Exact snapshot results

353,537 CVE records

CVE ID descending · no relevance ranking

CVE-2026-40452

Incorrect Authorization, Improper Access Control vulnerability in Apache IoTDB. Authorization bypass in /rest/v2/fastLastQuery exposes last-value data to unauthorized authenticated users. This issue affects Apache IoTDB: from 1.3.5 before 1.3.8, from 2.0.5 before 2.0.10. Users are recommended to upgrade to version 2.0.10, which fixes the issue.

PUBLISHED
Vendor
Apache Software Foundation
Product
Apache IoTDB
Provider severity
HIGH
Conflicts
1

CVE-2026-40451

DeepL Chrome browser extension versions from v1.22.0 to v.1.23.0 contain a cross-site scripting vulnerability, which allows an attacker to execute arbitrary script in a user's browser, and inject malicious HTML into web pages viewed by the user.

PUBLISHED
Vendor
DeepL
Product
Chrome browser extension
Provider severity
MEDIUM
Conflicts
1

CVE-2026-40450

Integer overflow in output tensor copy size calculation in Samsung Open Source ONE could cause incorrect copy length and memory corruption for oversized tensors. Affected version is prior to commit 1.30.0.

PUBLISHED
Vendor
Samsung Open Source
Product
ONE
Provider severity
MEDIUM
Conflicts
0

CVE-2026-4045

A flaw has been found in projectsend up to r1945. This impacts an unknown function of the file includes/Classes/Auth.php. Executing a manipulation of the argument ldap_email can lead to observable response discrepancy. The attack can be executed remotely. A high complexity level is associated with this attack. The exploitability is said to be difficult. The exploit has been published and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

PUBLISHED
Vendor
n/a
Product
projectsend
Provider severity
LOW, MEDIUM
Conflicts
2

CVE-2026-40449

Integer overflow in buffer size calculation could result in out of bounds memory access when handling large tensors in Samsung Open Source ONE. Affected version is prior to commit 1.30.0.

PUBLISHED
Vendor
Samsung Open Source
Product
ONE
Provider severity
MEDIUM
Conflicts
0

CVE-2026-40448

Potential Integer overflow in tensor allocation size calculation could lead to insufficient memory allocation for large tensors in Samsung Open Source ONE. Affected version is prior to commit  1.30.0.

PUBLISHED
Vendor
Samsung Open Source
Product
ONE
Provider severity
MEDIUM
Conflicts
0

CVE-2026-40447

Integer overflow or wraparound vulnerability in Samsung Open Source Escargot allows undefined behavior.This issue affects Escargot: 97e8115ab1110bc502b4b5e4a0c689a71520d335.

PUBLISHED
Vendor
Samsung Open Source
Product
Escargot
Provider severity
MEDIUM
Conflicts
0

CVE-2026-40446

Access of resource using incompatible type ('type confusion') vulnerability in Samsung Open Source Escargot allows Pointer Manipulation.This issue affects Escargot: 97e8115ab1110bc502b4b5e4a0c689a71520d335.

PUBLISHED
Vendor
Samsung Open Source
Product
Escargot
Provider severity
MEDIUM
Conflicts
0

CVE-2026-4044

A vulnerability was detected in projectsend up to r1945. This affects the function realpath of the file /import-orphans.php of the component Delete Handler. Performing a manipulation of the argument files[] results in path traversal. Remote exploitation of the attack is possible. The exploit is now public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

PUBLISHED
Vendor
n/a
Product
projectsend
Provider severity
LOW, MEDIUM
Conflicts
1

CVE-2026-40436

The ZTE ZXEDM iEMS product has a password reset vulnerability for any user.Because the management of the cloud EMS portal does not properly control access to the user list acquisition function, attackers can read all user list information through the user list interface. Attackers can reset the passwords of obtained user information, causing risks such as unauthorized operations.

PUBLISHED
Vendor
ZTE
Product
ZXEDM iEMS
Provider severity
HIGH
Conflicts
0

CVE-2026-40435

When configured, IP-based access restrictions for httpd do not cover all endpoints, which may allow connections from blocked addresses.  Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.

PUBLISHED
Vendor
F5
Product
BIG-IP
Provider severity
MEDIUM
Conflicts
1

CVE-2026-40434

Anviz CrossChex Standard lacks source verification in the client/server channel, enabling TCP packet injection by an attacker on the same network to alter or disrupt application traffic.

PUBLISHED
Vendor
Anviz
Product
Anviz CrossChex Standard
Provider severity
HIGH
Conflicts
0

CVE-2026-40431

A vulnerability exists in SenseLive X3050’s web management interface due to its reliance on unencrypted HTTP for all administrative communication. Because management traffic, including authentication attempts and configuration data, is transmitted in cleartext, an attacker with access to the same network segment could intercept or observe sensitive operational information.

PUBLISHED
Vendor
SenseLive
Product
X3050
Provider severity
MEDIUM
Conflicts
1

CVE-2026-40430

Pronetiqs IntraVUE Versions 3.2.1a14 and prior have a plaintext storage of a password vulnerability that could expose cleartext credentials through the API.

PUBLISHED
Vendor
Pronetiqs
Product
Panduit Intravue
Provider severity
HIGH
Conflicts
1

CVE-2026-4043

A security vulnerability has been detected in Tenda i12 1.0.0.6(2204). The impacted element is the function formwrlSSIDget of the file /goform/wifiSSIDget. Such manipulation of the argument index leads to stack-based buffer overflow. The attack may be launched remotely. The exploit has been disclosed publicly and may be used.

PUBLISHED
Vendor
Tenda
Product
i12
Provider severity
HIGH
Conflicts
2

CVE-2026-40425

The administrator account for the Danelec MacGregor Voyage Data Recorder web interface can directly edit sensitive files related to authentication, potentially changing the root password.

PUBLISHED
Vendor
Danelec
Product
MacGregor Voyage Data Recorder (VDR) G4e
Provider severity
MEDIUM
Conflicts
1

CVE-2026-40423

When a SIP profile is configured on a virtual server, undisclosed traffic can cause the Traffic Management Microkernel (TMM) to terminate.  Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.

PUBLISHED
Vendor
F5
Product
BIG-IP
Provider severity
HIGH
Conflicts
1

CVE-2026-40422

Use of uninitialized resource in Windows File Explorer allows an authorized attacker to disclose information locally.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows Server 2019, Windows 11 Version 24H2, Windows Server 2025 (Server Core installation), Windows 11 Version 25H2, Windows 10 Version 1607, Windows Server 2019 (Server Core installation), Windows Server 2025, Windows Server 2016, Windows Server 2022, Windows 10 Version 21H2, Windows 10 Version 1809, Windows 10 Version 22H2, Windows Server 2016 (Server Core installation), Windows 11 version 26H1
Provider severity
MEDIUM
Conflicts
1

CVE-2026-40421

Files or directories accessible to external parties in Microsoft Office Word allows an unauthorized attacker to disclose information locally.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Microsoft Office LTSC 2021, Microsoft Office 2019, Microsoft 365 Apps for Enterprise, Microsoft Word 2016, Microsoft Office LTSC 2024
Provider severity
MEDIUM
Conflicts
1

CVE-2026-40420

Use after free in Microsoft Office allows an authorized attacker to elevate privileges locally.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft
Product
Microsoft Office 2019, Microsoft Office LTSC 2024, Microsoft 365 Apps for Enterprise, Microsoft Office LTSC 2021
Provider severity
HIGH
Conflicts
1

CVE-2026-4042

A weakness has been identified in Tenda i12 1.0.0.6(2204). The affected element is the function formWifiMacFilterGet of the file /goform/WifiMacFilterGet. This manipulation of the argument index causes stack-based buffer overflow. The attack may be initiated remotely. The exploit has been made available to the public and could be used for attacks.

PUBLISHED
Vendor
Tenda
Product
i12
Provider severity
HIGH
Conflicts
2

CVE-2026-40419

Use after free in Microsoft Office allows an authorized attacker to elevate privileges locally.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft
Product
Microsoft Office 2019, Microsoft Office LTSC 2021, Microsoft Office LTSC 2024, Microsoft 365 Apps for Enterprise
Provider severity
HIGH
Conflicts
1

CVE-2026-40418

Use after free in Microsoft Office allows an authorized attacker to elevate privileges locally.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft
Product
Microsoft Office LTSC 2024, Microsoft Office LTSC 2021, Microsoft Office 2019, Microsoft 365 Apps for Enterprise
Provider severity
HIGH
Conflicts
1

CVE-2026-40417

Weak authentication in Dynamics Business Central allows an authorized attacker to elevate privileges locally.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft
Product
Microsoft Dynamics 365 Business Central 2024 Release Wave 2, Microsoft Dynamics 365 Business Central Release Wave 1 2025, Microsoft Dynamics 365 Business Central Release Wave 2 2025, Microsoft Dynamics 365 Business Central 2026 Release Wave 1
Provider severity
HIGH
Conflicts
1

CVE-2026-40416

User interface (ui) misrepresentation of critical information in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform spoofing over a network.

PUBLISHED
Vendor
Microsoft
Product
Microsoft Edge (Chromium-based)
Provider severity
MEDIUM
Conflicts
0

CVE-2026-40415

Use after free in Windows TCP/IP allows an unauthorized attacker to execute code over a network.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows Server 2022, 23H2 Edition (Server Core installation), Windows Server 2022, Windows 10 Version 22H2, Windows 11 Version 25H2, Windows Server 2025 (Server Core installation), Windows Server 2019, Windows 10 Version 1809, Windows 10 Version 21H2, Windows 11 version 23H2, Windows Server 2019 (Server Core installation), Windows 11 Version 23H2, Windows 11 Version 24H2, Windows Server 2025, Windows 11 version 26H1
Provider severity
HIGH
Conflicts
1

CVE-2026-40414

Windows TCP/IP Denial of Service Vulnerability

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows Server 2012 (Server Core installation), Windows Server 2012 R2 (Server Core installation), Windows 10 Version 22H2, Windows 10 Version 1607, Windows Server 2012 R2, Windows Server 2016, Windows Server 2012, Windows Server 2016 (Server Core installation), Windows Server 2019, Windows Server 2019 (Server Core installation), Windows 11 Version 23H2, Windows Server 2022, 23H2 Edition (Server Core installation), Windows 11 Version 25H2, Windows Server 2022, Windows 11 Version 24H2, Windows 10 Version 21H2, Windows Server 2025 (Server Core installation), Windows 11 version 23H2, Windows 11 version 26H1, Windows Server 2025, Windows 10 Version 1809
Provider severity
HIGH
Conflicts
1

CVE-2026-40413

Windows TCP/IP Denial of Service Vulnerability

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows 10 Version 1809, Windows 10 Version 1607, Windows Server 2022, 23H2 Edition (Server Core installation), Windows 11 Version 24H2, Windows Server 2012 R2 (Server Core installation), Windows Server 2012, Windows Server 2025, Windows Server 2016 (Server Core installation), Windows 11 version 26H1, Windows 10 Version 22H2, Windows Server 2022, Windows Server 2016, Windows Server 2012 (Server Core installation), Windows 11 Version 25H2, Windows Server 2019, Windows 10 Version 21H2, Windows Server 2019 (Server Core installation), Windows Server 2012 R2, Windows 11 Version 23H2, Windows Server 2025 (Server Core installation), Windows 11 version 23H2
Provider severity
HIGH
Conflicts
1

CVE-2026-40412

Unrestricted upload of file with dangerous type in Azure Orbital Spatio allows an unauthorized attacker to execute code over a network.

PUBLISHED
Vendor
Microsoft
Product
Azure Orbital Spatio
Provider severity
CRITICAL
Conflicts
0

CVE-2026-40411

Improper input validation in Azure Virtual Network Gateway allows an authorized attacker to execute code over a network.

PUBLISHED
Vendor
Microsoft
Product
Azure Virtual Network Gateway
Provider severity
CRITICAL
Conflicts
0

CVE-2026-40410

Use after free in Windows SMB Client allows an authorized attacker to elevate privileges locally.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows 10 Version 22H2, Windows 11 Version 24H2, Windows Server 2016, Windows 11 version 26H1, Windows Server 2025, Windows Server 2012 R2 (Server Core installation), Windows 11 Version 25H2, Windows Server 2012 R2, Windows 11 Version 23H2, Windows Server 2016 (Server Core installation), Windows Server 2019 (Server Core installation), Windows Server 2022, 23H2 Edition (Server Core installation), Windows Server 2025 (Server Core installation), Windows Server 2019, Windows Server 2022, Windows 10 Version 1809, Windows 11 version 23H2, Windows 10 Version 1607, Windows 10 Version 21H2
Provider severity
HIGH
Conflicts
1

CVE-2026-4041

A security flaw has been discovered in Tenda i12 1.0.0.6(2204). Impacted is the function vos_strcpy of the file /goform/exeCommand. The manipulation of the argument cmdinput results in stack-based buffer overflow. The attack can be launched remotely. The exploit has been released to the public and may be used for attacks.

PUBLISHED
Vendor
Tenda
Product
i12
Provider severity
HIGH
Conflicts
2

CVE-2026-40409

Windows Universal Disk Format File System Driver (UDFS) Elevation of Privilege Vulnerability

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows 11 version 23H2, Windows Server 2016, Windows 10 Version 1607, Windows 11 Version 23H2, Windows 10 Version 22H2, Windows 11 Version 25H2, Windows Server 2016 (Server Core installation), Windows 11 Version 24H2, Windows Server 2012 R2, Windows Server 2025 (Server Core installation), Windows Server 2012, Windows Server 2012 R2 (Server Core installation), Windows 10 Version 21H2, Windows Server 2022, Windows 10 Version 1809, Windows Server 2012 (Server Core installation), Windows 11 version 26H1, Windows Server 2019 (Server Core installation), Windows Server 2025, Windows Server 2019
Provider severity
HIGH
Conflicts
1

CVE-2026-40408

Use after free in Windows Kernel-Mode Drivers allows an authorized attacker to elevate privileges locally.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows Server 2025, Windows 11 version 26H1, Windows 11 Version 25H2, Windows Server 2019 (Server Core installation), Windows 10 Version 21H2, Windows 10 Version 1809, Windows Server 2012, Windows Server 2022, Windows Server 2016 (Server Core installation), Windows Server 2022, 23H2 Edition (Server Core installation), Windows 11 version 23H2, Windows 11 Version 23H2, Windows 10 Version 22H2, Windows Server 2012 (Server Core installation), Windows 11 Version 24H2, Windows Server 2012 R2, Windows Server 2016, Windows Server 2025 (Server Core installation), Windows Server 2019, Windows Server 2012 R2 (Server Core installation), Windows 10 Version 1607
Provider severity
HIGH
Conflicts
1

CVE-2026-40407

Heap-based buffer overflow in Windows Common Log File System Driver allows an authorized attacker to elevate privileges locally.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows 10 Version 1607, Windows Server 2016, Windows Server 2016 (Server Core installation), Windows 11 Version 25H2, Windows Server 2012, Windows Server 2012 (Server Core installation), Windows 11 Version 24H2, Windows 10 Version 21H2, Windows 10 Version 1809, Windows 10 Version 22H2, Windows Server 2012 R2 (Server Core installation), Windows Server 2022, 23H2 Edition (Server Core installation), Windows 11 version 26H1, Windows Server 2025 (Server Core installation), Windows Server 2019 (Server Core installation), Windows Server 2012 R2, Windows 11 version 23H2, Windows Server 2019, Windows Server 2022, Windows 11 Version 23H2, Windows Server 2025
Provider severity
HIGH
Conflicts
1

CVE-2026-40406

Use after free in Windows TCP/IP allows an unauthorized attacker to disclose information over a network.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows Server 2012, Windows 11 Version 25H2, Windows Server 2025 (Server Core installation), Windows Server 2019, Windows 11 Version 24H2, Windows 10 Version 21H2, Windows 11 version 23H2, Windows Server 2019 (Server Core installation), Windows Server 2016 (Server Core installation), Windows Server 2016, Windows Server 2012 R2 (Server Core installation), Windows Server 2025, Windows 10 Version 1809, Windows Server 2012 R2, Windows Server 2012 (Server Core installation), Windows 10 Version 22H2, Windows Server 2022, 23H2 Edition (Server Core installation), Windows 11 Version 23H2, Windows 11 version 26H1, Windows 10 Version 1607, Windows Server 2022
Provider severity
HIGH
Conflicts
1

CVE-2026-40405

Null pointer dereference in Windows TCP/IP allows an unauthorized attacker to deny service over a network.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows 11 Version 25H2, Windows 11 Version 24H2, Windows Server 2025, Windows 11 version 26H1, Windows Server 2025 (Server Core installation)
Provider severity
HIGH
Conflicts
1

CVE-2026-40404

Windows Universal Disk Format File System Driver (UDFS) Elevation of Privilege Vulnerability

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows Server 2025 (Server Core installation), Windows Server 2025, Windows Server 2012, Windows Server 2019 (Server Core installation), Windows 11 Version 23H2, Windows Server 2016 (Server Core installation), Windows 11 version 23H2, Windows 10 Version 1809, Windows Server 2012 R2, Windows Server 2022, Windows 11 Version 24H2, Windows 11 Version 25H2, Windows Server 2016, Windows 10 Version 21H2, Windows Server 2012 (Server Core installation), Windows 10 Version 1607, Windows 10 Version 22H2, Windows Server 2019, Windows Server 2012 R2 (Server Core installation), Windows 11 version 26H1
Provider severity
HIGH
Conflicts
2

CVE-2026-40403

Heap-based buffer overflow in Windows Win32K - GRFX allows an authorized attacker to execute code locally.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows Server 2019, Windows 10 Version 21H2, Windows 11 Version 23H2, Windows Server 2012 R2, Windows Server 2016, Windows Server 2025, Windows 10 Version 22H2, Windows 10 Version 1809, Windows Server 2012 (Server Core installation), Windows 11 version 26H1, Windows Server 2025 (Server Core installation), Windows 11 version 23H2, Windows Server 2016 (Server Core installation), Windows Server 2012 R2 (Server Core installation), Windows 11 Version 25H2, Windows 11 Version 24H2, Windows Server 2019 (Server Core installation), Windows Server 2022, 23H2 Edition (Server Core installation), Windows Server 2012, Windows 10 Version 1607, Windows Server 2022
Provider severity
HIGH
Conflicts
1

CVE-2026-40402

Use after free in Windows Hyper-V allows an unauthorized attacker to elevate privileges locally.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft
Product
Windows 11 Version 23H2, Windows 11 version 23H2, Windows Server 2022
Provider severity
CRITICAL
Conflicts
1

CVE-2026-40401

Windows TCP/IP Denial of Service Vulnerability

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows Server 2025 (Server Core installation), Windows Server 2019 (Server Core installation), Windows 10 Version 1809, Windows 10 Version 21H2, Windows 11 version 26H1, Windows 11 Version 25H2, Windows Server 2025, Windows Server 2022, Windows 11 Version 23H2, Windows Server 2022, 23H2 Edition (Server Core installation), Windows 10 Version 22H2, Windows Server 2016 (Server Core installation), Windows Server 2016, Windows 11 version 23H2, Windows Server 2019, Windows Server 2012 (Server Core installation), Windows Server 2012 R2 (Server Core installation), Windows 11 Version 24H2, Windows Server 2012, Windows 10 Version 1607, Windows Server 2012 R2
Provider severity
HIGH
Conflicts
1

CVE-2026-40400

Relative path traversal in Windows PowerShell allows an authorized attacker to execute code over a network.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows Server 2012, Windows Server 2025, Windows Server 2012 (Server Core installation), Windows Server 2019 (Server Core installation), Windows Server 2019, Windows 10 Version 1809, Windows 11 Version 25H2, Windows Server 2016, Windows 11 Version 24H2, Windows 10 Version 1607, Windows 10 Version 21H2, Windows 10 Version 22H2, Windows 11 version 26H1, Windows Server 2016 (Server Core installation), Windows Server 2012 R2, Windows Server 2012 R2 (Server Core installation), Windows Server 2025 (Server Core installation), Windows Server 2022
Provider severity
HIGH
Conflicts
1

CVE-2026-4040

A vulnerability was identified in OpenClaw up to 2026.2.17. This issue affects the function tools.exec.safeBins of the component File Existence Handler. The manipulation leads to information exposure through discrepancy. The attack needs to be performed locally. Upgrading to version 2026.2.19-beta.1 is capable of addressing this issue. The identifier of the patch is bafdbb6f112409a65decd3d4e7350fbd637c7754. Upgrading the affected component is advised.

PUBLISHED
Vendor
n/a
Product
OpenClaw
Provider severity
LOW, MEDIUM
Conflicts
2

CVE-2026-40399

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows TCP/IP allows an authorized attacker to elevate privileges locally.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows 11 Version 23H2, Windows 11 version 23H2, Windows Server 2022, Windows Server 2025 (Server Core installation), Windows 10 Version 21H2, Windows Server 2016 (Server Core installation), Windows 11 Version 25H2, Windows 10 Version 1607, Windows Server 2019, Windows 11 Version 24H2, Windows 11 version 26H1, Windows Server 2019 (Server Core installation), Windows Server 2016, Windows 10 Version 1809, Windows Server 2025, Windows Server 2022, 23H2 Edition (Server Core installation), Windows 10 Version 22H2
Provider severity
HIGH
Conflicts
1

CVE-2026-40398

Heap-based buffer overflow in Windows Remote Desktop allows an authorized attacker to elevate privileges locally.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows Server 2012 R2, Windows 10 Version 1809, Windows Server 2019, Windows 11 Version 24H2, Windows 10 Version 1607, Windows Server 2016 (Server Core installation), Windows 11 Version 23H2, Windows 11 version 23H2, Windows Server 2019 (Server Core installation), Windows 11 Version 25H2, Windows Server 2022, Windows Server 2012, Windows Server 2012 (Server Core installation), Windows Server 2025, Windows 11 version 26H1, Windows Server 2016, Windows Server 2012 R2 (Server Core installation), Windows 10 Version 21H2, Windows Server 2022, 23H2 Edition (Server Core installation), Windows Server 2025 (Server Core installation), Windows 10 Version 22H2
Provider severity
HIGH
Conflicts
1

CVE-2026-40397

Heap-based buffer overflow in Windows Common Log File System Driver allows an authorized attacker to elevate privileges locally.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows 10 Version 1607, Windows Server 2019 (Server Core installation), Windows 10 Version 22H2, Windows Server 2019, Windows 11 Version 25H2, Windows 11 Version 23H2, Windows Server 2012 (Server Core installation), Windows Server 2022, Windows Server 2022, 23H2 Edition (Server Core installation), Windows 10 Version 1809, Windows 11 Version 24H2, Windows 11 version 23H2, Windows Server 2025 (Server Core installation), Windows 11 version 26H1, Windows Server 2016, Windows Server 2012 R2, Windows Server 2016 (Server Core installation), Windows 10 Version 21H2, Windows Server 2025, Windows Server 2012 R2 (Server Core installation), Windows Server 2012
Provider severity
HIGH
Conflicts
1

CVE-2026-40396

Varnish Cache 9 before 9.0.1 allows a "workspace overflow" denial of service (daemon panic) after timeout_linger. A malicious client could send an HTTP/1 request, wait long enough until the session releases its worker thread (timeout_linger) and resume traffic before the session is closed (timeout_idle) sending more than one request at once to trigger a pipelining operation between requests. This vulnerability affecting Varnish Cache 9.0.0 emerged from a port of the Varnish Enterprise non-blocki

PUBLISHED
Vendor
varnish-software
Product
Varnish Cache
Provider severity
MEDIUM
Conflicts
0

CVE-2026-40395

Varnish Enterprise before 6.0.16r12 allows a "workspace overflow" denial of service (daemon panic) for shared VCL. The headerplus.write_req0() function from vmod_headerplus updates the underlying req0, which is normally the original read-only request from which req is derived (readable and writable from VCL). This is useful in the active VCL, after amending req, to prepare a refined req0 before switching to a different VCL with the return (vcl(<label>)) action. This is for example how the Varnis

PUBLISHED
Vendor
varnish-software
Product
Varnish Enterprise
Provider severity
MEDIUM
Conflicts
0

CVE-2026-40394

Varnish Cache 9 before 9.0.1 and Varnish Enterprise before 6.0.16r11 allows a "workspace overflow" denial of service (daemon panic) for certain amounts of prefetched data. The setup of an HTTP/2 session starts with a speculative HTTP/1 transport, and upon upgrading to h2 the HTTP/1 request is repurposed as stream zero. During the upgrade, a buffer allocation is made to reserve space to send frames to the client. This allocation would split the original workspace, and depending on the amount of p

PUBLISHED
Vendor
varnish-software
Product
Varnish Cache
Provider severity
MEDIUM
Conflicts
0

CVE-2026-40393

In Mesa before 25.3.6 and 26 before 26.0.1, out-of-bounds memory access can occur in WebGPU because the amount of to-be-allocated data depends on an untrusted party, and is then used for alloca.

PUBLISHED
Vendor
mesa3d
Product
Mesa
Provider severity
HIGH
Conflicts
0