Количество 386 296
Количество 386 296
CVE-2026-59135
Weak authentication in Microsoft Windows Search Component allows an authorized attacker to disclose information locally.
CVE-2026-59134
Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code over a network.
CVE-2026-59133
Execution with unnecessary privileges in Microsoft High Performance Computing (HPC) Pack allows an authorized attacker to elevate privileges over a network.
CVE-2026-59132
Null pointer dereference in Windows TCP/IP allows an unauthorized attacker to deny service over a network.
CVE-2026-59131
No cwe for this issue in AMD Zen allows an authorized attacker to disclose information locally.
CVE-2026-59130
No cwe for this issue in AMD Zen allows an authorized attacker to disclose information locally.
CVE-2026-5912
Integer overflow in WebRTC in Google Chrome prior to 147.0.7727.55 allowed a remote attacker to perform an out of bounds memory write via a crafted HTML page. (Chromium security severity: Low)
CVE-2026-59128
Out-of-bounds read in Windows Encrypting File System (EFS) allows an authorized attacker to disclose information locally.
CVE-2026-59127
Integer overflow or wraparound in Windows Installer allows an authorized attacker to elevate privileges locally.
CVE-2026-59126
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Event Logging Service allows an authorized attacker to elevate privileges locally.
CVE-2026-59125
Use after free in Virtual Hard Disk (VHD) Miniport Driver allows an authorized attacker to elevate privileges locally.
CVE-2026-59124
Deserialization of untrusted data in Microsoft High Performance Computing (HPC) Pack allows an unauthorized attacker to execute code over a network.
CVE-2026-59122
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Telephony Service allows an authorized attacker to elevate privileges locally.
CVE-2026-5911
Policy bypass in ServiceWorkers in Google Chrome prior to 147.0.7727.55 allowed a remote attacker to bypass content security policy via a crafted HTML page. (Chromium security severity: Low)
CVE-2026-59119
Incorrect default permissions in Microsoft PowerShell allows an authorized attacker to elevate privileges locally.
CVE-2026-59118
Improper authorization in Copilot Cowork allows an unauthorized attacker to elevate privileges over a network.
CVE-2026-59117
Integer overflow or wraparound in Windows Terminal allows an unauthorized attacker to execute code over a network.
CVE-2026-59115
'.../...//' in Microsoft Entra Provisioning Service (SyncFabric) allows an authorized attacker to elevate privileges over a network.
CVE-2026-59113
Missing authorization in Visual Studio Code allows an unauthorized attacker to execute code over a network.
CVE-2026-59112
Improper verification of cryptographic signature and Improper Check for Unusual or Exceptional Conditions vulnerability in Estonian Information System Authority (RIA) libdigidocpp, DigiDoc4, DigiDoc on Android, and DigiDoc on iOS. This issue affects libdigidocpp: from 4.1.0 before 4.2.1; DigiDoc4: from 4.7.0 before 4.8.2; DigiDoc on Android: from 2.7.0 before 2.7.2; DigiDoc on iOS: from 2.8.0 before 2.8.1.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-59135 Weak authentication in Microsoft Windows Search Component allows an authorized attacker to disclose information locally. | CVSS3: 5.5 | 0% Низкий | 24 дня назад | |
CVE-2026-59134 Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code over a network. | CVSS3: 7.5 | 1% Низкий | 24 дня назад | |
CVE-2026-59133 Execution with unnecessary privileges in Microsoft High Performance Computing (HPC) Pack allows an authorized attacker to elevate privileges over a network. | CVSS3: 8.8 | 1% Низкий | 24 дня назад | |
CVE-2026-59132 Null pointer dereference in Windows TCP/IP allows an unauthorized attacker to deny service over a network. | CVSS3: 7.5 | 2% Низкий | 24 дня назад | |
CVE-2026-59131 No cwe for this issue in AMD Zen allows an authorized attacker to disclose information locally. | CVSS3: 5.6 | 0% Низкий | 24 дня назад | |
CVE-2026-59130 No cwe for this issue in AMD Zen allows an authorized attacker to disclose information locally. | CVSS3: 5.6 | 0% Низкий | 24 дня назад | |
CVE-2026-5912 Integer overflow in WebRTC in Google Chrome prior to 147.0.7727.55 allowed a remote attacker to perform an out of bounds memory write via a crafted HTML page. (Chromium security severity: Low) | CVSS3: 8.8 | 0% Низкий | 5 месяцев назад | |
CVE-2026-59128 Out-of-bounds read in Windows Encrypting File System (EFS) allows an authorized attacker to disclose information locally. | CVSS3: 5.5 | 0% Низкий | 24 дня назад | |
CVE-2026-59127 Integer overflow or wraparound in Windows Installer allows an authorized attacker to elevate privileges locally. | CVSS3: 7.8 | 0% Низкий | 24 дня назад | |
CVE-2026-59126 Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Event Logging Service allows an authorized attacker to elevate privileges locally. | CVSS3: 7 | 0% Низкий | 24 дня назад | |
CVE-2026-59125 Use after free in Virtual Hard Disk (VHD) Miniport Driver allows an authorized attacker to elevate privileges locally. | CVSS3: 7 | 0% Низкий | 24 дня назад | |
CVE-2026-59124 Deserialization of untrusted data in Microsoft High Performance Computing (HPC) Pack allows an unauthorized attacker to execute code over a network. | CVSS3: 9.8 | 2% Низкий | 24 дня назад | |
CVE-2026-59122 Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Telephony Service allows an authorized attacker to elevate privileges locally. | CVSS3: 7 | 0% Низкий | 24 дня назад | |
CVE-2026-5911 Policy bypass in ServiceWorkers in Google Chrome prior to 147.0.7727.55 allowed a remote attacker to bypass content security policy via a crafted HTML page. (Chromium security severity: Low) | CVSS3: 4.3 | 0% Низкий | 5 месяцев назад | |
CVE-2026-59119 Incorrect default permissions in Microsoft PowerShell allows an authorized attacker to elevate privileges locally. | CVSS3: 7.3 | 0% Низкий | 24 дня назад | |
CVE-2026-59118 Improper authorization in Copilot Cowork allows an unauthorized attacker to elevate privileges over a network. | CVSS3: 9.3 | 0% Низкий | 29 дней назад | |
CVE-2026-59117 Integer overflow or wraparound in Windows Terminal allows an unauthorized attacker to execute code over a network. | CVSS3: 7.5 | 1% Низкий | около 2 месяцев назад | |
CVE-2026-59115 '.../...//' in Microsoft Entra Provisioning Service (SyncFabric) allows an authorized attacker to elevate privileges over a network. | CVSS3: 9.9 | 1% Низкий | 29 дней назад | |
CVE-2026-59113 Missing authorization in Visual Studio Code allows an unauthorized attacker to execute code over a network. | CVSS3: 8.8 | 1% Низкий | 24 дня назад | |
CVE-2026-59112 Improper verification of cryptographic signature and Improper Check for Unusual or Exceptional Conditions vulnerability in Estonian Information System Authority (RIA) libdigidocpp, DigiDoc4, DigiDoc on Android, and DigiDoc on iOS. This issue affects libdigidocpp: from 4.1.0 before 4.2.1; DigiDoc4: from 4.7.0 before 4.8.2; DigiDoc on Android: from 2.7.0 before 2.7.2; DigiDoc on iOS: from 2.8.0 before 2.8.1. | 0% Низкий | 26 дней назад |
Уязвимостей на страницу