Microsoft Security Center Center News

Subscribe to Microsoft Security Center Center News feed
Updated: 33 min 38 sec ago

CVE-2026-50417 Windows NTFS Remote Code Execution Vulnerability

Tue, 07/14/2026 - 14:00
Heap-based buffer overflow in Windows NTFS allows an authorized attacker to execute code locally.
Categories: Microsoft

CVE-2026-50447 Windows Message Queuing Service (MSMQ) Remote Code Execution Vulnerability

Tue, 07/14/2026 - 14:00
Heap-based buffer overflow in Windows Message Queuing allows an unauthorized attacker to execute code over a network.
Categories: Microsoft

CVE-2026-50438 Microsoft PC Manager Elevation of Privilege Vulnerability

Tue, 07/14/2026 - 14:00
Improper link resolution before file access ('link following') in Microsoft PC Manager allows an authorized attacker to elevate privileges locally.
Categories: Microsoft

CVE-2026-50420 HTTP.sys Information Disclosure Vulnerability

Tue, 07/14/2026 - 14:00
Out-of-bounds read in Windows HTTP.sys allows an unauthorized attacker to disclose information locally.
Categories: Microsoft

CVE-2026-50362 Windows Resilient File System (ReFS) Remote Code Execution Vulnerability

Tue, 07/14/2026 - 14:00
Heap-based buffer overflow in Windows Resilient File System (ReFS) allows an unauthorized attacker to execute code locally.
Categories: Microsoft

CVE-2026-50474 Remote Desktop Client Remote Code Execution Vulnerability

Tue, 07/14/2026 - 14:00
Use after free in Remote Desktop Client allows an unauthorized attacker to execute code over a network.
Categories: Microsoft

CVE-2026-50411 Windows Active Directory Federation Services Denial of Service Vulnerability

Tue, 07/14/2026 - 14:00
Stack-based buffer overflow in Active Directory Federation Services (AD FS) allows an unauthorized attacker to deny service over a network.
Categories: Microsoft

CVE-2026-50444 Windows Server Update Service (WSUS) Elevation of Privilege Vulnerability

Tue, 07/14/2026 - 14:00
Missing authentication for critical function in Windows Server Update Service allows an authorized attacker to elevate privileges over a network.
Categories: Microsoft

CVE-2026-50394 Windows Media Information Disclosure Vulnerability

Tue, 07/14/2026 - 14:00
Exposure of sensitive information to an unauthorized actor in Windows Media allows an authorized attacker to disclose information locally.
Categories: Microsoft

CVE-2026-50415 Windows Media Information Disclosure Vulnerability

Tue, 07/14/2026 - 14:00
Exposure of sensitive information to an unauthorized actor in Windows Media allows an unauthorized attacker to disclose information over a network.
Categories: Microsoft

CVE-2026-50458 Microsoft Brokering File System Elevation of Privilege Vulnerability

Tue, 07/14/2026 - 14:00
Use after free in Microsoft Brokering File System allows an authorized attacker to elevate privileges locally.
Categories: Microsoft

CVE-2026-50475 Windows Kernel Information Disclosure Vulnerability

Tue, 07/14/2026 - 14:00
Buffer over-read in Windows Kernel allows an authorized attacker to disclose information locally.
Categories: Microsoft

CVE-2026-50476 Windows Network Connections Service Elevation of Privilege Vulnerability

Tue, 07/14/2026 - 14:00
Use after free in Microsoft Windows allows an authorized attacker to elevate privileges locally.
Categories: Microsoft

CVE-2026-50429 Windows Kernel Information Disclosure Vulnerability

Tue, 07/14/2026 - 14:00
Out-of-bounds read in Windows Kernel allows an unauthorized attacker to disclose information over a network.
Categories: Microsoft

CVE-2026-50450 Windows Network Connections Service Elevation of Privilege Vulnerability

Tue, 07/14/2026 - 14:00
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Wireless Wide Area Network Service allows an authorized attacker to elevate privileges locally.
Categories: Microsoft

CVE-2026-50424 Windows Domain Controller Denial of Service Vulnerability

Tue, 07/14/2026 - 14:00
Untrusted pointer dereference in Windows Domain Controller allows an unauthorized attacker to deny service over a network.
Categories: Microsoft

CVE-2026-50406 Windows Backup Engine Elevation of Privilege Vulnerability

Tue, 07/14/2026 - 14:00
Use after free in Windows Backup Engine allows an authorized attacker to elevate privileges locally.
Categories: Microsoft

CVE-2026-50470 Windows Network Policy Server SNMP Information Disclosure Vulnerability

Tue, 07/14/2026 - 14:00
Out-of-bounds read in Windows Network Policy Server SNMP allows an unauthorized attacker to disclose information over a network.
Categories: Microsoft

CVE-2026-50459 Windows Kernel Elevation of Privilege Vulnerability

Tue, 07/14/2026 - 14:00
Use after free in Windows Kernel allows an unauthorized attacker to elevate privileges locally.
Categories: Microsoft

CVE-2026-50477 Windows Kernel Elevation of Privilege Vulnerability

Tue, 07/14/2026 - 14:00
Heap-based buffer overflow in Windows Kernel allows an authorized attacker to elevate privileges locally.
Categories: Microsoft

Pages