58.507 CVE tracked
796 Exploited now
188 Used by ransomware
Last sync
CVE Tracker
58.507 CVE
Ten vendors followed by CPE identifier, not by keyword: a CVE appears here once NVD says which products it affects — usually a few days after it is published.
| Identifier | Severity, sort descending | Product and flaw | EPSS, sort descending | In KEV since, sort descending |
|---|---|---|---|---|
| CVE-2026-69307 | HIGH 7.8 | microsoft windows_10_1607 Heap-based buffer overflow in Windows USB Audio Class driver (usbaudio.sys) allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-69298 | HIGH 7.8 | microsoft windows_10_1607 Integer overflow or wraparound in Windows Biometric Service allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-69295 | HIGH 7.8 | microsoft windows_10_1607 Out-of-bounds read in Windows USB Driver allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-69293 | HIGH 7.8 | microsoft windows_10_1607 Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-69290 | HIGH 7.8 | microsoft windows_10_1607 Stack-based buffer overflow in Windows Storage Spaces Controller allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-69284 | HIGH 7.8 | microsoft windows_10_1607 Heap-based buffer overflow in Windows DCOM Server allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-69283 | HIGH 7.8 | microsoft windows_10_1607 Heap-based buffer overflow in Windows CD-ROM Driver allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-69270 | HIGH 7.8 | microsoft windows_10_1607 Heap-based buffer overflow in Windows USB Audio Class driver (usbaudio.sys) allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-69265 | HIGH 7.8 | microsoft windows_10_1607 Out-of-bounds read in Windows NTFS allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-68877 | HIGH 7.8 | microsoft windows_10_1607 Heap-based buffer overflow in Windows Storage Spaces Controller allows an authorized attacker to execute code locally. | 0.3% | — |
| CVE-2026-68875 | HIGH 7.8 | microsoft windows_10_1607 Buffer over-read in Windows NTFS allows an authorized attacker to execute code locally. | 0.3% | — |
| CVE-2026-68848 | HIGH 7.8 | microsoft windows_10_1607 Heap-based buffer overflow in Windows Print Spooler Components allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-68845 | HIGH 7.8 | microsoft windows_10_1607 Heap-based buffer overflow in Windows Program Compatibility Assistant Service allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-68844 | HIGH 7.8 | microsoft windows_10_1607 Heap-based buffer overflow in Windows Storage Spaces Controller allows an authorized attacker to execute code locally. | 0.3% | — |
| CVE-2026-68841 | HIGH 7.8 | microsoft windows_10_1607 Heap-based buffer overflow in Windows NTFS allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-68832 | HIGH 7.8 | microsoft windows_10_1607 Integer overflow or wraparound in Windows NTFS allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-68787 | HIGH 7.8 | microsoft sql_server_2017 Heap-based buffer overflow in SQL Server allows an authorized attacker to execute code locally. | 0.3% | — |
| CVE-2026-62697 | HIGH 7.8 | microsoft windows_10_21h2 Use after free in Windows Push Notifications allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-56177 | HIGH 7.8 | microsoft windows_10_1607 Use after free in Windows Server allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-56172 | HIGH 7.8 | microsoft windows_10_1809 Use after free in Windows VHD miniport driver allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-0298 | HIGH 8.1 | paloaltonetworks globalprotect An improper input validation vulnerability exists in the Windows Pre-Logon Access Provider (PLAP) component of the Palo Alto Networks GlobalProtect™ app on Windows devices which enables a man-in-the-middle (MitM) attacker to execute arbitrary code with SYSTEM | 0.3% | — |
| CVE-2026-70347 | HIGH 7.8 | microsoft windows_10_1607 Heap-based buffer overflow in Windows Installer allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-70346 | HIGH 7.8 | microsoft windows_10_1607 Stack-based buffer overflow in Windows Installer allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-70345 | HIGH 7.8 | microsoft windows_10_1607 Heap-based buffer overflow in Windows Installer allows an authorized attacker to elevate privileges locally. | 0.3% | — |
| CVE-2026-70344 | HIGH 7.8 | microsoft windows_10_1607 Stack-based buffer overflow in Windows Installer allows an authorized attacker to elevate privileges locally. | 0.3% | — |