Exact snapshot results

353,537 CVE records

CVE ID descending · no relevance ranking

CVE-2026-20911

A flaw was found in LibRaw. A remote attacker can exploit a heap-based buffer overflow vulnerability in the HuffTable::initval functionality by providing a specially crafted malicious file. This can lead to arbitrary code execution or a denial of service (DoS) on the affected system.

PUBLISHED
Vendor
Red Hat, Red Hat, LibRaw, Red Hat, Red Hat, Red Hat, Red Hat
Product
Red Hat Enterprise Linux 6, Red Hat Enterprise Linux 8, LibRaw, Red Hat Enterprise Linux 7, Red Hat Enterprise Linux 7, Red Hat Enterprise Linux 8, Red Hat Enterprise Linux 9
Provider severity
CRITICAL, HIGH
Conflicts
3

CVE-2026-20910

An OS command injection vulnerability exists in XWEB Pro version 1.12.1 and prior, enabling an authenticated attacker to achieve remote code execution on the system by injecting malicious input into the devices field of the firmware update action to achieve remote code execution.

PUBLISHED
Vendor
Copeland, Copeland, Copeland
Product
Copeland XWEB 500B PRO, Copeland XWEB 300D PRO, Copeland XWEB 500D PRO
Provider severity
HIGH
Conflicts
1

CVE-2026-20909

Gitea versions before 1.25.5 have insufficient permission checks when listing tracked time entries.

PUBLISHED
Vendor
Gitea
Product
Gitea Open Source Git Server
Provider severity
MEDIUM
Conflicts
0

CVE-2026-20905

Improper input validation for some Intel(R) QAT software drivers for Windows before version 2.6 within Ring 3: User Applications may allow a denial of service. Unprivileged software adversary with an authenticated user combined with a low complexity attack may enable denial of service. This result may potentially occur via local access when attack requirements are not present without special internal knowledge and requires no user interaction. The potential vulnerability may impact the confident

PUBLISHED
Vendor
n/a
Product
Intel(R) QAT software drivers for Windows
Provider severity
MEDIUM
Conflicts
1

CVE-2026-20904

Gitea does not properly validate ownership when toggling OpenID URI visibility. An authenticated user may be able to change the visibility settings of other users' OpenID identities.

PUBLISHED
Vendor
Gitea
Product
Gitea Open Source Git Server
Provider severity
MEDIUM
Conflicts
1

CVE-2026-20902

An OS command injection vulnerability exists in XWEB Pro version 1.12.1 and prior, enabling an authenticated attacker to achieve remote code execution on the system by injecting malicious input into the map filename field during the map upload action of the parameters route.

PUBLISHED
Vendor
Copeland, Copeland, Copeland
Product
Copeland XWEB 300D PRO, Copeland XWEB 500D PRO, Copeland XWEB 500B PRO
Provider severity
HIGH
Conflicts
1

CVE-2026-2090

A vulnerability was determined in SourceCodester Online Class Record System 1.0. This issue affects some unknown processing of the file /admin/message/search.php. Executing a manipulation of the argument term can lead to sql injection. The attack can be executed remotely. The exploit has been publicly disclosed and may be utilized.

PUBLISHED
Vendor
SourceCodester
Product
Online Class Record System
Provider severity
HIGH, MEDIUM
Conflicts
2

CVE-2026-20897

Gitea does not properly validate repository ownership when deleting Git LFS locks. A user with write access to one repository may be able to delete LFS locks belonging to other repositories.

PUBLISHED
Vendor
Red Hat, Red Hat, Red Hat, Red Hat, Gitea, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat
Product
OpenShift Pipelines, OpenShift Pipelines, OpenShift Pipelines, OpenShift Pipelines, Gitea Open Source Git Server, OpenShift Pipelines, OpenShift Pipelines, OpenShift Pipelines, OpenShift Pipelines, OpenShift Pipelines
Provider severity
CRITICAL
Conflicts
2

CVE-2026-20896

Gitea Docker image versions up to and including 1.26.2 use REVERSE_PROXY_TRUSTED_PROXIES=* by default, allowing any source IP to impersonate a user when reverse-proxy authentication headers such as X-WEBAUTH-USER are enabled.

PUBLISHED
Vendor
Gitea
Product
Gitea Open Source Git Server
Provider severity
CRITICAL
Conflicts
0

CVE-2026-20895

The WebSocket backend uses charging station identifiers to uniquely associate sessions but allows multiple endpoints to connect using the same session identifier. This implementation results in predictable session identifiers and enables session hijacking or shadowing, where the most recent connection displaces the legitimate charging station and receives backend commands intended for that station. This vulnerability may allow unauthorized users to authenticate as other users or enable a

PUBLISHED
Vendor
EV2GO
Product
ev2go.io
Provider severity
HIGH, MEDIUM
Conflicts
1

CVE-2026-20894

Cross-site scripting vulnerability exists in multiple Network Cameras TRIFORA 3 series provided by TOA Corporation. If an attacking administrator configures the affected product with some malicious input, an arbitrary script may be executed on the web browser of a victim administrator who accesses the setting screen.

PUBLISHED
Vendor
TOA Corporation
Product
Multiple Network Cameras TRIFORA 3 series
Provider severity
MEDIUM
Conflicts
1

CVE-2026-20893

Origin validation error issue exists in Fujitsu Security Solution AuthConductor Client Basic V2 2.0.25.0 and earlier. If this vulnerability is exploited, an attacker who can log in to the Windows system where the affected product is installed may execute arbitrary code with SYSTEM privilege and/or modify the registry value.

PUBLISHED
Vendor
Fujitsu Client Computing Limited
Product
Fujitsu Security Solution AuthConductor Client Basic V2
Provider severity
HIGH
Conflicts
1

CVE-2026-20892

Code injection vulnerability exists in MR-GM5L-S1 and MR-GM5A-L1, which may allow an attacker with administrative privileges to execute arbitrary commands.

PUBLISHED
Vendor
Micro Research Ltd., Micro Research Ltd.
Product
MR-GM5L-S1, MR-GM5A-L1
Provider severity
HIGH
Conflicts
2

CVE-2026-2089

A vulnerability was found in SourceCodester Online Class Record System 1.0. This vulnerability affects unknown code of the file /admin/subject/controller.php. Performing a manipulation of the argument ID results in sql injection. Remote exploitation of the attack is possible. The exploit has been made public and could be used.

PUBLISHED
Vendor
SourceCodester
Product
Online Class Record System
Provider severity
HIGH, MEDIUM
Conflicts
2

CVE-2026-20889

A flaw was found in LibRaw, a library used for processing raw image files. This vulnerability, a heap-based buffer overflow, exists within the x3f_thumb_loader functionality. A remote attacker could exploit this by tricking a user into opening a specially crafted malicious file. Successful exploitation could lead to arbitrary code execution, giving the attacker full control over the affected system.

PUBLISHED
Vendor
Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, LibRaw, Red Hat, Red Hat
Product
Red Hat Enterprise Linux 9, Red Hat Enterprise Linux 6, Red Hat Enterprise Linux 8.4 Extended Update Support Long-Life Add-On, Red Hat Enterprise Linux 8.6 Update Services for SAP Solutions, Red Hat Enterprise Linux 8.6 Advanced Mission Critical Update Support, Red Hat Enterprise Linux 8.6 Telecommunications Update Service, Red Hat Enterprise Linux 8.8 Update Services for SAP Solutions, Red Hat Enterprise Linux 8, Red Hat Enterprise Linux 7, Red Hat Enterprise Linux 8.8 Telecommunications Update Service, Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update Support, LibRaw, Red Hat Enterprise Linux 7, Red Hat Enterprise Linux 8
Provider severity
CRITICAL, HIGH
Conflicts
3

CVE-2026-20888

Gitea does not properly verify authorization when canceling scheduled auto-merges via the web interface. A user with read access to pull requests may be able to cancel auto-merges scheduled by other users.

PUBLISHED
Vendor
Gitea
Product
Gitea Open Source Git Server
Provider severity
MEDIUM
Conflicts
1

CVE-2026-20887

Improper access control for some Intel Vision software for all versions within Ring 3: User Applications may allow a denial of service. Unprivileged software adversary with an unauthenticated user combined with a low complexity attack may enable remote code execution. This result may potentially occur via network access when attack requirements are not present without special internal knowledge and requires no user interaction. The potential vulnerability may impact the confidentiality (high), i

PUBLISHED
Vendor
n/a
Product
Intel Vision software
Provider severity
HIGH
Conflicts
1

CVE-2026-20884

An integer overflow vulnerability exists in the deflate_dng_load_raw functionality of LibRaw Commit 8dc68e2. A specially crafted malicious file can lead to a heap buffer overflow. An attacker can provide a malicious file to trigger this vulnerability.

PUBLISHED
Vendor
LibRaw
Product
LibRaw
Provider severity
HIGH
Conflicts
0

CVE-2026-20883

Gitea's stopwatch API does not re-validate repository access permissions. After a user's access to a private repository is revoked, they may still view issue titles and repository names through previously started stopwatches.

PUBLISHED
Vendor
Gitea
Product
Gitea Open Source Git Server
Provider severity
MEDIUM
Conflicts
0

CVE-2026-20882

The WebSocket Application Programming Interface lacks restrictions on the number of authentication requests. This absence of rate limiting may allow an attacker to conduct denial-of-service attacks by suppressing or mis-routing legitimate charger telemetry, or conduct brute-force attacks to gain unauthorized access.

PUBLISHED
Vendor
Mobiliti
Product
e-mobi.hu
Provider severity
HIGH
Conflicts
2

CVE-2026-20881

Divide by zero for some Intel(R) QAT software drivers for Windows before version 1.13 within Ring 3: User Applications may allow a denial of service. Unprivileged software adversary with an authenticated user combined with a low complexity attack may enable denial of service. This result may potentially occur via local access when attack requirements are not present without special internal knowledge and requires no user interaction. The potential vulnerability may impact the confidentiality (no

PUBLISHED
Vendor
n/a
Product
Intel(R) QAT software drivers for Windows
Provider severity
MEDIUM
Conflicts
1

CVE-2026-2088

A vulnerability has been found in PHPGurukul Beauty Parlour Management System 1.1. This affects an unknown part of the file /admin/accepted-appointment.php. Such manipulation of the argument delid leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.

PUBLISHED
Vendor
PHPGurukul
Product
Beauty Parlour Management System
Provider severity
HIGH, MEDIUM
Conflicts
2

CVE-2026-20879

Out-of-bounds write for the Intel(R) Data Center Graphics Driver for VMware ESXi software before version 2.0.2 within Ring 1: Device Drivers may allow a denial of service. System software adversary with a privileged user combined with a low complexity attack may enable data corruption. This result may potentially occur via local access when attack requirements are not present without special internal knowledge and requires no user interaction. The potential vulnerability may impact the confident

PUBLISHED
Vendor
n/a
Product
Intel(R) Data Center Graphics Driver for VMware ESXi software
Provider severity
HIGH
Conflicts
1

CVE-2026-20877

Use after free in Windows Management Services allows an authorized attacker to elevate privileges locally.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows 10 Version 22H2, Windows Server 2025, Windows 11 Version 23H2, Windows Server 2022, 23H2 Edition (Server Core installation), Windows Server 2025 (Server Core installation), Windows 11 version 23H2, Windows Server 2022, Windows 10 Version 21H2, Windows 11 Version 24H2, Windows 11 Version 25H2, Windows Server 2019 (Server Core installation), Windows 10 Version 1809, Windows Server 2019
Provider severity
HIGH
Conflicts
2

CVE-2026-20876

Heap-based buffer overflow in Windows Virtualization-Based Security (VBS) Enclave allows an authorized attacker to elevate privileges locally.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows Server 2025 (Server Core installation), Windows Server 2022, 23H2 Edition (Server Core installation), Windows 11 version 23H2, Windows 11 Version 25H2, Windows 11 Version 23H2, Windows 11 Version 24H2, Windows Server 2025
Provider severity
MEDIUM
Conflicts
1

CVE-2026-20875

Null pointer dereference in Windows Local Security Authority Subsystem Service (LSASS) allows an unauthorized attacker to deny service over a network.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows 10 Version 21H2, Windows Server 2022, Windows Server 2019 (Server Core installation), Windows 11 Version 25H2, Windows 11 Version 24H2, Windows 11 Version 23H2, Windows Server 2012, Windows Server 2008 R2 Service Pack 1, Windows Server 2025 (Server Core installation), Windows Server 2016 (Server Core installation), Windows Server 2019, Windows Server 2008 Service Pack 2 (Server Core installation), Windows 10 Version 22H2, Windows Server 2008 Service Pack 2, Windows 10 Version 1607, Windows Server 2016, Windows Server 2012 R2 (Server Core installation), Windows Server 2012 R2, Windows Server 2025, Windows 10 Version 1809, Windows Server 2012 (Server Core installation), Windows Server 2008 R2 Service Pack 1 (Server Core installation), Windows Server 2022, 23H2 Edition (Server Core installation), Windows 11 version 23H2
Provider severity
HIGH
Conflicts
1

CVE-2026-20874

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Management Services allows an authorized attacker to elevate privileges locally.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows 11 version 23H2, Windows 11 Version 23H2, Windows Server 2025 (Server Core installation), Windows Server 2022, Windows Server 2019 (Server Core installation), Windows Server 2019, Windows Server 2022, 23H2 Edition (Server Core installation), Windows 11 Version 24H2, Windows Server 2025, Windows 11 Version 25H2, Windows 10 Version 1809, Windows 10 Version 21H2, Windows 10 Version 22H2
Provider severity
HIGH
Conflicts
2

CVE-2026-20873

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Management Services allows an authorized attacker to elevate privileges locally.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows 11 Version 25H2, Windows 10 Version 1809, Windows Server 2025 (Server Core installation), Windows Server 2022, Windows Server 2022, 23H2 Edition (Server Core installation), Windows 11 Version 24H2, Windows Server 2019 (Server Core installation), Windows Server 2019, Windows Server 2025, Windows 10 Version 22H2, Windows 11 version 23H2, Windows 11 Version 23H2, Windows 10 Version 21H2
Provider severity
HIGH
Conflicts
2

CVE-2026-20872

External control of file name or path in Windows NTLM allows an unauthorized attacker to perform spoofing over a network.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows Server 2008 Service Pack 2, Windows Server 2008 R2 Service Pack 1, Windows 10 Version 22H2, Windows 10 Version 1809, Windows Server 2025, Windows 11 version 23H2, Windows Server 2022, 23H2 Edition (Server Core installation), Windows 10 Version 1607, Windows Server 2016 (Server Core installation), Windows Server 2016, Windows 11 Version 25H2, Windows Server 2012 R2 (Server Core installation), Windows 11 Version 23H2, Windows Server 2012, Windows Server 2008 R2 Service Pack 1 (Server Core installation), Windows Server 2022, Windows Server 2012 (Server Core installation), Windows Server 2012 R2, Windows 11 Version 24H2, Windows Server 2019, Windows Server 2025 (Server Core installation), Windows 10 Version 21H2, Windows Server 2019 (Server Core installation), Windows Server 2008 Service Pack 2 (Server Core installation)
Provider severity
MEDIUM
Conflicts
1

CVE-2026-20871

Use after free in Desktop Windows Manager allows an authorized attacker to elevate privileges locally.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows Server 2025, Windows Server 2025 (Server Core installation), Windows 10 Version 21H2, Windows 10 Version 22H2, Windows 11 version 23H2, Windows Server 2022, Windows Server 2022, 23H2 Edition (Server Core installation), Windows 11 Version 25H2, Windows 11 Version 24H2, Windows 11 Version 23H2
Provider severity
HIGH
Conflicts
1

CVE-2026-20870

Use after free in Windows Win32K - ICOMP allows an authorized attacker to elevate privileges locally.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows 11 Version 25H2, Windows Server 2025 (Server Core installation), Windows Server 2025, Windows 11 Version 24H2
Provider severity
HIGH
Conflicts
1

CVE-2026-2087

A flaw has been found in SourceCodester Online Class Record System 1.0. Affected by this issue is some unknown functionality of the file /admin/login.php. This manipulation of the argument user_email causes sql injection. The attack may be initiated remotely. The exploit has been published and may be used.

PUBLISHED
Vendor
SourceCodester
Product
Online Class Record System
Provider severity
HIGH, MEDIUM
Conflicts
2

CVE-2026-20869

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Local Session Manager (LSM) allows an authorized attacker to elevate privileges locally.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows Server 2019, Windows Server 2012 R2 (Server Core installation), Windows Server 2016 (Server Core installation), Windows Server 2012 R2, Windows Server 2022, 23H2 Edition (Server Core installation), Windows Server 2008 Service Pack 2 (Server Core installation), Windows Server 2022, Windows Server 2025, Windows 11 Version 25H2, Windows Server 2012 (Server Core installation), Windows 10 Version 22H2, Windows Server 2008 Service Pack 2, Windows Server 2008 R2 Service Pack 1, Windows 10 Version 21H2, Windows Server 2012, Windows Server 2016, Windows Server 2019 (Server Core installation), Windows 10 Version 1607, Windows 11 Version 23H2, Windows 10 Version 1809, Windows 11 version 23H2, Windows Server 2008 R2 Service Pack 1 (Server Core installation), Windows 11 Version 24H2, Windows Server 2025 (Server Core installation)
Provider severity
HIGH
Conflicts
1

CVE-2026-20868

Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code over a network.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows 11 Version 23H2, Windows 11 Version 25H2, Windows 11 version 23H2, Windows 10 Version 21H2, Windows Server 2012, Windows Server 2008 R2 Service Pack 1, Windows Server 2012 (Server Core installation), Windows Server 2025, Windows Server 2019 (Server Core installation), Windows Server 2019, Windows Server 2025 (Server Core installation), Windows Server 2008 Service Pack 2, Windows Server 2012 R2, Windows Server 2022, Windows Server 2008 R2 Service Pack 1 (Server Core installation), Windows Server 2008 Service Pack 2 (Server Core installation), Windows Server 2016 (Server Core installation), Windows 10 Version 1809, Windows Server 2012 R2 (Server Core installation), Windows 10 Version 1607, Windows Server 2016, Windows 10 Version 22H2, Windows 11 Version 24H2, Windows Server 2022, 23H2 Edition (Server Core installation)
Provider severity
HIGH
Conflicts
1

CVE-2026-20867

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Management Services allows an authorized attacker to elevate privileges locally.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows 11 Version 25H2, Windows Server 2025, Windows 10 Version 21H2, Windows 10 Version 1809, Windows Server 2019, Windows 10 Version 22H2, Windows Server 2022, Windows Server 2019 (Server Core installation), Windows 11 version 23H2, Windows Server 2022, 23H2 Edition (Server Core installation), Windows Server 2025 (Server Core installation), Windows 11 Version 24H2, Windows 11 Version 23H2
Provider severity
HIGH
Conflicts
2

CVE-2026-20866

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Management Services allows an authorized attacker to elevate privileges locally.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows Server 2022, Windows Server 2025 (Server Core installation), Windows Server 2022, 23H2 Edition (Server Core installation), Windows Server 2019 (Server Core installation), Windows 11 Version 25H2, Windows Server 2019, Windows 11 Version 23H2, Windows 10 Version 1809, Windows 10 Version 22H2, Windows Server 2025, Windows 11 version 23H2, Windows 11 Version 24H2, Windows 10 Version 21H2
Provider severity
HIGH
Conflicts
1

CVE-2026-20865

Use after free in Windows Management Services allows an authorized attacker to elevate privileges locally.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows 11 Version 24H2, Windows 11 Version 23H2, Windows 10 Version 21H2, Windows Server 2025 (Server Core installation), Windows 10 Version 22H2, Windows 10 Version 1809, Windows Server 2019 (Server Core installation), Windows Server 2022, 23H2 Edition (Server Core installation), Windows Server 2019, Windows Server 2022, Windows 11 version 23H2, Windows 11 Version 25H2, Windows Server 2025
Provider severity
HIGH
Conflicts
1

CVE-2026-20864

Heap-based buffer overflow in Connected Devices Platform Service (Cdpsvc) allows an authorized attacker to elevate privileges locally.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows 10 Version 22H2, Windows 10 Version 1809, Windows Server 2019, Windows Server 2019 (Server Core installation), Windows 11 Version 24H2, Windows Server 2022, 23H2 Edition (Server Core installation), Windows 11 Version 23H2, Windows 10 Version 21H2, Windows Server 2025 (Server Core installation), Windows Server 2025, Windows Server 2022, Windows 11 Version 25H2, Windows 11 version 23H2
Provider severity
HIGH
Conflicts
1

CVE-2026-20863

Double free in Windows Win32K - ICOMP allows an authorized attacker to elevate privileges locally.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows 11 version 23H2, Windows 11 Version 25H2, Windows Server 2022, 23H2 Edition (Server Core installation), Windows 11 Version 24H2, Windows Server 2025 (Server Core installation), Windows Server 2022, Windows Server 2025, Windows 11 Version 23H2
Provider severity
HIGH
Conflicts
1

CVE-2026-20862

Exposure of sensitive information to an unauthorized actor in Windows Management Services allows an authorized attacker to disclose information locally.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows Server 2025, Windows 11 Version 23H2, Windows 10 Version 21H2, Windows 11 version 23H2, Windows 11 Version 25H2, Windows Server 2022, 23H2 Edition (Server Core installation), Windows Server 2025 (Server Core installation), Windows Server 2019, Windows Server 2019 (Server Core installation), Windows 11 Version 24H2, Windows 10 Version 22H2, Windows 10 Version 1809, Windows Server 2022
Provider severity
MEDIUM
Conflicts
1

CVE-2026-20861

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Management Services allows an authorized attacker to elevate privileges locally.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows Server 2025, Windows Server 2022, 23H2 Edition (Server Core installation), Windows 11 Version 25H2, Windows 11 version 23H2, Windows 11 Version 23H2, Windows 10 Version 22H2, Windows 10 Version 1809, Windows 10 Version 21H2, Windows 11 Version 24H2, Windows Server 2019, Windows Server 2022, Windows Server 2019 (Server Core installation), Windows Server 2025 (Server Core installation)
Provider severity
HIGH
Conflicts
2

CVE-2026-20860

Access of resource using incompatible type ('type confusion') in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows Server 2016, Windows Server 2008 R2 Service Pack 1, Windows Server 2012 (Server Core installation), Windows 10 Version 22H2, Windows Server 2019 (Server Core installation), Windows Server 2008 R2 Service Pack 1 (Server Core installation), Windows Server 2008 Service Pack 2, Windows Server 2012 R2, Windows Server 2012 R2 (Server Core installation), Windows 11 Version 24H2, Windows 10 Version 21H2, Windows Server 2025 (Server Core installation), Windows 11 version 23H2, Windows Server 2025, Windows Server 2016 (Server Core installation), Windows Server 2012, Windows 10 Version 1607, Windows 11 Version 25H2, Windows Server 2019, Windows Server 2008 Service Pack 2 (Server Core installation), Windows 11 Version 23H2, Windows Server 2022, Windows 10 Version 1809, Windows Server 2022, 23H2 Edition (Server Core installation)
Provider severity
HIGH
Conflicts
1

CVE-2026-2086

A vulnerability was detected in UTT HiPER 810G up to 1.7.7-171114. Affected by this vulnerability is the function strcpy of the file /goform/formFireWall of the component Management Interface. The manipulation of the argument GroupName results in buffer overflow. The attack can be launched remotely. The exploit is now public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

PUBLISHED
Vendor
UTT
Product
HiPER 810G
Provider severity
HIGH
Conflicts
2

CVE-2026-20859

Use after free in Windows Kernel-Mode Drivers allows an authorized attacker to elevate privileges locally.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows Server 2025, Windows Server 2025 (Server Core installation), Windows 11 Version 25H2, Windows 11 Version 24H2
Provider severity
HIGH
Conflicts
1

CVE-2026-20858

Use after free in Windows Management Services allows an authorized attacker to elevate privileges locally.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows Server 2025, Windows 10 Version 1809, Windows Server 2019 (Server Core installation), Windows 11 Version 23H2, Windows Server 2025 (Server Core installation), Windows 10 Version 22H2, Windows 11 Version 25H2, Windows 11 Version 24H2, Windows 11 version 23H2, Windows Server 2022, Windows Server 2019, Windows 10 Version 21H2, Windows Server 2022, 23H2 Edition (Server Core installation)
Provider severity
HIGH
Conflicts
2

CVE-2026-20857

Untrusted pointer dereference in Windows Cloud Files Mini Filter Driver allows an authorized attacker to elevate privileges locally.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows 11 Version 23H2, Windows 11 Version 24H2, Windows Server 2019 (Server Core installation), Windows 10 Version 1809, Windows Server 2019, Windows Server 2022, 23H2 Edition (Server Core installation), Windows 11 version 23H2, Windows 11 Version 25H2, Windows Server 2025 (Server Core installation), Windows 10 Version 21H2, Windows Server 2025, Windows 10 Version 22H2, Windows Server 2022
Provider severity
HIGH
Conflicts
1

CVE-2026-20856

Improper input validation in Windows Server Update Service allows an unauthorized attacker to execute code over a network.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows Server 2022, 23H2 Edition (Server Core installation), Windows Server 2012, Windows 11 Version 23H2, Windows Server 2019, Windows Server 2022, Windows 11 version 23H2, Windows 11 Version 25H2, Windows Server 2012 R2, Windows Server 2016 (Server Core installation), Windows Server 2019 (Server Core installation), Windows 10 Version 1809, Windows Server 2012 R2 (Server Core installation), Windows 10 Version 1607, Windows Server 2012 (Server Core installation), Windows 11 Version 24H2, Windows Server 2025, Windows 10 Version 22H2, Windows Server 2025 (Server Core installation), Windows Server 2016, Windows 10 Version 21H2
Provider severity
HIGH
Conflicts
1

CVE-2026-20854

Use after free in Windows Local Security Authority Subsystem Service (LSASS) allows an authorized attacker to execute code over a network.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows Server 2025 (Server Core installation), Windows Server 2025, Windows 11 Version 25H2, Windows 11 Version 24H2
Provider severity
HIGH
Conflicts
1

CVE-2026-20853

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows WalletService allows an unauthorized attacker to elevate privileges locally.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows 10 Version 1607, Windows 11 Version 25H2, Windows 10 Version 21H2, Windows 11 Version 23H2, Windows 10 Version 22H2, Windows 11 Version 24H2, Windows 11 version 23H2, Windows 10 Version 1809
Provider severity
HIGH
Conflicts
1

CVE-2026-20852

Incorrect privilege assignment in Windows Hello allows an unauthorized attacker to perform tampering locally.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows Server 2022, Windows 11 Version 24H2, Windows Server 2016 (Server Core installation), Windows 10 Version 21H2, Windows Server 2025, Windows 11 Version 25H2, Windows 10 Version 1809, Windows Server 2025 (Server Core installation), Windows Server 2019, Windows 10 Version 1607, Windows Server 2019 (Server Core installation), Windows 11 version 23H2, Windows 11 Version 23H2, Windows 10 Version 22H2, Windows Server 2022, 23H2 Edition (Server Core installation), Windows Server 2016
Provider severity
HIGH
Conflicts
1