VendorsMicrosoftwindowsall versions
Vulnerabilities

Microsoft Windows

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

10355CVEs
CVE-2026-12464
Use after free in Browser in Google Chrome prior to 149.0.7827.155 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
Published 2026-06-17 · Analyzed
8.3EPSS 0.002
CVE-2026-11663
Use after free in Skia in Google Chrome prior to 149.0.7827.103 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
Published 2026-06-08 · Analyzed
8.3EPSS 0.002
CVE-2026-6921
Race in GPU in Google Chrome on Windows prior to 147.0.7727.117 allowed a remote attacker to potentially perform a sandbox escape via a crafted video file. (Chromium security severity: Medium)
Published 2026-04-23 · Modified
8.3EPSS 0.002
CVE-2026-11256
Integer overflow in GPU in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Low)
Published 2026-06-04 · Analyzed
8.3EPSS 0.002
CVE-2026-12031
Inappropriate implementation in Views in Google Chrome on Windows prior to 149.0.7827.115 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
Published 2026-06-11 · Analyzed
8.3EPSS 0.002
CVE-2026-12029
Use after free in Video in Google Chrome on Windows prior to 149.0.7827.115 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
Published 2026-06-11 · Analyzed
8.3EPSS 0.002
CVE-2026-10000
Use after free in Passwords in Google Chrome on Windows prior to 148.0.7778.216 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
Published 2026-05-28 · Analyzed
8.3EPSS 0.002
CVE-2026-11236
Insufficient policy enforcement in Web Bluetooth in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Low)
Published 2026-06-04 · Analyzed
8.3EPSS 0.002
CVE-2026-11679
Use after free in Codecs in Google Chrome on Windows prior to 149.0.7827.103 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
Published 2026-06-08 · Analyzed
8.3EPSS 0.002
CVE-2026-11700
Use after free in Tracing in Google Chrome prior to 149.0.7827.103 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Medium)
Published 2026-06-08 · Analyzed
8.3EPSS 0.002
CVE-2026-11692
Use after free in Read Anything in Google Chrome prior to 149.0.7827.103 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
Published 2026-06-08 · Analyzed
8.3EPSS 0.002
CVE-2026-12451
Use after free in DigitalCredentials in Google Chrome prior to 149.0.7827.155 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
Published 2026-06-17 · Analyzed
8.3EPSS 0.002
CVE-2026-12014
Use after free in Cast in Google Chrome prior to 149.0.7827.115 allowed an attacker on the local network segment to potentially perform a sandbox escape via malicious network traffic. (Chromium security severity: High)
Published 2026-06-11 · Analyzed
8.3EPSS 0.002
CVE-2026-10012
Use after free in Skia in Google Chrome prior to 148.0.7778.216 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
Published 2026-05-28 · Analyzed
8.3EPSS 0.002
CVE-2026-10001
Use after free in PerformanceManager in Google Chrome prior to 148.0.7778.216 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
Published 2026-05-28 · Analyzed
8.3EPSS 0.002
CVE-2026-11656
Use after free in ServiceWorker in Google Chrome prior to 149.0.7827.103 allowed an attacker who convinced a user to install a malicious extension to potentially perform a sandbox escape via a crafted Chrome Extension. (Chromium security severity: High)
Published 2026-06-08 · Analyzed
8.3EPSS 0.002
CVE-2024-20337
A vulnerability in the SAML authentication process of Cisco Secure Client could allow an unauthenticated, remote attacker to conduct a carriage return line feed (CRLF) injection attack against a user. This vulnerability is due to insufficient validation of user-supplied input. An attacker could exploit this vulnerability by persuading a user to click a crafted link while establishing a VPN session. A successful exploit could allow the attacker to execute arbitrary script code in the browser or access sensitive, browser-based information, including a valid SAML token. The attacker could then use the token to establish a remote access VPN session with the privileges of the affected user. Individual hosts and services behind the VPN headend would still need additional credentials for successful access.
Published 2024-03-06 · Analyzed
8.2EPSS 0.299
CVE-2020-4949
IBM WebSphere Application Server 7.0, 8.0, 8.5, and 9.0 is vulnerable to an XML External Entity Injection (XXE) attack when processing XML data. A remote attacker could exploit this vulnerability to expose sensitive information or consume memory resources. IBM X-Force ID: 192025.
Published 2021-01-26 · Modified
8.2EPSS 0.048
CVE-2025-13316
Hard-coded encryption keys in Twonky Server
Published 2025-11-19 · Analyzed
8.2EPSS 0.027
CVE-2020-4875
IBM Cognos Controller 10.4.0, 10.4.1, and 10.4.2 is vulnerable to an XML External Entity Injection (XXE) attack when processing XML data. A remote attacker could exploit this vulnerability to expose sensitive information or consume memory resources. IBM X-Force ID: 190838.
Published 2022-01-21 · Modified
8.2EPSS 0.017
CVE-2020-4876
IBM Cognos Controller 10.4.0, 10.4.1, and 10.4.2 is vulnerable to an XML External Entity Injection (XXE) attack when processing XML data. A remote attacker could exploit this vulnerability to expose sensitive information or consume memory resources. IBM X-Force ID: 190839.
Published 2022-01-21 · Modified
8.2EPSS 0.017
CVE-2023-25926
IBM Security Guardium Key Lifecycle Manager XML external entity injection
Published 2024-02-29 · Analyzed
8.2EPSS 0.014
CVE-2019-2390
Code execution on Windows via OpenSSL engine injection
Published 2019-08-30 · Modified
8.2EPSS 0.010
CVE-2024-52055
Application Copy Path Traversal in Wowza Streaming Engine
Published 2024-11-21 · Analyzed
8.2EPSS 0.010
CVE-2026-48345
Animate | Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') (CWE-78)
Published 2026-07-14 · Analyzed
8.2EPSS 0.009
CVE-2024-39726
IBM Engineering Insights XML external entity injection
Published 2024-11-15 · Analyzed
8.2EPSS 0.007
CVE-2024-45720
Apache Subversion: Command line argument injection on Windows platforms
Published 2024-10-09 · Analyzed
8.2EPSS 0.006
CVE-2026-50528
.NET Security Feature Bypass Vulnerability
Published 2026-07-14 · Analyzed
8.2EPSS 0.006
CVE-2026-81994
Acrobat Reader | Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution') (CWE-1321)
Published 2026-09-08 · Analyzed
8.2EPSS 0.006
CVE-2026-53571
Vite: `server.fs.deny` bypass on Windows alternate paths
Published 2026-06-22 · Analyzed
8.2EPSS 0.006
CVE-2023-47160
IBM Cognos Controller XML external entity injection
Published 2025-02-19 · Analyzed
8.2EPSS 0.005
CVE-2024-29072
A privilege escalation vulnerability exists in the Foxit Reader 2024.2.0.25138. The vulnerability occurs due to improper certification validation of the updater executable before executing it. A low privilege user can trigger the update action which can result in unexpected elevation of privilege.
Published 2024-05-28 · Analyzed
8.2EPSS 0.005
CVE-2021-23175
NVIDIA GeForce Experience contains a vulnerability in user authorization, where GameStream does not correctly apply individual user access controls for users on the same device, which, with user intervention, may lead to escalation of privileges, information disclosure, data tampering, and denial of service, affecting other resources beyond the intended security authority of GameStream.
Published 2021-12-23 · Modified
8.2EPSS 0.004
CVE-2023-0400
The protection bypass vulnerability in DLP for Windows 11.9.x is addressed in version 11.10.0. This allowed a local user to bypass DLP controls when uploading sensitive data from a mapped drive into a web email client. Loading from a local driver was correctly prevented. Versions prior to 11.9 correctly detected and blocked the attempted upload of sensitive data.
Published 2023-02-01 · Modified
8.2EPSS 0.004
CVE-2021-31844
Local Privilege Escalation in McAfee DLP Endpoint for Windows
Published 2021-09-17 · Modified
8.2EPSS 0.004
CVE-2024-49782
IBM OpenPages improper certificate validation
Published 2025-02-20 · Analyzed
8.2EPSS 0.004
CVE-2023-2110
Obsidian Local File Disclosure
Published 2023-08-19 · Modified
8.2EPSS 0.004
CVE-2026-30798
RustDesk Client Accepts Unauthenticated stop-service Command via Strategy Payload
Published 2026-03-05 · Modified
8.2EPSS 0.003
CVE-2026-76191
Animate | Improper Control of Generation of Code ('Code Injection') (CWE-94)
Published 2026-09-08 · Analyzed
8.2EPSS 0.003
CVE-2019-3622
DLP Endpoint log file redirection to arbitrary locations
Published 2019-07-24 · Modified
8.2EPSS 0.003
← Prev106 / 259Next →