| | CVE-2026-69498 | Microsoft | high | 7.0 | — | | Use after free in Windows Win32K allows an authorized attacker to elevate privileges locally. | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69508 | Microsoft | high | 7.8 | — | | Stack-based buffer overflow in Windows MIDI Service Module allows an authorized attacker to elevate … | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69509 | Microsoft | high | 7.8 | — | | Heap-based buffer overflow in Windows Fax Service allows an authorized attacker to elevate privilege… | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69599 | Microsoft | high | 7.5 | — | | Use after free in Windows Remote Desktop Services allows an authorized attacker to execute code over… | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69536 | Microsoft | high | 7.1 | — | | Use after free in Windows Remote Desktop Services allows an authorized attacker to execute code over… | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69546 | Microsoft | high | 8.1 | — | | Use after free in Active Directory Domain Services allows an unauthorized attacker to execute code o… | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69535 | Microsoft | high | 7.8 | — | | Numeric truncation error in Windows Spaceport.sys allows an authorized attacker to elevate privilege… | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69538 | Microsoft | high | 7.8 | — | | Out-of-bounds read in Windows Spaceport.sys allows an authorized attacker to execute code locally. | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69542 | Microsoft | high | 7.8 | — | | Heap-based buffer overflow in Windows Camera Frame Server Monitor allows an authorized attacker to e… | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69612 | Microsoft | high | 7.8 | — | | Absolute path traversal in Windows Error Reporting allows an authorized attacker to elevate privileg… | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69567 | Microsoft | high | 7.0 | — | | Use after free in Windows NTFS allows an authorized attacker to elevate privileges locally. | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69592 | Microsoft | high | 7.8 | — | | Heap-based buffer overflow in Windows Universal Disk Format File System Driver (UDFS) allows an auth… | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69606 | Microsoft | high | 7.0 | — | | Use after free in Windows Shell allows an authorized attacker to elevate privileges locally. | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69597 | Microsoft | high | 7.1 | — | | Use after free in Windows HTTP.sys allows an authorized attacker to elevate privileges over a networ… | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69602 | Microsoft | high | 7.1 | — | | Use after free in Windows PrintWorkflowUserSvc allows an authorized attacker to elevate privileges o… | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69617 | Microsoft | high | 7.0 | — | | Out-of-bounds read in Windows Resilient File System (ReFS) allows an authorized attacker to elevate … | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69630 | Microsoft | high | 7.0 | — | | Out-of-bounds read in Windows Win32K allows an authorized attacker to elevate privileges locally. | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69610 | Microsoft | high | 7.0 | — | | Buffer over-read in Windows Win32K allows an authorized attacker to elevate privileges locally. | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69613 | Microsoft | high | 7.0 | — | | Use after free in Windows Image Acquisition allows an authorized attacker to elevate privileges loca… | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69669 | Microsoft | high | 8.8 | — | | Heap-based buffer overflow in Windows Kernel allows an unauthorized attacker to execute code over a … | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69680 | Microsoft | high | 8.1 | 0.3%
| | Origin validation error in Windows DNS allows an unauthorized attacker to perform spoofing over a ne… | Sep 8, 2026 | Sep 10, 2026 |
| | CVE-2026-69817 | Microsoft | high | 7.0 | — | | Use after free in Windows Bluetooth Port Driver allows an authorized attacker to elevate privileges … | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69720 | Microsoft | high | 7.8 | — | | Heap-based buffer overflow in Windows MIDI Service Module allows an authorized attacker to elevate p… | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69821 | Microsoft | high | 7.8 | — | | Improper encoding or escaping of output in Active Directory Certificate Services (AD CS) allows an a… | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69685 | Microsoft | high | 7.8 | — | | Heap-based buffer overflow in Windows Kerberos allows an authorized attacker to elevate privileges l… | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69643 | Microsoft | high | 8.0 | — | | Heap-based buffer overflow in Windows Spaceport.sys allows an authorized attacker to elevate privile… | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69652 | Microsoft | high | 7.0 | — | | Use after free in Windows Win32K allows an authorized attacker to elevate privileges locally. | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69834 | Microsoft | high | 7.0 | — | | Use after free in Windows ALPC allows an authorized attacker to elevate privileges locally. | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69654 | Microsoft | high | 7.0 | — | | Use after free in Windows Accounts Control allows an authorized attacker to elevate privileges local… | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69816 | Microsoft | high | 7.0 | — | | Use after free in Windows Accounts Control allows an authorized attacker to elevate privileges local… | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69709 | Microsoft | high | 7.8 | — | | Heap-based buffer overflow in Windows NTFS allows an authorized attacker to execute code locally. | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69844 | Microsoft | high | 7.8 | — | | Out-of-bounds read in Windows Win32K allows an authorized attacker to elevate privileges locally. | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69688 | Microsoft | high | 7.1 | 0.6%
| | Heap-based buffer overflow in Windows Encrypting File System (EFS) allows an authorized attacker to … | Sep 8, 2026 | Sep 10, 2026 |
| | CVE-2026-69841 | Microsoft | high | 7.8 | 0.3%
| | Heap-based buffer overflow in Windows Encrypting File System (EFS) allows an authorized attacker to … | Sep 8, 2026 | Sep 10, 2026 |
| | CVE-2026-69801 | Microsoft | high | 7.8 | — | | Heap-based buffer overflow in Windows Audio Service allows an authorized attacker to elevate privile… | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69692 | Microsoft | high | 7.0 | — | | Use after free in Windows Audio Service allows an authorized attacker to elevate privileges locally. | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69731 | Microsoft | high | 7.8 | — | | Heap-based buffer overflow in HID class driver allows an authorized attacker to elevate privileges l… | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69706 | Microsoft | high | 7.1 | — | | Use after free in Windows Win32K allows an authorized attacker to elevate privileges over a network. | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69921 | Microsoft | high | 7.8 | — | | Heap-based buffer overflow in Windows Print Spooler Components allows an authorized attacker to elev… | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69779 | Microsoft | high | 7.0 | — | | Time-of-check time-of-use (toctou) race condition in Windows Win32K allows an authorized attacker to… | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69761 | Microsoft | high | 7.1 | — | | Use after free in Windows TCP/IP allows an authorized attacker to elevate privileges over a network. | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69785 | Microsoft | high | 7.8 | — | | Untrusted search path in Windows Smart Card allows an authorized attacker to elevate privileges loca… | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69907 | Microsoft | high | 7.8 | 0.3%
| | Improper handling of insufficient permissions or privileges in Windows Enterprise App Management all… | Sep 8, 2026 | Sep 10, 2026 |
| | CVE-2026-69818 | Microsoft | high | 7.0 | — | | Use after free in Windows Win32K allows an authorized attacker to elevate privileges locally. | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69900 | Microsoft | high | 7.8 | — | | Untrusted pointer dereference in Kernel Streaming WOW Thunk Service Driver allows an authorized atta… | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69891 | Microsoft | high | 7.0 | — | | Use after free in Windows Media allows an authorized attacker to elevate privileges locally. | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69807 | Microsoft | high | 8.0 | — | | Improper limitation of a pathname to a restricted directory ('path traversal') in Windows PowerShell… | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69829 | Microsoft | critical | 9.8 | — | | Heap-based buffer overflow in Windows Shell allows an unauthorized attacker to execute code over a n… | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69852 | Microsoft | high | 7.5 | — | | Remote Code Execution in Windows Routing and Remote Access Service (RRAS) allows attacker to gain an… | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69799 | Microsoft | high | 7.8 | — | | Concurrent execution using shared resource with improper synchronization ('race condition') in Windo… | Sep 8, 2026 | Sep 9, 2026 |