| Next.js Windows Cache Path Traversal RCE (CVE-2026-75604)
new CVE-2026-75604
web
Unverified | CVE-2026-75604 | web | CRITICAL 9 | Unverified | 2026-09-03 |
| Windows Media Player DLL Hijack -- Local Privilege Escalation (CVE-2026-21508)
new CVE-2026-21508
binary
Patched | CVE-2026-21508 | binary | HIGH 7.8 | Patched | 2026-08-16 |
| Microsoft SCCM — AdminService CAB Extraction Path-Traversal to SYSTEM RCE (CVE-2026-47301)
new CVE-2026-47301
network
Unverified | CVE-2026-47301 | network | CRITICAL 9.8 | Unverified | 2026-08-15 |
| Windows Kerberos — ResetNightmare: Arbitrary Password Reset via Change Password Protocol Validation Flaw (CVE-2026-27912)
new CVE-2026-27912
network
Unverified | CVE-2026-27912 | network | HIGH 8 | Unverified | 2026-08-11 |
| Windows Defender — ShieldBreak: RoguePlanet (CVE-2026-50656) Patch Bypass via Cloud Files Rehydration + Object Manager Symlinks
new
EPSS 11% Bypass of CVE-2026-50656 (RoguePlanet); no CVE assigned to ShieldBreak as of 2026-08-11
binary
Unpatched | Bypass of CVE-2026-50656 | binary | HIGH 7.8 | Unpatched | 2026-08-11 |
| Active Directory — SPN Unicode Collision Detection Scanner (CVE-2026-25177)
new CVE-2026-25177
network
Patched | CVE-2026-25177 | network | HIGH 8.8 | Patched | 2026-08-11 |
| Barrier 2.4.0 — barrierd.exe Unauthenticated IPC → SYSTEM Privilege Escalation (NotCVE-2026-0010)
new NotCVE-2026-0010 (disputed CVE assignment — author contests the identifier)
binary
Unverified | NotCVE-2026-0010 | binary | HIGH | Unverified | 2026-08-01 |
| Windows WalletService Known-Folder Redirection → ESE Persisted-Callback DLL Load Local Privilege Escalation (CVE-2026-49176)
new CVE-2026-49176
binary
Patched | CVE-2026-49176 | binary | HIGH 7.8 | Patched | 2026-07-27 |
| Windows Message Queuing (MSMQ) Queue Manager Heap-Based Buffer Overflow (CVE-2026-54992)
new CVE-2026-54992
network
Patched | CVE-2026-54992 | network | HIGH 8.4 | Patched | 2026-07-27 |
| GreatXML — WinRE / Defender Offline-Scan Trust-Boundary Abuse → BitLocker Bypass (No CVE)
new N/A (no CVE assigned, no Microsoft advisory as of 2026-07-27)
binary
Unpatched | N/A | binary | HIGH | Unpatched | 2026-07-27 |
| AD CS/AD FS Enrollment "cdc" Chase Attribute Abuse → Domain Controller Impersonation (CertiGhost, CVE-2026-54121)
new CVE-2026-54121
network
Patched | CVE-2026-54121 | network | HIGH 8.8 | Patched | 2026-07-27 |
| LegacyHive - Windows user profile service arbitrary hive load elevation of privileges vulnerability
new binary
Patched | — | binary | HIGH | Patched | 2026-07-19 |
| React Native Community CLI Metro Dev Server `/open-url` OS Command Injection (CVE-2025-11953)
new
KEV
EPSS 94% CVE-2025-11953
network
Patched | CVE-2025-11953 | network | CRITICAL 9.8 | Patched | 2026-07-06 |
| XIGNCODE3 Anti-Cheat Driver PPL-Bypass LSASS Credential Dump (CVE-2026-3609)
new CVE-2026-3609
binary
Patched | CVE-2026-3609 | binary | HIGH | Patched | 2026-07-05 |
| Windows ShellLink (.lnk) Remote Code Execution — CVE-2026-21510 LNK-Stomping Generator
new
KEV
EPSS 26% CVE-2026-21510
social-engineering
Unverified | CVE-2026-21510 | social-engineering | HIGH | Unverified | 2026-07-05 |
| Windows Shell LNK _IDCONTROLW Zero-Click SMB Coercion Builder — CVE-2026-32202
new
KEV
EPSS 64% CVE-2026-32202 (related: CVE-2026-21510)
binary
Unverified | CVE-2026-32202 | binary | HIGH | Unverified | 2026-07-05 |
| Windows Push Notification Service Use-After-Free Race (CVE-2026-42978)
new CVE-2026-42978
binary
Unverified | CVE-2026-42978 | binary | HIGH 7.8 | Unverified | 2026-07-05 |
| Windows Kernel Local Privilege Escalation via SeDebugPrivilege Bit Corruption (CVE-2026-40369)
new CVE-2026-40369
binary
Unverified | CVE-2026-40369 | binary | HIGH | Unverified | 2026-07-05 |
| Windows HTTP.sys Header-Count-Triggered Kernel Memory Corruption / BSOD (CVE-2026-49160)
new
EPSS 54% CVE-2026-49160
binary
Patched | CVE-2026-49160 | binary | HIGH | Patched | 2026-07-05 |
| Windows Error Reporting Service ALPC Local Privilege Escalation (CVE-2026-20817)
new CVE-2026-20817
binary
Unverified | CVE-2026-20817 | binary | HIGH | Unverified | 2026-07-05 |
| Notepad++ nativeLang.xml Format String Crash / Info Disclosure — CVE-2026-3008
new CVE-2026-3008
binary
Unverified | CVE-2026-3008 | binary | MEDIUM | Unverified | 2026-07-05 |
| MiniTool pwdrvio.sys Kernel Write-What-Where — Local Privilege Escalation Primitive (CVE-2026-36981)
new CVE-2026-36981
binary
Patched | CVE-2026-36981 | binary | HIGH | Patched | 2026-07-05 |
| MiniTool pwdrvio.sys Kernel Driver Buffer Overflow — Local DoS/BSOD (CVE-2026-36980)
new CVE-2026-36980
binary
Patched | CVE-2026-36980 | binary | MEDIUM | Patched | 2026-07-05 |
| Microsoft Defender Link Following Local Privilege Escalation (CVE-2026-41091)
new
KEV CVE-2026-41091
binary
Unpatched | CVE-2026-41091 | binary | HIGH 7.8 | Unpatched | 2026-07-05 |
| Lenovo LDE (LdeApi.Server.exe) Unimpersonated Junction-Based Arbitrary File Write to SYSTEM (CVE-2026-0827)
new CVE-2026-0827 (Lenovo advisory LEN-210693)
binary
Unverified | CVE-2026-0827 | binary | HIGH | Unverified | 2026-07-05 |
| KillChain — Vulnerable Kernel Driver IOCTL Protected-Process Termination (CVE-2026-0828)
new CVE-2026-0828
binary
Unverified | CVE-2026-0828 | binary | HIGH | Unverified | 2026-07-05 |
| Discord Desktop Client Uncontrolled Search Path Element / Local Code Execution (CVE-2026-0776)
new CVE-2026-0776 (ZDI-CAN-27057, credit: Trend Micro Zero Day Initiative)
binary
Unverified | CVE-2026-0776 | binary | HIGH 7.3 | Unverified | 2026-07-05 |
| Balena Etcher Windows TOCTOU Privilege Escalation — CVE-2026-30332
new CVE-2026-30332
binary
Unverified | CVE-2026-30332 | binary | HIGH | Unverified | 2026-07-05 |
| ASUS DriverHub Update TOCTOU Local Privilege Escalation — CVE-2026-1880
new CVE-2026-1880
binary
Patched | CVE-2026-1880 | binary | MEDIUM | Patched | 2026-07-05 |
| Apache Solr UNC Path Validation Bypass to RCE (CVE-2026-22444)
new CVE-2026-22444
web
Patched | CVE-2026-22444 | web | CRITICAL | Patched | 2026-07-05 |
| Amazon WorkSpaces Skylight Workspace Config Service Local Privilege Escalation (CVE-2026-7791)
new CVE-2026-7791
cloud
Unverified | CVE-2026-7791 | cloud | HIGH | Unverified | 2026-07-05 |
| VLC Bundled FFmpeg VP9 Decoder Resolution-Change Heap Crash
new None assigned as of 2026-07-03
binary
Unverified | None assigned as of 2026-07-03 | binary | MEDIUM | Unverified | 2026-07-03 |
| System Informer phsvc Trusted-Host Confused Deputy LPE
new None assigned as of 2026-07-03
binary
Unverified | None assigned as of 2026-07-03 | binary | HIGH | Unverified | 2026-07-03 |
| OpenVPN Connect Server-Pushed Option Current-User Command Execution
new None assigned as of 2026-07-03
network
Unverified | None assigned as of 2026-07-03 | network | HIGH | Unverified | 2026-07-03 |
| libssh2 Publickey Subsystem List Parser Heap Corruption to Code Execution
new None assigned as of 2026-07-03
network
Unverified | None assigned as of 2026-07-03 | network | CRITICAL | Unverified | 2026-07-03 |
| ImageMagick Ghostscript Delegate Search Path Hijack
new None assigned as of 2026-07-03
binary
Unverified | None assigned as of 2026-07-03 | binary | HIGH | Unverified | 2026-07-03 |
| Flowise Custom MCP Environment Variable Case Bypass
new None assigned as of 2026-07-03
web
Unverified | None assigned as of 2026-07-03 | web | HIGH | Unverified | 2026-07-03 |
| AnyDesk Printer Pipe COM Impersonation Local Privilege Escalation
new None assigned as of 2026-07-03
binary
Unverified | None assigned as of 2026-07-03 | binary | HIGH | Unverified | 2026-07-03 |
| 7-Zip RAR5 Mark-of-the-Web / ADS Full-Chain Bypass
new None assigned as of 2026-07-03
misc
Unverified | None assigned as of 2026-07-03 | misc | HIGH | Unverified | 2026-07-03 |
| Windows CTFMON Arbitrary Section Object EoP — GreenPlasma (CVE-2026-45586)
new CVE-2026-45586
binary
Patched | CVE-2026-45586 | binary | HIGH 7.8 | Patched | 2026-06-28 |
| Notepad++ <= 8.9.6 Multiple Vulnerabilities (CVE-2026-48770, CVE-2026-48778, CVE-2026-48800)
new CVE-2026-48770, CVE-2026-48778, CVE-2026-48800
binary
Patched | CVE-2026-48770, CVE-2026-48778, CVE-2026-48800 | binary | HIGH 5 | Patched | 2026-05-28 |
| Windows NTLM Hash Disclosure via File Explorer - CVE-2025-24054
new
KEV
EPSS 59% CVE-2025-24054
binary
Unverified | CVE-2025-24054 | binary | MEDIUM 6.5 | Unverified | 2026-05-17 |
| Windows MMC MSC EvilTwin - CVE-2025-26633
new
KEV
RW
EPSS 30% CVE-2025-26633
binary
Unverified | CVE-2025-26633 | binary | HIGH | Unverified | 2026-05-17 |
| ToolShell - SharePoint Unauthenticated RCE Chain
new
KEV
RW
EPSS 100% CVE-2025-53770, CVE-2025-53771, CVE-2025-49704, CVE-2025-49706
web
Patched | CVE-2025-53770, CVE-2025-53771, CVE-2025-49704, CVE-2025-49706 | web | CRITICAL | Patched | 2026-05-17 |
| Windows OLE Zero-Click RCE via Outlook RTF (CVE-2025-21298)
new
EPSS 81% CVE-2025-21298
binary
Patched | CVE-2025-21298 | binary | CRITICAL 9.8 | Patched | 2026-05-16 |
| Adobe Acrobat/Reader Prototype Pollution Sandbox Escape (CVE-2026-34621)
new
KEV CVE-2026-34621
binary
Unverified | CVE-2026-34621 | binary | CRITICAL 9.8 | Unverified | 2026-05-16 |
| WinRAR Archive Extraction Path Traversal (CVE-2025-6218)
new
KEV
EPSS 90% CVE-2025-6218
misc
Unverified | CVE-2025-6218 | misc | HIGH | Unverified | 2026-05-15 |
| MiniPlasma - Windows Cloud Files Mini Filter Driver LPE (CVE-2020-17103)
new
EPSS 27% CVE-2020-17103
binary
Patched | CVE-2020-17103 | binary | HIGH 7.8 | Patched | 2026-05-15 |
| HTTP Protocol Stack Remote Code Execution Vulnerability (CVE-2021-31166)
new
KEV
EPSS 100% CVE-2021-31166
network
Patched | CVE-2021-31166 | network | CRITICAL 9.8 | Patched | 2026-05-15 |
| CVE-2024-21338 — Local Privilege Escalation from Admin to Kernel
new
KEV
RW
EPSS 60% CVE-2024-21338
binary
Patched | CVE-2024-21338 | binary | HIGH 7.8 | Patched | 2026-05-15 |