IT
58.560 CVE tracked
797 Exploited now
188 Used by ransomware
Last sync

CVE Tracker

58.560 CVE

Ten vendors followed by CPE identifier, not by keyword: a CVE appears here once NVD says which products it affects — usually a few days after it is published.

CVE Tracker
Identifier Severity, sort descending Product and flaw EPSS, sorted descending In KEV since, sort descending
CVE-2026-83939 HIGH 8.2 microsoft windows_11_26h1 Untrusted pointer dereference in Windows Secure Kernel Mode allows an authorized attacker to elevate privileges locally. 0.3% —
CVE-2026-81354 HIGH 8.2 microsoft windows_10_1809 Heap-based buffer overflow in Windows Hello allows an authorized attacker to elevate privileges locally. 0.3% —
CVE-2026-72962 HIGH 8.2 microsoft windows_10_1809 Heap-based buffer overflow in Windows USB Video Driver allows an authorized attacker to elevate privileges locally. 0.3% —
CVE-2026-72961 HIGH 8.2 microsoft windows_10_1607 Out-of-bounds read in Windows Hyper-V allows an authorized attacker to elevate privileges locally. 0.3% —
CVE-2026-72958 HIGH 8.2 microsoft windows_11_24h2 Double free in Windows Credential Guard allows an authorized attacker to elevate privileges locally. 0.3% —
CVE-2026-72935 MED 6.7 microsoft windows_10_1607 Out-of-bounds read in Windows NTFS allows an authorized attacker to elevate privileges locally. 0.3% —
CVE-2026-71339 MED 6.7 microsoft windows_10_1607 Heap-based buffer overflow in Windows Installer allows an authorized attacker to elevate privileges locally. 0.3% —
CVE-2026-69906 HIGH 8.2 microsoft windows_10_1607 Heap-based buffer overflow in Windows Secure Kernel Mode allows an authorized attacker to elevate privileges locally. 0.3% —
CVE-2026-69846 HIGH 8.2 microsoft windows_10_1607 Integer overflow or wraparound in Windows Secure Kernel Mode allows an authorized attacker to elevate privileges locally. 0.3% —
CVE-2026-69820 HIGH 8.2 microsoft windows_10_21h2 Heap-based buffer overflow in Windows Hello allows an authorized attacker to elevate privileges locally. 0.3% —
CVE-2026-69449 MED 6.7 microsoft windows_10_1607 Heap-based buffer overflow in Windows BitLocker allows an authorized attacker to execute code locally. 0.3% —
CVE-2026-69373 MED 6.7 microsoft windows_10_1607 Integer overflow or wraparound in Windows Overlay Filter allows an authorized attacker to elevate privileges locally. 0.3% —
CVE-2026-69350 MED 6.7 microsoft windows_10_1607 Heap-based buffer overflow in Windows Overlay Filter allows an authorized attacker to elevate privileges locally. 0.3% —
CVE-2026-65798 MED 6.7 microsoft windows_10_1607 Numeric truncation error in Windows DNS allows an authorized attacker to elevate privileges locally. 0.3% —
CVE-2026-65797 MED 6.7 microsoft windows_10_1607 Numeric truncation error in Windows DNS allows an authorized attacker to elevate privileges locally. 0.3% —
CVE-2026-65795 MED 6.7 microsoft windows_10_1607 Relative path traversal in Windows DNS allows an authorized attacker to elevate privileges locally. 0.3% —
CVE-2026-62883 MED 6.7 microsoft windows_10_1607 Numeric truncation error in Windows DNS allows an authorized attacker to elevate privileges locally. 0.3% —
CVE-2026-62881 MED 6.7 microsoft windows_10_1607 Numeric truncation error in Windows DNS allows an authorized attacker to elevate privileges locally. 0.3% —
CVE-2026-62769 MED 6.7 microsoft windows_10_1607 Numeric truncation error in Windows DNS allows an authorized attacker to elevate privileges locally. 0.3% —
CVE-2026-62757 MED 5.3 microsoft windows_10_1607 Improper verification of cryptographic signature in Windows Schannel allows an unauthorized attacker to bypass a security feature over a network. 0.3% —
CVE-2026-47652 HIGH 8.2 microsoft windows_11_23h2 Heap-based buffer overflow in Windows Hyper-V allows an authorized attacker to execute code locally. 0.3% —
CVE-2026-45476 HIGH 8.2 microsoft azure_network_adapter Use after free in Linux MANA Driver allows an authorized attacker to elevate privileges locally. 0.3% —
CVE-2026-28715 MED 6.5 acronis cyber_protect Sensitive information disclosure due to improper authorization checks. The following products are affected: Acronis Cyber Protect 17 (Linux, Windows) before build 41186. 0.3% —
CVE-2026-20002 HIGH 8.1 cisco secure_firewall_management_center A vulnerability in the web-based management interface of Cisco Secure FMC Software could allow an authenticated, remote attacker to conduct SQL injection attacks on an affected system. This vulnerability is due to inadequate validation of user-supplied inpu 0.3% —
CVE-2026-14065 MED 6.5 google chrome Insufficient validation of untrusted input in PageInfo in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to bypass navigation restrictions via a crafted HTML page. (Chromium security severity: Low) 0.3% —