Recent Advisories

Severity ID Title Vendor Product Date Type
HIGH 7.8 MS:CVE-2026-20866

Windows Management Services Elevation of Privilege Vulnerability_MS:CVE-2026-20866

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Management Services allows an authorized att...

N/A N/A MSCVE
HIGH 8.1 MS:CVE-2026-20856

Windows Server Update Service (WSUS) Remote Code Execution Vulnerability_MS:CVE-2026-20856

Improper input validation in Windows Server Update Service allows an unauthorized attacker to execute code over a network.

N/A N/A MSCVE
MEDIUM 4.6 MS:CVE-2026-20828

Windows rndismp6.sys Information Disclosure Vulnerability_MS:CVE-2026-20828

Out-of-bounds read in Windows Internet Connection Sharing (ICS) allows an unauthorized attacker to disclose information with a physical attack.

N/A N/A MSCVE
MEDIUM 4.4 MS:CVE-2026-20825

Windows Hyper-V Information Disclosure Vulnerability_MS:CVE-2026-20825

Improper access control in Windows Hyper-V allows an authorized attacker to disclose information locally.

N/A N/A MSCVE
MEDIUM 5.5 MS:CVE-2026-20819

Windows Virtualization-Based Security (VBS) Information Disclosure Vulnerability_MS:CVE-2026-20819

Untrusted pointer dereference in Windows Virtualization-Based Security (VBS) Enclave allows an authorized attacker to disclose information locally.

N/A N/A MSCVE
MEDIUM 6.5 MS:CVE-2026-20812

LDAP Tampering Vulnerability_MS:CVE-2026-20812

Improper input validation in Windows LDAP - Lightweight Directory Access Protocol allows an authorized attacker to perform tampering over a network.

N/A N/A MSCVE
HIGH 7.8 MS:CVE-2026-20923

Windows Management Services Elevation of Privilege Vulnerability_MS:CVE-2026-20923

Use after free in Windows Management Services allows an authorized attacker to elevate privileges locally.

N/A N/A MSCVE
HIGH 7.4 MS:CVE-2026-20853

Windows WalletService Elevation of Privilege Vulnerability_MS:CVE-2026-20853

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows WalletService allows an unauthorized attacke...

N/A N/A MSCVE
MEDIUM 6.5 MS:CVE-2026-20847

Microsoft Windows File Explorer Spoofing Vulnerability_MS:CVE-2026-20847

Exposure of sensitive information to an unauthorized actor in Windows Shell allows an authorized attacker to perform spoofing over a network.

N/A N/A MSCVE
HIGH 7 MS:CVE-2026-20842

Microsoft DWM Core Library Elevation of Privilege Vulnerability_MS:CVE-2026-20842

Use after free in Windows DWM allows an authorized attacker to elevate privileges locally.

N/A N/A MSCVE