVE-2025-24983

Feb 13, 2026 19:39:01 UTC

Use after free in Windows Win32 Kernel Subsystem allows an authorized attacker to elevate privileges locally.

CVE-2025-24084

Feb 13, 2026 19:39:00 UTC

Untrusted pointer dereference in Windows Subsystem for Linux allows an unauthorized attacker to execute code locally.

CVE-2025-24076

Feb 13, 2026 19:39:00 UTC

Improper access control in Windows Cross Device Service allows an authorized attacker to elevate privileges locally.

CVE-2025-24075

Feb 13, 2026 19:38:59 UTC

Stack-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

CVE-2025-24072

Feb 13, 2026 19:38:59 UTC

Use after free in Microsoft Local Security Authority Server (lsasrv) allows an authorized attacker to elevate privileges locally.

CVE-2025-24071

Feb 13, 2026 19:38:58 UTC

Exposure of sensitive information to an unauthorized actor in Windows File Explorer allows an unauthorized attacker to perform spoofing over a network.