58.507 CVE tracked
796 Exploited now
188 Used by ransomware
Last sync
CVE Tracker
58.507 CVE
Ten vendors followed by CPE identifier, not by keyword: a CVE appears here once NVD says which products it affects — usually a few days after it is published.
| Identifier | Severity, sorted ascending | Product and flaw | EPSS, sort descending | In KEV since, sort descending |
|---|---|---|---|---|
| CVE-2026-69391 | HIGH 7.8 | microsoft windows_10_1607 Stack-based buffer overflow in Windows Broker Infrastructure Service allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-69389 | HIGH 7.8 | microsoft windows_10_1607 Heap-based buffer overflow in Windows Storage Management Provider allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-69377 | HIGH 7.8 | microsoft windows_10_1809 Missing authorization in Windows Modern Device Management (MDM) allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-69368 | HIGH 7.8 | microsoft windows_10_1607 Heap-based buffer overflow in Windows Overlay Filter allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-69359 | HIGH 7.8 | microsoft windows_10_1607 Heap-based buffer overflow in Active Directory Domain Services allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-69352 | HIGH 7.8 | microsoft windows_10_1607 Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-6935 | HIGH 7.8 | ibm concert IBM Concert 1.0.0 through 3.0.0 invokes operating system commands without fully qualifying executable paths or adequately restricting search path resolution. As a result, an attacker with local system access can manipulate the search path environment to execut | 0.1% | — |
| CVE-2026-69348 | HIGH 7.8 | microsoft windows_11_24h2 Heap-based buffer overflow in Windows Win32K allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-69328 | HIGH 7.8 | microsoft windows_10_1607 Untrusted search path in Windows Storage allows an authorized attacker to elevate privileges locally. | 0.5% | — |
| CVE-2026-69324 | HIGH 7.8 | microsoft windows_10_1607 Access of resource using incompatible type ('type confusion') in Windows Performance Monitor allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-69323 | HIGH 7.8 | microsoft windows_10_1607 Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-69312 | HIGH 7.8 | microsoft windows_10_1607 Out-of-bounds read in Windows NTFS allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-69307 | HIGH 7.8 | microsoft windows_10_1607 Heap-based buffer overflow in Windows USB Audio Class driver (usbaudio.sys) allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-69298 | HIGH 7.8 | microsoft windows_10_1607 Integer overflow or wraparound in Windows Biometric Service allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-69295 | HIGH 7.8 | microsoft windows_10_1607 Out-of-bounds read in Windows USB Driver allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-69293 | HIGH 7.8 | microsoft windows_10_1607 Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-69290 | HIGH 7.8 | microsoft windows_10_1607 Stack-based buffer overflow in Windows Storage Spaces Controller allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-69289 | HIGH 7.8 | microsoft windows_10_1607 Improper link resolution before file access ('link following') in Windows Setup Files Cleanup allows an authorized attacker to elevate privileges locally. | 0.4% | — |
| CVE-2026-69284 | HIGH 7.8 | microsoft windows_10_1607 Heap-based buffer overflow in Windows DCOM Server allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-69283 | HIGH 7.8 | microsoft windows_10_1607 Heap-based buffer overflow in Windows CD-ROM Driver allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-69278 | HIGH 7.8 | microsoft visual_studio_code Incorrect authorization in Visual Studio Code allows an unauthorized attacker to bypass a security feature locally. | 0.3% | — |
| CVE-2026-69277 | HIGH 7.8 | microsoft windows_10_1607 Stack-based buffer overflow in Microsoft Local Security Authority Server (lsasrv) allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-69270 | HIGH 7.8 | microsoft windows_10_1607 Heap-based buffer overflow in Windows USB Audio Class driver (usbaudio.sys) allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-69269 | HIGH 7.8 | microsoft windows_10_1607 Integer underflow (wrap or wraparound) in Microsoft Standard XPS allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-69265 | HIGH 7.8 | microsoft windows_10_1607 Out-of-bounds read in Windows NTFS allows an authorized attacker to elevate privileges locally. | 0.3% | — |