Recent Advisories

Severity ID Title Vendor Product Date Type
HIGH 7.8 MS:CVE-2026-20923

Windows Management Services Elevation of Privilege Vulnerability_MS:CVE-2026-20923

Use after free in Windows Management Services allows an authorized attacker to elevate privileges locally.

N/A N/A MSCVE
HIGH 7.4 MS:CVE-2026-20853

Windows WalletService Elevation of Privilege Vulnerability_MS:CVE-2026-20853

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows WalletService allows an unauthorized attacke...

N/A N/A MSCVE
MEDIUM 6.5 MS:CVE-2026-20847

Microsoft Windows File Explorer Spoofing Vulnerability_MS:CVE-2026-20847

Exposure of sensitive information to an unauthorized actor in Windows Shell allows an authorized attacker to perform spoofing over a network.

N/A N/A MSCVE
HIGH 7 MS:CVE-2026-20842

Microsoft DWM Core Library Elevation of Privilege Vulnerability_MS:CVE-2026-20842

Use after free in Windows DWM allows an authorized attacker to elevate privileges locally.

N/A N/A MSCVE
HIGH 7.8 MS:CVE-2026-20837

Windows Media Remote Code Execution Vulnerability_MS:CVE-2026-20837

Heap-based buffer overflow in Windows Media allows an unauthorized attacker to execute code locally.

N/A N/A MSCVE
MEDIUM 5.5 MS:CVE-2026-20835

Capability Access Management Service (camsvc) Information Disclosure Vulnerability_MS:CVE-2026-20835

Out-of-bounds read in Capability Access Management Service (camsvc) allows an authorized attacker to disclose information locally.

N/A N/A MSCVE
MEDIUM 6.2 MS:CVE-2026-20821

Remote Procedure Call Information Disclosure Vulnerability_MS:CVE-2026-20821

Exposure of sensitive information to an unauthorized actor in Windows Remote Procedure Call allows an unauthorized attacker to disclose information...

N/A N/A MSCVE
MEDIUM 6.2 MS:CVE-2026-20818

Windows Kernel Information Disclosure Vulnerability_MS:CVE-2026-20818

Insertion of sensitive information into log file in Windows Kernel allows an unauthorized attacker to disclose information locally.

N/A N/A MSCVE
HIGH 7.8 MS:CVE-2026-20955

Microsoft Excel Remote Code Execution Vulnerability_MS:CVE-2026-20955

Untrusted pointer dereference in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

N/A N/A MSCVE
HIGH 8.4 MS:CVE-2026-20952

Microsoft Office Remote Code Execution Vulnerability_MS:CVE-2026-20952

Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.

N/A N/A MSCVE