CVE Database
Search and filter vulnerabilities by ID, vendor, product, severity, or description.
Search and filter vulnerabilities by ID, vendor, product, severity, or description.
| CVE ID | Severity | Score | Description | Published | |
|---|---|---|---|---|---|
| CVE-2026-77494 | HIGH | 7.5 | Access of resource using incompatible type ('type confusion') in Windows DHCP Server allows an unauthorized attacker to deny service over a network. | Sep 8, 2026 | |
| CVE-2026-77492 | MEDIUM | 5.5 | Out-of-bounds read in Storage Port Driver allows an authorized attacker to disclose information locally. | Sep 8, 2026 | |
| CVE-2026-77491 | MEDIUM | 5.5 | Out-of-bounds read in Windows GDI allows an unauthorized attacker to disclose information locally. | Sep 8, 2026 | |
| CVE-2026-77488 | MEDIUM | 5.5 | Integer underflow (wrap or wraparound) in SQL Server allows an authorized attacker to disclose information locally. | Sep 8, 2026 | |
| CVE-2026-77487 | HIGH | 8.8 | Improper access control in SQL Server allows an authorized attacker to elevate privileges over a network. | Sep 8, 2026 | |
| CVE-2026-76191 | HIGH | 8.2 | Animate is affected by an Improper Control of Generation of Code ('Code Injection') vulnerability that could result in arbitrary code execution in the context of the current user. A low-privileged attacker could exploit this vulnerability to execute arbitrary code. Exploitation of this issue requires user interaction in that a victim must open a malicious file. Scope is changed. | Sep 8, 2026 | |
| CVE-2026-73029 | MEDIUM | 6.5 | Buffer over-read in SQL Server allows an authorized attacker to disclose information over a network. | Sep 8, 2026 | |
| CVE-2026-73026 | HIGH | 7.8 | Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally. | Sep 8, 2026 | |
| CVE-2026-73022 | HIGH | 7.0 | Use after free in Windows Modern Device Management (MDM) allows an authorized attacker to elevate privileges locally. | Sep 8, 2026 | |
| CVE-2026-73021 | HIGH | 7.8 | Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally. | Sep 8, 2026 | |
| CVE-2026-73019 | MEDIUM | 4.3 | Improper resolution of path equivalence in Windows URL Moniker allows an unauthorized attacker to bypass a security feature over a network. | Sep 8, 2026 | |
| CVE-2026-73017 | HIGH | 7.5 | Heap-based buffer overflow in Windows Graphics Kernel allows an authorized attacker to execute code locally. | Sep 8, 2026 | |
| CVE-2026-73016 | HIGH | 8.8 | Heap-based buffer overflow in Microsoft Graphics Component allows an unauthorized attacker to execute code over a network. | Sep 8, 2026 | |
| CVE-2026-73014 | HIGH | 7.8 | Missing authorization in Data Sharing Service Client allows an authorized attacker to elevate privileges locally. | Sep 8, 2026 | |
| CVE-2026-73011 | HIGH | 7.8 | Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally. | Sep 8, 2026 | |
| CVE-2026-73008 | MEDIUM | 5.5 | Exposure of private personal information to an unauthorized actor in Windows Biometric Service allows an authorized attacker to disclose information locally. | Sep 8, 2026 | |
| CVE-2026-73007 | HIGH | 7.8 | Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally. | Sep 8, 2026 | |
| CVE-2026-73006 | HIGH | 8.8 | Stack-based buffer overflow in Microsoft Graphics Component allows an unauthorized attacker to execute code over a network. | Sep 8, 2026 | |
| CVE-2026-73004 | MEDIUM | 5.5 | Missing authentication for critical function in Windows Autopilot allows an authorized attacker to perform tampering locally. | Sep 8, 2026 | |
| CVE-2026-73002 | HIGH | 7.8 | Integer overflow or wraparound in Windows Biometric Service allows an authorized attacker to elevate privileges locally. | Sep 8, 2026 | |
| CVE-2026-73001 | HIGH | 7.8 | Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally. | Sep 8, 2026 | |
| CVE-2026-72999 | MEDIUM | 6.8 | Out-of-bounds read in Windows USB Hub Driver allows an unauthorized attacker to elevate privileges with a physical attack. | Sep 8, 2026 | |
| CVE-2026-72996 | HIGH | 7.8 | Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally. | Sep 8, 2026 | |
| CVE-2026-72995 | HIGH | 7.8 | Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally. | Sep 8, 2026 | |
| CVE-2026-72993 | HIGH | 7.8 | Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally. | Sep 8, 2026 |