CVE-2026-71351 Windows Routing and Remote Access Service (RRAS) Elevation of Privilege Vulnerability
Double free in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to elevate privileges locally.
CVE-2026-72930 Windows Secure Socket Tunneling Protocol (SSTP) Remote Code Execution Vulnerability
Use after free in Windows Secure Socket Tunneling Protocol (SSTP) allows an authorized attacker to execute code locally.
CVE-2026-72935 Windows NTFS Elevation of Privilege Vulnerability
Out-of-bounds read in Windows NTFS allows an authorized attacker to elevate privileges locally.
CVE-2026-72939 Windows Routing and Remote Access Service (RRAS) Denial of Service Vulnerability
Null pointer dereference in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to deny service over a network.
CVE-2026-72944 Role: Windows Fax Service Elevation of Privilege Vulnerability
Heap-based buffer overflow in Windows Fax Service allows an authorized attacker to elevate privileges locally.
CVE-2026-72946 Microsoft Storage Port Driver Elevation of Privilege Vulnerability
Heap-based buffer overflow in Storage Port Driver allows an authorized attacker to elevate privileges locally.
CVE-2026-72943 Windows Deployment Services Remote Code Execution Vulnerability
Use after free in Windows Deployment Services allows an authorized attacker to execute code over a network.
CVE-2026-72945 Windows Task Scheduler Information Disclosure Vulnerability
Use of uninitialized resource in Windows Task Scheduler allows an authorized attacker to disclose information locally.
CVE-2026-72948 Windows DNS Elevation of Privilege Vulnerability
Relative path traversal in Windows DNS allows an authorized attacker to elevate privileges locally.
CVE-2026-72958 Windows Credential Guard Elevation of Privilege Vulnerability
Double free in Windows Credential Guard allows an authorized attacker to elevate privileges locally.
CVE-2026-72962 Windows USB Video Driver Elevation of Privilege Vulnerability
Heap-based buffer overflow in Windows USB Video Driver allows an authorized attacker to elevate privileges locally.
CVE-2026-72963 Windows Modern Execution Server Elevation of Privilege Vulnerability
Use after free in Windows Modern Execution Server allows an authorized attacker to elevate privileges locally.
CVE-2026-68825 Windows Bind Filter Driver Elevation of Privilege Vulnerability
Use after free in Windows Bind Filter Driver allows an authorized attacker to elevate privileges locally.
CVE-2026-68837 Windows File History Service Elevation of Privilege Vulnerability
Use after free in Windows File History Service allows an authorized attacker to elevate privileges locally.
CVE-2026-68844 Windows Storage Spaces Controller Remote Code Execution Vulnerability
Heap-based buffer overflow in Windows Storage Spaces Controller allows an authorized attacker to execute code locally.
CVE-2026-68877 Windows Storage Spaces Controller Remote Code Execution Vulnerability
Heap-based buffer overflow in Windows Storage Spaces Controller allows an authorized attacker to execute code locally.
CVE-2026-68887 Windows Message Queuing Queue Manager Denial of Service Vulnerability
Out-of-bounds read in Windows Message Queuing Queue Manager allows an unauthorized attacker to deny service over a network.
CVE-2026-69293 Windows Biometric Service Elevation of Privilege Vulnerability
Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally.
CVE-2026-69355 Microsoft Exchange Server Remote Code Execution Vulnerability
External control of file name or path in Microsoft Exchange Server allows an authorized attacker to execute code over a network.
CVE-2026-69356 Microsoft Exchange Server Spoofing Vulnerability
Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Exchange Server allows an unauthorized attacker to perform spoofing over a network.


