| | CVE-2026-68880 | Microsoft | high | 8.0 | — | | Heap-based buffer overflow in Windows Win32K allows an authorized attacker to elevate privileges ove… | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-68876 | Microsoft | high | 8.0 | — | | Heap-based buffer overflow in Windows Program Compatibility Assistant Service allows an authorized a… | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-68850 | Microsoft | high | 7.8 | — | | Heap-based buffer overflow in Microsoft Account allows an authorized attacker to elevate privileges … | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69265 | Microsoft | high | 7.8 | — | | Out-of-bounds read in Windows NTFS allows an authorized attacker to elevate privileges locally. | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69274 | Microsoft | high | 7.1 | — | | Use after free in Windows Win32K allows an authorized attacker to elevate privileges over a network. | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-68894 | Microsoft | high | 8.0 | — | | Heap-based buffer overflow in Windows Error Reporting allows an authorized attacker to elevate privi… | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69280 | Microsoft | high | 7.0 | — | | Use after free in Windows Push Notifications allows an authorized attacker to elevate privileges loc… | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69275 | Microsoft | high | 7.0 | — | | Use after free in Kernel Streaming WOW Thunk Service Driver allows an authorized attacker to elevate… | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69283 | Microsoft | high | 7.8 | — | | Heap-based buffer overflow in Windows CD-ROM Driver allows an authorized attacker to elevate privile… | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69289 | Microsoft | high | 7.8 | — | | Improper link resolution before file access ('link following') in Windows Setup Files Cleanup allows… | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69314 | Microsoft | high | 7.1 | — | | Use after free in Windows Device Association Broker service allows an authorized attacker to elevate… | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69300 | Microsoft | high | 7.0 | — | | Use after free in Windows Push Notifications allows an authorized attacker to elevate privileges loc… | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69301 | Microsoft | high | 8.0 | — | | Stack-based buffer overflow in Windows Win32K allows an authorized attacker to elevate privileges ov… | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69312 | Microsoft | high | 7.8 | — | | Out-of-bounds read in Windows NTFS allows an authorized attacker to elevate privileges locally. | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69324 | Microsoft | high | 7.8 | — | | Access of resource using incompatible type ('type confusion') in Windows Performance Monitor allows … | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69328 | Microsoft | high | 7.8 | — | | Untrusted search path in Windows Storage allows an authorized attacker to elevate privileges locally… | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69331 | Microsoft | high | 7.0 | — | | Use after free in Windows Remote Access Connection Manager allows an authorized attacker to elevate … | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69332 | Microsoft | high | 8.0 | — | | Out-of-bounds read in Windows NTFS allows an authorized attacker to elevate privileges over a networ… | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69335 | Microsoft | high | 7.0 | — | | Use after free in Windows Win32K allows an authorized attacker to elevate privileges locally. | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69340 | Microsoft | high | 7.1 | — | | Heap-based buffer overflow in Windows NTFS allows an authorized attacker to elevate privileges over … | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69346 | Microsoft | high | 8.0 | — | | Heap-based buffer overflow in Windows Print Spooler Components allows an authorized attacker to elev… | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69348 | Microsoft | high | 7.8 | — | | Heap-based buffer overflow in Windows Win32K allows an authorized attacker to elevate privileges loc… | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69350 | Microsoft | medium | 6.7 | — | | Heap-based buffer overflow in Windows Overlay Filter allows an authorized attacker to elevate privil… | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69358 | Microsoft | high | 7.1 | — | | Use of uninitialized resource in Remote Desktop Client allows an authorized attacker to execute code… | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69360 | Microsoft | high | 8.8 | — | | Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code … | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69364 | Microsoft | high | 7.1 | — | | Concurrent execution using shared resource with improper synchronization ('race condition') in Windo… | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69373 | Microsoft | medium | 6.7 | — | | Integer overflow or wraparound in Windows Overlay Filter allows an authorized attacker to elevate pr… | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69385 | Microsoft | high | 7.0 | — | | Concurrent execution using shared resource with improper synchronization ('race condition') in Windo… | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69386 | Microsoft | high | 8.8 | — | | Heap-based buffer overflow in Microsoft Windows Media Foundation allows an unauthorized attacker to … | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69388 | Microsoft | high | 7.0 | — | | Use after free in Windows Bluetooth Service allows an authorized attacker to elevate privileges loca… | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69410 | Microsoft | high | 7.0 | — | | Use after free in Windows Win32K allows an authorized attacker to elevate privileges locally. | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69398 | Microsoft | high | 7.0 | — | | Concurrent execution using shared resource with improper synchronization ('race condition') in Windo… | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69421 | Microsoft | high | 7.8 | — | | Integer underflow (wrap or wraparound) in Windows Kernel Mode Driver allows an authorized attacker t… | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69475 | Microsoft | high | 7.8 | — | | Untrusted pointer dereference in Windows Remote Desktop Services allows an authorized attacker to el… | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69449 | Microsoft | medium | 6.7 | — | | Heap-based buffer overflow in Windows BitLocker allows an authorized attacker to execute code locall… | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69447 | Microsoft | high | 7.8 | — | | Heap-based buffer overflow in Windows Audio Service allows an authorized attacker to elevate privile… | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69433 | Microsoft | high | 7.8 | — | | Heap-based buffer overflow in Windows Error Reporting allows an authorized attacker to elevate privi… | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69440 | Microsoft | high | 7.0 | — | | Time-of-check time-of-use (toctou) race condition in Windows MIDI Service Module allows an authorize… | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69466 | Microsoft | high | 7.0 | — | | Time-of-check time-of-use (toctou) race condition in Windows Kernel allows an authorized attacker to… | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69445 | Microsoft | high | 7.8 | — | | Improper limitation of a pathname to a restricted directory ('path traversal') in Windows Compressed… | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69462 | Microsoft | high | 8.0 | — | | Heap-based buffer overflow in Windows Error Reporting allows an authorized attacker to elevate privi… | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69459 | Microsoft | high | 7.8 | — | | Heap-based buffer overflow in Windows Power Dependency Coordinator allows an authorized attacker to … | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69467 | Microsoft | high | 7.8 | — | | Stack-based buffer overflow in Microsoft Graphics Component allows an authorized attacker to elevate… | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69482 | Microsoft | high | 7.1 | 0.3%
| | Creation of temporary file in directory with insecure permissions in Windows Error Reporting allows … | Sep 8, 2026 | Sep 10, 2026 |
| | CVE-2026-69561 | Microsoft | high | 7.8 | — | | Out-of-bounds read in Windows CD-ROM Driver allows an authorized attacker to elevate privileges loca… | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69480 | Microsoft | high | 7.8 | — | | Heap-based buffer overflow in Windows Partition Management Driver allows an authorized attacker to e… | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69578 | Microsoft | high | 7.0 | — | | Numeric truncation error in Windows Kernel allows an authorized attacker to elevate privileges local… | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69493 | Microsoft | critical | 9.8 | — | | Out-of-bounds read in Windows Event Logging Service allows an unauthorized attacker to execute code … | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69511 | Microsoft | high | 8.8 | — | | Heap-based buffer overflow in Microsoft Windows Media Foundation allows an unauthorized attacker to … | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69512 | Microsoft | high | 8.0 | — | | Heap-based buffer overflow in Windows Spaceport.sys allows an authorized attacker to elevate privile… | Sep 8, 2026 | Sep 9, 2026 |