Exact snapshot results

353,537 CVE records

CVE ID descending · no relevance ranking

CVE-2026-50704

A Stored Cross-Site Scripting (XSS) vulnerability exists in Frappe Framework version 17.0.0-dev due to improper neutralization of user-controlled input in the File View breadcrumb renderer.

PUBLISHED
Vendor
Frappe
Product
Frappe Framework
Provider severity
MEDIUM
Conflicts
0

CVE-2026-50703

A Stored Cross-Site Scripting (XSS) vulnerability exists in Frappe Framework version 17.0.0-dev due to improper neutralization of user-controlled input in the Desk desktop icon renderer.

PUBLISHED
Vendor
Frappe
Product
Frappe Framework
Provider severity
MEDIUM
Conflicts
0

CVE-2026-50701

A Reflected Cross-Site Scripting (XSS) vulnerability exists in Frappe Framework version 17.0.0-dev due to improper neutralization of user-controlled input in the dashboard-view component.

PUBLISHED
Vendor
Frappe
Product
Frappe Framework
Provider severity
MEDIUM
Conflicts
0

CVE-2026-50700

A Stored Cross-Site Scripting (XSS) vulnerability exists in Frappe Framework version 17.0.0-dev due to improper neutralization of user-controlled input in the frappe.get_avatar function.

PUBLISHED
Vendor
Frappe
Product
Frappe Framework
Provider severity
MEDIUM
Conflicts
0

CVE-2026-5070

The Vantage theme for WordPress is vulnerable to Stored Cross-Site Scripting via Gallery block text content in versions up to, and including, 1.20.32 due to insufficient output escaping in the gallery template. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

PUBLISHED
Vendor
siteorigin
Product
Vantage
Provider severity
MEDIUM
Conflicts
0

CVE-2026-50699

A Stored Cross-Site Scripting (XSS) vulnerability exists in Frappe Framework version 17.0.0-dev. An authenticated attacker with write access to Auto Repeat can persist HTML/JavaScript in reference_document using a whitelisted write path and trigger script execution when users open the affected Auto Repeat form.

PUBLISHED
Vendor
Frappe
Product
Frappe Framework
Provider severity
MEDIUM
Conflicts
0

CVE-2026-50698

A Stored Cross-Site Scripting (XSS) vulnerability exists in Frappe Framework version 17.0.0-dev due to improper neutralization of user-controlled input before generating HTML output in the Audit Trail component.

PUBLISHED
Vendor
Frappe
Product
Frappe Framework
Provider severity
MEDIUM
Conflicts
0

CVE-2026-50697

Exposure of sensitive information to an unauthorized actor in Windows Common Log File System Driver allows an authorized attacker to elevate privileges locally.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows Server 2016 (Server Core installation), Windows 11 version 26H1, Windows 10 Version 21H2, Windows 10 Version 1809, Windows Server 2025 (Server Core installation), Windows Server 2012 (Server Core installation), Windows Server 2025, Windows Server 2019, Windows Server 2012 R2, Windows 10 Version 1607, Windows Server 2012, Windows 11 Version 24H2, Windows Server 2012 R2 (Server Core installation), Windows Server 2016, Windows Server 2019 (Server Core installation), Windows 11 Version 25H2, Windows 10 Version 22H2, Windows Server 2022
Provider severity
HIGH
Conflicts
1

CVE-2026-50696

Heap-based buffer overflow in Windows Internet Key Exchange (IKE) Protocol allows an unauthorized attacker to deny service over a network.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows 10 Version 21H2, Windows Server 2019, Windows Server 2025, Windows Server 2022, Windows Server 2019 (Server Core installation), Windows Server 2025 (Server Core installation), Windows 10 Version 1809, Windows 11 Version 24H2, Windows 11 Version 25H2, Windows 11 version 26H1, Windows 10 Version 22H2
Provider severity
HIGH
Conflicts
1

CVE-2026-50695

Stack-based buffer overflow in Active Directory Federation Services allows an unauthorized attacker to deny service over a network.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows Server 2012 R2 (Server Core installation), Windows 11 Version 25H2, Windows Server 2025, Windows Server 2019 (Server Core installation), Windows 10 Version 1607, Windows Server 2022, Windows Server 2016 (Server Core installation), Windows 11 version 26H1, Windows Server 2012 (Server Core installation), Windows 10 Version 1809, Windows 10 Version 22H2, Windows Server 2012 R2, Windows 10 Version 21H2, Windows 11 Version 24H2, Windows Server 2019, Windows Server 2016, Windows Server 2012, Windows Server 2025 (Server Core installation)
Provider severity
HIGH
Conflicts
1

CVE-2026-50694

Use after free in Windows Secure Socket Tunneling Protocol (SSTP) allows an unauthorized attacker to execute code over a network.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows 11 Version 25H2, Windows 10 Version 1809, Windows Server 2016 (Server Core installation), Windows Server 2012 R2, Windows 10 Version 22H2, Windows Server 2025, Windows 11 Version 24H2, Windows 10 Version 1607, Windows 11 version 26H1, Windows Server 2019, Windows Server 2012 (Server Core installation), Windows Server 2019 (Server Core installation), Windows Server 2025 (Server Core installation), Windows Server 2012 R2 (Server Core installation), Windows Server 2022, Windows Server 2016, Windows 10 Version 21H2, Windows Server 2012
Provider severity
HIGH
Conflicts
1

CVE-2026-50692

Heap-based buffer overflow in Desktop Window Manager allows an authorized attacker to elevate privileges locally.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows 10 Version 21H2, Windows 11 Version 24H2, Windows 11 Version 25H2, Windows Server 2019, Windows Server 2016, Windows Server 2025 (Server Core installation), Windows 10 Version 1607, Windows Server 2022, Windows 10 Version 1809, Windows 10 Version 22H2, Windows Server 2019 (Server Core installation), Windows Server 2025, Windows Server 2016 (Server Core installation), Windows 11 version 26H1
Provider severity
HIGH
Conflicts
1

CVE-2026-50690

Use of uninitialized resource in Windows SMB allows an authorized attacker to disclose information locally.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows 11 Version 25H2, Windows Server 2016 (Server Core installation), Windows Server 2019, Windows Server 2016, Windows 11 version 26H1, Windows 10 Version 21H2, Windows 10 Version 1809, Windows Server 2012 (Server Core installation), Windows 10 Version 1607, Windows Server 2019 (Server Core installation), Windows 11 Version 24H2, Windows Server 2025, Windows Server 2025 (Server Core installation), Windows Server 2022, Windows Server 2012 R2 (Server Core installation), Windows Server 2012, Windows Server 2012 R2, Windows 10 Version 22H2
Provider severity
MEDIUM
Conflicts
1

CVE-2026-5069

The Fluent Forms plugin for WordPress is vulnerable to incorrect authorization via the 'subscription_id' parameter in versions up to, and including, 6.2.1. This is due to insufficient ownership authorization checks in the payment cancellation AJAX flow. This makes it possible for authenticated attackers, with subscriber-level access and above, to submit cancellation requests for other users' subscriptions.

PUBLISHED
Vendor
wpmanageninja
Product
Fluent Forms – Customizable Contact Forms, Survey, Quiz, & Conversational Form Builder
Provider severity
MEDIUM
Conflicts
0

CVE-2026-50689

Use after free in Windows Clipboard Server allows an authorized attacker to elevate privileges locally.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows Server 2025 (Server Core installation), Windows Server 2022, Windows 11 Version 25H2, Windows Server 2019 (Server Core installation), Windows 10 Version 1809, Windows 10 Version 21H2, Windows Server 2019, Windows 11 Version 24H2, Windows Server 2025, Windows 11 version 26H1, Windows 10 Version 22H2
Provider severity
HIGH
Conflicts
2

CVE-2026-50688

Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows Server 2019, Windows Server 2012 (Server Core installation), Windows 11 version 26H1, Windows Server 2025 (Server Core installation), Windows Server 2019 (Server Core installation), Windows Server 2012 R2, Windows 10 Version 22H2, Windows 11 Version 25H2, Windows Server 2012, Windows 10 Version 1809, Windows Server 2016 (Server Core installation), Windows Server 2022, Windows 10 Version 21H2, Windows Server 2016, Windows 11 Version 24H2, Windows 10 Version 1607, Windows Server 2012 R2 (Server Core installation), Windows Server 2025
Provider severity
HIGH
Conflicts
1

CVE-2026-50687

Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows 11 Version 24H2, Windows 11 version 26H1, Windows 11 Version 25H2, Windows Server 2025, Windows Server 2025 (Server Core installation)
Provider severity
HIGH
Conflicts
1

CVE-2026-50686

Access of resource using incompatible type ('type confusion') in Windows OLE allows an unauthorized attacker to execute code over a network.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows 10 Version 1809, Windows Server 2025 (Server Core installation), Windows 11 version 26H1, Windows Server 2019 (Server Core installation), Windows 11 Version 24H2, Windows Server 2012 R2, Windows Server 2025, Windows Server 2022, Windows Server 2019, Windows 10 Version 22H2, Windows Server 2016 (Server Core installation), Windows Server 2016, Windows 11 Version 25H2, Windows 10 Version 21H2, Windows Server 2012 R2 (Server Core installation), Windows 10 Version 1607
Provider severity
HIGH
Conflicts
1

CVE-2026-50685

Double free in Windows DHCP Server allows an authorized attacker to execute code over a network.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows Server 2012, Windows Server 2022, Windows 10 Version 1607, Windows Server 2016, Windows Server 2012 R2, Windows 10 Version 1809, Windows Server 2025, Windows Server 2012 (Server Core installation), Windows Server 2025 (Server Core installation), Windows Server 2016 (Server Core installation), Windows Server 2019, Windows Server 2012 R2 (Server Core installation)
Provider severity
HIGH
Conflicts
1

CVE-2026-50684

Improper neutralization of input during web page generation ('cross-site scripting') in Active Directory Federation Services (AD FS) allows an authorized attacker to perform spoofing over a network.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows Server 2019, Windows Server 2025, Windows Server 2012 R2 (Server Core installation), Windows 10 Version 1809, Windows Server 2022, Windows Server 2016 (Server Core installation), Windows Server 2025 (Server Core installation), Windows Server 2019 (Server Core installation), Windows Server 2012, Windows Server 2012 R2, Windows Server 2012 (Server Core installation), Windows 10 Version 1607, Windows Server 2016
Provider severity
MEDIUM
Conflicts
1

CVE-2026-50683

Heap-based buffer overflow in Windows DHCP Server allows an authorized attacker to elevate privileges over an adjacent network.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows Server 2012, Windows Server 2012 R2 (Server Core installation), Windows Server 2019, Windows Server 2012 (Server Core installation), Windows 10 Version 1809, Windows Server 2016, Windows Server 2019 (Server Core installation), Windows Server 2025, Windows Server 2025 (Server Core installation), Windows 10 Version 1607, Windows Server 2012 R2, Windows Server 2016 (Server Core installation), Windows Server 2022
Provider severity
HIGH
Conflicts
1

CVE-2026-50682

Out-of-bounds read in Windows Active Directory allows an authorized attacker to deny service over a network.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows 10 Version 22H2, Windows 11 version 26H1, Windows Server 2025 (Server Core installation), Windows 11 Version 24H2, Windows Server 2025, Windows 11 Version 25H2, Windows 10 Version 21H2, Windows Server 2022
Provider severity
HIGH
Conflicts
1

CVE-2026-50681

Exposure of sensitive information to an unauthorized actor in Windows Cryptographic Services allows an authorized attacker to disclose information locally.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows Server 2016, Windows 10 Version 21H2, Windows Server 2016 (Server Core installation), Windows Server 2025, Windows Server 2019 (Server Core installation), Windows 11 version 26H1, Windows Server 2022, Windows 11 Version 25H2, Windows 10 Version 1607, Windows 10 Version 1809, Windows Server 2019, Windows 10 Version 22H2, Windows 11 Version 24H2, Windows Server 2025 (Server Core installation)
Provider severity
MEDIUM
Conflicts
1

CVE-2026-50680

Heap-based buffer overflow in Windows Hyper-V allows an authorized attacker to elevate privileges locally.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows 10 Version 22H2, Windows Server 2019, Windows 10 Version 21H2, Windows 11 version 26H1, Windows 11 Version 24H2, Windows 10 Version 1809, Windows Server 2025, Windows 11 Version 25H2, Windows Server 2022, Windows Server 2025 (Server Core installation), Windows Server 2019 (Server Core installation)
Provider severity
HIGH
Conflicts
1

CVE-2026-5068

A remote, unauthenticated BLE peer can trigger a 2-byte out-of-bounds write in the Bluetooth host during L2CAP LE CoC SDU reassembly. When the application enables segmentation (via chan_ops.alloc_buf) and the chosen RX pool has a user_data_size smaller than 2 bytes, the segmentation counter stored in the net_buf user_data area is written out of bounds in l2cap_chan_le_recv_seg (subsys/bluetooth/host/l2cap.c). The observed effects are an AddressSanitizer abort and, without ASan, heap corruption /

PUBLISHED
Vendor
zephyrproject-rtos
Product
Zephyr
Provider severity
HIGH
Conflicts
0

CVE-2026-50679

Heap-based buffer overflow in Microsoft Windows Search Component allows an authorized attacker to elevate privileges locally.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows 11 Version 25H2, Windows 11 version 26H1, Windows Server 2025, Windows Server 2025 (Server Core installation), Windows 11 Version 24H2
Provider severity
HIGH
Conflicts
1

CVE-2026-50678

Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Microsoft Office LTSC 2021, Microsoft Office LTSC 2024, Microsoft Office LTSC for Mac 2021, Microsoft Excel 2016, Microsoft Office LTSC for Mac 2024, Microsoft 365 Apps for Enterprise, Microsoft Office 365 for Mac, Microsoft Office 2019, Office Online Server
Provider severity
MEDIUM
Conflicts
1

CVE-2026-50677

Use after free in Windows Media allows an authorized attacker to elevate privileges locally.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft
Product
Windows 11 version 26H1, Windows 11 Version 25H2, Windows 11 Version 24H2
Provider severity
HIGH
Conflicts
2

CVE-2026-50676

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Media allows an authorized attacker to elevate privileges locally.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft
Product
Windows 11 Version 25H2, Windows 11 version 26H1, Windows 11 Version 24H2
Provider severity
HIGH
Conflicts
2

CVE-2026-50675

Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Microsoft Office 2019, Microsoft Office 365 for Mac, Microsoft Office LTSC for Mac 2024, Microsoft Office LTSC 2021, Office Online Server, Microsoft Office LTSC 2024, Microsoft Office LTSC for Mac 2021, Microsoft Excel 2016, Microsoft 365 Apps for Enterprise
Provider severity
HIGH
Conflicts
1

CVE-2026-50674

Use after free in Windows USB Print Driver allows an authorized attacker to elevate privileges locally.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows 11 Version 24H2, Windows 11 Version 25H2, Windows Server 2025, Windows 11 version 26H1, Windows Server 2025 (Server Core installation)
Provider severity
HIGH
Conflicts
1

CVE-2026-50673

Null pointer dereference in Windows Kernel allows an authorized attacker to elevate privileges locally.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows Server 2019 (Server Core installation), Windows 11 Version 25H2, Windows Server 2016, Windows Server 2022, Windows 11 Version 24H2, Windows 10 Version 21H2, Windows 10 Version 1607, Windows Server 2012 R2 (Server Core installation), Windows Server 2012 (Server Core installation), Windows 11 version 26H1, Windows Server 2019, Windows Server 2025 (Server Core installation), Windows 10 Version 22H2, Windows Server 2025, Windows Server 2012 R2, Windows Server 2016 (Server Core installation), Windows 10 Version 1809, Windows Server 2012
Provider severity
HIGH
Conflicts
2

CVE-2026-50672

Use after free in Windows NTFS allows an authorized attacker to elevate privileges locally.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows 11 Version 24H2, Windows Server 2022, Windows 11 version 26H1, Windows 11 Version 25H2, Windows 10 Version 1809, Windows Server 2019 (Server Core installation), Windows Server 2025 (Server Core installation), Windows 10 Version 21H2, Windows Server 2019, Windows 10 Version 22H2, Windows Server 2025
Provider severity
HIGH
Conflicts
2

CVE-2026-50670

Out-of-bounds read in Windows Kernel allows an authorized attacker to elevate privileges locally.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows Server 2025 (Server Core installation), Windows 10 Version 22H2, Windows 10 Version 21H2, Windows 11 Version 24H2, Windows Server 2025, Windows Server 2022, Windows Server 2019, Windows 11 version 26H1, Windows 11 Version 25H2, Windows Server 2019 (Server Core installation), Windows 10 Version 1809
Provider severity
HIGH
Conflicts
2

CVE-2026-5067

A remote, unauthenticated attacker can trigger memory corruption in Zephyr's HTTP server WebSocket upgrade path by sending a crafted Sec-WebSocket-Key header. The HTTP/1 header parser copies the header into a fixed-size buffer using a bounded copy that does not guarantee NUL termination when the input length reaches the buffer size. During upgrade handling the buffer is copied to a local stack buffer and passed to strlen(); if no NUL exists in-bounds, strlen() reads beyond the stack buffer and s

PUBLISHED
Vendor
zephyrproject-rtos
Product
Zephyr
Provider severity
CRITICAL
Conflicts
1

CVE-2026-50669

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Telephony Service allows an authorized attacker to elevate privileges locally.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows Server 2022, Windows Server 2016, Windows Server 2012 R2, Windows Server 2012, Windows Server 2019, Windows 10 Version 21H2, Windows 10 Version 1607, Windows Server 2025, Windows 11 Version 25H2, Windows Server 2012 R2 (Server Core installation), Windows 10 Version 1809, Windows Server 2019 (Server Core installation), Windows Server 2025 (Server Core installation), Windows Server 2012 (Server Core installation), Windows 10 Version 22H2, Windows Server 2016 (Server Core installation), Windows 11 Version 24H2, Windows 11 version 26H1
Provider severity
HIGH
Conflicts
2

CVE-2026-50668

Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to elevate privileges with a physical attack.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows Server 2025 (Server Core installation), Windows 10 Version 1809, Windows 10 Version 22H2, Windows 11 Version 24H2, Windows Server 2016 (Server Core installation), Windows Server 2022, Windows Server 2025, Windows Server 2016, Windows Server 2019 (Server Core installation), Windows 11 version 26H1, Windows Server 2019, Windows 11 Version 25H2, Windows 10 Version 21H2, Windows 10 Version 1607
Provider severity
MEDIUM
Conflicts
1

CVE-2026-50667

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows NTFS allows an authorized attacker to elevate privileges locally.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows Server 2012 (Server Core installation), Windows 10 Version 1809, Windows 10 Version 21H2, Windows Server 2012 R2 (Server Core installation), Windows 10 Version 22H2, Windows Server 2012, Windows Server 2022, Windows Server 2016, Windows Server 2019 (Server Core installation), Windows Server 2016 (Server Core installation), Windows 11 version 26H1, Windows Server 2019, Windows 10 Version 1607, Windows 11 Version 25H2, Windows Server 2025 (Server Core installation), Windows 11 Version 24H2, Windows Server 2025, Windows Server 2012 R2
Provider severity
HIGH
Conflicts
1

CVE-2026-50666

Use after free in Windows Remote Access Connection Manager allows an authorized attacker to elevate privileges over a network.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows 11 Version 25H2, Windows Server 2012 R2, Windows 11 version 26H1, Windows 10 Version 22H2, Windows Server 2022, Windows Server 2012 R2 (Server Core installation), Windows 10 Version 1607, Windows 10 Version 21H2, Windows Server 2016 (Server Core installation), Windows Server 2016, Windows Server 2025, Windows Server 2019, Windows Server 2025 (Server Core installation), Windows Server 2019 (Server Core installation), Windows 11 Version 24H2, Windows 10 Version 1809
Provider severity
HIGH
Conflicts
1

CVE-2026-50665

Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Microsoft 365 Apps for Enterprise, Microsoft Office 365 for Mac, Microsoft Office LTSC 2024, Microsoft Office LTSC for Mac 2021, Microsoft Office LTSC for Mac 2024, Microsoft Office LTSC 2021, Microsoft Office 2016, Microsoft Office 2019
Provider severity
HIGH
Conflicts
1

CVE-2026-50663

Relative path traversal in Age of Empires II: Definitive Edition Game allows an unauthorized attacker to execute code over a network.

PUBLISHED
Vendor
Microsoft
Product
Age of Empires II: Definitive Edition Game
Provider severity
HIGH
Conflicts
0

CVE-2026-50661

Protection mechanism failure in Windows BitLocker allows an unauthorized attacker to bypass a security feature with a physical attack.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows 10 Version 22H2, Windows 10 Version 1607, Windows Server 2016 (Server Core installation), Windows Server 2016, Windows Server 2025 (Server Core installation), Windows 10 Version 21H2, Windows 11 version 26H1, Windows Server 2019, Windows Server 2019 (Server Core installation), Windows Server 2022, Windows 11 Version 25H2, Windows 11 Version 24H2, Windows 10 Version 1809, Windows Server 2025
Provider severity
MEDIUM
Conflicts
1

CVE-2026-5066

A potential out-of-bounds write/read exists in the TLS socket connect path of the network sockets subsystem (subsys/net/lib/sockets/sockets_tls.c). When the TLS session cache is enabled, tls_session_store() and tls_session_restore() memcpy the caller-supplied address into a fixed-size buffer using the caller-controlled addrlen value without validating it against the destination size. struct net_sockaddr is an opaque type, so an application can pass an addrlen larger than sizeof(struct net_sockad

PUBLISHED
Vendor
zephyrproject-rtos
Product
Zephyr
Provider severity
MEDIUM
Conflicts
0

CVE-2026-50659

Improper encoding or escaping of output in .NET allows an authorized attacker to perform spoofing over a network.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Microsoft .NET Framework 3.5 AND 4.8, Microsoft .NET Framework 4.6.2/4.7/4.7.1/4.7.2, Microsoft .NET Framework 3.5 AND 4.7.2, .NET 9.0, Microsoft .NET Framework 4.8, Microsoft .NET Framework 3.5 AND 4.8.1, Microsoft Visual Studio 2026 version 18.7, Microsoft .NET Framework 4.8.1, .NET 10.0, .NET 8.0, Microsoft Visual Studio 2022 version 17.14, Microsoft Visual Studio 2022 version 17.12, Microsoft .NET Framework 3.5
Provider severity
MEDIUM
Conflicts
1

CVE-2026-50658

Time-of-check time-of-use (toctou) race condition in Microsoft Defender allows an authorized attacker to elevate privileges locally.

PUBLISHED
Vendor
Microsoft
Product
Microsoft Defender for Endpoint for Mac
Provider severity
HIGH
Conflicts
0

CVE-2026-50657

Exposure of private personal information to an unauthorized actor in Microsoft Defender allows an authorized attacker to disclose information locally.

PUBLISHED
Vendor
Microsoft
Product
Microsoft Defender for Endpoint for Mac
Provider severity
MEDIUM
Conflicts
0

CVE-2026-50656

Microsoft is aware of an elevation of privilege in the Microsoft Malware Protection Engine in Microsoft Defender publicly referred to as "RoguePlanet ".

PUBLISHED
Vendor
Microsoft
Product
Microsoft Malware Protection Engine
Provider severity
HIGH
Conflicts
0

CVE-2026-50655

Heap-based buffer overflow in Windows Media allows an unauthorized attacker to execute code locally.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows 10 Version 1809, Windows Server 2016, Windows 10 Version 21H2, Windows 10 Version 22H2, Windows Server 2019 (Server Core installation), Windows Server 2019, Windows 11 Version 25H2, Windows Server 2025 (Server Core installation), Windows Server 2016 (Server Core installation), Windows Server 2025, Windows 10 Version 1607, Windows 11 Version 24H2, Windows 11 version 26H1, Windows Server 2022
Provider severity
HIGH
Conflicts
1

CVE-2026-50653

Loop with unreachable exit condition ('infinite loop') in Azure Active Directory allows an unauthorized attacker to deny service over a network.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Microsoft .NET Framework 4.8, Azure Active Directory, Microsoft .NET Framework 4.6.2/4.7/4.7.1/4.7.2, Microsoft .NET Framework 3.5, Microsoft .NET Framework 3.5 AND 4.8.1, Microsoft .NET Framework 3.5 AND 4.8, Microsoft .NET Framework 3.5 AND 4.7.2, Microsoft .NET Framework 4.8.1
Provider severity
HIGH
Conflicts
2

CVE-2026-50652

Deserialization of untrusted data in Azure Active Directory allows an unauthorized attacker to deny service over a network.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Microsoft .NET Framework 4.8.1, Microsoft .NET Framework 3.5, Azure Active Directory, Microsoft .NET Framework 4.8, Microsoft .NET Framework 3.5 AND 4.8, Microsoft .NET Framework 3.5 AND 4.8.1, Microsoft .NET Framework 4.6.2/4.7/4.7.1/4.7.2, Microsoft .NET Framework 3.5 AND 4.7.2
Provider severity
HIGH
Conflicts
1