57.056 CVE tracked
777 Exploited now
184 Used by ransomware
Last sync
CVE Tracker
57.056 CVE
Ten vendors followed by CPE identifier, not by keyword: a CVE appears here once NVD says which products it affects — usually a few days after it is published.
| Identifier | Severity, sort descending | Product and flaw | EPSS, sorted ascending | In KEV since, sort descending |
|---|---|---|---|---|
| CVE-2026-70346 | HIGH 7.8 | microsoft windows_10_1607 Stack-based buffer overflow in Windows Installer allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-70344 | HIGH 7.8 | microsoft windows_10_1607 Stack-based buffer overflow in Windows Installer allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-70338 | HIGH 7.8 | microsoft powershell Improper control of generation of code ('code injection') in Microsoft PowerShell allows an unauthorized attacker to bypass a security feature locally. | 0.3% | — |
| CVE-2026-65787 | HIGH 7.8 | microsoft windows_10_1607 Heap-based buffer overflow in Desktop Window Manager allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-62768 | HIGH 7.8 | microsoft windows_10_1607 Stack-based buffer overflow in Windows Installer allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-62754 | HIGH 7.8 | microsoft windows_10_1607 Heap-based buffer overflow in Windows Kerberos allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-62752 | HIGH 7.8 | microsoft windows_10_1607 Heap-based buffer overflow in Windows Kerberos allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-62751 | HIGH 7.8 | microsoft windows_10_21h2 Integer overflow or wraparound in Windows Projected File System allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-62747 | HIGH 7.8 | microsoft windows_10_1607 Heap-based buffer overflow in Windows Device Association Service allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-62732 | HIGH 7.8 | microsoft windows_10_1607 Heap-based buffer overflow in Windows Telephony Service allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-62722 | HIGH 7.8 | microsoft windows_11_24h2 Heap-based buffer overflow in Windows Brokering File System allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-62719 | HIGH 7.8 | microsoft windows_10_1607 Heap-based buffer overflow in Windows Message Queuing allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-62717 | HIGH 7.8 | microsoft windows_10_1607 Heap-based buffer overflow in Windows Message Queuing allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-62711 | HIGH 7.8 | microsoft windows_10_1607 Use after free in Windows Win32K allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-62710 | HIGH 7.8 | microsoft windows_10_1607 Heap-based buffer overflow in Windows Device Association Service allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-62707 | HIGH 7.8 | microsoft windows_10_1607 Use after free in Windows Modern Device Management (MDM) allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-62701 | HIGH 7.8 | microsoft windows_10_1607 Use after free in Windows Telephony Service allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-62700 | HIGH 7.8 | microsoft windows_10_1607 Heap-based buffer overflow in Windows NTFS allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-62695 | HIGH 7.8 | microsoft windows_11_23h2 Heap-based buffer overflow in Windows Storage allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-62692 | HIGH 7.8 | microsoft windows_10_1607 Heap-based buffer overflow in Windows Remote Desktop Services allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-62354 | MED 4.3 | apache nifi Authorization handling for Parameter Context validation requests in Apache NiFi 1.10.0 through 2.10.0 allows clients with read access to submit proposed Parameter values. The proposed values override current configuration, enabling users with read access to in | 0.3% | — |
| CVE-2026-61937 | HIGH 7.8 | microsoft windows_10_1607 Integer overflow or wraparound in Windows HTTP.sys allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-61934 | HIGH 7.8 | microsoft windows_11_23h2 Use after free in Windows Bind Filter Driver allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-61932 | HIGH 7.8 | microsoft windows_10_1607 Access of resource using incompatible type ('type confusion') in Windows DWM Core Library allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-61926 | HIGH 7.8 | microsoft windows_10_1607 Heap-based buffer overflow in Windows USB Driver allows an authorized attacker to elevate privileges locally. | 0.3% | — |