58.507 CVE tracked
796 Exploited now
188 Used by ransomware
Last sync
CVE Tracker
58.507 CVE
Ten vendors followed by CPE identifier, not by keyword: a CVE appears here once NVD says which products it affects — usually a few days after it is published.
| Identifier | Severity, sorted ascending | Product and flaw | EPSS, sort descending | In KEV since, sort descending |
|---|---|---|---|---|
| CVE-2026-63513 | HIGH 7.8 | microsoft 365_apps Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally. | 0.5% | — |
| CVE-2026-62909 | HIGH 7.8 | microsoft .net Uncaught exception in .NET allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-62894 | HIGH 7.8 | microsoft windows_10_1607 Heap-based buffer overflow in Windows DWM Core Library allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-62890 | HIGH 7.8 | microsoft windows_10_1607 Heap-based buffer overflow in Windows GDI+ allows an authorized attacker to execute code locally. | 0.3% | — |
| CVE-2026-62888 | HIGH 7.8 | microsoft windows_10_21h2 Use after free in Windows DWM Core Library allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-62886 | HIGH 7.8 | microsoft .net Integer overflow or wraparound in .NET allows an unauthorized attacker to elevate privileges locally. | 0.5% | — |
| CVE-2026-62885 | HIGH 7.8 | microsoft windows_10_1607 Heap-based buffer overflow in Windows Win32K allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-62880 | HIGH 7.8 | microsoft windows_10_1607 Out-of-bounds read in Windows NTFS allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-62877 | HIGH 7.8 | microsoft windows_10_1607 Stack-based buffer overflow in Windows Win32K allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-62876 | HIGH 7.8 | microsoft windows_10_1607 Out-of-bounds read in Windows Win32K allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-62871 | HIGH 7.8 | microsoft .net Out-of-bounds write in .NET allows an unauthorized attacker to execute code locally. | 0.5% | — |
| CVE-2026-62812 | HIGH 7.8 | microsoft windows_10_1607 Improper link resolution before file access ('link following') in Windows DHCP Server allows an authorized attacker to elevate privileges locally. | 0.4% | — |
| CVE-2026-62811 | HIGH 7.8 | microsoft windows_11_23h2 Heap-based buffer overflow in Windows HTTP.sys allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-62810 | HIGH 7.8 | microsoft windows_10_1607 Heap-based buffer overflow in Active Directory Certificate Services (AD CS) allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-62807 | HIGH 7.8 | microsoft windows_10_1607 Improper link resolution before file access ('link following') in Windows DHCP Server allows an authorized attacker to elevate privileges locally. | 0.4% | — |
| CVE-2026-62804 | HIGH 7.8 | microsoft 365_apps External control of file name or path in Microsoft Office Word allows an unauthorized attacker to execute code locally. | 0.6% | — |
| CVE-2026-62803 | HIGH 7.8 | microsoft windows_10_1607 Improper link resolution before file access ('link following') in Windows DHCP Server allows an authorized attacker to elevate privileges locally. | 0.4% | — |
| CVE-2026-62799 | HIGH 7.8 | microsoft windows_11_26h1 Heap-based buffer overflow in Windows SMB Client allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-62797 | HIGH 7.8 | microsoft windows_10_1607 Heap-based buffer overflow in Windows NTFS allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-62783 | HIGH 7.8 | microsoft windows_10_1809 Heap-based buffer overflow in Windows Remote Access Connection Manager allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-62779 | HIGH 7.8 | microsoft windows_11_24h2 Use after free in Windows Schannel allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-62777 | HIGH 7.8 | microsoft windows_10_1607 Missing authentication for critical function in Windows License Manager allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-62776 | HIGH 7.8 | microsoft windows_10_1607 Improper link resolution before file access ('link following') in Windows DHCP Server allows an authorized attacker to elevate privileges locally. | 0.4% | — |
| CVE-2026-62772 | HIGH 7.8 | microsoft windows_11_26h1 Heap-based buffer overflow in Windows Container Isolation FS Filter Driver (unionfs.sys) allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-62771 | HIGH 7.8 | microsoft windows_10_1809 Heap-based buffer overflow in Windows Cloud Files Mini Filter Driver allows an authorized attacker to elevate privileges locally. | 0.3% | — |