CVE-2026-50451 Windows Routing and Remote Access Service (RRAS) Elevation of Privilege Vulnerability
Missing authentication for critical function in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to elevate privileges locally.
Categories: Microsoft
CVE-2026-50455 Universal Plug and Play (upnp.dll) Information Disclosure Vulnerability
Use of uninitialized resource in Universal Plug and Play (upnp.dll) allows an authorized attacker to disclose information locally.
Categories: Microsoft
CVE-2026-50466 Microsoft Brokering File System Elevation of Privilege Vulnerability
Use after free in Windows Brokering File System allows an authorized attacker to elevate privileges locally.
Categories: Microsoft
CVE-2026-50402 NTFS Elevation of Privilege Vulnerability
Incorrect conversion between numeric types in Windows NTFS allows an authorized attacker to elevate privileges locally.
Categories: Microsoft
CVE-2026-50435 Windows Overlay Filter Elevation of Privilege Vulnerability
Buffer over-read in Windows Overlay Filter allows an authorized attacker to elevate privileges locally.
Categories: Microsoft
CVE-2026-50409 Windows Overlay Filter Information Disclosure Vulnerability
Exposure of sensitive information to an unauthorized actor in Windows Overlay Filter allows an authorized attacker to disclose information locally.
Categories: Microsoft
CVE-2026-50441 Windows Resilient File System (ReFS) Elevation of Privilege Vulnerability
Untrusted pointer dereference in Windows Resilient File System (ReFS) allows an authorized attacker to elevate privileges locally.
Categories: Microsoft
CVE-2026-50465 Windows DNS Client Tampering Vulnerability
Improper access control in Microsoft Windows DNS allows an authorized attacker to perform tampering locally.
Categories: Microsoft
CVE-2026-50439 Microsoft Message Queuing Queue Manager Remote Code Execution Vulnerability
Use after free in Microsoft Message Queuing Queue Manager allows an unauthorized attacker to execute code over a network.
Categories: Microsoft
CVE-2026-50462 Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
External control of file name or path in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.
Categories: Microsoft
CVE-2026-50457 Windows Runtime Elevation of Privilege Vulnerability
Use after free in Windows Runtime allows an authorized attacker to elevate privileges locally.
Categories: Microsoft
CVE-2026-50473 Windows File Explorer Information Disclosure Vulnerability
Exposure of sensitive information to an unauthorized actor in Windows File Explorer allows an authorized attacker to disclose information locally.
Categories: Microsoft
CVE-2026-50442 Windows File Explorer Information Disclosure Vulnerability
Exposure of sensitive information to an unauthorized actor in Windows File Explorer allows an authorized attacker to disclose information locally.
Categories: Microsoft
CVE-2026-50389 Windows File Explorer Information Disclosure Vulnerability
Exposure of sensitive information to an unauthorized actor in Windows File Explorer allows an authorized attacker to disclose information locally.
Categories: Microsoft
CVE-2026-50456 Windows File Explorer Information Disclosure Vulnerability
Exposure of sensitive information to an unauthorized actor in Windows File Explorer allows an authorized attacker to disclose information locally.
Categories: Microsoft
CVE-2026-50432 Window Virtual Filtering Platform (VFP) Denial of Service Vulnerability
Use after free in Windows Virtual Filtering Platform (VFP) allows an authorized attacker to deny service over a network.
Categories: Microsoft
CVE-2026-50399 Windows Kernel Elevation of Privilege Vulnerability
Out-of-bounds read in Windows Kernel allows an authorized attacker to elevate privileges locally.
Categories: Microsoft
CVE-2026-50461 Windows NTFS Remote Code Execution Vulnerability
Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to execute code locally.
Categories: Microsoft
CVE-2026-50431 Windows Quality of Service (QoS) Packet Scheduler Information Disclosure Vulnerability
Information published.
Categories: Microsoft
CVE-2026-50453 Windows USB Audio Class Driver Information Disclosure Vulnerability
Out-of-bounds read in Windows USB Audio Class driver (usbaudio.sys) allows an unauthorized attacker to disclose information with a physical attack.
Categories: Microsoft


