CVE-2026-70574 Virtual Hard Disk (VHD) Miniport Driver Elevation of Privilege Vulernability
Out-of-bounds read in Virtual Hard Disk (VHD) Miniport Driver allows an authorized attacker to elevate privileges locally.
CVE-2026-70567 Windows Display Enhancement Service Elevation of Privilege Vulnerability
Double free in Windows Display Enhancement Service allows an authorized attacker to elevate privileges locally.
CVE-2026-70568 Windows Defender Firewall Service Elevation of Privilege Vulnerability
Heap-based buffer overflow in Windows Defender Firewall Service allows an authorized attacker to elevate privileges locally.
CVE-2026-70569 Windows Spaceport.sys Elevation of Privilege Vulnerability
Out-of-bounds read in Windows Spaceport.sys allows an authorized attacker to elevate privileges locally.
CVE-2026-70573 Windows Biometric Service Elevation of Privilege Vulnerability
Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally.
CVE-2026-70572 Windows Biometric Service Elevation of Privilege Vulnerability
Integer overflow or wraparound in Windows Biometric Service allows an authorized attacker to elevate privileges locally.
CVE-2026-70575 Windows Schannel Denial of Service Vulnerability
Null pointer dereference in Windows Schannel allows an authorized attacker to deny service over a network.
CVE-2026-70581 Windows Biometric Service Elevation of Privilege Vulnerability
Integer overflow or wraparound in Windows Biometric Service allows an authorized attacker to elevate privileges locally.
CVE-2026-70577 Windows Modern Device Management (MDM) Elevation of Privilege Vulnerability
Use after free in Windows Modern Device Management (MDM) allows an authorized attacker to elevate privileges locally.
CVE-2026-70578 Windows Credential Guard Elevation of Privilege Vulnerability
Heap-based buffer overflow in Windows Credential Guard allows an authorized attacker to elevate privileges locally.
CVE-2026-70579 Windows Mobile Broadband Information Disclosure Vulnerability
Out-of-bounds read in Windows Mobile Broadband allows an unauthorized attacker to disclose information over a network.
CVE-2026-70583 Windows Core Messaging Elevation of Privilege Vulnerability
Heap-based buffer overflow in Windows Core Messaging allows an authorized attacker to elevate privileges locally.
CVE-2026-71349 Windows Spaceport.sys Remote Code Execution Vulnerability
Heap-based buffer overflow in Windows Spaceport.sys allows an unauthorized attacker to execute code with a physical attack.
CVE-2026-71342 Windows Remote Access Connection Manager Elevation of Privilege Vulnerability
Use after free in Windows Remote Access Connection Manager allows an authorized attacker to elevate privileges locally.
CVE-2026-71352 Windows Remote Access Connection Manager Remote Code Execution Vulnerability
Integer underflow (wrap or wraparound) in Windows Remote Access Connection Manager allows an authorized attacker to execute code over a network.
CVE-2026-72927 Winsock Elevation of Privilege Vulnerability
Heap-based buffer overflow in Winsock allows an authorized attacker to elevate privileges locally.
CVE-2026-72928 Windows DNS Server Remote Code Execution Vulnerability
Use after free in Windows DNS allows an authorized attacker to execute code over a network.
CVE-2026-72931 Windows Secure Socket Tunneling Protocol (SSTP) Denial of Service Vulnerability
Missing release of resource after effective lifetime in Windows Secure Socket Tunneling Protocol (SSTP) allows an authorized attacker to deny service locally.
CVE-2026-72936 Windows SMB Client Remote Code Execution Vulnerability
Use after free in Windows SMB Client allows an unauthorized attacker to execute code over a network.
CVE-2026-72933 Microsoft WDAC OLE DB provider for SQL Remote Code Execution Vulnerability
Heap-based buffer overflow in Microsoft WDAC OLE DB provider for SQL allows an unauthorized attacker to execute code over a network.


