58.560 CVE tracked
797 Exploited now
188 Used by ransomware
Last sync
CVE Tracker
58.560 CVE
Ten vendors followed by CPE identifier, not by keyword: a CVE appears here once NVD says which products it affects — usually a few days after it is published.
| Identifier | Severity, sort descending | Product and flaw | EPSS, sorted descending | In KEV since, sort descending |
|---|---|---|---|---|
| CVE-2026-83939 | HIGH 8.2 | microsoft windows_11_26h1 Untrusted pointer dereference in Windows Secure Kernel Mode allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-81354 | HIGH 8.2 | microsoft windows_10_1809 Heap-based buffer overflow in Windows Hello allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-72962 | HIGH 8.2 | microsoft windows_10_1809 Heap-based buffer overflow in Windows USB Video Driver allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-72961 | HIGH 8.2 | microsoft windows_10_1607 Out-of-bounds read in Windows Hyper-V allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-72958 | HIGH 8.2 | microsoft windows_11_24h2 Double free in Windows Credential Guard allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-72935 | MED 6.7 | microsoft windows_10_1607 Out-of-bounds read in Windows NTFS allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-71339 | MED 6.7 | microsoft windows_10_1607 Heap-based buffer overflow in Windows Installer allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-69906 | HIGH 8.2 | microsoft windows_10_1607 Heap-based buffer overflow in Windows Secure Kernel Mode allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-69846 | HIGH 8.2 | microsoft windows_10_1607 Integer overflow or wraparound in Windows Secure Kernel Mode allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-69820 | HIGH 8.2 | microsoft windows_10_21h2 Heap-based buffer overflow in Windows Hello allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-69449 | MED 6.7 | microsoft windows_10_1607 Heap-based buffer overflow in Windows BitLocker allows an authorized attacker to execute code locally. | 0.3% | — |
| CVE-2026-69373 | MED 6.7 | microsoft windows_10_1607 Integer overflow or wraparound in Windows Overlay Filter allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-69350 | MED 6.7 | microsoft windows_10_1607 Heap-based buffer overflow in Windows Overlay Filter allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-65798 | MED 6.7 | microsoft windows_10_1607 Numeric truncation error in Windows DNS allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-65797 | MED 6.7 | microsoft windows_10_1607 Numeric truncation error in Windows DNS allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-65795 | MED 6.7 | microsoft windows_10_1607 Relative path traversal in Windows DNS allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-62883 | MED 6.7 | microsoft windows_10_1607 Numeric truncation error in Windows DNS allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-62881 | MED 6.7 | microsoft windows_10_1607 Numeric truncation error in Windows DNS allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-62769 | MED 6.7 | microsoft windows_10_1607 Numeric truncation error in Windows DNS allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-62757 | MED 5.3 | microsoft windows_10_1607 Improper verification of cryptographic signature in Windows Schannel allows an unauthorized attacker to bypass a security feature over a network. | 0.3% | — |
| CVE-2026-47652 | HIGH 8.2 | microsoft windows_11_23h2 Heap-based buffer overflow in Windows Hyper-V allows an authorized attacker to execute code locally. | 0.3% | — |
| CVE-2026-45476 | HIGH 8.2 | microsoft azure_network_adapter Use after free in Linux MANA Driver allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-28715 | MED 6.5 | acronis cyber_protect Sensitive information disclosure due to improper authorization checks. The following products are affected: Acronis Cyber Protect 17 (Linux, Windows) before build 41186. | 0.3% | — |
| CVE-2026-20002 | HIGH 8.1 | cisco secure_firewall_management_center A vulnerability in the web-based management interface of Cisco Secure FMC Software could allow an authenticated, remote attacker to conduct SQL injection attacks on an affected system. This vulnerability is due to inadequate validation of user-supplied inpu | 0.3% | — |
| CVE-2026-14065 | MED 6.5 | google chrome Insufficient validation of untrusted input in PageInfo in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to bypass navigation restrictions via a crafted HTML page. (Chromium security severity: Low) | 0.3% | — |