| | CVE-2026-35416 | Microsoft | high | 7.0 | — | | Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to ele… | May 12, 2026 | May 13, 2026 |
| | CVE-2026-35417 | Microsoft | high | 7.8 | — | | Access of resource using incompatible type ('type confusion') in Windows Win32K - ICOMP allows an au… | May 12, 2026 | May 13, 2026 |
| | CVE-2026-35418 | Microsoft | high | 7.8 | — | | Use after free in Windows Cloud Files Mini Filter Driver allows an authorized attacker to elevate pr… | May 12, 2026 | May 13, 2026 |
| | CVE-2026-35419 | Microsoft | medium | 5.5 | — | | Out-of-bounds read in Windows DWM Core Library allows an authorized attacker to disclose information… | May 12, 2026 | May 13, 2026 |
| | CVE-2026-35420 | Microsoft | high | 7.8 | — | | Heap-based buffer overflow in Windows Kernel allows an authorized attacker to elevate privileges loc… | May 12, 2026 | May 13, 2026 |
| | CVE-2026-35421 | Microsoft | high | 7.8 | — | | Heap-based buffer overflow in Windows GDI allows an unauthorized attacker to execute code locally. | May 12, 2026 | May 13, 2026 |
| | CVE-2026-35422 | Microsoft | medium | 6.5 | — | | Authentication bypass using an alternate path or channel in Windows TCP/IP allows an authorized atta… | May 12, 2026 | May 13, 2026 |
| | CVE-2026-35424 | Microsoft | high | 7.5 | — | | Missing release of memory after effective lifetime in Windows Internet Key Exchange (IKE) Protocol a… | May 12, 2026 | May 13, 2026 |
| | CVE-2026-40377 | Microsoft | high | 7.8 | — | | Heap-based buffer overflow in Windows Cryptographic Services allows an authorized attacker to elevat… | May 12, 2026 | May 13, 2026 |
| | CVE-2026-40380 | Microsoft | medium | 6.2 | — | | Heap-based buffer overflow in Volume Manager Extension Driver allows an authorized attacker to execu… | May 12, 2026 | May 13, 2026 |
| | CVE-2026-40399 | Microsoft | high | 7.8 | — | | Stack-based buffer overflow in Windows TCP/IP allows an authorized attacker to elevate privileges lo… | May 12, 2026 | May 13, 2026 |
| | CVE-2026-40407 | Microsoft | high | 7.8 | — | | Heap-based buffer overflow in Windows Common Log File System Driver allows an authorized attacker to… | May 12, 2026 | May 13, 2026 |
| | CVE-2026-40408 | Microsoft | high | 7.8 | — | | Use after free in Windows Kernel-Mode Drivers allows an authorized attacker to elevate privileges lo… | May 12, 2026 | May 13, 2026 |
| | CVE-2026-40410 | Microsoft | high | 7.0 | — | | Use after free in Windows SMB Client allows an authorized attacker to elevate privileges locally. | May 12, 2026 | May 13, 2026 |
| | CVE-2026-40415 | Microsoft | high | 8.1 | — | | Use after free in Windows TCP/IP allows an unauthorized attacker to execute code over a network. | May 12, 2026 | May 13, 2026 |
| | CVE-2026-41088 | Microsoft | high | 7.8 | — | | External control of file name or path in Windows Ancillary Function Driver for WinSock allows an aut… | May 12, 2026 | May 13, 2026 |
| | CVE-2026-41089 | Microsoft | critical | 9.8 | — | | Stack-based buffer overflow in Windows Netlogon allows an unauthorized attacker to execute code over… | May 12, 2026 | May 13, 2026 |
| | CVE-2026-41095 | Microsoft | high | 7.8 | — | | Use after free in Data Deduplication allows an authorized attacker to elevate privileges locally. | May 12, 2026 | May 13, 2026 |
| | CVE-2026-41096 | Microsoft | critical | 9.8 | — | | Heap-based buffer overflow in Microsoft Windows DNS allows an unauthorized attacker to execute code … | May 12, 2026 | May 13, 2026 |
| | CVE-2026-32161 | Microsoft | high | 7.5 | — | | Concurrent execution using shared resource with improper synchronization ('race condition') in Windo… | May 12, 2026 | May 13, 2026 |
| | CVE-2026-32170 | Microsoft | medium | 6.7 | — | | Double free in Windows Rich Text Edit Control allows an authorized attacker to elevate privileges lo… | May 12, 2026 | May 13, 2026 |
| | CVE-2026-42825 | Microsoft | high | 7.0 | — | | Use after free in Windows Telephony Service allows an authorized attacker to elevate privileges loca… | May 12, 2026 | May 13, 2026 |
| | CVE-2026-42896 | Microsoft | high | 7.8 | — | | Integer overflow or wraparound in Windows DWM Core Library allows an authorized attacker to elevate … | May 12, 2026 | May 13, 2026 |
| | CVE-2026-33835 | Microsoft | high | 7.8 | — | | Use after free in Windows Cloud Files Mini Filter Driver allows an authorized attacker to elevate pr… | May 12, 2026 | May 13, 2026 |
| | CVE-2026-33837 | Microsoft | high | 7.8 | — | | Heap-based buffer overflow in Windows TCP/IP allows an authorized attacker to elevate privileges loc… | May 12, 2026 | May 13, 2026 |
| | CVE-2026-33838 | Microsoft | high | 7.8 | — | | Double free in Windows Message Queuing allows an authorized attacker to elevate privileges locally. | May 12, 2026 | May 13, 2026 |
| | CVE-2026-34332 | Microsoft | high | 8.0 | — | | Use after free in Windows Kernel-Mode Drivers allows an authorized attacker to execute code over a n… | May 12, 2026 | May 13, 2026 |
| | CVE-2026-34334 | Microsoft | high | 7.8 | — | | Concurrent execution using shared resource with improper synchronization ('race condition') in Windo… | May 12, 2026 | May 13, 2026 |
| | CVE-2026-34336 | Microsoft | high | 7.8 | — | | Buffer over-read in Windows DWM Core Library allows an authorized attacker to disclose information l… | May 12, 2026 | May 13, 2026 |
| | CVE-2026-34337 | Microsoft | high | 7.8 | — | | Use after free in Windows Cloud Files Mini Filter Driver allows an authorized attacker to elevate pr… | May 12, 2026 | May 13, 2026 |
| | CVE-2026-34338 | Microsoft | high | 7.8 | — | | Use after free in Windows Telephony Service allows an authorized attacker to elevate privileges loca… | May 12, 2026 | May 13, 2026 |
| | CVE-2026-34340 | Microsoft | high | 7.0 | — | | Use after free in Windows Projected File System allows an authorized attacker to elevate privileges … | May 12, 2026 | May 13, 2026 |
| | CVE-2026-34341 | Microsoft | high | 7.0 | — | | Double free in Windows Link-Layer Discovery Protocol (LLDP) allows an authorized attacker to elevate… | May 12, 2026 | May 13, 2026 |
| | CVE-2026-40369 | Microsoft | high | 7.8 | 4.7%
| | Heap-based buffer overflow in Windows Kernel allows an authorized attacker to elevate privileges loc… | May 12, 2026 | Jun 26, 2026 |
| | CVE-2026-40382 | Microsoft | high | 7.8 | — | | Use after free in Windows Telephony Service allows an authorized attacker to elevate privileges loca… | May 12, 2026 | May 13, 2026 |
| | CVE-2026-40397 | Microsoft | high | 7.8 | — | | Integer underflow (wrap or wraparound) in Windows Common Log File System Driver allows an authorized… | May 12, 2026 | May 13, 2026 |
| | CVE-2026-32209 | Microsoft | medium | 4.4 | — | | Improper access control in Windows Filtering Platform (WFP) allows an authorized attacker to bypass … | May 12, 2026 | May 13, 2026 |
| | CVE-2026-40398 | Microsoft | high | 7.8 | — | | Heap-based buffer overflow in Windows Remote Desktop allows an authorized attacker to elevate privil… | May 12, 2026 | May 13, 2026 |
| | CVE-2026-40401 | Microsoft | high | 7.1 | — | | Null pointer dereference in Windows TCP/IP allows an unauthorized attacker to deny service locally. | May 12, 2026 | May 13, 2026 |
| | CVE-2026-40402 | Microsoft | critical | 9.3 | — | | Use after free in Windows Hyper-V allows an unauthorized attacker to elevate privileges locally. | May 12, 2026 | May 13, 2026 |
| | CVE-2026-40403 | Microsoft | high | 8.8 | — | | Heap-based buffer overflow in Windows Win32K - GRFX allows an authorized attacker to execute code lo… | May 12, 2026 | May 13, 2026 |
| | CVE-2026-40413 | Microsoft | high | 7.4 | — | | Null pointer dereference in Windows TCP/IP allows an unauthorized attacker to deny service over an a… | May 12, 2026 | May 13, 2026 |
| | CVE-2026-41097 | Microsoft | medium | 6.7 | — | | Reliance on a component that is not updateable in Windows Secure Boot allows an authorized attacker … | May 12, 2026 | May 13, 2026 |
| | CVE-2025-53680 | Fortinet | medium | 6.7 | 0.6%
| | An improper neutralization of special elements used in an OS command ("OS Command Injection") vulner… | May 12, 2026 | Jul 8, 2026 |
| | CVE-2025-67604 | Fortinet | medium | 5.3 | 0.1%
| | A use of potentially dangerous function vulnerability in Fortinet FortiAnalyzer 7.6.0 through 7.6.4,… | May 12, 2026 | May 15, 2026 |
| | CVE-2026-26083 | Fortinet | critical | 9.8 | 0.7%
| | A missing authorization vulnerability in Fortinet FortiSandbox 5.0.0 through 5.0.1, FortiSandbox 4.4… | May 12, 2026 | Jul 8, 2026 |
| | CVE-2026-32175 | Microsoft | medium | 4.3 | 0.7%
| | A tampering vulnerability exists when .NET Core improperly handles specially crafted files. An attac… | May 12, 2026 | Jun 18, 2026 |
| | CVE-2026-32177 | Microsoft | high | 7.3 | 0.6%
| | Heap-based buffer overflow in .NET allows an unauthorized attacker to elevate privileges locally. | May 12, 2026 | Jul 15, 2026 |
| | CVE-2026-32185 | Microsoft | medium | 5.5 | 0.0%
| | Files or directories accessible to external parties in Microsoft Teams allows an unauthorized attack… | May 12, 2026 | May 18, 2026 |
| | CVE-2026-32204 | Microsoft | high | 7.8 | 0.3%
| | External control of file name or path in Azure Monitor Agent allows an authorized attacker to elevat… | May 12, 2026 | Jun 18, 2026 |