| | CVE-2026-45641 | Microsoft | high | 8.4 | — | | Out-of-bounds read in Windows Hyper-V allows an unauthorized attacker to execute code locally. | Jun 9, 2026 | Jun 10, 2026 |
| | CVE-2026-45648 | Microsoft | high | 8.8 | — | | Stack-based buffer overflow in Active Directory Domain Services allows an authorized attacker to exe… | Jun 9, 2026 | Jun 10, 2026 |
| | CVE-2026-45656 | Microsoft | high | 7.8 | — | | Protection mechanism failure in Windows UEFI allows an authorized attacker to bypass a security feat… | Jun 9, 2026 | Jun 10, 2026 |
| | CVE-2026-45657 | Microsoft | critical | 9.8 | — | | Use after free in Windows Kernel allows an unauthorized attacker to execute code over a network. | Jun 9, 2026 | Jun 10, 2026 |
| | CVE-2026-47288 | Microsoft | high | 7.1 | — | | Integer overflow or wraparound in Windows Kerberos allows an authorized attacker to execute code ove… | Jun 9, 2026 | Jun 10, 2026 |
| | CVE-2026-47291 | Microsoft | critical | 9.8 | — | | Integer overflow or wraparound in Windows HTTP.sys allows an unauthorized attacker to execute code o… | Jun 9, 2026 | Jun 10, 2026 |
| | CVE-2026-41092 | Microsoft | high | 7.8 | — | | Improper access control in Microsoft Kinect allows an authorized attacker to elevate privileges loca… | Jun 9, 2026 | Jun 10, 2026 |
| | CVE-2026-45588 | Microsoft | high | 7.9 | — | | Protection mechanism failure in Windows Secure Boot allows an authorized attacker to bypass a securi… | Jun 9, 2026 | Jun 10, 2026 |
| | CVE-2026-47648 | Microsoft | high | 7.0 | — | | Untrusted search path in Windows Storage allows an authorized attacker to elevate privileges locally… | Jun 9, 2026 | Jun 10, 2026 |
| | CVE-2026-47653 | Microsoft | high | 8.8 | — | | Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code … | Jun 9, 2026 | Jun 10, 2026 |
| | CVE-2026-47652 | Microsoft | high | 8.2 | — | | Out-of-bounds read in Windows Hyper-V allows an unauthorized attacker to execute code locally. | Jun 9, 2026 | Jun 10, 2026 |
| | CVE-2026-47654 | Microsoft | high | 7.5 | — | | Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code … | Jun 9, 2026 | Jun 10, 2026 |
| | CVE-2026-48563 | Microsoft | high | 7.5 | — | | Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code … | Jun 9, 2026 | Jun 10, 2026 |
| | CVE-2026-48568 | Microsoft | high | 7.9 | — | | Protection mechanism failure in Windows Secure Boot allows an authorized attacker to bypass a securi… | Jun 9, 2026 | Jun 10, 2026 |
| | CVE-2026-48570 | Microsoft | high | 7.9 | — | | Protection mechanism failure in Windows Secure Boot allows an authorized attacker to bypass a securi… | Jun 9, 2026 | Jun 10, 2026 |
| | CVE-2026-48573 | Microsoft | high | 7.9 | — | | Protection mechanism failure in Windows Secure Boot allows an authorized attacker to bypass a securi… | Jun 9, 2026 | Jun 10, 2026 |
| | CVE-2026-48575 | Microsoft | high | 7.9 | — | | Protection mechanism failure in Windows Secure Boot allows an authorized attacker to bypass a securi… | Jun 9, 2026 | Jun 10, 2026 |
| | CVE-2026-48576 | Microsoft | high | 7.9 | — | | Protection mechanism failure in Windows Secure Boot allows an authorized attacker to bypass a securi… | Jun 9, 2026 | Jun 10, 2026 |
| | CVE-2026-48578 | Microsoft | high | 7.9 | — | | Protection mechanism failure in Windows Secure Boot allows an authorized attacker to bypass a securi… | Jun 9, 2026 | Jun 10, 2026 |
| | CVE-2026-48583 | Microsoft | high | 7.8 | — | | Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally. | Jun 9, 2026 | Jun 10, 2026 |
| | CVE-2026-42828 | Microsoft | high | 7.8 | — | | Buffer over-read in Windows Projected File System Filter Driver allows an authorized attacker to ele… | Jun 9, 2026 | Jun 10, 2026 |
| | CVE-2026-42829 | Microsoft | high | 7.8 | — | | Improper access control in Windows Administrator Protection allows an authorized attacker to bypass … | Jun 9, 2026 | Jun 10, 2026 |
| | CVE-2026-45586 | Microsoft | high | 7.8 | — | | Improper link resolution before file access ('link following') in Windows Collaborative Translation … | Jun 9, 2026 | Jun 10, 2026 |
| | CVE-2026-45592 | Microsoft | high | 7.8 | — | | Integer overflow or wraparound in Windows Internet (wininet.dll) allows an authorized attacker to el… | Jun 9, 2026 | Jun 10, 2026 |
| | CVE-2026-45593 | Microsoft | high | 7.8 | — | | Use after free in Windows SDK allows an authorized attacker to elevate privileges locally. | Jun 9, 2026 | Jun 10, 2026 |
| | CVE-2026-45597 | Microsoft | high | 7.0 | — | | Concurrent execution using shared resource with improper synchronization ('race condition') in UI Au… | Jun 9, 2026 | Jun 10, 2026 |
| | CVE-2026-45599 | Microsoft | high | 8.1 | — | | Use after free in Universal Plug and Play (upnp.dll) allows an unauthorized attacker to execute code… | Jun 9, 2026 | Jun 10, 2026 |
| | CVE-2026-45601 | Microsoft | high | 7.0 | — | | Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to ele… | Jun 9, 2026 | Jun 10, 2026 |
| | CVE-2026-45598 | Microsoft | high | 7.0 | — | | Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to ele… | Jun 9, 2026 | Jun 10, 2026 |
| | CVE-2026-45636 | Microsoft | high | 7.8 | — | | Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to execute code locally. | Jun 9, 2026 | Jun 10, 2026 |
| | CVE-2026-45596 | Microsoft | high | 7.0 | — | | Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to ele… | Jun 9, 2026 | Jun 10, 2026 |
| | CVE-2026-45600 | Microsoft | high | 7.8 | — | | Access of resource using incompatible type ('type confusion') in Windows Kernel-Mode Drivers allows … | Jun 9, 2026 | Jun 10, 2026 |
| | CVE-2026-45635 | Microsoft | high | 8.1 | — | | Use after free in Universal Plug and Play (upnp.dll) allows an unauthorized attacker to execute code… | Jun 9, 2026 | Jun 10, 2026 |
| | CVE-2026-45638 | Microsoft | high | 7.8 | — | | Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to ele… | Jun 9, 2026 | Jun 10, 2026 |
| | CVE-2026-45603 | Microsoft | high | 7.0 | — | | Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to ele… | Jun 9, 2026 | Jun 10, 2026 |
| | CVE-2026-45637 | Microsoft | high | 7.8 | — | | Use after free in Windows DWM Core Library allows an authorized attacker to elevate privileges local… | Jun 9, 2026 | Jun 10, 2026 |
| | CVE-2026-45653 | Microsoft | high | 7.0 | — | | Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally. | Jun 9, 2026 | Jun 10, 2026 |
| | CVE-2026-45654 | Microsoft | high | 7.9 | — | | Protection mechanism failure in Windows Secure Boot allows an authorized attacker to bypass a securi… | Jun 9, 2026 | Jun 10, 2026 |
| | CVE-2026-42910 | Microsoft | high | 7.8 | — | | Out-of-bounds write in Windows Hotpatch Monitoring Service allows an authorized attacker to elevate … | Jun 9, 2026 | Jun 10, 2026 |
| | CVE-2026-47656 | Microsoft | high | 7.9 | — | | Protection mechanism failure in Windows Boot Manager allows an authorized attacker to bypass a secur… | Jun 9, 2026 | Jun 10, 2026 |
| | CVE-2026-48574 | Microsoft | high | 7.8 | — | | Heap-based buffer overflow in Windows Media allows an unauthorized attacker to execute code locally. | Jun 9, 2026 | Jun 10, 2026 |
| | CVE-2026-42836 | Microsoft | high | 7.0 | — | | Concurrent execution using shared resource with improper synchronization ('race condition') in Funct… | Jun 9, 2026 | Jun 10, 2026 |
| | CVE-2026-42837 | Microsoft | high | 7.8 | — | | Buffer over-read in Windows Projected File System Filter Driver allows an authorized attacker to ele… | Jun 9, 2026 | Jun 10, 2026 |
| | CVE-2026-42904 | Microsoft | critical | 9.6 | — | | Heap-based buffer overflow in Windows TCP/IP allows an unauthorized attacker to elevate privileges o… | Jun 9, 2026 | Jun 10, 2026 |
| | CVE-2026-42905 | Microsoft | high | 7.8 | — | | Use after free in Windows DWM Core Library allows an authorized attacker to elevate privileges local… | Jun 9, 2026 | Jun 10, 2026 |
| | CVE-2026-42980 | Microsoft | high | 7.8 | 5.7%
| | Integer underflow (wrap or wraparound) in Windows NT OS Kernel allows an authorized attacker to elev… | Jun 9, 2026 | Jul 23, 2026 |
| | CVE-2026-42916 | Microsoft | high | 7.8 | — | | Integer underflow (wrap or wraparound) in Windows NT OS Kernel allows an authorized attacker to elev… | Jun 9, 2026 | Jun 10, 2026 |
| | CVE-2026-42911 | Microsoft | high | 7.0 | — | | Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to ele… | Jun 9, 2026 | Jun 10, 2026 |
| | CVE-2026-42912 | Microsoft | high | 7.0 | — | | Concurrent execution using shared resource with improper synchronization ('race condition') in Windo… | Jun 9, 2026 | Jun 10, 2026 |
| | CVE-2026-42984 | Microsoft | high | 7.0 | — | | Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally. | Jun 9, 2026 | Jun 10, 2026 |