| | CVE-2026-57104 | Microsoft | high | 8.8 | 0.8%
| | Improper neutralization of input during web page generation ('cross-site scripting') in Azure Storag… | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-70330 | Microsoft | medium | 6.7 | 0.3%
| | Heap-based buffer overflow in Windows DNS allows an authorized attacker to elevate privileges locall… | Aug 11, 2026 | Aug 13, 2026 |
| | CVE-2026-70307 | Microsoft | high | 7.0 | — | | Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to ele… | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-68820 | Microsoft | high | 7.0 | — | ⚠ KEV | Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to ele… | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-65815 | Microsoft | high | 8.8 | — | | Deserialization of untrusted data in Microsoft Dynamics 365 (on-premises) allows an authorized attac… | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-65814 | Microsoft | high | 7.8 | — | | Heap-based buffer overflow in Windows Storage Port Driver allows an authorized attacker to elevate p… | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-65813 | Microsoft | medium | 6.5 | — | | Server-side request forgery (ssrf) in Microsoft Exchange Server allows an authorized attacker to ele… | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-65788 | Microsoft | high | 7.0 | — | | Use after free in Desktop Window Manager allows an authorized attacker to elevate privileges locally… | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-65787 | Microsoft | high | 7.8 | — | | Heap-based buffer overflow in Desktop Window Manager allows an authorized attacker to elevate privil… | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-65789 | Microsoft | high | 8.1 | — | | Use after free in Windows DNS allows an unauthorized attacker to execute code over a network. | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-65786 | Microsoft | high | 7.8 | — | | Heap-based buffer overflow in Desktop Window Manager allows an authorized attacker to elevate privil… | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-65784 | Microsoft | medium | 5.5 | 0.3%
| | Out-of-bounds read in Windows NTFS allows an authorized attacker to disclose information locally. | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-65678 | Microsoft | high | 7.0 | — | | Use after free in Windows Win32K allows an authorized attacker to elevate privileges locally. | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-65662 | Microsoft | medium | 5.5 | 0.3%
| | Out-of-bounds read in Windows GDI allows an authorized attacker to disclose information locally. | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-62894 | Microsoft | high | 7.8 | — | | Heap-based buffer overflow in Windows DWM Core Library allows an authorized attacker to elevate priv… | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-62893 | Microsoft | critical | 9.8 | — | | Use after free in Windows Deployment Services allows an unauthorized attacker to execute code over a… | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-62892 | Microsoft | high | 7.0 | — | | Use after free in Capability Access Management Service (camsvc) allows an authorized attacker to ele… | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-62890 | Microsoft | high | 7.8 | — | | Heap-based buffer overflow in Windows GDI+ allows an authorized attacker to execute code locally. | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-62889 | Microsoft | high | 8.1 | — | | Double free in Windows Secure Socket Tunneling Protocol (SSTP) allows an unauthorized attacker to ex… | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-62878 | Microsoft | critical | 9.8 | — | | Stack-based buffer overflow in Windows DNS allows an unauthorized attacker to execute code over a ne… | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-62877 | Microsoft | high | 7.8 | — | | Stack-based buffer overflow in Windows Win32K allows an authorized attacker to elevate privileges lo… | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-62876 | Microsoft | high | 7.8 | — | | Out-of-bounds read in Windows Win32K allows an authorized attacker to elevate privileges locally. | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-62820 | Microsoft | high | 8.1 | — | | Concurrent execution using shared resource with improper synchronization ('race condition') in Windo… | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-62819 | Microsoft | high | 8.1 | — | | Remote Code Execution in Windows Routing and Remote Access Service (RRAS) allows attacker to gain an… | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-62818 | Microsoft | high | 8.8 | — | | Use after free in Active Directory Certificate Services (AD CS) allows an authorized attacker to exe… | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-62817 | Microsoft | high | 8.8 | — | | Out-of-bounds write in Windows DNS allows an unauthorized attacker to execute code over an adjacent … | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-62816 | Microsoft | high | 8.8 | — | | Heap-based buffer overflow in Reliable Multicast Transport Driver (RMCAST) allows an unauthorized at… | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-62815 | Microsoft | critical | 9.8 | — | | Use after free in Microsoft QUIC allows an unauthorized attacker to execute code over a network. | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-62812 | Microsoft | high | 7.8 | — | | Improper link resolution before file access ('link following') in Windows DHCP Server allows an auth… | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-62797 | Microsoft | high | 7.8 | — | | Heap-based buffer overflow in Windows NTFS allows an authorized attacker to elevate privileges local… | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-62795 | Microsoft | high | 8.8 | — | | Use after free in Windows LDAP - Lightweight Directory Access Protocol allows an unauthorized attack… | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-62787 | Microsoft | high | 7.5 | — | | Use after free in Windows DNS allows an authorized attacker to execute code over a network. | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-62784 | Microsoft | high | 8.8 | — | | Heap-based buffer overflow in Microsoft Local Security Authority Server (lsasrv) allows an authorize… | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-62792 | Microsoft | high | 8.1 | — | | Stack-based buffer overflow in Windows TCP/IP allows an unauthorized attacker to execute code over a… | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-62779 | Microsoft | high | 7.8 | — | | Use after free in Windows Schannel allows an authorized attacker to elevate privileges locally. | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-62785 | Microsoft | high | 8.8 | — | | Heap-based buffer overflow in Windows LDAP - Lightweight Directory Access Protocol allows an unautho… | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-62773 | Microsoft | high | 7.0 | — | | Use after free in Windows Kerberos allows an authorized attacker to elevate privileges locally. | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-62766 | Microsoft | high | 7.0 | — | | Double free in Windows Kerberos allows an authorized attacker to elevate privileges locally. | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-62758 | Microsoft | high | 7.8 | — | | Heap-based buffer overflow in Windows Remote Access Connection Manager allows an authorized attacker… | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-62755 | Microsoft | high | 7.8 | — | | Stack-based buffer overflow in Windows DHCP Client allows an authorized attacker to elevate privileg… | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-62783 | Microsoft | high | 7.8 | — | | Heap-based buffer overflow in Windows Remote Access Connection Manager allows an authorized attacker… | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-62754 | Microsoft | high | 7.8 | — | | Heap-based buffer overflow in Windows Kerberos allows an authorized attacker to elevate privileges l… | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-62747 | Microsoft | high | 7.8 | — | | Heap-based buffer overflow in Windows Device Association Service allows an authorized attacker to el… | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-62739 | Microsoft | high | 7.8 | — | | Heap-based buffer overflow in Windows HTTP.sys allows an authorized attacker to elevate privileges l… | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-62737 | Microsoft | high | 7.8 | — | | Untrusted pointer dereference in Windows Kernel allows an authorized attacker to elevate privileges … | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-62735 | Microsoft | high | 7.8 | — | | Heap-based buffer overflow in Windows HTTP.sys allows an authorized attacker to elevate privileges l… | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-62753 | Microsoft | high | 7.0 | — | | Heap-based buffer overflow in Windows HTTP.sys allows an authorized attacker to elevate privileges l… | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-62729 | Microsoft | high | 7.0 | — | | Concurrent execution using shared resource with improper synchronization ('race condition') in Windo… | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-62748 | Microsoft | high | 7.0 | — | | Concurrent execution using shared resource with improper synchronization ('race condition') in Windo… | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-62724 | Microsoft | high | 7.0 | — | | Use after free in Windows Telephony Service allows an authorized attacker to elevate privileges loca… | Aug 11, 2026 | Aug 12, 2026 |